<?xml version="1.0" encoding="UTF-8"?>
<updates xmlns="http://novell.com/package/metadata/suse/updateinfo">
<!--PATCHINFO id="a752c79e3dc11adc95a97115863b988f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="36">
  <id>xorg-x11-Xvnc</id>
  <title>Multiple Xorg vulnerabilities reported by iDefense</title>
  <release>openSUSE 11.0</release>
  <issued date="1213630432"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=374318" id="374318" title="bug number 374318" type="bugzilla"/>
  </references>
  <description>This update fixes multiple vulnerabilities  reported by
iDefense:
- CVE-2008-2360 - RENDER Extension heap buffer overflow
- CVE-2008-2361 - RENDER Extension crash
- CVE-2008-2362 - RENDER Extension memory corruption 
- CVE-2008-1379 - MIT-SHM arbitrary memory read
- CVE-2008-1377 - RECORD and Security extensions  memory
  corruption
</description>
  <pkglist>
    <collection>
        <package name="xorg-x11-Xvnc" arch="i586" version="7.3" release="110.2">
          <filename>xorg-x11-Xvnc-7.3-110.2.i586.rpm</filename>
        </package>
        <package name="xorg-x11-Xvnc" arch="ppc" version="7.3" release="110.2">
          <filename>xorg-x11-Xvnc-7.3-110.2.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-Xvnc" arch="x86_64" version="7.3" release="110.2">
          <filename>xorg-x11-Xvnc-7.3-110.2.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="i586" version="7.3" release="110.2">
          <filename>xorg-x11-server-7.3-110.2.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="ppc" version="7.3" release="110.2">
          <filename>xorg-x11-server-7.3-110.2.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="x86_64" version="7.3" release="110.2">
          <filename>xorg-x11-server-7.3-110.2.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="i586" version="7.3" release="110.2">
          <filename>xorg-x11-server-extra-7.3-110.2.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="ppc" version="7.3" release="110.2">
          <filename>xorg-x11-server-extra-7.3-110.2.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="x86_64" version="7.3" release="110.2">
          <filename>xorg-x11-server-extra-7.3-110.2.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="i586" version="7.3" release="110.2">
          <filename>xorg-x11-server-sdk-7.3-110.2.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="ppc" version="7.3" release="110.2">
          <filename>xorg-x11-server-sdk-7.3-110.2.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="x86_64" version="7.3" release="110.2">
          <filename>xorg-x11-server-sdk-7.3-110.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="96cdbeddab90e3c4042aaf2efc3b36c8"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="37">
  <id>autoyast2</id>
  <title>autoyast: fix for cloning a system for an autoinstallation</title>
  <release>openSUSE 11.0</release>
  <issued date="1213657254"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=391770" id="391770" title="bug number 391770" type="bugzilla"/>
  </references>
  <description>Cloning can fail when a lot of patterns are installed.
</description>
  <pkglist>
    <collection>
        <package name="autoyast2" arch="noarch" version="2.16.19" release="0.1">
          <filename>autoyast2-2.16.19-0.1.noarch.rpm</filename>
        </package>
        <package name="autoyast2-installation" arch="noarch" version="2.16.19" release="0.1">
          <filename>autoyast2-installation-2.16.19-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e6b4207ade43872aeb57f77f542711a9"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="235">
  <id>kdenetwork3-InstantMessenger</id>
  <title>Crash fixes in Kopete GroupWise</title>
  <release>openSUSE 11.0</release>
  <issued date="1223002576"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=336059" id="336059" title="bug number 336059" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=354139" id="354139" title="bug number 354139" type="bugzilla"/>
  </references>
  <description>Fixes for two crashes while getting user details in
Kopete's GroupWise plugin
</description>
  <pkglist>
    <collection>
        <package name="kdenetwork3-InstantMessenger" arch="i586" version="3.5.9" release="39.2">
          <filename>kdenetwork3-InstantMessenger-3.5.9-39.2.i586.rpm</filename>
        </package>
        <package name="kdenetwork3-InstantMessenger" arch="ppc" version="3.5.9" release="39.2">
          <filename>kdenetwork3-InstantMessenger-3.5.9-39.2.ppc.rpm</filename>
        </package>
        <package name="kdenetwork3-InstantMessenger" arch="x86_64" version="3.5.9" release="39.2">
          <filename>kdenetwork3-InstantMessenger-3.5.9-39.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="196f8e1910eb925736af21c11e102d7a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="42">
  <id>courier-authlib</id>
  <title>courier-authlib: SQL injection</title>
  <release>openSUSE 11.0</release>
  <issued date="1213619028"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398412" id="398412" title="bug number 398412" type="bugzilla"/>
  </references>
  <description>This update of courier-authlib fixes a bug that allowed
SQL injections. (CVE-2008-2667)
</description>
  <pkglist>
    <collection>
        <package name="courier-authlib" arch="i586" version="0.60.2" release="40.2">
          <filename>courier-authlib-0.60.2-40.2.i586.rpm</filename>
        </package>
        <package name="courier-authlib" arch="ppc" version="0.60.2" release="40.2">
          <filename>courier-authlib-0.60.2-40.2.ppc.rpm</filename>
        </package>
        <package name="courier-authlib" arch="x86_64" version="0.60.2" release="40.2">
          <filename>courier-authlib-0.60.2-40.2.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-devel" arch="i586" version="0.60.2" release="40.2">
          <filename>courier-authlib-devel-0.60.2-40.2.i586.rpm</filename>
        </package>
        <package name="courier-authlib-devel" arch="ppc" version="0.60.2" release="40.2">
          <filename>courier-authlib-devel-0.60.2-40.2.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-devel" arch="x86_64" version="0.60.2" release="40.2">
          <filename>courier-authlib-devel-0.60.2-40.2.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-ldap" arch="i586" version="0.60.2" release="40.2">
          <filename>courier-authlib-ldap-0.60.2-40.2.i586.rpm</filename>
        </package>
        <package name="courier-authlib-ldap" arch="ppc" version="0.60.2" release="40.2">
          <filename>courier-authlib-ldap-0.60.2-40.2.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-ldap" arch="x86_64" version="0.60.2" release="40.2">
          <filename>courier-authlib-ldap-0.60.2-40.2.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-mysql" arch="i586" version="0.60.2" release="40.2">
          <filename>courier-authlib-mysql-0.60.2-40.2.i586.rpm</filename>
        </package>
        <package name="courier-authlib-mysql" arch="ppc" version="0.60.2" release="40.2">
          <filename>courier-authlib-mysql-0.60.2-40.2.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-mysql" arch="x86_64" version="0.60.2" release="40.2">
          <filename>courier-authlib-mysql-0.60.2-40.2.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-pgsql" arch="i586" version="0.60.2" release="40.2">
          <filename>courier-authlib-pgsql-0.60.2-40.2.i586.rpm</filename>
        </package>
        <package name="courier-authlib-pgsql" arch="ppc" version="0.60.2" release="40.2">
          <filename>courier-authlib-pgsql-0.60.2-40.2.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-pgsql" arch="x86_64" version="0.60.2" release="40.2">
          <filename>courier-authlib-pgsql-0.60.2-40.2.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-pipe" arch="i586" version="0.60.2" release="40.2">
          <filename>courier-authlib-pipe-0.60.2-40.2.i586.rpm</filename>
        </package>
        <package name="courier-authlib-pipe" arch="ppc" version="0.60.2" release="40.2">
          <filename>courier-authlib-pipe-0.60.2-40.2.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-pipe" arch="x86_64" version="0.60.2" release="40.2">
          <filename>courier-authlib-pipe-0.60.2-40.2.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-userdb" arch="i586" version="0.60.2" release="40.2">
          <filename>courier-authlib-userdb-0.60.2-40.2.i586.rpm</filename>
        </package>
        <package name="courier-authlib-userdb" arch="ppc" version="0.60.2" release="40.2">
          <filename>courier-authlib-userdb-0.60.2-40.2.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-userdb" arch="x86_64" version="0.60.2" release="40.2">
          <filename>courier-authlib-userdb-0.60.2-40.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="07c5022cd9963bda975dcc2222992a28"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="43">
  <id>opera</id>
  <title>Opera: Security upgrade to version 9.50</title>
  <release>openSUSE 11.0</release>
  <issued date="1213637994"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400367" id="400367" title="bug number 400367" type="bugzilla"/>
  </references>
  <description>This patch brings Opera to security update level 9.50

Following security problems were fixed: CVE-2008-2714:
Opera before 9.26 allows remote attackers to misrepresent
web page addresses using &quot;certain characters&quot; that &quot;cause
the page address text to be misplaced.&quot;

CVE-2008-2715: Unspecified vulnerability in Opera before
9.5 allows remote attackers to read cross-domain images via
HTML CANVAS elements that use the images as patterns.

CVE-2008-2716: Unspecified vulnerability in Opera before
9.5 allows remote attackers to spoof the contents of
trusted frames on the same parent page by modifying the
location, which can facilitate phishing attacks.

It also contains lots of new features and other bugfixes,
see the Changelog at:
http://www.opera.com/docs/changelogs/linux/950/
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="9.50" release="0.1">
          <filename>opera-9.50-0.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="9.50" release="0.1">
          <filename>opera-9.50-0.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="9.50" release="0.1">
          <filename>opera-9.50-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="269f7db0e8c7cc437c281eb60ee2008c"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="47">
  <id>insserv</id>
  <title>Insserv: Fixes a problem with removing servicees without valid LSB header</title>
  <release>openSUSE 11.0</release>
  <issued date="1213618912"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=391014" id="391014" title="bug number 391014" type="bugzilla"/>
  </references>
  <description>This update enables insserv to remove service even without
LSB header.
</description>
  <pkglist>
    <collection>
        <package name="insserv" arch="i586" version="1.11.0" release="31.2">
          <filename>insserv-1.11.0-31.2.i586.rpm</filename>
        </package>
        <package name="insserv" arch="ppc" version="1.11.0" release="31.2">
          <filename>insserv-1.11.0-31.2.ppc.rpm</filename>
        </package>
        <package name="insserv" arch="x86_64" version="1.11.0" release="31.2">
          <filename>insserv-1.11.0-31.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="92987fb337ddff6f140e7ad094de08b4"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="40">
  <id>suspend</id>
  <title>suspend: Fixes a problem with resuming from encrypted suspend to disk can fail.</title>
  <release>openSUSE 11.0</release>
  <issued date="1213653921"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398858" id="398858" title="bug number 398858" type="bugzilla"/>
  </references>
  <description>Resume from suspend to disk can fail in certain
conditions,  if encryption is enabled (not default).

Other bugs fixed with this update:
* if the suspend image was uncompressible, but compression
  was enabled (default), suspend to disk would fail
* the whitelist for suspend to ram has been expanded with
  several new machines
</description>
  <pkglist>
    <collection>
        <package name="suspend" arch="i586" version="0.80.20080523" release="0.1">
          <filename>suspend-0.80.20080523-0.1.i586.rpm</filename>
        </package>
        <package name="suspend" arch="ppc" version="0.80.20080523" release="0.1">
          <filename>suspend-0.80.20080523-0.1.ppc.rpm</filename>
        </package>
        <package name="suspend" arch="x86_64" version="0.80.20080523" release="0.1">
          <filename>suspend-0.80.20080523-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0d01101f9456ffa8b890215c75989129"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="45">
  <id>aaa_base</id>
  <title>aaa_base: For all users of openSUSE Build Service (OBS)</title>
  <release>openSUSE 11.0</release>
  <issued date="1213635341"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398369" id="398369" title="bug number 398369" type="bugzilla"/>
  </references>
  <description>Better completion of the cd command even for the colon
found in paths of OBS projects.
</description>
  <pkglist>
    <collection>
        <package name="aaa_base" arch="i586" version="11.0" release="79.2">
          <filename>aaa_base-11.0-79.2.i586.rpm</filename>
        </package>
        <package name="aaa_base" arch="ppc" version="11.0" release="79.2">
          <filename>aaa_base-11.0-79.2.ppc.rpm</filename>
        </package>
        <package name="aaa_base" arch="x86_64" version="11.0" release="79.2">
          <filename>aaa_base-11.0-79.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="81a8a23bfc7d54add34d81c7101c4650"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="38">
  <id>KDE4-fixes</id>
  <title>KDE 4 post-release fixes</title>
  <release>openSUSE 11.0</release>
  <issued date="1213655803"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=381356" id="381356" title="bug number 381356" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=390675" id="390675" title="bug number 390675" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398807" id="398807" title="bug number 398807" type="bugzilla"/>
  </references>
  <description>Bundle of fixes for critical bugs fixed  since kdepim
4.1beta1:

KDE PIM applications:
- crash on deleting korganizer categories (kde#153740)
- kmail folder selector crash
- kmail mime type detection
- korganizer multiple todo deletion crash
- kmail composer invisible widgets (kde#162711)
- kmail losing non-ascii chars on send (kde#162673)
- kmail composer doesn't respect encoding (kde#162707)
- korg select default type in reminder dlg (kde#158354)
- kmail online imap filter mail eater
- kmail crash in rfc2231 decoder
- kmail crash due to bad debug code (kde#156319)
- kmail save local subscriptions sooner (kde#163268)
- kmail filter action crash (kde#156990)
- kmail crash on inline forward of multiple mails
  (kde#163159)
- kaddressbook contact picture display (kde#162897)
- kalarm time display (kde#163408)

KDE workspace:
- add patch to fix windows disappearing after activating
- composite effects (bnc#390675)
- add patch to fix kwin per-window shortcuts (bnc#381356)
- fix crash killing kwin_kill_helper (kde#156998)
</description>
  <pkglist>
    <collection>
        <package name="kde4-akregator" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-akregator-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-akregator" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-akregator-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-akregator" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-akregator-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-kaddressbook" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-kaddressbook-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-kaddressbook" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-kaddressbook-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-kaddressbook" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-kaddressbook-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-kalarm" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-kalarm-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-kalarm" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-kalarm-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-kalarm" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-kalarm-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-kdm" arch="i586" version="4.0.4" release="24.2">
          <filename>kde4-kdm-4.0.4-24.2.i586.rpm</filename>
        </package>
        <package name="kde4-kdm" arch="ppc" version="4.0.4" release="24.2">
          <filename>kde4-kdm-4.0.4-24.2.ppc.rpm</filename>
        </package>
        <package name="kde4-kdm" arch="x86_64" version="4.0.4" release="24.2">
          <filename>kde4-kdm-4.0.4-24.2.x86_64.rpm</filename>
        </package>
        <package name="kde4-kmail" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-kmail-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-kmail" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-kmail-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-kmail" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-kmail-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-kmobiletools" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-kmobiletools-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-kmobiletools" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-kmobiletools-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-kmobiletools" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-kmobiletools-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-knode" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-knode-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-knode" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-knode-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-knode" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-knode-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-knotes" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-knotes-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-knotes" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-knotes-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-knotes" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-knotes-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-kontact" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-kontact-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-kontact" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-kontact-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-kontact" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-kontact-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-korganizer" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-korganizer-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-korganizer" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-korganizer-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-korganizer" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-korganizer-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-korn" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-korn-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-korn" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-korn-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-korn" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-korn-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-kpilot" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-kpilot-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-kpilot" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-kpilot-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-kpilot" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-kpilot-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-ktimetracker" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-ktimetracker-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-ktimetracker" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-ktimetracker-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-ktimetracker" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-ktimetracker-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-ktnef" arch="i586" version="4.0.80" release="9.3">
          <filename>kde4-ktnef-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kde4-ktnef" arch="ppc" version="4.0.80" release="9.3">
          <filename>kde4-ktnef-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kde4-ktnef" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kde4-ktnef-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="i586" version="4.0.4" release="24.2">
          <filename>kde4-kwin-4.0.4-24.2.i586.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="ppc" version="4.0.4" release="24.2">
          <filename>kde4-kwin-4.0.4-24.2.ppc.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="x86_64" version="4.0.4" release="24.2">
          <filename>kde4-kwin-4.0.4-24.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="i586" version="4.0.4" release="24.2">
          <filename>kdebase4-workspace-4.0.4-24.2.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="ppc" version="4.0.4" release="24.2">
          <filename>kdebase4-workspace-4.0.4-24.2.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="x86_64" version="4.0.4" release="24.2">
          <filename>kdebase4-workspace-4.0.4-24.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="i586" version="4.0.4" release="24.2">
          <filename>kdebase4-workspace-devel-4.0.4-24.2.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="ppc" version="4.0.4" release="24.2">
          <filename>kdebase4-workspace-devel-4.0.4-24.2.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="x86_64" version="4.0.4" release="24.2">
          <filename>kdebase4-workspace-devel-4.0.4-24.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="i586" version="4.0.4" release="24.2">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.2.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="ppc" version="4.0.4" release="24.2">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.2.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="x86_64" version="4.0.4" release="24.2">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.2.x86_64.rpm</filename>
        </package>
        <package name="kdepim4" arch="i586" version="4.0.80" release="9.3">
          <filename>kdepim4-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kdepim4" arch="ppc" version="4.0.80" release="9.3">
          <filename>kdepim4-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kdepim4" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kdepim4-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kdepim4-devel" arch="i586" version="4.0.80" release="9.3">
          <filename>kdepim4-devel-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kdepim4-devel" arch="ppc" version="4.0.80" release="9.3">
          <filename>kdepim4-devel-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kdepim4-devel" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kdepim4-devel-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="kdepim4-wizards" arch="i586" version="4.0.80" release="9.3">
          <filename>kdepim4-wizards-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="kdepim4-wizards" arch="ppc" version="4.0.80" release="9.3">
          <filename>kdepim4-wizards-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="kdepim4-wizards" arch="x86_64" version="4.0.80" release="9.3">
          <filename>kdepim4-wizards-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="libkdepim4" arch="i586" version="4.0.80" release="9.3">
          <filename>libkdepim4-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="libkdepim4" arch="ppc" version="4.0.80" release="9.3">
          <filename>libkdepim4-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="libkdepim4" arch="x86_64" version="4.0.80" release="9.3">
          <filename>libkdepim4-4.0.80-9.3.x86_64.rpm</filename>
        </package>
        <package name="libkdepim4-devel" arch="i586" version="4.0.80" release="9.3">
          <filename>libkdepim4-devel-4.0.80-9.3.i586.rpm</filename>
        </package>
        <package name="libkdepim4-devel" arch="ppc" version="4.0.80" release="9.3">
          <filename>libkdepim4-devel-4.0.80-9.3.ppc.rpm</filename>
        </package>
        <package name="libkdepim4-devel" arch="x86_64" version="4.0.80" release="9.3">
          <filename>libkdepim4-devel-4.0.80-9.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="70f82ca58d4fc341609d319d8f4a75c1"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="50">
  <id>MozillaFirefox</id>
  <title>Mozilla Firefox 3.0</title>
  <release>openSUSE 11.0</release>
  <issued date="1213914631"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400001" id="400001" title="bug number 400001" type="bugzilla"/>
  </references>
  <description>This patch updates Mozilla Firefox to the final 3.0 version.

The dependend libraries mozilla-xulrunner190, mozilla-nspr
and mozilla-nss were also brought to their release version.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0" release="0.1">
          <filename>MozillaFirefox-3.0-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0" release="0.1">
          <filename>MozillaFirefox-3.0-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0" release="0.1">
          <filename>MozillaFirefox-3.0-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0" release="0.1">
          <filename>MozillaFirefox-translations-3.0-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0" release="0.1">
          <filename>MozillaFirefox-translations-3.0-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0" release="0.1">
          <filename>MozillaFirefox-translations-3.0-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nspr" arch="i586" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-4.7.1-18.2.i586.rpm</filename>
        </package>
        <package name="mozilla-nspr" arch="ppc" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-4.7.1-18.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nspr" arch="x86_64" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-4.7.1-18.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nspr-32bit" arch="x86_64" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-32bit-4.7.1-18.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nspr-devel" arch="i586" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-devel-4.7.1-18.2.i586.rpm</filename>
        </package>
        <package name="mozilla-nspr-devel" arch="ppc" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-devel-4.7.1-18.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nspr-devel" arch="x86_64" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-devel-4.7.1-18.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="i586" version="3.12.0" release="23.2">
          <filename>mozilla-nss-3.12.0-23.2.i586.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="ppc" version="3.12.0" release="23.2">
          <filename>mozilla-nss-3.12.0-23.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="x86_64" version="3.12.0" release="23.2">
          <filename>mozilla-nss-3.12.0-23.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-32bit" arch="x86_64" version="3.12.0" release="23.2">
          <filename>mozilla-nss-32bit-3.12.0-23.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="i586" version="3.12.0" release="23.2">
          <filename>mozilla-nss-devel-3.12.0-23.2.i586.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="ppc" version="3.12.0" release="23.2">
          <filename>mozilla-nss-devel-3.12.0-23.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="x86_64" version="3.12.0" release="23.2">
          <filename>mozilla-nss-devel-3.12.0-23.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="i586" version="3.12.0" release="23.2">
          <filename>mozilla-nss-tools-3.12.0-23.2.i586.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="ppc" version="3.12.0" release="23.2">
          <filename>mozilla-nss-tools-3.12.0-23.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="x86_64" version="3.12.0" release="23.2">
          <filename>mozilla-nss-tools-3.12.0-23.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="617f6f995c7a25fc2e7d2f220cf836ac"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="49">
  <id>NetworkManager-kde</id>
  <title>KNetworkManager update</title>
  <release>openSUSE 11.0</release>
  <issued date="1213910982"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400456" id="400456" title="bug number 400456" type="bugzilla"/>
  </references>
  <description>- Fix crash on rcnetwork restart
- Fix scanning for wireless networks
- Fix auto selection of the wireless network security mode
- Notify the user if NetworkManager is not running
- Allow shared key authentication
- translation update
- some minor bugfixes
</description>
  <pkglist>
    <collection>
        <package name="NetworkManager-kde" arch="i586" version="0.7r821737" release="0.1">
          <filename>NetworkManager-kde-0.7r821737-0.1.i586.rpm</filename>
        </package>
        <package name="NetworkManager-kde" arch="ppc" version="0.7r821737" release="0.1">
          <filename>NetworkManager-kde-0.7r821737-0.1.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-kde" arch="x86_64" version="0.7r821737" release="0.1">
          <filename>NetworkManager-kde-0.7r821737-0.1.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-kde-devel" arch="i586" version="0.7r821737" release="0.1">
          <filename>NetworkManager-kde-devel-0.7r821737-0.1.i586.rpm</filename>
        </package>
        <package name="NetworkManager-kde-devel" arch="ppc" version="0.7r821737" release="0.1">
          <filename>NetworkManager-kde-devel-0.7r821737-0.1.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-kde-devel" arch="x86_64" version="0.7r821737" release="0.1">
          <filename>NetworkManager-kde-devel-0.7r821737-0.1.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-openvpn-kde" arch="i586" version="0.7r821737" release="0.1">
          <filename>NetworkManager-openvpn-kde-0.7r821737-0.1.i586.rpm</filename>
        </package>
        <package name="NetworkManager-openvpn-kde" arch="ppc" version="0.7r821737" release="0.1">
          <filename>NetworkManager-openvpn-kde-0.7r821737-0.1.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-openvpn-kde" arch="x86_64" version="0.7r821737" release="0.1">
          <filename>NetworkManager-openvpn-kde-0.7r821737-0.1.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-vpnc-kde" arch="i586" version="0.7r821737" release="0.1">
          <filename>NetworkManager-vpnc-kde-0.7r821737-0.1.i586.rpm</filename>
        </package>
        <package name="NetworkManager-vpnc-kde" arch="ppc" version="0.7r821737" release="0.1">
          <filename>NetworkManager-vpnc-kde-0.7r821737-0.1.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-vpnc-kde" arch="x86_64" version="0.7r821737" release="0.1">
          <filename>NetworkManager-vpnc-kde-0.7r821737-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="65f6a763b2a8834afe08e06cbef3f7e2"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="46">
  <id>timezone</id>
  <title>Timezone data update (Pakistan, Marocco, Mongolia)</title>
  <release>openSUSE 11.0</release>
  <issued date="1213627510"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=397374" id="397374" title="bug number 397374" type="bugzilla"/>
  </references>
  <description>Timezone data update: DST was introduced in Pakistan
(Asia/Karachi) and Marocco (Africa/Casablanca),
Asia/Choibalsan offset was corrected.
</description>
  <pkglist>
    <collection>
        <package name="timezone" arch="i586" version="2008c" release="0.1">
          <filename>timezone-2008c-0.1.i586.rpm</filename>
        </package>
        <package name="timezone" arch="ppc" version="2008c" release="0.1">
          <filename>timezone-2008c-0.1.ppc.rpm</filename>
        </package>
        <package name="timezone" arch="x86_64" version="2008c" release="0.1">
          <filename>timezone-2008c-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7547892da5d37d7eb5534a402f4a9f77"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="44">
  <id>clamav</id>
  <title>clamav: security update to 0.93.1</title>
  <release>openSUSE 11.0</release>
  <issued date="1213720862"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=399302" id="399302" title="bug number 399302" type="bugzilla"/>
  </references>
  <description>This update brings clamav to version 0.93.1. It fixes
various bugs and one security issue:

CVE-2008-2713: libclamav/petite.c in ClamAV before 0.93.1
allows remote attackers to cause a denial of service via a
crafted Petite file that triggers an out-of-bounds read.
</description>
  <pkglist>
    <collection>
        <package name="clamav" arch="i586" version="0.93.1" release="0.1">
          <filename>clamav-0.93.1-0.1.i586.rpm</filename>
        </package>
        <package name="clamav" arch="ppc" version="0.93.1" release="0.1">
          <filename>clamav-0.93.1-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav" arch="x86_64" version="0.93.1" release="0.1">
          <filename>clamav-0.93.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="clamav-db" arch="i586" version="0.93.1" release="0.1">
          <filename>clamav-db-0.93.1-0.1.i586.rpm</filename>
        </package>
        <package name="clamav-db" arch="ppc" version="0.93.1" release="0.1">
          <filename>clamav-db-0.93.1-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav-db" arch="x86_64" version="0.93.1" release="0.1">
          <filename>clamav-db-0.93.1-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2c36f6049c8ab2264e527271912d1d90"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="61">
  <id>apache2-mod_php5</id>
  <title>php5: fixes multiple vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1214422733"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=386632" id="386632" title="bug number 386632" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=373120" id="373120" title="bug number 373120" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=387745" id="387745" title="bug number 387745" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=397374" id="397374" title="bug number 397374" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=388130" id="388130" title="bug number 388130" type="bugzilla"/>
  </references>
  <description>This update of php5 fixes:
- possible stack-based buffer overflow CVE-2008-2050
- incomplete escapeshellcmd() CVE-2008-2051
- printf() integer overflow CVE-2008-1384
- insecure GENERATE_SEED macro CVE-2008-2107
- timezone update for DST in Pakistan
</description>
  <pkglist>
    <collection>
        <package name="apache2-mod_php5" arch="i586" version="5.2.6" release="0.1">
          <filename>apache2-mod_php5-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="ppc" version="5.2.6" release="0.1">
          <filename>apache2-mod_php5-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="x86_64" version="5.2.6" release="0.1">
          <filename>apache2-mod_php5-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-bcmath-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-bcmath-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-bcmath-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-bz2" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-bz2-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-bz2" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-bz2-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-bz2" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-bz2-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-calendar" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-calendar-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-calendar" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-calendar-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-calendar" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-calendar-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ctype" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-ctype-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ctype" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-ctype-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ctype" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-ctype-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-curl" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-curl-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-curl" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-curl-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-curl" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-curl-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dba" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-dba-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dba" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-dba-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dba" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-dba-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dbase" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-dbase-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dbase" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-dbase-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dbase" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-dbase-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-devel" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-devel-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-devel" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-devel-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-devel" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-devel-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dom" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-dom-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dom" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-dom-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dom" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-dom-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-exif" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-exif-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-exif" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-exif-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-exif" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-exif-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-fastcgi-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-fastcgi-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-fastcgi-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ftp" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-ftp-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ftp" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-ftp-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ftp" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-ftp-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gd" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-gd-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gd" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-gd-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gd" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-gd-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gettext" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-gettext-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gettext" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-gettext-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gettext" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-gettext-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gmp" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-gmp-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gmp" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-gmp-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gmp" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-gmp-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-hash" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-hash-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-hash" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-hash-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-hash" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-hash-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-iconv" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-iconv-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-iconv" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-iconv-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-iconv" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-iconv-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-imap" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-imap-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-imap" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-imap-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-imap" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-imap-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-json" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-json-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-json" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-json-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-json" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-json-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ldap" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-ldap-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ldap" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-ldap-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ldap" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-ldap-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-mbstring-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-mbstring-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-mbstring-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-mcrypt-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-mcrypt-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-mcrypt-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mysql" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-mysql-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mysql" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-mysql-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mysql" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-mysql-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-ncurses-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-ncurses-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-ncurses-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-odbc" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-odbc-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-odbc" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-odbc-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-odbc" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-odbc-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-openssl" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-openssl-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-openssl" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-openssl-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-openssl" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-openssl-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-pcntl-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-pcntl-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-pcntl-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pdo" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-pdo-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pdo" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-pdo-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pdo" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-pdo-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pear" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-pear-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pear" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-pear-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pear" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-pear-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-pgsql-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-pgsql-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-pgsql-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-posix" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-posix-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-posix" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-posix-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-posix" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-posix-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pspell" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-pspell-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pspell" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-pspell-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pspell" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-pspell-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-readline" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-readline-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-readline" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-readline-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-readline" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-readline-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-shmop" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-shmop-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-shmop" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-shmop-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-shmop" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-shmop-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-snmp" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-snmp-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-snmp" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-snmp-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-snmp" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-snmp-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-soap" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-soap-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-soap" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-soap-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-soap" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-soap-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sockets" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-sockets-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sockets" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-sockets-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sockets" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-sockets-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-sqlite-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-sqlite-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-sqlite-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-suhosin-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-suhosin-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-suhosin-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-sysvmsg-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-sysvmsg-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-sysvmsg-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-sysvsem-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-sysvsem-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-sysvsem-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-sysvshm-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-sysvshm-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-sysvshm-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-tidy" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-tidy-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-tidy" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-tidy-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-tidy" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-tidy-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-tokenizer-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-tokenizer-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-tokenizer-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-wddx" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-wddx-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-wddx" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-wddx-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-wddx" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-wddx-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-xmlreader-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-xmlreader-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-xmlreader-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-xmlrpc-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-xmlrpc-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-xmlrpc-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-xmlwriter-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-xmlwriter-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-xmlwriter-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xsl" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-xsl-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xsl" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-xsl-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xsl" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-xsl-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-zip" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-zip-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-zip" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-zip-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-zip" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-zip-5.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-zlib" arch="i586" version="5.2.6" release="0.1">
          <filename>php5-zlib-5.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="php5-zlib" arch="ppc" version="5.2.6" release="0.1">
          <filename>php5-zlib-5.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-zlib" arch="x86_64" version="5.2.6" release="0.1">
          <filename>php5-zlib-5.2.6-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="51ebf5b33260207af65ee1a7055ea630"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="52">
  <id>nautilus</id>
  <title>nautilus: Fix for huge memory leak in GNOME file manager</title>
  <release>openSUSE 11.0</release>
  <issued date="1213914059"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=397852" id="397852" title="bug number 397852" type="bugzilla"/>
  </references>
  <description>A huge memory leak in thumbnailing code was making Nautilus
lose a lot of memory. The patch submitted fixes it and is
already submitted and approved upstream
</description>
  <pkglist>
    <collection>
        <package name="nautilus" arch="i586" version="2.22.2" release="30.3">
          <filename>nautilus-2.22.2-30.3.i586.rpm</filename>
        </package>
        <package name="nautilus" arch="ppc" version="2.22.2" release="30.3">
          <filename>nautilus-2.22.2-30.3.ppc.rpm</filename>
        </package>
        <package name="nautilus" arch="x86_64" version="2.22.2" release="30.3">
          <filename>nautilus-2.22.2-30.3.x86_64.rpm</filename>
        </package>
        <package name="nautilus-32bit" arch="x86_64" version="2.22.2" release="30.3">
          <filename>nautilus-32bit-2.22.2-30.3.x86_64.rpm</filename>
        </package>
        <package name="nautilus-devel" arch="i586" version="2.22.2" release="30.3">
          <filename>nautilus-devel-2.22.2-30.3.i586.rpm</filename>
        </package>
        <package name="nautilus-devel" arch="ppc" version="2.22.2" release="30.3">
          <filename>nautilus-devel-2.22.2-30.3.ppc.rpm</filename>
        </package>
        <package name="nautilus-devel" arch="x86_64" version="2.22.2" release="30.3">
          <filename>nautilus-devel-2.22.2-30.3.x86_64.rpm</filename>
        </package>
        <package name="nautilus-lang" arch="i586" version="2.22.2" release="30.3">
          <filename>nautilus-lang-2.22.2-30.3.i586.rpm</filename>
        </package>
        <package name="nautilus-lang" arch="ppc" version="2.22.2" release="30.3">
          <filename>nautilus-lang-2.22.2-30.3.ppc.rpm</filename>
        </package>
        <package name="nautilus-lang" arch="x86_64" version="2.22.2" release="30.3">
          <filename>nautilus-lang-2.22.2-30.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="751f0fc7001b050209d75ca4761fb26c"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="59">
  <id>compiz-kde4</id>
  <title>compiz-kde4: removes unnecessary libplasma dependency</title>
  <release>openSUSE 11.0</release>
  <issued date="1214434354"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400088" id="400088" title="bug number 400088" type="bugzilla"/>
  </references>
  <description>This update removes the unnecessary dependency on
libplasma, which causes a conflict when installing the KDE
4.1 packages from the OBS.
</description>
  <pkglist>
    <collection>
        <package name="compiz-kde4" arch="i586" version="0.7.4" release="31.2">
          <filename>compiz-kde4-0.7.4-31.2.i586.rpm</filename>
        </package>
        <package name="compiz-kde4" arch="ppc" version="0.7.4" release="31.2">
          <filename>compiz-kde4-0.7.4-31.2.ppc.rpm</filename>
        </package>
        <package name="compiz-kde4" arch="x86_64" version="0.7.4" release="31.2">
          <filename>compiz-kde4-0.7.4-31.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e5aa01b2580b983a673bd71f05e3fd74"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="58">
  <id>boost</id>
  <title>boost: fix for Including boost/python.hpp which caused a compile error.</title>
  <release>openSUSE 11.0</release>
  <issued date="1214331106"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=401964" id="401964" title="bug number 401964" type="bugzilla"/>
  </references>
  <description>Trying to compile a simple program such as:



int main() { return 0; }



with   g++ test.cpp  -I/usr/include/python2.5
-lboost_python -lpython2.5

results in the following error:

In file included from
/usr/include/boost/python/class.hpp:29, from
/usr/include/boost/python.hpp:18, from test.cpp:1:
/usr/include/boost/python/detail/def_helper.hpp:192: error:
declaration of 'typename
boost::python::detail::keyword_extract&lt;boost::tuples::tuple&lt;
const T1&amp;, const T2&amp;, const T3&amp;, const T4&amp;,
boost::python::default_call_policies,
boost::python::detail::keywords&lt;0u&gt;, const char*, void
(boost::python::detail::not_specified::*)(),
boost::tuples::null_type, boost::tuples::null_type&gt;
&gt;::result_type boost::python::detail::def_helper&lt;T1, T2,
T3, T4&gt;::keywords() const'
/usr/include/boost/python/args_fwd.hpp:35: error: changes
meaning of 'keywords' from 'struct
boost::python::detail::keywords&lt;0u&gt;,

because keywords&lt;0&gt; lacks qualification.
</description>
  <pkglist>
    <collection>
        <package name="boost" arch="i586" version="1.34.1" release="42.2">
          <filename>boost-1.34.1-42.2.i586.rpm</filename>
        </package>
        <package name="boost" arch="ppc" version="1.34.1" release="42.2">
          <filename>boost-1.34.1-42.2.ppc.rpm</filename>
        </package>
        <package name="boost" arch="x86_64" version="1.34.1" release="42.2">
          <filename>boost-1.34.1-42.2.x86_64.rpm</filename>
        </package>
        <package name="boost-devel" arch="i586" version="1.34.1" release="42.2">
          <filename>boost-devel-1.34.1-42.2.i586.rpm</filename>
        </package>
        <package name="boost-devel" arch="ppc" version="1.34.1" release="42.2">
          <filename>boost-devel-1.34.1-42.2.ppc.rpm</filename>
        </package>
        <package name="boost-devel" arch="x86_64" version="1.34.1" release="42.2">
          <filename>boost-devel-1.34.1-42.2.x86_64.rpm</filename>
        </package>
        <package name="boost-doc" arch="i586" version="1.34.1" release="42.2">
          <filename>boost-doc-1.34.1-42.2.i586.rpm</filename>
        </package>
        <package name="boost-doc" arch="ppc" version="1.34.1" release="42.2">
          <filename>boost-doc-1.34.1-42.2.ppc.rpm</filename>
        </package>
        <package name="boost-doc" arch="x86_64" version="1.34.1" release="42.2">
          <filename>boost-doc-1.34.1-42.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="00855e5769dec58c0884ea880b02957a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="66">
  <id>libpng-devel</id>
  <title>libpng security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1214417171"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=378634" id="378634" title="bug number 378634" type="bugzilla"/>
  </references>
  <description>Specially crafted png files could overwrite arbitrary
memory. Attackers could potentially exploit that to execute
arbitrary code (CVE-2008-1382).
</description>
  <pkglist>
    <collection>
        <package name="libpng-devel" arch="i586" version="1.2.26" release="14.2">
          <filename>libpng-devel-1.2.26-14.2.i586.rpm</filename>
        </package>
        <package name="libpng-devel" arch="ppc" version="1.2.26" release="14.2">
          <filename>libpng-devel-1.2.26-14.2.ppc.rpm</filename>
        </package>
        <package name="libpng-devel" arch="x86_64" version="1.2.26" release="14.2">
          <filename>libpng-devel-1.2.26-14.2.x86_64.rpm</filename>
        </package>
        <package name="libpng-devel-32bit" arch="x86_64" version="1.2.26" release="14.2">
          <filename>libpng-devel-32bit-1.2.26-14.2.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0" arch="i586" version="1.2.26" release="14.2">
          <filename>libpng12-0-1.2.26-14.2.i586.rpm</filename>
        </package>
        <package name="libpng12-0" arch="ppc" version="1.2.26" release="14.2">
          <filename>libpng12-0-1.2.26-14.2.ppc.rpm</filename>
        </package>
        <package name="libpng12-0" arch="x86_64" version="1.2.26" release="14.2">
          <filename>libpng12-0-1.2.26-14.2.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-32bit" arch="x86_64" version="1.2.26" release="14.2">
          <filename>libpng12-0-32bit-1.2.26-14.2.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-64bit" arch="ppc" version="1.2.26" release="14.2">
          <filename>libpng12-0-64bit-1.2.26-14.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0043a7d041d83e41c8e86dce3826eb59"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="54">
  <id>pcre</id>
  <title>pcre security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1214225097"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400013" id="400013" title="bug number 400013" type="bugzilla"/>
  </references>
  <description>Specially crafted regular expressions could lead to a
buffer overflow in the  pcre library. Applications using
pcre to process regular expressions from untrusted sources
could therefore potentially be exploited by attackers to
execute arbitrary code (CVE-2008-2371).
</description>
  <pkglist>
    <collection>
        <package name="pcre" arch="i586" version="7.6" release="22.2">
          <filename>pcre-7.6-22.2.i586.rpm</filename>
        </package>
        <package name="pcre" arch="ppc" version="7.6" release="22.2">
          <filename>pcre-7.6-22.2.ppc.rpm</filename>
        </package>
        <package name="pcre" arch="x86_64" version="7.6" release="22.2">
          <filename>pcre-7.6-22.2.x86_64.rpm</filename>
        </package>
        <package name="pcre-32bit" arch="x86_64" version="7.6" release="22.2">
          <filename>pcre-32bit-7.6-22.2.x86_64.rpm</filename>
        </package>
        <package name="pcre-64bit" arch="ppc" version="7.6" release="22.2">
          <filename>pcre-64bit-7.6-22.2.ppc.rpm</filename>
        </package>
        <package name="pcre-devel" arch="i586" version="7.6" release="22.2">
          <filename>pcre-devel-7.6-22.2.i586.rpm</filename>
        </package>
        <package name="pcre-devel" arch="ppc" version="7.6" release="22.2">
          <filename>pcre-devel-7.6-22.2.ppc.rpm</filename>
        </package>
        <package name="pcre-devel" arch="x86_64" version="7.6" release="22.2">
          <filename>pcre-devel-7.6-22.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7076216284149b96d6e7cf2a3c926ba5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="69">
  <id>squid</id>
  <title>squid: fix denial-of-service</title>
  <release>openSUSE 11.0</release>
  <issued date="1214964871"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404957" id="404957" title="bug number 404957" type="bugzilla"/>
  </references>
  <description>This update of squid fixes a denial-of-service bug that can
occur while parsing ASN.1.
</description>
  <pkglist>
    <collection>
        <package name="squid" arch="i586" version="2.6.STABLE20" release="12.1">
          <filename>squid-2.6.STABLE20-12.1.i586.rpm</filename>
        </package>
        <package name="squid" arch="ppc" version="2.6.STABLE20" release="12.1">
          <filename>squid-2.6.STABLE20-12.1.ppc.rpm</filename>
        </package>
        <package name="squid" arch="x86_64" version="2.6.STABLE20" release="12.1">
          <filename>squid-2.6.STABLE20-12.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="dbb96b60061bb9ce1fd602ea425a74b3"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="68">
  <id>tomcat6</id>
  <title>tomcat: XSS vulnerability</title>
  <release>openSUSE 11.0</release>
  <issued date="1214958586"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396962" id="396962" title="bug number 396962" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=403310" id="403310" title="bug number 403310" type="bugzilla"/>
  </references>
  <description>This update of tomcat fixes a cross-site-scripting
vulnerabilitiy in the host-manager. (CVE-2008-1947)
</description>
  <pkglist>
    <collection>
        <package name="tomcat6" arch="noarch" version="6.0.16" release="6.2">
          <filename>tomcat6-6.0.16-6.2.noarch.rpm</filename>
        </package>
        <package name="tomcat6-admin-webapps" arch="noarch" version="6.0.16" release="6.2">
          <filename>tomcat6-admin-webapps-6.0.16-6.2.noarch.rpm</filename>
        </package>
        <package name="tomcat6-docs-webapp" arch="noarch" version="6.0.16" release="6.2">
          <filename>tomcat6-docs-webapp-6.0.16-6.2.noarch.rpm</filename>
        </package>
        <package name="tomcat6-javadoc" arch="noarch" version="6.0.16" release="6.2">
          <filename>tomcat6-javadoc-6.0.16-6.2.noarch.rpm</filename>
        </package>
        <package name="tomcat6-jsp-2_1-api" arch="noarch" version="6.0.16" release="6.2">
          <filename>tomcat6-jsp-2_1-api-6.0.16-6.2.noarch.rpm</filename>
        </package>
        <package name="tomcat6-lib" arch="noarch" version="6.0.16" release="6.2">
          <filename>tomcat6-lib-6.0.16-6.2.noarch.rpm</filename>
        </package>
        <package name="tomcat6-servlet-2_5-api" arch="noarch" version="6.0.16" release="6.2">
          <filename>tomcat6-servlet-2_5-api-6.0.16-6.2.noarch.rpm</filename>
        </package>
        <package name="tomcat6-webapps" arch="noarch" version="6.0.16" release="6.2">
          <filename>tomcat6-webapps-6.0.16-6.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4864dc5c6464cc9fbcb74c6d0e0a933a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="41">
  <id>freetype2</id>
  <title>freetype2: Fix for several potential security issues.</title>
  <release>openSUSE 11.0</release>
  <issued date="1213618877"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=399169" id="399169" title="bug number 399169" type="bugzilla"/>
  </references>
  <description>This update of freetype2 fixes several potential
vulnerabilities reported by iDefense.
</description>
  <pkglist>
    <collection>
        <package name="freetype2" arch="i586" version="2.3.5" release="62.2">
          <filename>freetype2-2.3.5-62.2.i586.rpm</filename>
        </package>
        <package name="freetype2" arch="ppc" version="2.3.5" release="62.2">
          <filename>freetype2-2.3.5-62.2.ppc.rpm</filename>
        </package>
        <package name="freetype2" arch="x86_64" version="2.3.5" release="62.2">
          <filename>freetype2-2.3.5-62.2.x86_64.rpm</filename>
        </package>
        <package name="freetype2-32bit" arch="x86_64" version="2.3.5" release="62.2">
          <filename>freetype2-32bit-2.3.5-62.2.x86_64.rpm</filename>
        </package>
        <package name="freetype2-64bit" arch="ppc" version="2.3.5" release="62.2">
          <filename>freetype2-64bit-2.3.5-62.2.ppc.rpm</filename>
        </package>
        <package name="freetype2-devel" arch="i586" version="2.3.5" release="62.2">
          <filename>freetype2-devel-2.3.5-62.2.i586.rpm</filename>
        </package>
        <package name="freetype2-devel" arch="ppc" version="2.3.5" release="62.2">
          <filename>freetype2-devel-2.3.5-62.2.ppc.rpm</filename>
        </package>
        <package name="freetype2-devel" arch="x86_64" version="2.3.5" release="62.2">
          <filename>freetype2-devel-2.3.5-62.2.x86_64.rpm</filename>
        </package>
        <package name="freetype2-devel-32bit" arch="x86_64" version="2.3.5" release="62.2">
          <filename>freetype2-devel-32bit-2.3.5-62.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2297b4c288dabeb7b8978e34b5d52f90"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="39">
  <id>vsftpd</id>
  <title>vsftpd : Fix for a problem with file locking, port retry problems</title>
  <release>openSUSE 11.0</release>
  <issued date="1213618911"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=361559" id="361559" title="bug number 361559" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=273454" id="273454" title="bug number 273454" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=395899" id="395899" title="bug number 395899" type="bugzilla"/>
  </references>
  <description>There were some issues with simultaneous ftp put of the
same  file name that lead to a corrupted file on the
server.  Also vsftpd died when there was no free data port
available  instead of retrying. Both issues are fixed.
</description>
  <pkglist>
    <collection>
        <package name="vsftpd" arch="i586" version="2.0.6" release="25.2">
          <filename>vsftpd-2.0.6-25.2.i586.rpm</filename>
        </package>
        <package name="vsftpd" arch="ppc" version="2.0.6" release="25.2">
          <filename>vsftpd-2.0.6-25.2.ppc.rpm</filename>
        </package>
        <package name="vsftpd" arch="x86_64" version="2.0.6" release="25.2">
          <filename>vsftpd-2.0.6-25.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="58fa7b6a60516311d70f5cc96164db78"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="56">
  <id>nspluginwrapper</id>
  <title>Fix for Adobe Reader focus and Flash Player problems</title>
  <release>openSUSE 11.0</release>
  <issued date="1214328561"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=350752" id="350752" title="bug number 350752" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=353503" id="353503" title="bug number 353503" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400194" id="400194" title="bug number 400194" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=384367" id="384367" title="bug number 384367" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=304963" id="304963" title="bug number 304963" type="bugzilla"/>
  </references>
  <description>This update fixes:

- Focus problems in Adobe Reader 8 in openSUSE 11.0:
  https://bugzilla.novell.com/show_bug.cgi?id=353503

- Latest Flash Player wrapping in openSUSE 10.3:
  https://bugzilla.novell.com/show_bug.cgi?id=350752

- Broken plugin wrapping from root's home:
  https://bugzilla.novell.com/show_bug.cgi?id=384367

- False error messages in openSUSE 11.0:
  https://bugzilla.novell.com/show_bug.cgi?id=400194

- Plugin cache rebuild in openSUSE 10.3:
  https://bugzilla.novell.com/show_bug.cgi?id=304963 (it is
  only a partial fix, uninstall dragonegg as a work-around)
</description>
  <pkglist>
    <collection>
        <package name="nspluginwrapper" arch="i586" version="0.9.91.5.99.20071225" release="22.2">
          <filename>nspluginwrapper-0.9.91.5.99.20071225-22.2.i586.rpm</filename>
        </package>
        <package name="nspluginwrapper" arch="ppc" version="0.9.91.5.99.20071225" release="22.2">
          <filename>nspluginwrapper-0.9.91.5.99.20071225-22.2.ppc.rpm</filename>
        </package>
        <package name="nspluginwrapper" arch="x86_64" version="0.9.91.5.99.20071225" release="22.2">
          <filename>nspluginwrapper-0.9.91.5.99.20071225-22.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cb3cdb913757c2c21cf16b090b10bc92"!-->
<update status="stable" from="maint-coord@suse.de" type="optional" version="64">
  <id>storage-fixup</id>
  <title>storage-fixup - workarounds for high number of hard drive load cycles on spome notebooks</title>
  <release>openSUSE 11.0</release>
  <issued date="1214417239"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=386555" id="386555" title="bug number 386555" type="bugzilla"/>
  </references>
  <description>This patch adds the &quot;storage-fixup&quot; package, which was not
on the 11.0 media. The storage-fixup package fixes problems
caused by wrong BIOS or hard drive firmware default
settings on some machines, which lead to very frequent head
unload actions and might cause unnecessary wear on the hard
drive mechanics.
</description>
  <pkglist>
    <collection>
        <package name="storage-fixup" arch="noarch" version="0.2" release="0.1">
          <filename>storage-fixup-0.2-0.1.noarch.rpm</filename>
        </package>
        <package name="storage-fixup" arch="noarch" version="0.2" release="0.1">
          <filename>storage-fixup-0.2-0.1.noarch.rpm</filename>
        </package>
        <package name="storage-fixup" arch="noarch" version="0.2" release="0.1">
          <filename>storage-fixup-0.2-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7f4de8dfa876b7df5923b47160ac7453"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="70">
  <id>MozillaFirefox</id>
  <title>Mozilla Firefox 3.0</title>
  <release>openSUSE 11.0</release>
  <issued date="1215122592"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400001" id="400001" title="bug number 400001" type="bugzilla"/>
  </references>
  <description>This patch updates Mozilla Firefox to the final 3.0 version.

The dependend libraries mozilla-xulrunner190, mozilla-nspr
and mozilla-nss were also brought to their release version.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0" release="0.2">
          <filename>MozillaFirefox-3.0-0.2.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0" release="0.2">
          <filename>MozillaFirefox-3.0-0.2.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0" release="0.2">
          <filename>MozillaFirefox-3.0-0.2.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0" release="0.2">
          <filename>MozillaFirefox-translations-3.0-0.2.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0" release="0.2">
          <filename>MozillaFirefox-translations-3.0-0.2.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0" release="0.2">
          <filename>MozillaFirefox-translations-3.0-0.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nspr" arch="i586" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-4.7.1-18.2.i586.rpm</filename>
        </package>
        <package name="mozilla-nspr" arch="ppc" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-4.7.1-18.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nspr" arch="x86_64" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-4.7.1-18.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nspr-32bit" arch="x86_64" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-32bit-4.7.1-18.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nspr-64bit" arch="ppc" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-64bit-4.7.1-18.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nspr-devel" arch="i586" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-devel-4.7.1-18.2.i586.rpm</filename>
        </package>
        <package name="mozilla-nspr-devel" arch="ppc" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-devel-4.7.1-18.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nspr-devel" arch="x86_64" version="4.7.1" release="18.2">
          <filename>mozilla-nspr-devel-4.7.1-18.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="i586" version="3.12.0" release="23.2">
          <filename>mozilla-nss-3.12.0-23.2.i586.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="ppc" version="3.12.0" release="23.2">
          <filename>mozilla-nss-3.12.0-23.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="x86_64" version="3.12.0" release="23.2">
          <filename>mozilla-nss-3.12.0-23.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-32bit" arch="x86_64" version="3.12.0" release="23.2">
          <filename>mozilla-nss-32bit-3.12.0-23.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-64bit" arch="ppc" version="3.12.0" release="23.2">
          <filename>mozilla-nss-64bit-3.12.0-23.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="i586" version="3.12.0" release="23.2">
          <filename>mozilla-nss-devel-3.12.0-23.2.i586.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="ppc" version="3.12.0" release="23.2">
          <filename>mozilla-nss-devel-3.12.0-23.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="x86_64" version="3.12.0" release="23.2">
          <filename>mozilla-nss-devel-3.12.0-23.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="i586" version="3.12.0" release="23.2">
          <filename>mozilla-nss-tools-3.12.0-23.2.i586.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="ppc" version="3.12.0" release="23.2">
          <filename>mozilla-nss-tools-3.12.0-23.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="x86_64" version="3.12.0" release="23.2">
          <filename>mozilla-nss-tools-3.12.0-23.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-1.9.0-0.2.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-1.9.0-0.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-1.9.0-0.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-32bit-1.9.0-0.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-64bit-1.9.0-0.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-devel-1.9.0-0.2.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-devel-1.9.0-0.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-devel-1.9.0-0.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0-0.2.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0-0.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0-0.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0-0.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0-0.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-translations-1.9.0-0.2.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-translations-1.9.0-0.2.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-translations-1.9.0-0.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0-0.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0" release="0.2">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0-0.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d005e00a8c74b72f370e8ba8b3666a92"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="71">
  <id>geronimo</id>
  <title>Geronimo: fix for a bug in geronimo</title>
  <release>openSUSE 11.0</release>
  <issued date="1215173236"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404962" id="404962" title="bug number 404962" type="bugzilla"/>
  </references>
  <description>The geronimo start fails with
java.lang.NoClassDefFoundError:
org/apache/geronimo/system/main/Daemon exception.
</description>
  <pkglist>
    <collection>
        <package name="geronimo" arch="noarch" version="1.1" release="236.2">
          <filename>geronimo-1.1-236.2.noarch.rpm</filename>
        </package>
        <package name="geronimo-jetty-servlet-container" arch="noarch" version="1.1" release="236.2">
          <filename>geronimo-jetty-servlet-container-1.1-236.2.noarch.rpm</filename>
        </package>
        <package name="geronimo-tomcat-servlet-container" arch="noarch" version="1.1" release="236.2">
          <filename>geronimo-tomcat-servlet-container-1.1-236.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="92e50704bd04525d4c78620380439bfe"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="77">
  <id>libpoppler-devel</id>
  <title>poppler: fix for arbitrary code execution</title>
  <release>openSUSE 11.0</release>
  <issued date="1215107661"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404955" id="404955" title="bug number 404955" type="bugzilla"/>
  </references>
  <description>This update fixes an code execution bug. (CVE-2008-2950)
</description>
  <pkglist>
    <collection>
        <package name="libpoppler-devel" arch="i586" version="0.8.2" release="1.2">
          <filename>libpoppler-devel-0.8.2-1.2.i586.rpm</filename>
        </package>
        <package name="libpoppler-devel" arch="ppc" version="0.8.2" release="1.2">
          <filename>libpoppler-devel-0.8.2-1.2.ppc.rpm</filename>
        </package>
        <package name="libpoppler-devel" arch="x86_64" version="0.8.2" release="1.2">
          <filename>libpoppler-devel-0.8.2-1.2.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-doc" arch="i586" version="0.8.2" release="1.2">
          <filename>libpoppler-doc-0.8.2-1.2.i586.rpm</filename>
        </package>
        <package name="libpoppler-glib-devel" arch="i586" version="0.8.2" release="1.2">
          <filename>libpoppler-glib-devel-0.8.2-1.2.i586.rpm</filename>
        </package>
        <package name="libpoppler-glib3" arch="i586" version="0.8.2" release="1.2">
          <filename>libpoppler-glib3-0.8.2-1.2.i586.rpm</filename>
        </package>
        <package name="libpoppler-glib3" arch="ppc" version="0.8.2" release="1.2">
          <filename>libpoppler-glib3-0.8.2-1.2.ppc.rpm</filename>
        </package>
        <package name="libpoppler-glib3" arch="x86_64" version="0.8.2" release="1.2">
          <filename>libpoppler-glib3-0.8.2-1.2.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-qt2" arch="i586" version="0.8.2" release="1.2">
          <filename>libpoppler-qt2-0.8.2-1.2.i586.rpm</filename>
        </package>
        <package name="libpoppler-qt2" arch="ppc" version="0.8.2" release="1.2">
          <filename>libpoppler-qt2-0.8.2-1.2.ppc.rpm</filename>
        </package>
        <package name="libpoppler-qt2" arch="x86_64" version="0.8.2" release="1.2">
          <filename>libpoppler-qt2-0.8.2-1.2.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-qt3-devel" arch="i586" version="0.8.2" release="1.2">
          <filename>libpoppler-qt3-devel-0.8.2-1.2.i586.rpm</filename>
        </package>
        <package name="libpoppler-qt4-3" arch="i586" version="0.8.2" release="1.2">
          <filename>libpoppler-qt4-3-0.8.2-1.2.i586.rpm</filename>
        </package>
        <package name="libpoppler-qt4-3" arch="ppc" version="0.8.2" release="1.2">
          <filename>libpoppler-qt4-3-0.8.2-1.2.ppc.rpm</filename>
        </package>
        <package name="libpoppler-qt4-3" arch="x86_64" version="0.8.2" release="1.2">
          <filename>libpoppler-qt4-3-0.8.2-1.2.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-qt4-devel" arch="i586" version="0.8.2" release="1.2">
          <filename>libpoppler-qt4-devel-0.8.2-1.2.i586.rpm</filename>
        </package>
        <package name="libpoppler3" arch="i586" version="0.8.2" release="1.2">
          <filename>libpoppler3-0.8.2-1.2.i586.rpm</filename>
        </package>
        <package name="libpoppler3" arch="ppc" version="0.8.2" release="1.2">
          <filename>libpoppler3-0.8.2-1.2.ppc.rpm</filename>
        </package>
        <package name="libpoppler3" arch="x86_64" version="0.8.2" release="1.2">
          <filename>libpoppler3-0.8.2-1.2.x86_64.rpm</filename>
        </package>
        <package name="poppler-tools" arch="i586" version="0.8.2" release="1.2">
          <filename>poppler-tools-0.8.2-1.2.i586.rpm</filename>
        </package>
        <package name="poppler-tools" arch="ppc" version="0.8.2" release="1.2">
          <filename>poppler-tools-0.8.2-1.2.ppc.rpm</filename>
        </package>
        <package name="poppler-tools" arch="x86_64" version="0.8.2" release="1.2">
          <filename>poppler-tools-0.8.2-1.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ccd399a1af2940b0973054f1563d5f35"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="363">
  <id>boost</id>
  <title>Boost:Now compiled with asserts being switched on</title>
  <release>openSUSE 11.0</release>
  <issued date="1228876109"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=412567" id="412567" title="bug number 412567" type="bugzilla"/>
  </references>
  <description>The boost libraries were compiled without -DNDEBUG and thus
with asserts not deactivated, which might lead to program
abortion. This update provides libraries compiled with
-DNDEBUG.
</description>
  <pkglist>
    <collection>
        <package name="boost" arch="i586" version="1.34.1" release="42.4">
          <filename>boost-1.34.1-42.4.i586.rpm</filename>
        </package>
        <package name="boost" arch="ppc" version="1.34.1" release="42.4">
          <filename>boost-1.34.1-42.4.ppc.rpm</filename>
        </package>
        <package name="boost" arch="x86_64" version="1.34.1" release="42.4">
          <filename>boost-1.34.1-42.4.x86_64.rpm</filename>
        </package>
        <package name="boost-64bit" arch="ppc" version="1.34.1" release="42.4">
          <filename>boost-64bit-1.34.1-42.4.ppc.rpm</filename>
        </package>
        <package name="boost-devel" arch="i586" version="1.34.1" release="42.4">
          <filename>boost-devel-1.34.1-42.4.i586.rpm</filename>
        </package>
        <package name="boost-devel" arch="ppc" version="1.34.1" release="42.4">
          <filename>boost-devel-1.34.1-42.4.ppc.rpm</filename>
        </package>
        <package name="boost-devel" arch="x86_64" version="1.34.1" release="42.4">
          <filename>boost-devel-1.34.1-42.4.x86_64.rpm</filename>
        </package>
        <package name="boost-devel-64bit" arch="ppc" version="1.34.1" release="42.4">
          <filename>boost-devel-64bit-1.34.1-42.4.ppc.rpm</filename>
        </package>
        <package name="boost-doc" arch="i586" version="1.34.1" release="42.4">
          <filename>boost-doc-1.34.1-42.4.i586.rpm</filename>
        </package>
        <package name="boost-doc" arch="ppc" version="1.34.1" release="42.4">
          <filename>boost-doc-1.34.1-42.4.ppc.rpm</filename>
        </package>
        <package name="boost-doc" arch="x86_64" version="1.34.1" release="42.4">
          <filename>boost-doc-1.34.1-42.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6d6a68c56b0c22d9db8c49f94a415d03"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="63">
  <id>yast2-qt-pkg</id>
  <title>qt-pkg: Fix for a Yast crash after leaving the package selection.</title>
  <release>openSUSE 11.0</release>
  <issued date="1214481350"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=332853" id="332853" title="bug number 332853" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=395040" id="395040" title="bug number 395040" type="bugzilla"/>
  </references>
  <description>After leaving the package selection, yast crashes because
/etc/zypp/locks can't be opened for writing.
</description>
  <pkglist>
    <collection>
        <package name="yast2-qt-pkg" arch="i586" version="2.16.47" release="0.2">
          <filename>yast2-qt-pkg-2.16.47-0.2.i586.rpm</filename>
        </package>
        <package name="yast2-qt-pkg" arch="ppc" version="2.16.47" release="0.2">
          <filename>yast2-qt-pkg-2.16.47-0.2.ppc.rpm</filename>
        </package>
        <package name="yast2-qt-pkg" arch="x86_64" version="2.16.47" release="0.2">
          <filename>yast2-qt-pkg-2.16.47-0.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="bc78442a032133cbae0017194ff93dbb"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="76">
  <id>licq</id>
  <title>licq update</title>
  <release>openSUSE 11.0</release>
  <issued date="1215186993"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405633" id="405633" title="bug number 405633" type="bugzilla"/>
  </references>
  <description>Licq clients could no longer log in to the ICQ network due
to a server change at July 1st 2008
</description>
  <pkglist>
    <collection>
        <package name="licq" arch="i586" version="1.3.5.2" release="19.2">
          <filename>licq-1.3.5.2-19.2.i586.rpm</filename>
        </package>
        <package name="licq" arch="ppc" version="1.3.5.2" release="19.2">
          <filename>licq-1.3.5.2-19.2.ppc.rpm</filename>
        </package>
        <package name="licq" arch="x86_64" version="1.3.5.2" release="19.2">
          <filename>licq-1.3.5.2-19.2.x86_64.rpm</filename>
        </package>
        <package name="licq-devel" arch="i586" version="1.3.5.2" release="19.2">
          <filename>licq-devel-1.3.5.2-19.2.i586.rpm</filename>
        </package>
        <package name="licq-qt4-gui" arch="i586" version="1.3.5.2" release="19.2">
          <filename>licq-qt4-gui-1.3.5.2-19.2.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="65b9e04f3bdbb38d1ab86f2f1cd1c416"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="62">
  <id>yast2-gtk</id>
  <title>yast2-gtk: Fixes a crash when configuring network printer</title>
  <release>openSUSE 11.0</release>
  <issued date="1214427218"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=394309" id="394309" title="bug number 394309" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402433" id="402433" title="bug number 402433" type="bugzilla"/>
  </references>
  <description>Solves crash when configuring network printer, issue
resolving conflicts in package summary view and some small
UI bugs.
</description>
  <pkglist>
    <collection>
        <package name="yast2-gtk" arch="i586" version="2.16.14" release="1.1">
          <filename>yast2-gtk-2.16.14-1.1.i586.rpm</filename>
        </package>
        <package name="yast2-gtk" arch="ppc" version="2.16.14" release="1.1">
          <filename>yast2-gtk-2.16.14-1.1.ppc.rpm</filename>
        </package>
        <package name="yast2-gtk" arch="x86_64" version="2.16.14" release="1.1">
          <filename>yast2-gtk-2.16.14-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="10fe0ff2091827ab4bc40bfdd50d6575"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="65">
  <id>xorg-x11</id>
  <title>Xmodmap: Fix for the a problem with keyboard settings</title>
  <release>openSUSE 11.0</release>
  <issued date="1214418386"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=397942" id="397942" title="bug number 397942" type="bugzilla"/>
  </references>
  <description>Apparently keyboard settings from $HOME/.Xmodmap are
ignored. This update fixes this issue.
</description>
  <pkglist>
    <collection>
        <package name="xorg-x11" arch="i586" version="7.3" release="96.2">
          <filename>xorg-x11-7.3-96.2.i586.rpm</filename>
        </package>
        <package name="xorg-x11" arch="ppc" version="7.3" release="96.2">
          <filename>xorg-x11-7.3-96.2.ppc.rpm</filename>
        </package>
        <package name="xorg-x11" arch="x86_64" version="7.3" release="96.2">
          <filename>xorg-x11-7.3-96.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a7f7efb21c76b25b1c9ad15fd08b9c82"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="75">
  <id>mercurial</id>
  <title>mercurial: Insufficient input validation</title>
  <release>openSUSE 11.0</release>
  <issued date="1215194933"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404959" id="404959" title="bug number 404959" type="bugzilla"/>
  </references>
  <description>This update of mercurial improves the input validation.
Prior to this patch it was possible to touch files as
root.  (CVE-2008-2942)
</description>
  <pkglist>
    <collection>
        <package name="mercurial" arch="i586" version="1.0" release="30.2">
          <filename>mercurial-1.0-30.2.i586.rpm</filename>
        </package>
        <package name="mercurial" arch="ppc" version="1.0" release="30.2">
          <filename>mercurial-1.0-30.2.ppc.rpm</filename>
        </package>
        <package name="mercurial" arch="x86_64" version="1.0" release="30.2">
          <filename>mercurial-1.0-30.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ed2f3ae00a75a0ec3fed55644bbee028"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="67">
  <id>kernel</id>
  <title>Linux Kernel update</title>
  <release>openSUSE 11.0</release>
  <issued date="1214824611"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=300001" id="300001" title="bug number 300001" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402612" id="402612" title="bug number 402612" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396311" id="396311" title="bug number 396311" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=333043" id="333043" title="bug number 333043" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398370" id="398370" title="bug number 398370" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=390384" id="390384" title="bug number 390384" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396129" id="396129" title="bug number 396129" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=397097" id="397097" title="bug number 397097" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=394566" id="394566" title="bug number 394566" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=389656" id="389656" title="bug number 389656" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=369558" id="369558" title="bug number 369558" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400729" id="400729" title="bug number 400729" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400728" id="400728" title="bug number 400728" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400730" id="400730" title="bug number 400730" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398270" id="398270" title="bug number 398270" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=374637" id="374637" title="bug number 374637" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398573" id="398573" title="bug number 398573" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=351119" id="351119" title="bug number 351119" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402608" id="402608" title="bug number 402608" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402607" id="402607" title="bug number 402607" type="bugzilla"/>
  </references>
  <description>The openSUSE 11.0 kernel was updated to 2.6.25.9.

It fixes two security problems: CVE-2008-2372: A resource
starvation issue within mmap was fixed, which could have
been used by local attackers to hang the machine.

CVE-2008-2826: A integer overflow in SCTP was fixed, which
might have been used by remote attackers to crash the
machine or potentially execute code.

The update also has lots of other bugfixes that are listed
in the RPM changelog.
</description>
  <pkglist>
    <collection>
        <package name="kernel-debug" arch="i586" version="2.6.25.9" release="0.2">
          <filename>kernel-debug-2.6.25.9-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="x86_64" version="2.6.25.9" release="0.2">
          <filename>kernel-debug-2.6.25.9-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="i586" version="2.6.25.9" release="0.2">
          <filename>kernel-default-2.6.25.9-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="ppc" version="2.6.25.9" release="0.2">
          <filename>kernel-default-2.6.25.9-0.2.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="x86_64" version="2.6.25.9" release="0.2">
          <filename>kernel-default-2.6.25.9-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-docs" arch="noarch" version="2.6.25.9" release="0.2">
          <filename>kernel-docs-2.6.25.9-0.2.noarch.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-pae" arch="i586" version="2.6.25.9" release="0.2">
          <filename>kernel-pae-2.6.25.9-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt" arch="i586" version="2.6.25.9" release="0.2">
          <filename>kernel-rt-2.6.25.9-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt" arch="x86_64" version="2.6.25.9" release="0.2">
          <filename>kernel-rt-2.6.25.9-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="i586" version="2.6.25.9" release="0.2">
          <filename>kernel-source-2.6.25.9-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="ppc" version="2.6.25.9" release="0.2">
          <filename>kernel-source-2.6.25.9-0.2.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="x86_64" version="2.6.25.9" release="0.2">
          <filename>kernel-source-2.6.25.9-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="i586" version="2.6.25.9" release="0.2">
          <filename>kernel-syms-2.6.25.9-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="ppc" version="2.6.25.9" release="0.2">
          <filename>kernel-syms-2.6.25.9-0.2.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="x86_64" version="2.6.25.9" release="0.2">
          <filename>kernel-syms-2.6.25.9-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="i586" version="2.6.25.9" release="0.2">
          <filename>kernel-vanilla-2.6.25.9-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="ppc" version="2.6.25.9" release="0.2">
          <filename>kernel-vanilla-2.6.25.9-0.2.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="x86_64" version="2.6.25.9" release="0.2">
          <filename>kernel-vanilla-2.6.25.9-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="i586" version="2.6.25.9" release="0.2">
          <filename>kernel-xen-2.6.25.9-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="x86_64" version="2.6.25.9" release="0.2">
          <filename>kernel-xen-2.6.25.9-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3e06e09e2569e42a361ae9dd236f3a6d"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="78">
  <id>glib2</id>
  <title>glib2: Fixes a threading crash in GObject initialization (seen as a file chooser crash in Firefox)</title>
  <release>openSUSE 11.0</release>
  <issued date="1213619077"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=385128" id="385128" title="bug number 385128" type="bugzilla"/>
  </references>
  <description>This fixes a threading race condition in GObject class
initialization.  The symptoms included crashes in
GtkFileChooser when used in Firefox.
</description>
  <pkglist>
    <collection>
        <package name="glib2" arch="i586" version="2.16.3" release="20.2">
          <filename>glib2-2.16.3-20.2.i586.rpm</filename>
        </package>
        <package name="glib2" arch="ppc" version="2.16.3" release="20.2">
          <filename>glib2-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="glib2" arch="x86_64" version="2.16.3" release="20.2">
          <filename>glib2-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="glib2-branding-upstream" arch="i586" version="2.16.3" release="20.2">
          <filename>glib2-branding-upstream-2.16.3-20.2.i586.rpm</filename>
        </package>
        <package name="glib2-devel" arch="i586" version="2.16.3" release="20.2">
          <filename>glib2-devel-2.16.3-20.2.i586.rpm</filename>
        </package>
        <package name="glib2-devel" arch="ppc" version="2.16.3" release="20.2">
          <filename>glib2-devel-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="glib2-devel" arch="x86_64" version="2.16.3" release="20.2">
          <filename>glib2-devel-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="glib2-devel-64bit" arch="ppc" version="2.16.3" release="20.2">
          <filename>glib2-devel-64bit-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="glib2-doc" arch="i586" version="2.16.3" release="20.2">
          <filename>glib2-doc-2.16.3-20.2.i586.rpm</filename>
        </package>
        <package name="glib2-doc" arch="ppc" version="2.16.3" release="20.2">
          <filename>glib2-doc-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="glib2-doc" arch="x86_64" version="2.16.3" release="20.2">
          <filename>glib2-doc-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="glib2-lang" arch="i586" version="2.16.3" release="20.2">
          <filename>glib2-lang-2.16.3-20.2.i586.rpm</filename>
        </package>
        <package name="glib2-lang" arch="ppc" version="2.16.3" release="20.2">
          <filename>glib2-lang-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="glib2-lang" arch="x86_64" version="2.16.3" release="20.2">
          <filename>glib2-lang-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="i586" version="2.16.3" release="20.2">
          <filename>libgio-2_0-0-2.16.3-20.2.i586.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="ppc" version="2.16.3" release="20.2">
          <filename>libgio-2_0-0-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="x86_64" version="2.16.3" release="20.2">
          <filename>libgio-2_0-0-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.2">
          <filename>libgio-2_0-0-32bit-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.2">
          <filename>libgio-2_0-0-64bit-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="libgio-fam" arch="i586" version="2.16.3" release="20.2">
          <filename>libgio-fam-2.16.3-20.2.i586.rpm</filename>
        </package>
        <package name="libgio-fam" arch="ppc" version="2.16.3" release="20.2">
          <filename>libgio-fam-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="libgio-fam" arch="x86_64" version="2.16.3" release="20.2">
          <filename>libgio-fam-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="i586" version="2.16.3" release="20.2">
          <filename>libglib-2_0-0-2.16.3-20.2.i586.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="ppc" version="2.16.3" release="20.2">
          <filename>libglib-2_0-0-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="x86_64" version="2.16.3" release="20.2">
          <filename>libglib-2_0-0-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.2">
          <filename>libglib-2_0-0-32bit-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.2">
          <filename>libglib-2_0-0-64bit-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="i586" version="2.16.3" release="20.2">
          <filename>libgmodule-2_0-0-2.16.3-20.2.i586.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="ppc" version="2.16.3" release="20.2">
          <filename>libgmodule-2_0-0-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="x86_64" version="2.16.3" release="20.2">
          <filename>libgmodule-2_0-0-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.2">
          <filename>libgmodule-2_0-0-32bit-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.2">
          <filename>libgmodule-2_0-0-64bit-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="i586" version="2.16.3" release="20.2">
          <filename>libgobject-2_0-0-2.16.3-20.2.i586.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="ppc" version="2.16.3" release="20.2">
          <filename>libgobject-2_0-0-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="x86_64" version="2.16.3" release="20.2">
          <filename>libgobject-2_0-0-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libgobject-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.2">
          <filename>libgobject-2_0-0-32bit-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libgobject-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.2">
          <filename>libgobject-2_0-0-64bit-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="i586" version="2.16.3" release="20.2">
          <filename>libgthread-2_0-0-2.16.3-20.2.i586.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="ppc" version="2.16.3" release="20.2">
          <filename>libgthread-2_0-0-2.16.3-20.2.ppc.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="x86_64" version="2.16.3" release="20.2">
          <filename>libgthread-2_0-0-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libgthread-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.2">
          <filename>libgthread-2_0-0-32bit-2.16.3-20.2.x86_64.rpm</filename>
        </package>
        <package name="libgthread-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.2">
          <filename>libgthread-2_0-0-64bit-2.16.3-20.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="287037dcbc9caa772947707a102613c3"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="72">
  <id>xorg-x11-fonts</id>
  <title>x11: Fix for broken font rendering in legacy applications</title>
  <release>openSUSE 11.0</release>
  <issued date="1215131300"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405723" id="405723" title="bug number 405723" type="bugzilla"/>
  </references>
  <description>This patch fixes the font rendering, which occurs in some
legacy applications (also 3rd party) like qiv.
</description>
  <pkglist>
    <collection>
        <package name="xorg-x11-fonts" arch="noarch" version="7.3" release="70.2">
          <filename>xorg-x11-fonts-7.3-70.2.noarch.rpm</filename>
        </package>
        <package name="xorg-x11-fonts-core" arch="noarch" version="7.3" release="70.2">
          <filename>xorg-x11-fonts-core-7.3-70.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b8a8bc6e3839d3d27974d681e8ec3356"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="73">
  <id>xorg-x11-Xvnc</id>
  <title>XServer: Fix for Wacom driver crash</title>
  <release>openSUSE 11.0</release>
  <issued date="1215175970"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402519" id="402519" title="bug number 402519" type="bugzilla"/>
  </references>
  <description>This patch fixes an X server crash when wacom driver is in
use.
</description>
  <pkglist>
    <collection>
        <package name="xorg-x11-Xvnc" arch="i586" version="7.3" release="110.4">
          <filename>xorg-x11-Xvnc-7.3-110.4.i586.rpm</filename>
        </package>
        <package name="xorg-x11-Xvnc" arch="ppc" version="7.3" release="110.4">
          <filename>xorg-x11-Xvnc-7.3-110.4.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-Xvnc" arch="x86_64" version="7.3" release="110.4">
          <filename>xorg-x11-Xvnc-7.3-110.4.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="i586" version="7.3" release="110.4">
          <filename>xorg-x11-server-7.3-110.4.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="ppc" version="7.3" release="110.4">
          <filename>xorg-x11-server-7.3-110.4.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="x86_64" version="7.3" release="110.4">
          <filename>xorg-x11-server-7.3-110.4.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="i586" version="7.3" release="110.4">
          <filename>xorg-x11-server-extra-7.3-110.4.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="ppc" version="7.3" release="110.4">
          <filename>xorg-x11-server-extra-7.3-110.4.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="x86_64" version="7.3" release="110.4">
          <filename>xorg-x11-server-extra-7.3-110.4.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="i586" version="7.3" release="110.4">
          <filename>xorg-x11-server-sdk-7.3-110.4.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="ppc" version="7.3" release="110.4">
          <filename>xorg-x11-server-sdk-7.3-110.4.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="x86_64" version="7.3" release="110.4">
          <filename>xorg-x11-server-sdk-7.3-110.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0751f29b41ad4aa88d3d283b72aca89d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="82">
  <id>bind</id>
  <title>bind security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1215531783"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396963" id="396963" title="bug number 396963" type="bugzilla"/>
  </references>
  <description>The transaction id and the UDP source port used for DNS
queries by the bind nameserver were predicatable. Attackers
could potentially exploit that weakness to manipulate the
DNS cache (&quot;DNS cache poisoning&quot;, CVE-2008-1447).
</description>
  <pkglist>
    <collection>
        <package name="bind" arch="i586" version="9.4.2" release="39.2">
          <filename>bind-9.4.2-39.2.i586.rpm</filename>
        </package>
        <package name="bind" arch="ppc" version="9.4.2" release="39.2">
          <filename>bind-9.4.2-39.2.ppc.rpm</filename>
        </package>
        <package name="bind" arch="x86_64" version="9.4.2" release="39.2">
          <filename>bind-9.4.2-39.2.x86_64.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="i586" version="9.4.2" release="39.2">
          <filename>bind-chrootenv-9.4.2-39.2.i586.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="ppc" version="9.4.2" release="39.2">
          <filename>bind-chrootenv-9.4.2-39.2.ppc.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="x86_64" version="9.4.2" release="39.2">
          <filename>bind-chrootenv-9.4.2-39.2.x86_64.rpm</filename>
        </package>
        <package name="bind-devel" arch="i586" version="9.4.2" release="39.2">
          <filename>bind-devel-9.4.2-39.2.i586.rpm</filename>
        </package>
        <package name="bind-devel" arch="ppc" version="9.4.2" release="39.2">
          <filename>bind-devel-9.4.2-39.2.ppc.rpm</filename>
        </package>
        <package name="bind-devel" arch="x86_64" version="9.4.2" release="39.2">
          <filename>bind-devel-9.4.2-39.2.x86_64.rpm</filename>
        </package>
        <package name="bind-devel-64bit" arch="ppc" version="9.4.2" release="39.2">
          <filename>bind-devel-64bit-9.4.2-39.2.ppc.rpm</filename>
        </package>
        <package name="bind-doc" arch="i586" version="9.4.2" release="39.2">
          <filename>bind-doc-9.4.2-39.2.i586.rpm</filename>
        </package>
        <package name="bind-doc" arch="ppc" version="9.4.2" release="39.2">
          <filename>bind-doc-9.4.2-39.2.ppc.rpm</filename>
        </package>
        <package name="bind-doc" arch="x86_64" version="9.4.2" release="39.2">
          <filename>bind-doc-9.4.2-39.2.x86_64.rpm</filename>
        </package>
        <package name="bind-libs" arch="i586" version="9.4.2" release="39.2">
          <filename>bind-libs-9.4.2-39.2.i586.rpm</filename>
        </package>
        <package name="bind-libs" arch="ppc" version="9.4.2" release="39.2">
          <filename>bind-libs-9.4.2-39.2.ppc.rpm</filename>
        </package>
        <package name="bind-libs" arch="x86_64" version="9.4.2" release="39.2">
          <filename>bind-libs-9.4.2-39.2.x86_64.rpm</filename>
        </package>
        <package name="bind-libs-32bit" arch="x86_64" version="9.4.2" release="39.2">
          <filename>bind-libs-32bit-9.4.2-39.2.x86_64.rpm</filename>
        </package>
        <package name="bind-libs-64bit" arch="ppc" version="9.4.2" release="39.2">
          <filename>bind-libs-64bit-9.4.2-39.2.ppc.rpm</filename>
        </package>
        <package name="bind-utils" arch="i586" version="9.4.2" release="39.2">
          <filename>bind-utils-9.4.2-39.2.i586.rpm</filename>
        </package>
        <package name="bind-utils" arch="ppc" version="9.4.2" release="39.2">
          <filename>bind-utils-9.4.2-39.2.ppc.rpm</filename>
        </package>
        <package name="bind-utils" arch="x86_64" version="9.4.2" release="39.2">
          <filename>bind-utils-9.4.2-39.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5983180f90658c6cd1b47d490db4b831"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="85">
  <id>clamav</id>
  <title>clamav: Update to version 0.93.3.</title>
  <release>openSUSE 11.0</release>
  <issued date="1215735345"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406994" id="406994" title="bug number 406994" type="bugzilla"/>
  </references>
  <description>This update brings clamav to version 0.93.3.

It lists CVE-2008-2713 as fixed, but this was fixed in
0.93.1 already, but not mentioned. The update contains
stability and bugfixes.
</description>
  <pkglist>
    <collection>
        <package name="clamav" arch="i586" version="0.93.3" release="0.1">
          <filename>clamav-0.93.3-0.1.i586.rpm</filename>
        </package>
        <package name="clamav" arch="ppc" version="0.93.3" release="0.1">
          <filename>clamav-0.93.3-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav" arch="x86_64" version="0.93.3" release="0.1">
          <filename>clamav-0.93.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="clamav-db" arch="i586" version="0.93.3" release="0.1">
          <filename>clamav-db-0.93.3-0.1.i586.rpm</filename>
        </package>
        <package name="clamav-db" arch="ppc" version="0.93.3" release="0.1">
          <filename>clamav-db-0.93.3-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav-db" arch="x86_64" version="0.93.3" release="0.1">
          <filename>clamav-db-0.93.3-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="18842695e5753bb9412515a493e3d1c9"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="89">
  <id>inn</id>
  <title>inn: fix crash in perl bindings</title>
  <release>openSUSE 11.0</release>
  <issued date="1215735298"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405186" id="405186" title="bug number 405186" type="bugzilla"/>
  </references>
  <description>Version 5.10.0 of perl changed the perl_call_argv function,
making the inn daemon crash. This update fixes the bug.
</description>
  <pkglist>
    <collection>
        <package name="inn" arch="i586" version="2.4.2" release="164.2">
          <filename>inn-2.4.2-164.2.i586.rpm</filename>
        </package>
        <package name="inn" arch="ppc" version="2.4.2" release="164.2">
          <filename>inn-2.4.2-164.2.ppc.rpm</filename>
        </package>
        <package name="inn" arch="x86_64" version="2.4.2" release="164.2">
          <filename>inn-2.4.2-164.2.x86_64.rpm</filename>
        </package>
        <package name="inn-devel" arch="i586" version="2.4.2" release="164.2">
          <filename>inn-devel-2.4.2-164.2.i586.rpm</filename>
        </package>
        <package name="inn-devel" arch="ppc" version="2.4.2" release="164.2">
          <filename>inn-devel-2.4.2-164.2.ppc.rpm</filename>
        </package>
        <package name="inn-devel" arch="x86_64" version="2.4.2" release="164.2">
          <filename>inn-devel-2.4.2-164.2.x86_64.rpm</filename>
        </package>
        <package name="mininews" arch="i586" version="2.4.2" release="164.2">
          <filename>mininews-2.4.2-164.2.i586.rpm</filename>
        </package>
        <package name="mininews" arch="ppc" version="2.4.2" release="164.2">
          <filename>mininews-2.4.2-164.2.ppc.rpm</filename>
        </package>
        <package name="mininews" arch="x86_64" version="2.4.2" release="164.2">
          <filename>mininews-2.4.2-164.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="89bbd2b62b33075683d0225da84ff0ae"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="91">
  <id>mrtg</id>
  <title>mrtg: fix for a cfgmaker  error perl &quot;Pod::Usage&quot;</title>
  <release>openSUSE 11.0</release>
  <issued date="1215735256"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=403868" id="403868" title="bug number 403868" type="bugzilla"/>
  </references>
  <description>Trying to use cfgmaker and similar tools ends with a perl
error.
</description>
  <pkglist>
    <collection>
        <package name="mrtg" arch="i586" version="2.16.1" release="13.2">
          <filename>mrtg-2.16.1-13.2.i586.rpm</filename>
        </package>
        <package name="mrtg" arch="ppc" version="2.16.1" release="13.2">
          <filename>mrtg-2.16.1-13.2.ppc.rpm</filename>
        </package>
        <package name="mrtg" arch="x86_64" version="2.16.1" release="13.2">
          <filename>mrtg-2.16.1-13.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="20a338e239ff070be7f88ac3d978f49b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="109">
  <id>libxcrypt</id>
  <title>libxcrypt security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1216290905"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=408719" id="408719" title="bug number 408719" type="bugzilla"/>
  </references>
  <description>libxcrypt accidently used the DES-Algorithm if MD5 was
selected as password hash algorithm (CVE-2008-3188).
</description>
  <pkglist>
    <collection>
        <package name="libxcrypt" arch="i586" version="3.0" release="14.2">
          <filename>libxcrypt-3.0-14.2.i586.rpm</filename>
        </package>
        <package name="libxcrypt" arch="ppc" version="3.0" release="14.2">
          <filename>libxcrypt-3.0-14.2.ppc.rpm</filename>
        </package>
        <package name="libxcrypt" arch="x86_64" version="3.0" release="14.2">
          <filename>libxcrypt-3.0-14.2.x86_64.rpm</filename>
        </package>
        <package name="libxcrypt-32bit" arch="x86_64" version="3.0" release="14.2">
          <filename>libxcrypt-32bit-3.0-14.2.x86_64.rpm</filename>
        </package>
        <package name="libxcrypt-64bit" arch="ppc" version="3.0" release="14.2">
          <filename>libxcrypt-64bit-3.0-14.2.ppc.rpm</filename>
        </package>
        <package name="libxcrypt-devel" arch="i586" version="3.0" release="14.2">
          <filename>libxcrypt-devel-3.0-14.2.i586.rpm</filename>
        </package>
        <package name="libxcrypt-devel" arch="ppc" version="3.0" release="14.2">
          <filename>libxcrypt-devel-3.0-14.2.ppc.rpm</filename>
        </package>
        <package name="libxcrypt-devel" arch="x86_64" version="3.0" release="14.2">
          <filename>libxcrypt-devel-3.0-14.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="22c8741de9ef2362f8dd9f32551c461d"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="104">
  <id>libqt4</id>
  <title>libqt4: multiple fixes</title>
  <release>openSUSE 11.0</release>
  <issued date="1216261148"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398526" id="398526" title="bug number 398526" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=403385" id="403385" title="bug number 403385" type="bugzilla"/>
  </references>
  <description>This update fixes the following issues:
- postgresql support for postgresql 8.3 (bnc#403385)
- input methods not working in KDE4 after login from kdm4
  (bnc#398526)
</description>
  <pkglist>
    <collection>
        <package name="libqt4" arch="i586" version="4.4.0" release="12.2">
          <filename>libqt4-4.4.0-12.2.i586.rpm</filename>
        </package>
        <package name="libqt4" arch="ppc" version="4.4.0" release="12.2">
          <filename>libqt4-4.4.0-12.2.ppc.rpm</filename>
        </package>
        <package name="libqt4" arch="x86_64" version="4.4.0" release="12.2">
          <filename>libqt4-4.4.0-12.2.x86_64.rpm</filename>
        </package>
        <package name="libqt4-32bit" arch="x86_64" version="4.4.0" release="12.2">
          <filename>libqt4-32bit-4.4.0-12.2.x86_64.rpm</filename>
        </package>
        <package name="libqt4-64bit" arch="ppc" version="4.4.0" release="12.2">
          <filename>libqt4-64bit-4.4.0-12.2.ppc.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="i586" version="4.4.0" release="12.2">
          <filename>libqt4-devel-4.4.0-12.2.i586.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="ppc" version="4.4.0" release="12.2">
          <filename>libqt4-devel-4.4.0-12.2.ppc.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="x86_64" version="4.4.0" release="12.2">
          <filename>libqt4-devel-4.4.0-12.2.x86_64.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="i586" version="4.4.0" release="12.2">
          <filename>libqt4-qt3support-4.4.0-12.2.i586.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="ppc" version="4.4.0" release="12.2">
          <filename>libqt4-qt3support-4.4.0-12.2.ppc.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="x86_64" version="4.4.0" release="12.2">
          <filename>libqt4-qt3support-4.4.0-12.2.x86_64.rpm</filename>
        </package>
        <package name="libqt4-qt3support-32bit" arch="x86_64" version="4.4.0" release="12.2">
          <filename>libqt4-qt3support-32bit-4.4.0-12.2.x86_64.rpm</filename>
        </package>
        <package name="libqt4-qt3support-64bit" arch="ppc" version="4.4.0" release="12.2">
          <filename>libqt4-qt3support-64bit-4.4.0-12.2.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="i586" version="4.4.0" release="12.2">
          <filename>libqt4-sql-4.4.0-12.2.i586.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="ppc" version="4.4.0" release="12.2">
          <filename>libqt4-sql-4.4.0-12.2.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="x86_64" version="4.4.0" release="12.2">
          <filename>libqt4-sql-4.4.0-12.2.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-32bit" arch="x86_64" version="4.4.0" release="12.2">
          <filename>libqt4-sql-32bit-4.4.0-12.2.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-64bit" arch="ppc" version="4.4.0" release="12.2">
          <filename>libqt4-sql-64bit-4.4.0-12.2.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-postgresql" arch="i586" version="4.4.0" release="5.2">
          <filename>libqt4-sql-postgresql-4.4.0-5.2.i586.rpm</filename>
        </package>
        <package name="libqt4-sql-postgresql" arch="ppc" version="4.4.0" release="5.2">
          <filename>libqt4-sql-postgresql-4.4.0-5.2.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-postgresql" arch="x86_64" version="4.4.0" release="5.2">
          <filename>libqt4-sql-postgresql-4.4.0-5.2.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="i586" version="4.4.0" release="12.2">
          <filename>libqt4-sql-sqlite-4.4.0-12.2.i586.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="ppc" version="4.4.0" release="12.2">
          <filename>libqt4-sql-sqlite-4.4.0-12.2.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="x86_64" version="4.4.0" release="12.2">
          <filename>libqt4-sql-sqlite-4.4.0-12.2.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="i586" version="4.4.0" release="12.2">
          <filename>libqt4-x11-4.4.0-12.2.i586.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="ppc" version="4.4.0" release="12.2">
          <filename>libqt4-x11-4.4.0-12.2.ppc.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="x86_64" version="4.4.0" release="12.2">
          <filename>libqt4-x11-4.4.0-12.2.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11-32bit" arch="x86_64" version="4.4.0" release="12.2">
          <filename>libqt4-x11-32bit-4.4.0-12.2.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11-64bit" arch="ppc" version="4.4.0" release="12.2">
          <filename>libqt4-x11-64bit-4.4.0-12.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5d5cd724dd8e74fea6b15545acb0a9bb"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="81">
  <id>KDE4-fixes-2</id>
  <title>kdebase4: collective bugfix update</title>
  <release>openSUSE 11.0</release>
  <issued date="1215529260"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396497" id="396497" title="bug number 396497" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398823" id="398823" title="bug number 398823" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=401351" id="401351" title="bug number 401351" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=399296" id="399296" title="bug number 399296" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396497" id="396497" title="bug number 396497" type="bugzilla"/>
  </references>
  <description>This update fixes the following issues:
- openSUSE packages identify themselves as &quot;compiled from
  sources&quot; in bugreports
- ftp:/ protocol handler might overwrite files during
  rename (bnc#399296)
- nsplugin support not automatically installed if available
  when manually installing kde4-konqueror
- flash support not working in kde4-konqueror (bnc#398823)
- fix potential kwin crash on closing a window
- fix kwin crash when cancelling the application kill helper
- fix screen blanker not appearing or not shutting down
  DPMS (bnc#401351)
- fix plasma crash on removing news plasmoid (#bnc396497)

</description>
  <pkglist>
    <collection>
        <package name="kde4-dolphin" arch="i586" version="4.0.4" release="18.2">
          <filename>kde4-dolphin-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kde4-dolphin" arch="ppc" version="4.0.4" release="18.2">
          <filename>kde4-dolphin-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="kde4-dolphin" arch="x86_64" version="4.0.4" release="18.2">
          <filename>kde4-dolphin-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="kde4-kdepasswd" arch="i586" version="4.0.4" release="18.2">
          <filename>kde4-kdepasswd-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kde4-kdepasswd" arch="ppc" version="4.0.4" release="18.2">
          <filename>kde4-kdepasswd-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="kde4-kdepasswd" arch="x86_64" version="4.0.4" release="18.2">
          <filename>kde4-kdepasswd-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="kde4-kdialog" arch="i586" version="4.0.4" release="18.2">
          <filename>kde4-kdialog-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kde4-kdialog" arch="ppc" version="4.0.4" release="18.2">
          <filename>kde4-kdialog-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="kde4-kdialog" arch="x86_64" version="4.0.4" release="18.2">
          <filename>kde4-kdialog-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="kde4-kdm" arch="i586" version="4.0.4" release="24.4">
          <filename>kde4-kdm-4.0.4-24.4.i586.rpm</filename>
        </package>
        <package name="kde4-kdm" arch="ppc" version="4.0.4" release="24.4">
          <filename>kde4-kdm-4.0.4-24.4.ppc.rpm</filename>
        </package>
        <package name="kde4-kdm" arch="x86_64" version="4.0.4" release="24.4">
          <filename>kde4-kdm-4.0.4-24.4.x86_64.rpm</filename>
        </package>
        <package name="kde4-kdm-branding-upstream" arch="i586" version="4.0.4" release="24.4">
          <filename>kde4-kdm-branding-upstream-4.0.4-24.4.i586.rpm</filename>
        </package>
        <package name="kde4-keditbookmarks" arch="i586" version="4.0.4" release="18.2">
          <filename>kde4-keditbookmarks-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kde4-keditbookmarks" arch="ppc" version="4.0.4" release="18.2">
          <filename>kde4-keditbookmarks-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="kde4-keditbookmarks" arch="x86_64" version="4.0.4" release="18.2">
          <filename>kde4-keditbookmarks-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="kde4-kfind" arch="i586" version="4.0.4" release="18.2">
          <filename>kde4-kfind-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kde4-kfind" arch="ppc" version="4.0.4" release="18.2">
          <filename>kde4-kfind-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="kde4-kfind" arch="x86_64" version="4.0.4" release="18.2">
          <filename>kde4-kfind-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="kde4-kinfocenter" arch="i586" version="4.0.4" release="18.2">
          <filename>kde4-kinfocenter-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kde4-konqueror" arch="i586" version="4.0.4" release="18.2">
          <filename>kde4-konqueror-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kde4-konqueror" arch="ppc" version="4.0.4" release="18.2">
          <filename>kde4-konqueror-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="kde4-konqueror" arch="x86_64" version="4.0.4" release="18.2">
          <filename>kde4-konqueror-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="kde4-konsole" arch="i586" version="4.0.4" release="18.2">
          <filename>kde4-konsole-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kde4-konsole" arch="ppc" version="4.0.4" release="18.2">
          <filename>kde4-konsole-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="kde4-konsole" arch="x86_64" version="4.0.4" release="18.2">
          <filename>kde4-konsole-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="i586" version="4.0.4" release="24.4">
          <filename>kde4-kwin-4.0.4-24.4.i586.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="ppc" version="4.0.4" release="24.4">
          <filename>kde4-kwin-4.0.4-24.4.ppc.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="x86_64" version="4.0.4" release="24.4">
          <filename>kde4-kwin-4.0.4-24.4.x86_64.rpm</filename>
        </package>
        <package name="kde4-kwrite" arch="i586" version="4.0.4" release="18.2">
          <filename>kde4-kwrite-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kde4-kwrite" arch="ppc" version="4.0.4" release="18.2">
          <filename>kde4-kwrite-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="kde4-kwrite" arch="x86_64" version="4.0.4" release="18.2">
          <filename>kde4-kwrite-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase4" arch="i586" version="4.0.4" release="18.2">
          <filename>kdebase4-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kdebase4" arch="ppc" version="4.0.4" release="18.2">
          <filename>kdebase4-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="kdebase4" arch="x86_64" version="4.0.4" release="18.2">
          <filename>kdebase4-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-libkonq" arch="i586" version="4.0.4" release="18.2">
          <filename>kdebase4-libkonq-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kdebase4-libkonq" arch="ppc" version="4.0.4" release="18.2">
          <filename>kdebase4-libkonq-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="kdebase4-libkonq" arch="x86_64" version="4.0.4" release="18.2">
          <filename>kdebase4-libkonq-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-nsplugin" arch="i586" version="4.0.4" release="18.2">
          <filename>kdebase4-nsplugin-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="kdebase4-nsplugin" arch="ppc" version="4.0.4" release="18.2">
          <filename>kdebase4-nsplugin-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="kdebase4-nsplugin" arch="x86_64" version="4.0.4" release="18.2">
          <filename>kdebase4-nsplugin-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="i586" version="4.0.4" release="24.4">
          <filename>kdebase4-workspace-4.0.4-24.4.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="ppc" version="4.0.4" release="24.4">
          <filename>kdebase4-workspace-4.0.4-24.4.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="x86_64" version="4.0.4" release="24.4">
          <filename>kdebase4-workspace-4.0.4-24.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace-branding-upstream" arch="i586" version="4.0.4" release="24.4">
          <filename>kdebase4-workspace-branding-upstream-4.0.4-24.4.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="i586" version="4.0.4" release="24.4">
          <filename>kdebase4-workspace-devel-4.0.4-24.4.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="ppc" version="4.0.4" release="24.4">
          <filename>kdebase4-workspace-devel-4.0.4-24.4.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="x86_64" version="4.0.4" release="24.4">
          <filename>kdebase4-workspace-devel-4.0.4-24.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="i586" version="4.0.4" release="24.4">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.4.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="ppc" version="4.0.4" release="24.4">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.4.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="x86_64" version="4.0.4" release="24.4">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace-plasmoids" arch="i586" version="4.0.1" release="71.2">
          <filename>kdebase4-workspace-plasmoids-4.0.1-71.2.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-plasmoids" arch="ppc" version="4.0.1" release="71.2">
          <filename>kdebase4-workspace-plasmoids-4.0.1-71.2.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace-plasmoids" arch="x86_64" version="4.0.1" release="71.2">
          <filename>kdebase4-workspace-plasmoids-4.0.1-71.2.x86_64.rpm</filename>
        </package>
        <package name="kdelibs4" arch="i586" version="4.0.4" release="15.2">
          <filename>kdelibs4-4.0.4-15.2.i586.rpm</filename>
        </package>
        <package name="kdelibs4" arch="ppc" version="4.0.4" release="15.2">
          <filename>kdelibs4-4.0.4-15.2.ppc.rpm</filename>
        </package>
        <package name="kdelibs4" arch="x86_64" version="4.0.4" release="15.2">
          <filename>kdelibs4-4.0.4-15.2.x86_64.rpm</filename>
        </package>
        <package name="kdelibs4-core" arch="i586" version="4.0.4" release="15.2">
          <filename>kdelibs4-core-4.0.4-15.2.i586.rpm</filename>
        </package>
        <package name="kdelibs4-core" arch="ppc" version="4.0.4" release="15.2">
          <filename>kdelibs4-core-4.0.4-15.2.ppc.rpm</filename>
        </package>
        <package name="kdelibs4-core" arch="x86_64" version="4.0.4" release="15.2">
          <filename>kdelibs4-core-4.0.4-15.2.x86_64.rpm</filename>
        </package>
        <package name="kdelibs4-doc" arch="i586" version="4.0.4" release="15.2">
          <filename>kdelibs4-doc-4.0.4-15.2.i586.rpm</filename>
        </package>
        <package name="kdelibs4-doc" arch="ppc" version="4.0.4" release="15.2">
          <filename>kdelibs4-doc-4.0.4-15.2.ppc.rpm</filename>
        </package>
        <package name="kdelibs4-doc" arch="x86_64" version="4.0.4" release="15.2">
          <filename>kdelibs4-doc-4.0.4-15.2.x86_64.rpm</filename>
        </package>
        <package name="libkde4" arch="i586" version="4.0.4" release="15.2">
          <filename>libkde4-4.0.4-15.2.i586.rpm</filename>
        </package>
        <package name="libkde4" arch="ppc" version="4.0.4" release="15.2">
          <filename>libkde4-4.0.4-15.2.ppc.rpm</filename>
        </package>
        <package name="libkde4" arch="x86_64" version="4.0.4" release="15.2">
          <filename>libkde4-4.0.4-15.2.x86_64.rpm</filename>
        </package>
        <package name="libkde4-32bit" arch="x86_64" version="4.0.4" release="15.2">
          <filename>libkde4-32bit-4.0.4-15.2.x86_64.rpm</filename>
        </package>
        <package name="libkde4-64bit" arch="ppc" version="4.0.4" release="15.2">
          <filename>libkde4-64bit-4.0.4-15.2.ppc.rpm</filename>
        </package>
        <package name="libkde4-devel" arch="i586" version="4.0.4" release="15.2">
          <filename>libkde4-devel-4.0.4-15.2.i586.rpm</filename>
        </package>
        <package name="libkde4-devel" arch="ppc" version="4.0.4" release="15.2">
          <filename>libkde4-devel-4.0.4-15.2.ppc.rpm</filename>
        </package>
        <package name="libkde4-devel" arch="x86_64" version="4.0.4" release="15.2">
          <filename>libkde4-devel-4.0.4-15.2.x86_64.rpm</filename>
        </package>
        <package name="libkdecore4" arch="i586" version="4.0.4" release="15.2">
          <filename>libkdecore4-4.0.4-15.2.i586.rpm</filename>
        </package>
        <package name="libkdecore4" arch="ppc" version="4.0.4" release="15.2">
          <filename>libkdecore4-4.0.4-15.2.ppc.rpm</filename>
        </package>
        <package name="libkdecore4" arch="x86_64" version="4.0.4" release="15.2">
          <filename>libkdecore4-4.0.4-15.2.x86_64.rpm</filename>
        </package>
        <package name="libkdecore4-32bit" arch="x86_64" version="4.0.4" release="15.2">
          <filename>libkdecore4-32bit-4.0.4-15.2.x86_64.rpm</filename>
        </package>
        <package name="libkdecore4-64bit" arch="ppc" version="4.0.4" release="15.2">
          <filename>libkdecore4-64bit-4.0.4-15.2.ppc.rpm</filename>
        </package>
        <package name="libkdecore4-devel" arch="i586" version="4.0.4" release="15.2">
          <filename>libkdecore4-devel-4.0.4-15.2.i586.rpm</filename>
        </package>
        <package name="libkdecore4-devel" arch="ppc" version="4.0.4" release="15.2">
          <filename>libkdecore4-devel-4.0.4-15.2.ppc.rpm</filename>
        </package>
        <package name="libkdecore4-devel" arch="x86_64" version="4.0.4" release="15.2">
          <filename>libkdecore4-devel-4.0.4-15.2.x86_64.rpm</filename>
        </package>
        <package name="libkonq4" arch="i586" version="4.0.4" release="18.2">
          <filename>libkonq4-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="libkonq4" arch="ppc" version="4.0.4" release="18.2">
          <filename>libkonq4-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="libkonq4" arch="x86_64" version="4.0.4" release="18.2">
          <filename>libkonq4-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="libkonq4-32bit" arch="x86_64" version="4.0.4" release="18.2">
          <filename>libkonq4-32bit-4.0.4-18.2.x86_64.rpm</filename>
        </package>
        <package name="libkonq4-64bit" arch="ppc" version="4.0.4" release="18.2">
          <filename>libkonq4-64bit-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="libkonq4-devel" arch="i586" version="4.0.4" release="18.2">
          <filename>libkonq4-devel-4.0.4-18.2.i586.rpm</filename>
        </package>
        <package name="libkonq4-devel" arch="ppc" version="4.0.4" release="18.2">
          <filename>libkonq4-devel-4.0.4-18.2.ppc.rpm</filename>
        </package>
        <package name="libkonq4-devel" arch="x86_64" version="4.0.4" release="18.2">
          <filename>libkonq4-devel-4.0.4-18.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fc941d868ada13c6a257c0083f55aaeb"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="86">
  <id>acpid</id>
  <title>bluetooth: implementing switching on and off functionality</title>
  <release>openSUSE 11.0</release>
  <issued date="1215526833"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=371927" id="371927" title="bug number 371927" type="bugzilla"/>
  </references>
  <description>Bluetooth is disabled by default. However, even hitting the
hotkey combination FN-F5 (default for most ThinkPads) does
not activate it. This patch fixes this.
</description>
  <pkglist>
    <collection>
        <package name="acpid" arch="i586" version="1.0.6" release="63.2">
          <filename>acpid-1.0.6-63.2.i586.rpm</filename>
        </package>
        <package name="acpid" arch="x86_64" version="1.0.6" release="63.2">
          <filename>acpid-1.0.6-63.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="727e04ca95356565a63ee9293e1bb33a"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="95">
  <id>yast2-add-on-creator</id>
  <title>yast2-add-on-creator: Fix to honor arch tag</title>
  <release>openSUSE 11.0</release>
  <issued date="1216089610"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406153" id="406153" title="bug number 406153" type="bugzilla"/>
  </references>
  <description>When reading saved configuration, YaST Add-On Creator did
not read all saved values from the content file (e.g. ARCH).
</description>
  <pkglist>
    <collection>
        <package name="yast2-add-on-creator" arch="noarch" version="2.16.13" release="0.1">
          <filename>yast2-add-on-creator-2.16.13-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7b81ee61d92c265daf4a9a57193ea88f"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="90">
  <id>libvirt</id>
  <title>libvirt: Fix for: &quot;trap divide error&quot; appears when launching the Virtual Machine Manager</title>
  <release>openSUSE 11.0</release>
  <issued date="1215735567"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398932" id="398932" title="bug number 398932" type="bugzilla"/>
  </references>
  <description>I have again updated my system with &quot;zypper dup&quot; and
rebooted the server.

I am running now with the kernel-xen version

 uname -a Linux server 2.6.25.5-1.1-xen #1 SMP 2008-06-07
01:55:22 +0200 x86_64 x86_64 x86_64 GNU/Linux

I begin the process to create a Xen guest with &quot;xm create&quot;

 xm create -c /home/test/xen/os11.cfg

Then I make a connect to the server with VNC screen and
launch the &quot;Virtual Machine Manager&quot; to see the Guest
Console.

But now not as before the program starts quickly and then
stops then. I see for only a moment the GUI of the Virtual
Machine Manager.

The output in the /var/log/messages System log shows me

Jun 10 07:17:55 server kernel: /usr/share/virt[4156] trap
divide error ip:7f326840a5ac sp:7fff7d135c70 error:0 in
libvirt.so.0.4.0[7f32683e9000+5e000] Jun 10 07:18:09 server
gconfd (root-4147): GConf server is not in use, shutting
down. Jun 10 07:18:09 server gconfd (root-4147): Exiting

I can repeat this problem each time.

In this way the Virtual Machine Manager can not be used at
all.
</description>
  <pkglist>
    <collection>
        <package name="libvirt" arch="i586" version="0.4.0" release="59.2">
          <filename>libvirt-0.4.0-59.2.i586.rpm</filename>
        </package>
        <package name="libvirt" arch="x86_64" version="0.4.0" release="59.2">
          <filename>libvirt-0.4.0-59.2.x86_64.rpm</filename>
        </package>
        <package name="libvirt-devel" arch="i586" version="0.4.0" release="59.2">
          <filename>libvirt-devel-0.4.0-59.2.i586.rpm</filename>
        </package>
        <package name="libvirt-devel" arch="x86_64" version="0.4.0" release="59.2">
          <filename>libvirt-devel-0.4.0-59.2.x86_64.rpm</filename>
        </package>
        <package name="libvirt-doc" arch="i586" version="0.4.0" release="59.2">
          <filename>libvirt-doc-0.4.0-59.2.i586.rpm</filename>
        </package>
        <package name="libvirt-doc" arch="x86_64" version="0.4.0" release="59.2">
          <filename>libvirt-doc-0.4.0-59.2.x86_64.rpm</filename>
        </package>
        <package name="libvirt-python" arch="i586" version="0.4.0" release="59.2">
          <filename>libvirt-python-0.4.0-59.2.i586.rpm</filename>
        </package>
        <package name="libvirt-python" arch="x86_64" version="0.4.0" release="59.2">
          <filename>libvirt-python-0.4.0-59.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="640adae6ec729c16814640840f88d6db"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="368">
  <id>imap</id>
  <title>imap security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229557308"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=458579" id="458579" title="bug number 458579" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459037" id="459037" title="bug number 459037" type="bugzilla"/>
  </references>
  <description>Insufficient buffer length checks in the imap client
library may crash applications that use the library to
print formatted email addresses. The imap daemon itself is
not affected but certain versions of e.g. the php imap
module are (CVE-2008-5514).

The client library could also crash when a rogue server
unexpectedly closes the connection (CVE-2008-5006).
</description>
  <pkglist>
    <collection>
        <package name="imap" arch="i586" version="2006c1_suse" release="100.3">
          <filename>imap-2006c1_suse-100.3.i586.rpm</filename>
        </package>
        <package name="imap" arch="ppc" version="2006c1_suse" release="100.3">
          <filename>imap-2006c1_suse-100.3.ppc.rpm</filename>
        </package>
        <package name="imap" arch="x86_64" version="2006c1_suse" release="100.3">
          <filename>imap-2006c1_suse-100.3.x86_64.rpm</filename>
        </package>
        <package name="imap-devel" arch="i586" version="2006c1_suse" release="100.3">
          <filename>imap-devel-2006c1_suse-100.3.i586.rpm</filename>
        </package>
        <package name="imap-devel" arch="ppc" version="2006c1_suse" release="100.3">
          <filename>imap-devel-2006c1_suse-100.3.ppc.rpm</filename>
        </package>
        <package name="imap-devel" arch="x86_64" version="2006c1_suse" release="100.3">
          <filename>imap-devel-2006c1_suse-100.3.x86_64.rpm</filename>
        </package>
        <package name="imap-lib" arch="i586" version="2006c1_suse" release="100.3">
          <filename>imap-lib-2006c1_suse-100.3.i586.rpm</filename>
        </package>
        <package name="imap-lib" arch="ppc" version="2006c1_suse" release="100.3">
          <filename>imap-lib-2006c1_suse-100.3.ppc.rpm</filename>
        </package>
        <package name="imap-lib" arch="x86_64" version="2006c1_suse" release="100.3">
          <filename>imap-lib-2006c1_suse-100.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d0d919fc36a192bdf804b7c62f429fd4"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="94">
  <id>strongswan</id>
  <title>strongswan daemons exit because of failed try to set capabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1216084417"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404989" id="404989" title="bug number 404989" type="bugzilla"/>
  </references>
  <description>This update provides a fix that explicitly enables version
1 linux kernel capabilities on version 2 systems, so the
charon and pluto daemons don't exit because of failed try
to set capabilities.
</description>
  <pkglist>
    <collection>
        <package name="strongswan" arch="i586" version="4.2.1" release="11.2">
          <filename>strongswan-4.2.1-11.2.i586.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="i586" version="4.2.1" release="11.2">
          <filename>strongswan-doc-4.2.1-11.2.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="47fa2048b5a8047ebfbc7083e757cb16"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="108">
  <id>drbd</id>
  <title>Allow drbd to load with current kernel versions.</title>
  <release>openSUSE 11.0</release>
  <issued date="1216163434"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=403731" id="403731" title="bug number 403731" type="bugzilla"/>
  </references>
  <description>The drbd kernel module failed to load and activate with
recent kernel versions due to a kernel interface change.

This update also fixes online resizing, DRBD/LVM/Xen
interaction, and several additional bugs.
</description>
  <pkglist>
    <collection>
        <package name="drbd" arch="i586" version="8.2.6" release="0.1">
          <filename>drbd-8.2.6-0.1.i586.rpm</filename>
        </package>
        <package name="drbd" arch="ppc" version="8.2.6" release="0.1">
          <filename>drbd-8.2.6-0.1.ppc.rpm</filename>
        </package>
        <package name="drbd" arch="x86_64" version="8.2.6" release="0.1">
          <filename>drbd-8.2.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="drbd-kmp-debug" arch="i586" version="8.2.6_2.6.25.9_0.2" release="0.1">
          <filename>drbd-kmp-debug-8.2.6_2.6.25.9_0.2-0.1.i586.rpm</filename>
        </package>
        <package name="drbd-kmp-debug" arch="x86_64" version="8.2.6_2.6.25.9_0.2" release="0.1">
          <filename>drbd-kmp-debug-8.2.6_2.6.25.9_0.2-0.1.x86_64.rpm</filename>
        </package>
        <package name="drbd-kmp-default" arch="i586" version="8.2.6_2.6.25.9_0.2" release="0.1">
          <filename>drbd-kmp-default-8.2.6_2.6.25.9_0.2-0.1.i586.rpm</filename>
        </package>
        <package name="drbd-kmp-default" arch="ppc" version="8.2.6_2.6.25.9_0.2" release="0.1">
          <filename>drbd-kmp-default-8.2.6_2.6.25.9_0.2-0.1.ppc.rpm</filename>
        </package>
        <package name="drbd-kmp-default" arch="x86_64" version="8.2.6_2.6.25.9_0.2" release="0.1">
          <filename>drbd-kmp-default-8.2.6_2.6.25.9_0.2-0.1.x86_64.rpm</filename>
        </package>
        <package name="drbd-kmp-pae" arch="i586" version="8.2.6_2.6.25.9_0.2" release="0.1">
          <filename>drbd-kmp-pae-8.2.6_2.6.25.9_0.2-0.1.i586.rpm</filename>
        </package>
        <package name="drbd-kmp-ppc64" arch="ppc" version="8.2.6_2.6.25.9_0.2" release="0.1">
          <filename>drbd-kmp-ppc64-8.2.6_2.6.25.9_0.2-0.1.ppc.rpm</filename>
        </package>
        <package name="drbd-kmp-xen" arch="i586" version="8.2.6_2.6.25.9_0.2" release="0.1">
          <filename>drbd-kmp-xen-8.2.6_2.6.25.9_0.2-0.1.i586.rpm</filename>
        </package>
        <package name="drbd-kmp-xen" arch="x86_64" version="8.2.6_2.6.25.9_0.2" release="0.1">
          <filename>drbd-kmp-xen-8.2.6_2.6.25.9_0.2-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d8e1a3ecee6047a176c35d0c7d9a9ec6"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="93">
  <id>procinfo</id>
  <title>Procinfo update mode may fail on tickless systems</title>
  <release>openSUSE 11.0</release>
  <issued date="1216084067"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=399342" id="399342" title="bug number 399342" type="bugzilla"/>
  </references>
  <description>The update mode of procinfo fails to determine correct
differences on systems without running timer IRQ.
</description>
  <pkglist>
    <collection>
        <package name="procinfo" arch="i586" version="18" release="170.2">
          <filename>procinfo-18-170.2.i586.rpm</filename>
        </package>
        <package name="procinfo" arch="ppc" version="18" release="170.2">
          <filename>procinfo-18-170.2.ppc.rpm</filename>
        </package>
        <package name="procinfo" arch="x86_64" version="18" release="170.2">
          <filename>procinfo-18-170.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4f964431770bde9a57ea0ea25aa62c6c"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="102">
  <id>xorg-x11-Xvnc</id>
  <title>xorg-x11-server: Fix for intel driver crashes and related issues.</title>
  <release>openSUSE 11.0</release>
  <issued date="1216156184"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400788" id="400788" title="bug number 400788" type="bugzilla"/>
  </references>
  <description>This update fixes intel driver crashes and other related
issues by switching to EXA as acceleration method and
greedy as MigrationHeuristic.
</description>
  <pkglist>
    <collection>
        <package name="xorg-x11-Xvnc" arch="i586" version="7.3" release="110.7">
          <filename>xorg-x11-Xvnc-7.3-110.7.i586.rpm</filename>
        </package>
        <package name="xorg-x11-Xvnc" arch="ppc" version="7.3" release="110.7">
          <filename>xorg-x11-Xvnc-7.3-110.7.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-Xvnc" arch="x86_64" version="7.3" release="110.7">
          <filename>xorg-x11-Xvnc-7.3-110.7.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video" arch="i586" version="7.3" release="138.3">
          <filename>xorg-x11-driver-video-7.3-138.3.i586.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video" arch="ppc" version="7.3" release="138.3">
          <filename>xorg-x11-driver-video-7.3-138.3.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video" arch="x86_64" version="7.3" release="138.3">
          <filename>xorg-x11-driver-video-7.3-138.3.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video-32bit" arch="x86_64" version="7.3" release="138.3">
          <filename>xorg-x11-driver-video-32bit-7.3-138.3.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video-64bit" arch="ppc" version="7.3" release="138.3">
          <filename>xorg-x11-driver-video-64bit-7.3-138.3.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="i586" version="7.3" release="110.7">
          <filename>xorg-x11-server-7.3-110.7.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="ppc" version="7.3" release="110.7">
          <filename>xorg-x11-server-7.3-110.7.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="x86_64" version="7.3" release="110.7">
          <filename>xorg-x11-server-7.3-110.7.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="i586" version="7.3" release="110.7">
          <filename>xorg-x11-server-extra-7.3-110.7.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="ppc" version="7.3" release="110.7">
          <filename>xorg-x11-server-extra-7.3-110.7.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="x86_64" version="7.3" release="110.7">
          <filename>xorg-x11-server-extra-7.3-110.7.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="i586" version="7.3" release="110.7">
          <filename>xorg-x11-server-sdk-7.3-110.7.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="ppc" version="7.3" release="110.7">
          <filename>xorg-x11-server-sdk-7.3-110.7.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="x86_64" version="7.3" release="110.7">
          <filename>xorg-x11-server-sdk-7.3-110.7.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2934cc9e454a0962139c9f36a6fe2e66"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="103">
  <id>libpoppler-devel</id>
  <title>This patch fixes crashes on some PDF documents.</title>
  <release>openSUSE 11.0</release>
  <issued date="1216264823"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406469" id="406469" title="bug number 406469" type="bugzilla"/>
  </references>
  <description>This patch fixes crash of claws-mail, evince, koffice,
okular and others on PDF documents that use QuadPoints
objects in annotations.
</description>
  <pkglist>
    <collection>
        <package name="libpoppler-devel" arch="i586" version="0.8.2" release="1.3">
          <filename>libpoppler-devel-0.8.2-1.3.i586.rpm</filename>
        </package>
        <package name="libpoppler-devel" arch="ppc" version="0.8.2" release="1.3">
          <filename>libpoppler-devel-0.8.2-1.3.ppc.rpm</filename>
        </package>
        <package name="libpoppler-devel" arch="x86_64" version="0.8.2" release="1.3">
          <filename>libpoppler-devel-0.8.2-1.3.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-doc" arch="i586" version="0.8.2" release="1.3">
          <filename>libpoppler-doc-0.8.2-1.3.i586.rpm</filename>
        </package>
        <package name="libpoppler-glib-devel" arch="i586" version="0.8.2" release="1.3">
          <filename>libpoppler-glib-devel-0.8.2-1.3.i586.rpm</filename>
        </package>
        <package name="libpoppler-glib3" arch="i586" version="0.8.2" release="1.3">
          <filename>libpoppler-glib3-0.8.2-1.3.i586.rpm</filename>
        </package>
        <package name="libpoppler-glib3" arch="ppc" version="0.8.2" release="1.3">
          <filename>libpoppler-glib3-0.8.2-1.3.ppc.rpm</filename>
        </package>
        <package name="libpoppler-glib3" arch="x86_64" version="0.8.2" release="1.3">
          <filename>libpoppler-glib3-0.8.2-1.3.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-qt2" arch="i586" version="0.8.2" release="1.3">
          <filename>libpoppler-qt2-0.8.2-1.3.i586.rpm</filename>
        </package>
        <package name="libpoppler-qt2" arch="ppc" version="0.8.2" release="1.3">
          <filename>libpoppler-qt2-0.8.2-1.3.ppc.rpm</filename>
        </package>
        <package name="libpoppler-qt2" arch="x86_64" version="0.8.2" release="1.3">
          <filename>libpoppler-qt2-0.8.2-1.3.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-qt3-devel" arch="i586" version="0.8.2" release="1.3">
          <filename>libpoppler-qt3-devel-0.8.2-1.3.i586.rpm</filename>
        </package>
        <package name="libpoppler-qt4-3" arch="i586" version="0.8.2" release="1.3">
          <filename>libpoppler-qt4-3-0.8.2-1.3.i586.rpm</filename>
        </package>
        <package name="libpoppler-qt4-3" arch="ppc" version="0.8.2" release="1.3">
          <filename>libpoppler-qt4-3-0.8.2-1.3.ppc.rpm</filename>
        </package>
        <package name="libpoppler-qt4-3" arch="x86_64" version="0.8.2" release="1.3">
          <filename>libpoppler-qt4-3-0.8.2-1.3.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-qt4-devel" arch="i586" version="0.8.2" release="1.3">
          <filename>libpoppler-qt4-devel-0.8.2-1.3.i586.rpm</filename>
        </package>
        <package name="libpoppler3" arch="i586" version="0.8.2" release="1.3">
          <filename>libpoppler3-0.8.2-1.3.i586.rpm</filename>
        </package>
        <package name="libpoppler3" arch="ppc" version="0.8.2" release="1.3">
          <filename>libpoppler3-0.8.2-1.3.ppc.rpm</filename>
        </package>
        <package name="libpoppler3" arch="x86_64" version="0.8.2" release="1.3">
          <filename>libpoppler3-0.8.2-1.3.x86_64.rpm</filename>
        </package>
        <package name="poppler-tools" arch="i586" version="0.8.2" release="1.3">
          <filename>poppler-tools-0.8.2-1.3.i586.rpm</filename>
        </package>
        <package name="poppler-tools" arch="ppc" version="0.8.2" release="1.3">
          <filename>poppler-tools-0.8.2-1.3.ppc.rpm</filename>
        </package>
        <package name="poppler-tools" arch="x86_64" version="0.8.2" release="1.3">
          <filename>poppler-tools-0.8.2-1.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a7b0f32722aad9fb5434cbc85053c35f"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="106">
  <id>SuSEfirewall2</id>
  <title>SuSEfirewall2: fix ICMPv6 handling</title>
  <release>openSUSE 11.0</release>
  <issued date="1216255311"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396667" id="396667" title="bug number 396667" type="bugzilla"/>
  </references>
  <description>SuSEfirewall2 was updated to fix following bugs:
- some configuration options didn't allow to specify an
  empty protocol which made it impossible to properly
  configure e.g. the use of nf_conntrack_ftp

- handling of certain ICMPv6 packages was broken which
  could cause e.g. hanging ssh connections
</description>
  <pkglist>
    <collection>
        <package name="SuSEfirewall2" arch="noarch" version="3.6_SVNr195" release="9.2">
          <filename>SuSEfirewall2-3.6_SVNr195-9.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3e5bc15cd5ead7bc57ea2ea3e1f51aa4"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="105">
  <id>smart</id>
  <title>smart contains wrong default channel configuration</title>
  <release>openSUSE 11.0</release>
  <issued date="1216255511"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=408972" id="408972" title="bug number 408972" type="bugzilla"/>
  </references>
  <description>This update fixes the default channel configuration to
match openSUSE 11.0.
</description>
  <pkglist>
    <collection>
        <package name="smart" arch="i586" version="0.52" release="90.2">
          <filename>smart-0.52-90.2.i586.rpm</filename>
        </package>
        <package name="smart" arch="ppc" version="0.52" release="90.2">
          <filename>smart-0.52-90.2.ppc.rpm</filename>
        </package>
        <package name="smart" arch="x86_64" version="0.52" release="90.2">
          <filename>smart-0.52-90.2.x86_64.rpm</filename>
        </package>
        <package name="smart-gui" arch="i586" version="0.52" release="90.2">
          <filename>smart-gui-0.52-90.2.i586.rpm</filename>
        </package>
        <package name="smart-gui" arch="ppc" version="0.52" release="90.2">
          <filename>smart-gui-0.52-90.2.ppc.rpm</filename>
        </package>
        <package name="smart-gui" arch="x86_64" version="0.52" release="90.2">
          <filename>smart-gui-0.52-90.2.x86_64.rpm</filename>
        </package>
        <package name="smart-ksmarttray" arch="i586" version="0.52" release="90.2">
          <filename>smart-ksmarttray-0.52-90.2.i586.rpm</filename>
        </package>
        <package name="smart-ksmarttray" arch="ppc" version="0.52" release="90.2">
          <filename>smart-ksmarttray-0.52-90.2.ppc.rpm</filename>
        </package>
        <package name="smart-ksmarttray" arch="x86_64" version="0.52" release="90.2">
          <filename>smart-ksmarttray-0.52-90.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0504cdf31d0108211cd2e1cc67a030e2"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="107">
  <id>x11-input-wacom</id>
  <title>Problems with 'xsetwacom list' command fixed.</title>
  <release>openSUSE 11.0</release>
  <issued date="1216255455"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=409366" id="409366" title="bug number 409366" type="bugzilla"/>
  </references>
  <description>This update fixes problems with command 'xsetwacom list'.
</description>
  <pkglist>
    <collection>
        <package name="x11-input-wacom" arch="i586" version="0.7.9" release="50.2">
          <filename>x11-input-wacom-0.7.9-50.2.i586.rpm</filename>
        </package>
        <package name="x11-input-wacom" arch="ppc" version="0.7.9" release="50.2">
          <filename>x11-input-wacom-0.7.9-50.2.ppc.rpm</filename>
        </package>
        <package name="x11-input-wacom" arch="x86_64" version="0.7.9" release="50.2">
          <filename>x11-input-wacom-0.7.9-50.2.x86_64.rpm</filename>
        </package>
        <package name="x11-input-wacom-devel" arch="i586" version="0.7.9" release="50.2">
          <filename>x11-input-wacom-devel-0.7.9-50.2.i586.rpm</filename>
        </package>
        <package name="x11-input-wacom-devel" arch="ppc" version="0.7.9" release="50.2">
          <filename>x11-input-wacom-devel-0.7.9-50.2.ppc.rpm</filename>
        </package>
        <package name="x11-input-wacom-devel" arch="x86_64" version="0.7.9" release="50.2">
          <filename>x11-input-wacom-devel-0.7.9-50.2.x86_64.rpm</filename>
        </package>
        <package name="x11-input-wacom-tools" arch="i586" version="0.7.9" release="50.2">
          <filename>x11-input-wacom-tools-0.7.9-50.2.i586.rpm</filename>
        </package>
        <package name="x11-input-wacom-tools" arch="ppc" version="0.7.9" release="50.2">
          <filename>x11-input-wacom-tools-0.7.9-50.2.ppc.rpm</filename>
        </package>
        <package name="x11-input-wacom-tools" arch="x86_64" version="0.7.9" release="50.2">
          <filename>x11-input-wacom-tools-0.7.9-50.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="86b1e686b5668fe4ff0b68e3905162ed"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="111">
  <id>kernel</id>
  <title>Linux Kernel update</title>
  <release>openSUSE 11.0</release>
  <issued date="1216599861"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400874" id="400874" title="bug number 400874" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=216857" id="216857" title="bug number 216857" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404892" id="404892" title="bug number 404892" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400815" id="400815" title="bug number 400815" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=408734" id="408734" title="bug number 408734" type="bugzilla"/>
  </references>
  <description>The openSUSE 11.0 kernel was updated to 2.6.25.11.

It fixes following security problems: CVE-2008-2812:
Various tty / serial devices did not check functionpointers
for NULL before calling them, leading to potential crashes
or code execution. The devices affected are usually only
accessible by the root user though.

CVE-2008-2750: The pppol2tp_recvmsg function in
drivers/net/pppol2tp.c in the Linux kernel allows remote
attackers to cause a denial of service (kernel heap memory
corruption and system crash) and possibly have unspecified
other impact via a crafted PPPOL2TP packet that results in
a large value for a certain length variable.

No CVE yet: On x86_64 systems, a incorrect buffersize in
LDT handling might lead to local untrusted attackers
causing a crash of the machine or potentially execute code
with kernel privileges.

The update also has lots of other bugfixes that are listed
in the RPM changelog.
</description>
  <pkglist>
    <collection>
        <package name="kernel-debug" arch="i586" version="2.6.25.11" release="0.1">
          <filename>kernel-debug-2.6.25.11-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="x86_64" version="2.6.25.11" release="0.1">
          <filename>kernel-debug-2.6.25.11-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="i586" version="2.6.25.11" release="0.1">
          <filename>kernel-default-2.6.25.11-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="ppc" version="2.6.25.11" release="0.1">
          <filename>kernel-default-2.6.25.11-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="x86_64" version="2.6.25.11" release="0.1">
          <filename>kernel-default-2.6.25.11-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-docs" arch="noarch" version="2.6.25.11" release="0.1">
          <filename>kernel-docs-2.6.25.11-0.1.noarch.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-pae" arch="i586" version="2.6.25.11" release="0.1">
          <filename>kernel-pae-2.6.25.11-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt" arch="i586" version="2.6.25.11" release="0.1">
          <filename>kernel-rt-2.6.25.11-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt" arch="x86_64" version="2.6.25.11" release="0.1">
          <filename>kernel-rt-2.6.25.11-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="i586" version="2.6.25.11" release="0.1">
          <filename>kernel-source-2.6.25.11-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="ppc" version="2.6.25.11" release="0.1">
          <filename>kernel-source-2.6.25.11-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="x86_64" version="2.6.25.11" release="0.1">
          <filename>kernel-source-2.6.25.11-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="i586" version="2.6.25.11" release="0.1">
          <filename>kernel-syms-2.6.25.11-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="ppc" version="2.6.25.11" release="0.1">
          <filename>kernel-syms-2.6.25.11-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="x86_64" version="2.6.25.11" release="0.1">
          <filename>kernel-syms-2.6.25.11-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="i586" version="2.6.25.11" release="0.1">
          <filename>kernel-vanilla-2.6.25.11-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="ppc" version="2.6.25.11" release="0.1">
          <filename>kernel-vanilla-2.6.25.11-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="x86_64" version="2.6.25.11" release="0.1">
          <filename>kernel-vanilla-2.6.25.11-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="i586" version="2.6.25.11" release="0.1">
          <filename>kernel-xen-2.6.25.11-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="x86_64" version="2.6.25.11" release="0.1">
          <filename>kernel-xen-2.6.25.11-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="95018b8f4dd6f350bddeb74719c09bee"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="84">
  <id>desktop-data-openSUSE-extra-gnome</id>
  <title>Sound: fixes a bug with audio that stops working when runnin YAST on GNOME</title>
  <release>openSUSE 11.0</release>
  <issued date="1215303883"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=387052" id="387052" title="bug number 387052" type="bugzilla"/>
  </references>
  <description>Because of the default GNOME configuration, any GNOME
application was setup to start esound daemon on demand, so
when running an app as root (YAST), 2 incompatible daemons
were run, which resulted in audio not working anymore for
the user. These fixes in pulseaudio and
gconf2-branding-openSUSE fix the issue by just autostarting
pulseaudio the proper way.
</description>
  <pkglist>
    <collection>
        <package name="desktop-data-openSUSE-extra-gnome" arch="noarch" version="11.0.1" release="22.2">
          <filename>desktop-data-openSUSE-extra-gnome-11.0.1-22.2.noarch.rpm</filename>
        </package>
        <package name="gconf2-branding-openSUSE" arch="noarch" version="2.20" release="53.2">
          <filename>gconf2-branding-openSUSE-2.20-53.2.noarch.rpm</filename>
        </package>
        <package name="libpulse-browse0" arch="i586" version="0.9.10" release="26.3">
          <filename>libpulse-browse0-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="libpulse-browse0" arch="ppc" version="0.9.10" release="26.3">
          <filename>libpulse-browse0-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="libpulse-browse0" arch="x86_64" version="0.9.10" release="26.3">
          <filename>libpulse-browse0-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="libpulse-devel" arch="i586" version="0.9.10" release="26.3">
          <filename>libpulse-devel-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="libpulse-mainloop-glib0" arch="i586" version="0.9.10" release="26.3">
          <filename>libpulse-mainloop-glib0-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="libpulse-mainloop-glib0" arch="ppc" version="0.9.10" release="26.3">
          <filename>libpulse-mainloop-glib0-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="libpulse-mainloop-glib0" arch="x86_64" version="0.9.10" release="26.3">
          <filename>libpulse-mainloop-glib0-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="libpulse0" arch="i586" version="0.9.10" release="26.3">
          <filename>libpulse0-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="libpulse0" arch="ppc" version="0.9.10" release="26.3">
          <filename>libpulse0-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="libpulse0" arch="x86_64" version="0.9.10" release="26.3">
          <filename>libpulse0-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="libpulse0-32bit" arch="x86_64" version="0.9.10" release="26.3">
          <filename>libpulse0-32bit-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="libpulse0-64bit" arch="ppc" version="0.9.10" release="26.3">
          <filename>libpulse0-64bit-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="libpulsecore4" arch="i586" version="0.9.10" release="26.3">
          <filename>libpulsecore4-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="libpulsecore4" arch="ppc" version="0.9.10" release="26.3">
          <filename>libpulsecore4-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="libpulsecore4" arch="x86_64" version="0.9.10" release="26.3">
          <filename>libpulsecore4-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio" arch="i586" version="0.9.10" release="26.3">
          <filename>pulseaudio-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="pulseaudio" arch="ppc" version="0.9.10" release="26.3">
          <filename>pulseaudio-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="pulseaudio" arch="x86_64" version="0.9.10" release="26.3">
          <filename>pulseaudio-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-esound-compat" arch="i586" version="0.9.10" release="26.3">
          <filename>pulseaudio-esound-compat-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="pulseaudio-esound-compat" arch="ppc" version="0.9.10" release="26.3">
          <filename>pulseaudio-esound-compat-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-esound-compat" arch="x86_64" version="0.9.10" release="26.3">
          <filename>pulseaudio-esound-compat-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-bluetooth" arch="i586" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-bluetooth-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-bluetooth" arch="ppc" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-bluetooth-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-bluetooth" arch="x86_64" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-bluetooth-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-gconf" arch="i586" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-gconf-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-gconf" arch="ppc" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-gconf-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-gconf" arch="x86_64" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-gconf-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-jack" arch="i586" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-jack-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-lirc" arch="i586" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-lirc-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-lirc" arch="ppc" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-lirc-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-lirc" arch="x86_64" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-lirc-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-x11" arch="i586" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-x11-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-x11" arch="ppc" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-x11-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-x11" arch="x86_64" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-x11-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-zeroconf" arch="i586" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-zeroconf-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-zeroconf" arch="ppc" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-zeroconf-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-zeroconf" arch="x86_64" version="0.9.10" release="26.3">
          <filename>pulseaudio-module-zeroconf-0.9.10-26.3.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-utils" arch="i586" version="0.9.10" release="26.3">
          <filename>pulseaudio-utils-0.9.10-26.3.i586.rpm</filename>
        </package>
        <package name="pulseaudio-utils" arch="ppc" version="0.9.10" release="26.3">
          <filename>pulseaudio-utils-0.9.10-26.3.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-utils" arch="x86_64" version="0.9.10" release="26.3">
          <filename>pulseaudio-utils-0.9.10-26.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="38e55e93c138aa8cec67ead2fb83a654"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="378">
  <id>flash-player</id>
  <title>flash-player security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229612464"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=458573" id="458573" title="bug number 458573" type="bugzilla"/>
  </references>
  <description>An unspecified vulnerability in flash-player allowed
attackers to take control of the victim's system by having
the victim load a specially crafted SWF file
(CVE-2008-5499).
</description>
  <pkglist>
    <collection>
        <package name="flash-player" arch="i586" version="9.0.152.0" release="0.1">
          <filename>flash-player-9.0.152.0-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fc394fbd892e7ea66e7ae5ab3fa96958"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="115">
  <id>acroread</id>
  <title>acroread: arbitrary code execution</title>
  <release>openSUSE 11.0</release>
  <issued date="1216734903"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404976" id="404976" title="bug number 404976" type="bugzilla"/>
  </references>
  <description>This update of acroread fixes an unknown error in a
JavaScript method that can lead to remote code execution.
(CVE-2008-2641)
</description>
  <pkglist>
    <collection>
        <package name="acroread" arch="i586" version="8.1.2_SU1" release="0.1">
          <filename>acroread-8.1.2_SU1-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b67a888ed8bb4a6235e5e9f0b8d5903b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="116">
  <id>opera</id>
  <title>Opera 9.51 security and bugfix update</title>
  <release>openSUSE 11.0</release>
  <issued date="1216827034"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=411499" id="411499" title="bug number 411499" type="bugzilla"/>
  </references>
  <description>Opera 9.51 was released as security and bugfix update.

Full details are on
http://www.opera.com/docs/changelogs/linux/951/

CVE-2008-3078: Opera before 9.51 does not properly manage
memory within functions supporting the CANVAS element,
which allows remote attackers to read uninitialized memory
contents by using JavaScript to read a canvas image.
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="9.51" release="7.1">
          <filename>opera-9.51-7.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="9.51" release="7.1">
          <filename>opera-9.51-7.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="9.51" release="7.1">
          <filename>opera-9.51-7.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5c5533dfe70147c9aaa62dc81727e486"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="87">
  <id>libsnmp15</id>
  <title>net-snmp security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1215304902"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=393159" id="393159" title="bug number 393159" type="bugzilla"/>
  </references>
  <description>This security update fixes a denial of service
vulnerability and an authentication bypass (CVE-2008-2292,
CVE-2008-0960).
</description>
  <pkglist>
    <collection>
        <package name="libsnmp15" arch="i586" version="5.4.1" release="77.2">
          <filename>libsnmp15-5.4.1-77.2.i586.rpm</filename>
        </package>
        <package name="libsnmp15" arch="ppc" version="5.4.1" release="77.2">
          <filename>libsnmp15-5.4.1-77.2.ppc.rpm</filename>
        </package>
        <package name="libsnmp15" arch="x86_64" version="5.4.1" release="77.2">
          <filename>libsnmp15-5.4.1-77.2.x86_64.rpm</filename>
        </package>
        <package name="net-snmp" arch="i586" version="5.4.1" release="77.2">
          <filename>net-snmp-5.4.1-77.2.i586.rpm</filename>
        </package>
        <package name="net-snmp" arch="ppc" version="5.4.1" release="77.2">
          <filename>net-snmp-5.4.1-77.2.ppc.rpm</filename>
        </package>
        <package name="net-snmp" arch="x86_64" version="5.4.1" release="77.2">
          <filename>net-snmp-5.4.1-77.2.x86_64.rpm</filename>
        </package>
        <package name="net-snmp-32bit" arch="x86_64" version="5.4.1" release="77.2">
          <filename>net-snmp-32bit-5.4.1-77.2.x86_64.rpm</filename>
        </package>
        <package name="net-snmp-64bit" arch="ppc" version="5.4.1" release="77.2">
          <filename>net-snmp-64bit-5.4.1-77.2.ppc.rpm</filename>
        </package>
        <package name="net-snmp-devel" arch="i586" version="5.4.1" release="77.2">
          <filename>net-snmp-devel-5.4.1-77.2.i586.rpm</filename>
        </package>
        <package name="net-snmp-devel" arch="ppc" version="5.4.1" release="77.2">
          <filename>net-snmp-devel-5.4.1-77.2.ppc.rpm</filename>
        </package>
        <package name="net-snmp-devel" arch="x86_64" version="5.4.1" release="77.2">
          <filename>net-snmp-devel-5.4.1-77.2.x86_64.rpm</filename>
        </package>
        <package name="net-snmp-devel-64bit" arch="ppc" version="5.4.1" release="77.2">
          <filename>net-snmp-devel-64bit-5.4.1-77.2.ppc.rpm</filename>
        </package>
        <package name="perl-SNMP" arch="i586" version="5.4.1" release="77.2">
          <filename>perl-SNMP-5.4.1-77.2.i586.rpm</filename>
        </package>
        <package name="perl-SNMP" arch="ppc" version="5.4.1" release="77.2">
          <filename>perl-SNMP-5.4.1-77.2.ppc.rpm</filename>
        </package>
        <package name="perl-SNMP" arch="x86_64" version="5.4.1" release="77.2">
          <filename>perl-SNMP-5.4.1-77.2.x86_64.rpm</filename>
        </package>
        <package name="snmp-mibs" arch="i586" version="5.4.1" release="77.2">
          <filename>snmp-mibs-5.4.1-77.2.i586.rpm</filename>
        </package>
        <package name="snmp-mibs" arch="ppc" version="5.4.1" release="77.2">
          <filename>snmp-mibs-5.4.1-77.2.ppc.rpm</filename>
        </package>
        <package name="snmp-mibs" arch="x86_64" version="5.4.1" release="77.2">
          <filename>snmp-mibs-5.4.1-77.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3e98780dca4b5d3f502d07c3558db551"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="48">
  <id>viewvc</id>
  <title>viewvc: multiple vulnerabilities fixed</title>
  <release>openSUSE 11.0</release>
  <issued date="1213627561"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=370197" id="370197" title="bug number 370197" type="bugzilla"/>
  </references>
  <description>This update of viewvc fixes multiple vulnerabilities.
- CVE-2008-1290: list CVS or SVN commits on &quot;all-forbidden&quot;
  files
- CVE-2008-1291: directly access hidden CVSROOT folders
- CVE-2008-1292: expose restricted content via the revision
  view, the log history, or the diff view
</description>
  <pkglist>
    <collection>
        <package name="viewvc" arch="i586" version="1.0.5" release="29.1">
          <filename>viewvc-1.0.5-29.1.i586.rpm</filename>
        </package>
        <package name="viewvc" arch="ppc" version="1.0.5" release="29.1">
          <filename>viewvc-1.0.5-29.1.ppc.rpm</filename>
        </package>
        <package name="viewvc" arch="x86_64" version="1.0.5" release="29.1">
          <filename>viewvc-1.0.5-29.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f0eb860364b6216eff0dd043fb12bf75"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="125">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox 3.0.1 security and bugfix update.</title>
  <release>openSUSE 11.0</release>
  <issued date="1217506301"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407573" id="407573" title="bug number 407573" type="bugzilla"/>
  </references>
  <description>This update brings Mozilla Firefox to version 3.0.1. It
fixes various bugs and also following security problems:

MFSA 2008-34 / CVE-2008-2785: An anonymous researcher, via
TippingPoint's Zero Day Initiative program, reported a
vulnerability in Mozilla CSS reference counting code. The
vulnerability was caused by an insufficiently sized
variable being used as a reference counter for CSS objects.
By creating a very large number of references to a common
CSS object, this counter could be overflowed which could
cause a crash when the browser attempts to free the CSS
object while still in use. An attacker could use this crash
to run arbitrary code on the victim's computer

MFSA 2008-35 / CVE-2008-2933: Security researcher Billy
Rios reported that if Firefox is not already running,
passing it a command-line URI with pipe symbols will open
multiple tabs. This URI splitting could be used to launch
privileged chrome: URIs from the command-line, a partial
bypass of the fix for MFSA 2005-53 which blocks external
applications from loading such URIs.

This vulnerability could also be used by an attacker to
launch a file: URI from the command line opening a
malicious local file which could exfiltrate data from the
local filesystem.

Combined with a vulnerability which allows an attacker to
inject code into a chrome document, the above issue could
be used to run arbitrary code on a victim's computer. Such
a chrome injection vulnerability was reported by Mozilla
developers Ben Turner and Dan Veditz who showed that a XUL
based SSL error page was not properly sanitizing inputs and
could be used to run arbitrary code with chrome privileges.

MFSA 2008-36 / CVE-2008-2934: Apple Security Researcher
Drew Yao reported a vulnerability in Mozilla graphics code
which handles GIF rendering in Mac OS X. He demonstrated
that a GIF file could be specially crafted to cause the
browser to free an uninitialized pointer. An attacker could
use this vulnerability to crash the browser and potentially
execute arbitrary code on the victim's computer.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.1" release="0.1">
          <filename>MozillaFirefox-3.0.1-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.1" release="0.1">
          <filename>MozillaFirefox-3.0.1-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.1" release="0.1">
          <filename>MozillaFirefox-3.0.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.1" release="0.1">
          <filename>MozillaFirefox-translations-3.0.1-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.1" release="0.1">
          <filename>MozillaFirefox-translations-3.0.1-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.1" release="0.1">
          <filename>MozillaFirefox-translations-3.0.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.1-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.1-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.1-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.1-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.1-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.1-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.1-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.1-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.1-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.1-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.1" release="0.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.1-0.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="bdace61f3b8b374eaba02b1285f4b192"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="117">
  <id>kde4-kdm</id>
  <title>kde4: collective bugfix update</title>
  <release>openSUSE 11.0</release>
  <issued date="1217002299"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=387406" id="387406" title="bug number 387406" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396176" id="396176" title="bug number 396176" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=408672" id="408672" title="bug number 408672" type="bugzilla"/>
  </references>
  <description>This update fixes the following issues:
* frequent crashes of knotify4 (bnc#387406)
* fix huge documents and public_html icons to be blurry
  (bnc#396176)
* fix kwin composite freeze with screensaver (bnc#408672)
</description>
  <pkglist>
    <collection>
        <package name="kde4-kdm" arch="i586" version="4.0.4" release="24.6">
          <filename>kde4-kdm-4.0.4-24.6.i586.rpm</filename>
        </package>
        <package name="kde4-kdm" arch="ppc" version="4.0.4" release="24.6">
          <filename>kde4-kdm-4.0.4-24.6.ppc.rpm</filename>
        </package>
        <package name="kde4-kdm" arch="x86_64" version="4.0.4" release="24.6">
          <filename>kde4-kdm-4.0.4-24.6.x86_64.rpm</filename>
        </package>
        <package name="kde4-kdm-branding-upstream" arch="i586" version="4.0.4" release="24.6">
          <filename>kde4-kdm-branding-upstream-4.0.4-24.6.i586.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="i586" version="4.0.4" release="24.6">
          <filename>kde4-kwin-4.0.4-24.6.i586.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="ppc" version="4.0.4" release="24.6">
          <filename>kde4-kwin-4.0.4-24.6.ppc.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="x86_64" version="4.0.4" release="24.6">
          <filename>kde4-kwin-4.0.4-24.6.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-runtime" arch="i586" version="4.0.4" release="20.2">
          <filename>kdebase4-runtime-4.0.4-20.2.i586.rpm</filename>
        </package>
        <package name="kdebase4-runtime" arch="ppc" version="4.0.4" release="20.2">
          <filename>kdebase4-runtime-4.0.4-20.2.ppc.rpm</filename>
        </package>
        <package name="kdebase4-runtime" arch="x86_64" version="4.0.4" release="20.2">
          <filename>kdebase4-runtime-4.0.4-20.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="i586" version="4.0.4" release="24.6">
          <filename>kdebase4-workspace-4.0.4-24.6.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="ppc" version="4.0.4" release="24.6">
          <filename>kdebase4-workspace-4.0.4-24.6.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="x86_64" version="4.0.4" release="24.6">
          <filename>kdebase4-workspace-4.0.4-24.6.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace-branding-upstream" arch="i586" version="4.0.4" release="24.6">
          <filename>kdebase4-workspace-branding-upstream-4.0.4-24.6.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="i586" version="4.0.4" release="24.6">
          <filename>kdebase4-workspace-devel-4.0.4-24.6.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="ppc" version="4.0.4" release="24.6">
          <filename>kdebase4-workspace-devel-4.0.4-24.6.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="x86_64" version="4.0.4" release="24.6">
          <filename>kdebase4-workspace-devel-4.0.4-24.6.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="i586" version="4.0.4" release="24.6">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.6.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="ppc" version="4.0.4" release="24.6">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.6.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="x86_64" version="4.0.4" release="24.6">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="85bb85f57d1eb9a27106ff2242d4a2f6"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="124">
  <id>fileshareset</id>
  <title>kdebase3: Collective update</title>
  <release>openSUSE 11.0</release>
  <issued date="1217353341"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=290917" id="290917" title="bug number 290917" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=385149" id="385149" title="bug number 385149" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=158239" id="158239" title="bug number 158239" type="bugzilla"/>
  </references>
  <description>This update fixes the following issues in kdebase3:
* wacom pointer rotation does not work on xrandr 1.2
  displays (bnc#385149)
* suspend/hibernate buttons are not available in KDE3
  (bnc#290917)
* Avoid ksysguardd hang in (unused) openSLP lookups
</description>
  <pkglist>
    <collection>
        <package name="fileshareset" arch="i586" version="2.0" release="501.2">
          <filename>fileshareset-2.0-501.2.i586.rpm</filename>
        </package>
        <package name="fileshareset" arch="ppc" version="2.0" release="501.2">
          <filename>fileshareset-2.0-501.2.ppc.rpm</filename>
        </package>
        <package name="fileshareset" arch="x86_64" version="2.0" release="501.2">
          <filename>fileshareset-2.0-501.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase3" arch="i586" version="3.5.9" release="65.2">
          <filename>kdebase3-3.5.9-65.2.i586.rpm</filename>
        </package>
        <package name="kdebase3" arch="ppc" version="3.5.9" release="65.2">
          <filename>kdebase3-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="kdebase3" arch="x86_64" version="3.5.9" release="65.2">
          <filename>kdebase3-3.5.9-65.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-32bit" arch="x86_64" version="3.5.9" release="65.2">
          <filename>kdebase3-32bit-3.5.9-65.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-64bit" arch="ppc" version="3.5.9" release="65.2">
          <filename>kdebase3-64bit-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="kdebase3-beagle" arch="i586" version="3.5.9" release="65.2">
          <filename>kdebase3-beagle-3.5.9-65.2.i586.rpm</filename>
        </package>
        <package name="kdebase3-beagle" arch="ppc" version="3.5.9" release="65.2">
          <filename>kdebase3-beagle-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="kdebase3-beagle" arch="x86_64" version="3.5.9" release="65.2">
          <filename>kdebase3-beagle-3.5.9-65.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-devel" arch="i586" version="3.5.9" release="65.2">
          <filename>kdebase3-devel-3.5.9-65.2.i586.rpm</filename>
        </package>
        <package name="kdebase3-devel" arch="ppc" version="3.5.9" release="65.2">
          <filename>kdebase3-devel-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="kdebase3-devel" arch="x86_64" version="3.5.9" release="65.2">
          <filename>kdebase3-devel-3.5.9-65.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-extra" arch="i586" version="3.5.9" release="65.2">
          <filename>kdebase3-extra-3.5.9-65.2.i586.rpm</filename>
        </package>
        <package name="kdebase3-extra" arch="ppc" version="3.5.9" release="65.2">
          <filename>kdebase3-extra-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="kdebase3-extra" arch="x86_64" version="3.5.9" release="65.2">
          <filename>kdebase3-extra-3.5.9-65.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-kdm" arch="i586" version="3.5.9" release="65.2">
          <filename>kdebase3-kdm-3.5.9-65.2.i586.rpm</filename>
        </package>
        <package name="kdebase3-kdm" arch="ppc" version="3.5.9" release="65.2">
          <filename>kdebase3-kdm-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="kdebase3-kdm" arch="x86_64" version="3.5.9" release="65.2">
          <filename>kdebase3-kdm-3.5.9-65.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-nsplugin" arch="i586" version="3.5.9" release="65.2">
          <filename>kdebase3-nsplugin-3.5.9-65.2.i586.rpm</filename>
        </package>
        <package name="kdebase3-nsplugin" arch="ppc" version="3.5.9" release="65.2">
          <filename>kdebase3-nsplugin-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="kdebase3-runtime" arch="i586" version="3.5.9" release="65.2">
          <filename>kdebase3-runtime-3.5.9-65.2.i586.rpm</filename>
        </package>
        <package name="kdebase3-runtime" arch="ppc" version="3.5.9" release="65.2">
          <filename>kdebase3-runtime-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="kdebase3-runtime" arch="x86_64" version="3.5.9" release="65.2">
          <filename>kdebase3-runtime-3.5.9-65.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-runtime-32bit" arch="x86_64" version="3.5.9" release="65.2">
          <filename>kdebase3-runtime-32bit-3.5.9-65.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-runtime-64bit" arch="ppc" version="3.5.9" release="65.2">
          <filename>kdebase3-runtime-64bit-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="kdebase3-samba" arch="i586" version="3.5.9" release="65.2">
          <filename>kdebase3-samba-3.5.9-65.2.i586.rpm</filename>
        </package>
        <package name="kdebase3-samba" arch="ppc" version="3.5.9" release="65.2">
          <filename>kdebase3-samba-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="kdebase3-samba" arch="x86_64" version="3.5.9" release="65.2">
          <filename>kdebase3-samba-3.5.9-65.2.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-session" arch="i586" version="3.5.9" release="65.2">
          <filename>kdebase3-session-3.5.9-65.2.i586.rpm</filename>
        </package>
        <package name="kdebase3-session" arch="ppc" version="3.5.9" release="65.2">
          <filename>kdebase3-session-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="kdebase3-session" arch="x86_64" version="3.5.9" release="65.2">
          <filename>kdebase3-session-3.5.9-65.2.x86_64.rpm</filename>
        </package>
        <package name="misc-console-font" arch="i586" version="3.5.9" release="65.2">
          <filename>misc-console-font-3.5.9-65.2.i586.rpm</filename>
        </package>
        <package name="misc-console-font" arch="ppc" version="3.5.9" release="65.2">
          <filename>misc-console-font-3.5.9-65.2.ppc.rpm</filename>
        </package>
        <package name="misc-console-font" arch="x86_64" version="3.5.9" release="65.2">
          <filename>misc-console-font-3.5.9-65.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1884cc5d9dd564938c7ef84e00e2610c"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="119">
  <id>xorg-x11-Xvnc</id>
  <title>xorg-x11: Fixes application crashes caused by a bug in EXA.</title>
  <release>openSUSE 11.0</release>
  <issued date="1217284095"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=412211" id="412211" title="bug number 412211" type="bugzilla"/>
  </references>
  <description>This update fixes application crashes, caused by an
overly-restrictive integer overflow check in EXA.
</description>
  <pkglist>
    <collection>
        <package name="xorg-x11-Xvnc" arch="i586" version="7.3" release="110.9">
          <filename>xorg-x11-Xvnc-7.3-110.9.i586.rpm</filename>
        </package>
        <package name="xorg-x11-Xvnc" arch="ppc" version="7.3" release="110.9">
          <filename>xorg-x11-Xvnc-7.3-110.9.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-Xvnc" arch="x86_64" version="7.3" release="110.9">
          <filename>xorg-x11-Xvnc-7.3-110.9.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="i586" version="7.3" release="110.9">
          <filename>xorg-x11-server-7.3-110.9.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="ppc" version="7.3" release="110.9">
          <filename>xorg-x11-server-7.3-110.9.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server" arch="x86_64" version="7.3" release="110.9">
          <filename>xorg-x11-server-7.3-110.9.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="i586" version="7.3" release="110.9">
          <filename>xorg-x11-server-extra-7.3-110.9.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="ppc" version="7.3" release="110.9">
          <filename>xorg-x11-server-extra-7.3-110.9.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server-extra" arch="x86_64" version="7.3" release="110.9">
          <filename>xorg-x11-server-extra-7.3-110.9.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="i586" version="7.3" release="110.9">
          <filename>xorg-x11-server-sdk-7.3-110.9.i586.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="ppc" version="7.3" release="110.9">
          <filename>xorg-x11-server-sdk-7.3-110.9.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-server-sdk" arch="x86_64" version="7.3" release="110.9">
          <filename>xorg-x11-server-sdk-7.3-110.9.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2dce729400488142414f8cc70d2471a3"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="118">
  <id>libexif</id>
  <title>libexif: Fixes crashes in EOG and GIMP</title>
  <release>openSUSE 11.0</release>
  <issued date="1217283091"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406299" id="406299" title="bug number 406299" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404475" id="404475" title="bug number 404475" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=376086" id="376086" title="bug number 376086" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=380716" id="380716" title="bug number 380716" type="bugzilla"/>
  </references>
  <description>This patch fixes EXIF related crashes in the EOG image
browser (Novell Bugzilla 406299) and GIMP on EOS JPEG
opening (Novell Bugzilla 404475 ).
</description>
  <pkglist>
    <collection>
        <package name="libexif" arch="i586" version="0.6.16.2" release="32.2">
          <filename>libexif-0.6.16.2-32.2.i586.rpm</filename>
        </package>
        <package name="libexif" arch="ppc" version="0.6.16.2" release="32.2">
          <filename>libexif-0.6.16.2-32.2.ppc.rpm</filename>
        </package>
        <package name="libexif" arch="x86_64" version="0.6.16.2" release="32.2">
          <filename>libexif-0.6.16.2-32.2.x86_64.rpm</filename>
        </package>
        <package name="libexif-32bit" arch="x86_64" version="0.6.16.2" release="32.2">
          <filename>libexif-32bit-0.6.16.2-32.2.x86_64.rpm</filename>
        </package>
        <package name="libexif-64bit" arch="ppc" version="0.6.16.2" release="32.2">
          <filename>libexif-64bit-0.6.16.2-32.2.ppc.rpm</filename>
        </package>
        <package name="libexif-devel" arch="i586" version="0.6.16.2" release="32.2">
          <filename>libexif-devel-0.6.16.2-32.2.i586.rpm</filename>
        </package>
        <package name="libexif-devel" arch="ppc" version="0.6.16.2" release="32.2">
          <filename>libexif-devel-0.6.16.2-32.2.ppc.rpm</filename>
        </package>
        <package name="libexif-devel" arch="x86_64" version="0.6.16.2" release="32.2">
          <filename>libexif-devel-0.6.16.2-32.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a2b7e0494760ad16c72317531c6629b7"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="120">
  <id>gnome-web-photo</id>
  <title>gnome-web-photo: Fix crash in thumbnailing of web pages.</title>
  <release>openSUSE 11.0</release>
  <issued date="1217350865"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=395920" id="395920" title="bug number 395920" type="bugzilla"/>
  </references>
  <description>While thumbnailing web pages either in the file manager or
in a beagle search, a crash could happen because of
uninitialized data.
</description>
  <pkglist>
    <collection>
        <package name="gnome-web-photo" arch="i586" version="0.4" release="25.2">
          <filename>gnome-web-photo-0.4-25.2.i586.rpm</filename>
        </package>
        <package name="gnome-web-photo" arch="ppc" version="0.4" release="25.2">
          <filename>gnome-web-photo-0.4-25.2.ppc.rpm</filename>
        </package>
        <package name="gnome-web-photo" arch="x86_64" version="0.4" release="25.2">
          <filename>gnome-web-photo-0.4-25.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a07c632587d5d286b02d27a905aead2d"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="57">
  <id>fetchmsttfonts</id>
  <title>fetchmsttfonts: Install MS TrueType fonts</title>
  <release>openSUSE 11.0</release>
  <issued date="1212781997"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=394259" id="394259" title="bug number 394259" type="bugzilla"/>
  </references>
  <description>This update includes a script which will download and
install the  MS True Type Core fonts to your system and
make them available to the applications.
</description>
  <pkglist>
    <collection>
        <package name="cabextract" arch="i586" version="1.2" release="94.1">
          <filename>cabextract-1.2-94.1.i586.rpm</filename>
        </package>
        <package name="cabextract" arch="ppc" version="1.2" release="94.1">
          <filename>cabextract-1.2-94.1.ppc.rpm</filename>
        </package>
        <package name="cabextract" arch="x86_64" version="1.2" release="94.1">
          <filename>cabextract-1.2-94.1.x86_64.rpm</filename>
        </package>
        <package name="fetchmsttfonts" arch="noarch" version="11.0" release="2.1">
          <filename>fetchmsttfonts-11.0-2.1.noarch.rpm</filename>
        </package>
        <package name="fetchmsttfonts" arch="noarch" version="11.0" release="2.1">
          <filename>fetchmsttfonts-11.0-2.1.noarch.rpm</filename>
        </package>
        <package name="fetchmsttfonts" arch="noarch" version="11.0" release="2.1">
          <filename>fetchmsttfonts-11.0-2.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b58e61f46e4a667941bbeee634307227"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="132">
  <id>ConsoleKit</id>
  <title>ConsoleKit allows anyone to shutdown/restart the machine</title>
  <release>openSUSE 11.0</release>
  <issued date="1217861693"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=399476" id="399476" title="bug number 399476" type="bugzilla"/>
  </references>
  <description>ConsoleKit allows anyone to shutdown/restart the machine
due to missing PolicyKit support.
</description>
  <pkglist>
    <collection>
        <package name="ConsoleKit" arch="i586" version="0.2.10" release="14.2">
          <filename>ConsoleKit-0.2.10-14.2.i586.rpm</filename>
        </package>
        <package name="ConsoleKit" arch="ppc" version="0.2.10" release="14.2">
          <filename>ConsoleKit-0.2.10-14.2.ppc.rpm</filename>
        </package>
        <package name="ConsoleKit" arch="x86_64" version="0.2.10" release="14.2">
          <filename>ConsoleKit-0.2.10-14.2.x86_64.rpm</filename>
        </package>
        <package name="ConsoleKit-32bit" arch="x86_64" version="0.2.10" release="14.2">
          <filename>ConsoleKit-32bit-0.2.10-14.2.x86_64.rpm</filename>
        </package>
        <package name="ConsoleKit-64bit" arch="ppc" version="0.2.10" release="14.2">
          <filename>ConsoleKit-64bit-0.2.10-14.2.ppc.rpm</filename>
        </package>
        <package name="ConsoleKit-devel" arch="i586" version="0.2.10" release="14.2">
          <filename>ConsoleKit-devel-0.2.10-14.2.i586.rpm</filename>
        </package>
        <package name="ConsoleKit-devel" arch="ppc" version="0.2.10" release="14.2">
          <filename>ConsoleKit-devel-0.2.10-14.2.ppc.rpm</filename>
        </package>
        <package name="ConsoleKit-devel" arch="x86_64" version="0.2.10" release="14.2">
          <filename>ConsoleKit-devel-0.2.10-14.2.x86_64.rpm</filename>
        </package>
        <package name="ConsoleKit-x11" arch="i586" version="0.2.10" release="14.2">
          <filename>ConsoleKit-x11-0.2.10-14.2.i586.rpm</filename>
        </package>
        <package name="ConsoleKit-x11" arch="ppc" version="0.2.10" release="14.2">
          <filename>ConsoleKit-x11-0.2.10-14.2.ppc.rpm</filename>
        </package>
        <package name="ConsoleKit-x11" arch="x86_64" version="0.2.10" release="14.2">
          <filename>ConsoleKit-x11-0.2.10-14.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0d9d8e44da714c761c66f030894168e8"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="121">
  <id>inst-source-utils</id>
  <title>inst-source-utils: Update to latest product code release</title>
  <release>openSUSE 11.0</release>
  <issued date="1217350888"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=389819" id="389819" title="bug number 389819" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=357313" id="357313" title="bug number 357313" type="bugzilla"/>
  </references>
  <description>This patch includes the latest changes in all scripts to
create the current products like openSUSE 11.0.
</description>
  <pkglist>
    <collection>
        <package name="inst-source-utils" arch="noarch" version="2008.7.21" release="2.1">
          <filename>inst-source-utils-2008.7.21-2.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b54e6e067ac98275e4a197cc7d5750ce"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="127">
  <id>moodle</id>
  <title>moodle security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1217549876"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=411476" id="411476" title="bug number 411476" type="bugzilla"/>
  </references>
  <description>Moodle was prone to a Cross-Site scripting flaw which could
potentially be exploited to compromise arbitrary accounts
(CVE-2008-3326).
</description>
  <pkglist>
    <collection>
        <package name="moodle" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-af" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-af-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-ar" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-ar-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-be" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-be-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-bg" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-bg-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-bs" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-bs-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-ca" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-ca-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-cs" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-cs-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-da" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-da-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-de" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-de-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-de_du" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-de_du-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-el" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-el-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-es" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-es-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-et" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-et-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-eu" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-eu-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-fa" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-fa-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-fi" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-fi-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-fr" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-fr-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-ga" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-ga-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-gl" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-gl-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-he" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-he-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-hi" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-hi-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-hr" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-hr-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-hu" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-hu-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-id" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-id-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-is" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-is-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-it" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-it-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-ja" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-ja-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-ka" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-ka-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-km" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-km-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-kn" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-kn-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-ko" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-ko-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-lt" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-lt-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-lv" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-lv-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-mi_tn" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-mi_tn-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-ms" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-ms-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-nl" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-nl-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-nn" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-nn-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-no" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-no-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-pl" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-pl-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-pt" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-pt-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-ro" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-ro-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-ru" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-ru-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-sk" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-sk-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-sl" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-sl-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-so" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-so-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-sq" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-sq-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-sr" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-sr-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-sv" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-sv-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-th" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-th-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-tl" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-tl-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-tr" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-tr-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-uk" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-uk-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-vi" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-vi-1.9.0-24.2.noarch.rpm</filename>
        </package>
        <package name="moodle-zh_cn" arch="noarch" version="1.9.0" release="24.2">
          <filename>moodle-zh_cn-1.9.0-24.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cb8b141f823f8b8502e0964206d09377"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="129">
  <id>acl</id>
  <title>acl: Fix getfacl/setfacl -R to fully recurse into a directory structure</title>
  <release>openSUSE 11.0</release>
  <issued date="1217549792"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404075" id="404075" title="bug number 404075" type="bugzilla"/>
  </references>
  <description>Fix getfacl/setfacl -R to fully recurse into a directory
structure
</description>
  <pkglist>
    <collection>
        <package name="acl" arch="i586" version="2.2.47" release="6.1">
          <filename>acl-2.2.47-6.1.i586.rpm</filename>
        </package>
        <package name="acl" arch="ppc" version="2.2.47" release="6.1">
          <filename>acl-2.2.47-6.1.ppc.rpm</filename>
        </package>
        <package name="acl" arch="x86_64" version="2.2.47" release="6.1">
          <filename>acl-2.2.47-6.1.x86_64.rpm</filename>
        </package>
        <package name="libacl" arch="i586" version="2.2.47" release="6.1">
          <filename>libacl-2.2.47-6.1.i586.rpm</filename>
        </package>
        <package name="libacl" arch="ppc" version="2.2.47" release="6.1">
          <filename>libacl-2.2.47-6.1.ppc.rpm</filename>
        </package>
        <package name="libacl" arch="x86_64" version="2.2.47" release="6.1">
          <filename>libacl-2.2.47-6.1.x86_64.rpm</filename>
        </package>
        <package name="libacl-32bit" arch="x86_64" version="2.2.47" release="6.1">
          <filename>libacl-32bit-2.2.47-6.1.x86_64.rpm</filename>
        </package>
        <package name="libacl-64bit" arch="ppc" version="2.2.47" release="6.1">
          <filename>libacl-64bit-2.2.47-6.1.ppc.rpm</filename>
        </package>
        <package name="libacl-devel" arch="i586" version="2.2.47" release="6.1">
          <filename>libacl-devel-2.2.47-6.1.i586.rpm</filename>
        </package>
        <package name="libacl-devel" arch="ppc" version="2.2.47" release="6.1">
          <filename>libacl-devel-2.2.47-6.1.ppc.rpm</filename>
        </package>
        <package name="libacl-devel" arch="x86_64" version="2.2.47" release="6.1">
          <filename>libacl-devel-2.2.47-6.1.x86_64.rpm</filename>
        </package>
        <package name="libacl-devel-64bit" arch="ppc" version="2.2.47" release="6.1">
          <filename>libacl-devel-64bit-2.2.47-6.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="062c0be02737d6e47e79dae7d848c869"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="136">
  <id>yast2-add-on-creator</id>
  <title>yast2 addon creator: Fix for creating consistent metadata</title>
  <release>openSUSE 11.0</release>
  <issued date="1217950534"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=412591" id="412591" title="bug number 412591" type="bugzilla"/>
  </references>
  <description>YaST Add-On Creator signs RPM packages after generating the
metadata and thus it makes the RPM checksums invalid.
</description>
  <pkglist>
    <collection>
        <package name="yast2-add-on-creator" arch="noarch" version="2.16.14" release="0.1">
          <filename>yast2-add-on-creator-2.16.14-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6db76f83f76b783ce6d3d13df83bf7fa"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="135">
  <id>xorg-x11-driver-video</id>
  <title>x11: Fixes performance regression of previous intel driver update</title>
  <release>openSUSE 11.0</release>
  <issued date="1217948729"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=411183" id="411183" title="bug number 411183" type="bugzilla"/>
  </references>
  <description>The previous intel driver update resulted in an overall
performance regression by switching to EXA as acceleration
method. This update switches back to XAA as aceleration
method and fixes Xvideo when using XAA as acceleration
method.
</description>
  <pkglist>
    <collection>
        <package name="xorg-x11-driver-video" arch="i586" version="7.3" release="138.5">
          <filename>xorg-x11-driver-video-7.3-138.5.i586.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video" arch="ppc" version="7.3" release="138.5">
          <filename>xorg-x11-driver-video-7.3-138.5.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video" arch="x86_64" version="7.3" release="138.5">
          <filename>xorg-x11-driver-video-7.3-138.5.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video-32bit" arch="x86_64" version="7.3" release="138.5">
          <filename>xorg-x11-driver-video-32bit-7.3-138.5.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video-64bit" arch="ppc" version="7.3" release="138.5">
          <filename>xorg-x11-driver-video-64bit-7.3-138.5.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="176283a1baf5d6978b7d17266c04fc82"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="138">
  <id>esound</id>
  <title>Fixes for several PulseAudio-related problems in GNOME applications</title>
  <release>openSUSE 11.0</release>
  <issued date="1217955769"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=409884" id="409884" title="bug number 409884" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=409675" id="409675" title="bug number 409675" type="bugzilla"/>
  </references>
  <description>After 11.0 was released, lots of users started complaining
about problems when using PulseAudio. This set of fixes
covers some of them, like blocking GNOME applications in
some hardware, and a very obvious crash (for some people)
in pavucontrol that was fixed in the 0.9.6 release, which
was announced unfortunately after the freeze for openSUSE
11.0.
</description>
  <pkglist>
    <collection>
        <package name="esound" arch="i586" version="0.2.38" release="75.2">
          <filename>esound-0.2.38-75.2.i586.rpm</filename>
        </package>
        <package name="esound" arch="ppc" version="0.2.38" release="75.2">
          <filename>esound-0.2.38-75.2.ppc.rpm</filename>
        </package>
        <package name="esound" arch="x86_64" version="0.2.38" release="75.2">
          <filename>esound-0.2.38-75.2.x86_64.rpm</filename>
        </package>
        <package name="libesd-devel" arch="i586" version="0.2.38" release="75.2">
          <filename>libesd-devel-0.2.38-75.2.i586.rpm</filename>
        </package>
        <package name="libesd-devel" arch="ppc" version="0.2.38" release="75.2">
          <filename>libesd-devel-0.2.38-75.2.ppc.rpm</filename>
        </package>
        <package name="libesd-devel" arch="x86_64" version="0.2.38" release="75.2">
          <filename>libesd-devel-0.2.38-75.2.x86_64.rpm</filename>
        </package>
        <package name="libesd0" arch="i586" version="0.2.38" release="75.2">
          <filename>libesd0-0.2.38-75.2.i586.rpm</filename>
        </package>
        <package name="libesd0" arch="ppc" version="0.2.38" release="75.2">
          <filename>libesd0-0.2.38-75.2.ppc.rpm</filename>
        </package>
        <package name="libesd0" arch="x86_64" version="0.2.38" release="75.2">
          <filename>libesd0-0.2.38-75.2.x86_64.rpm</filename>
        </package>
        <package name="libesd0-32bit" arch="x86_64" version="0.2.38" release="75.2">
          <filename>libesd0-32bit-0.2.38-75.2.x86_64.rpm</filename>
        </package>
        <package name="libesd0-64bit" arch="ppc" version="0.2.38" release="75.2">
          <filename>libesd0-64bit-0.2.38-75.2.ppc.rpm</filename>
        </package>
        <package name="libgnome" arch="i586" version="2.22.0" release="30.2">
          <filename>libgnome-2.22.0-30.2.i586.rpm</filename>
        </package>
        <package name="libgnome" arch="ppc" version="2.22.0" release="30.2">
          <filename>libgnome-2.22.0-30.2.ppc.rpm</filename>
        </package>
        <package name="libgnome" arch="x86_64" version="2.22.0" release="30.2">
          <filename>libgnome-2.22.0-30.2.x86_64.rpm</filename>
        </package>
        <package name="libgnome-32bit" arch="x86_64" version="2.22.0" release="30.2">
          <filename>libgnome-32bit-2.22.0-30.2.x86_64.rpm</filename>
        </package>
        <package name="libgnome-64bit" arch="ppc" version="2.22.0" release="30.2">
          <filename>libgnome-64bit-2.22.0-30.2.ppc.rpm</filename>
        </package>
        <package name="libgnome-devel" arch="i586" version="2.22.0" release="30.2">
          <filename>libgnome-devel-2.22.0-30.2.i586.rpm</filename>
        </package>
        <package name="libgnome-devel" arch="ppc" version="2.22.0" release="30.2">
          <filename>libgnome-devel-2.22.0-30.2.ppc.rpm</filename>
        </package>
        <package name="libgnome-devel" arch="x86_64" version="2.22.0" release="30.2">
          <filename>libgnome-devel-2.22.0-30.2.x86_64.rpm</filename>
        </package>
        <package name="libgnome-doc" arch="i586" version="2.22.0" release="30.2">
          <filename>libgnome-doc-2.22.0-30.2.i586.rpm</filename>
        </package>
        <package name="libgnome-doc" arch="ppc" version="2.22.0" release="30.2">
          <filename>libgnome-doc-2.22.0-30.2.ppc.rpm</filename>
        </package>
        <package name="libgnome-doc" arch="x86_64" version="2.22.0" release="30.2">
          <filename>libgnome-doc-2.22.0-30.2.x86_64.rpm</filename>
        </package>
        <package name="libgnome-lang" arch="i586" version="2.22.0" release="30.2">
          <filename>libgnome-lang-2.22.0-30.2.i586.rpm</filename>
        </package>
        <package name="libgnome-lang" arch="ppc" version="2.22.0" release="30.2">
          <filename>libgnome-lang-2.22.0-30.2.ppc.rpm</filename>
        </package>
        <package name="libgnome-lang" arch="x86_64" version="2.22.0" release="30.2">
          <filename>libgnome-lang-2.22.0-30.2.x86_64.rpm</filename>
        </package>
        <package name="pavucontrol" arch="i586" version="0.9.6" release="4.1">
          <filename>pavucontrol-0.9.6-4.1.i586.rpm</filename>
        </package>
        <package name="pavucontrol" arch="ppc" version="0.9.6" release="4.1">
          <filename>pavucontrol-0.9.6-4.1.ppc.rpm</filename>
        </package>
        <package name="pavucontrol" arch="x86_64" version="0.9.6" release="4.1">
          <filename>pavucontrol-0.9.6-4.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6cd67fb667fc7a223cf22cedd1814888"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="137">
  <id>freeradius-server</id>
  <title>freeradius: Freeradius-server binds to random port</title>
  <release>openSUSE 11.0</release>
  <issued date="1217956422"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404243" id="404243" title="bug number 404243" type="bugzilla"/>
  </references>
  <description>The new version of freeradius-server which comes with
openSUSE 11.0 uses a new method to bind Port and
IP-Address. However configuration is broken, port number is
ignored and a random one is used everytime on start.
</description>
  <pkglist>
    <collection>
        <package name="freeradius-server" arch="i586" version="2.0.5" release="8.1">
          <filename>freeradius-server-2.0.5-8.1.i586.rpm</filename>
        </package>
        <package name="freeradius-server-devel" arch="i586" version="2.0.5" release="8.1">
          <filename>freeradius-server-devel-2.0.5-8.1.i586.rpm</filename>
        </package>
        <package name="freeradius-server-dialupadmin" arch="i586" version="2.0.5" release="8.1">
          <filename>freeradius-server-dialupadmin-2.0.5-8.1.i586.rpm</filename>
        </package>
        <package name="freeradius-server-doc" arch="i586" version="2.0.5" release="8.1">
          <filename>freeradius-server-doc-2.0.5-8.1.i586.rpm</filename>
        </package>
        <package name="freeradius-server-libs" arch="i586" version="2.0.5" release="8.1">
          <filename>freeradius-server-libs-2.0.5-8.1.i586.rpm</filename>
        </package>
        <package name="freeradius-server-utils" arch="i586" version="2.0.5" release="8.1">
          <filename>freeradius-server-utils-2.0.5-8.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f2eb582f1160b2929905e935fe47e322"!-->
<update status="stable" from="maint-coord@suse.de" type="optional" version="134">
  <id>64bit-openmotif22-libs</id>
  <title>64bit version of openmotif22-libs</title>
  <release>openSUSE 11.0</release>
  <issued date="1217522057"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407800" id="407800" title="bug number 407800" type="bugzilla"/>
  </references>
  <description>Currently there's no 64 bit openmotiff22-libs found in the
repos of opensuse 11.0. But as some software such as Gambit
or Unigraphics can not run without 64bit version of
LibXm.so.3 this (deprecated!) package is back.
</description>
  <pkglist>
    <collection>
        <package name="openmotif22-libs" arch="i586" version="2.2.4" release="149.1">
          <filename>openmotif22-libs-2.2.4-149.1.i586.rpm</filename>
        </package>
        <package name="openmotif22-libs" arch="x86_64" version="2.2.4" release="149.1">
          <filename>openmotif22-libs-2.2.4-149.1.x86_64.rpm</filename>
        </package>
        <package name="openmotif22-libs-32bit" arch="x86_64" version="2.2.4" release="149.1">
          <filename>openmotif22-libs-32bit-2.2.4-149.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="74cc3d906e7554b295e021cfbb7be468"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="366">
  <id>opera</id>
  <title>opera security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229546750"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459404" id="459404" title="bug number 459404" type="bugzilla"/>
  </references>
  <description>Opera 9.63 fixes the following security problems:

- Manipulating text input contents can allow execution of
  arbitrary code

- HTML parsing flaw can cause Opera to execute arbitrary
  code.

- Long hostnames in file: URLs can cause execution of
  arbitrary code.

- Script injection in feed preview can reveal contents of
  unrelated news feeds.

- Built-in XSLT templates can allow cross-site scripting.

- Fixed an issue that could reveal random data.

- SVG images embedded using &lt;img&gt; tags can no longer
  execute Java or plugin content.
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="9.63" release="1.1">
          <filename>opera-9.63-1.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="9.63" release="1.1">
          <filename>opera-9.63-1.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="9.63" release="1.1">
          <filename>opera-9.63-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="92f87732b23fe5e984e1523ef6d52a1b"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="140">
  <id>kerneloops</id>
  <title>fix for kerneloops init script</title>
  <release>openSUSE 11.0</release>
  <issued date="1218064061"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=401174" id="401174" title="bug number 401174" type="bugzilla"/>
  </references>
  <description>kerneloops system service fails to start properly
</description>
  <pkglist>
    <collection>
        <package name="kerneloops" arch="i586" version="0.11" release="19.2">
          <filename>kerneloops-0.11-19.2.i586.rpm</filename>
        </package>
        <package name="kerneloops-applet" arch="i586" version="0.11" release="19.2">
          <filename>kerneloops-applet-0.11-19.2.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="638eccb4311efca843f9620e49df0369"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="146">
  <id>pdns</id>
  <title>pdns-recursor: improved spoofing resistance</title>
  <release>openSUSE 11.0</release>
  <issued date="1218623446"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415369" id="415369" title="bug number 415369" type="bugzilla"/>
  </references>
  <description>This update of pdns offers better spoofing resistance by
not ignoring invalid queries. (CVE-2008-3337)
</description>
  <pkglist>
    <collection>
        <package name="pdns" arch="i586" version="2.9.21" release="143.3">
          <filename>pdns-2.9.21-143.3.i586.rpm</filename>
        </package>
        <package name="pdns" arch="ppc" version="2.9.21" release="143.3">
          <filename>pdns-2.9.21-143.3.ppc.rpm</filename>
        </package>
        <package name="pdns" arch="x86_64" version="2.9.21" release="143.3">
          <filename>pdns-2.9.21-143.3.x86_64.rpm</filename>
        </package>
        <package name="pdns-backend-ldap" arch="i586" version="2.9.21" release="143.3">
          <filename>pdns-backend-ldap-2.9.21-143.3.i586.rpm</filename>
        </package>
        <package name="pdns-backend-ldap" arch="ppc" version="2.9.21" release="143.3">
          <filename>pdns-backend-ldap-2.9.21-143.3.ppc.rpm</filename>
        </package>
        <package name="pdns-backend-ldap" arch="x86_64" version="2.9.21" release="143.3">
          <filename>pdns-backend-ldap-2.9.21-143.3.x86_64.rpm</filename>
        </package>
        <package name="pdns-backend-mysql" arch="i586" version="2.9.21" release="143.3">
          <filename>pdns-backend-mysql-2.9.21-143.3.i586.rpm</filename>
        </package>
        <package name="pdns-backend-mysql" arch="ppc" version="2.9.21" release="143.3">
          <filename>pdns-backend-mysql-2.9.21-143.3.ppc.rpm</filename>
        </package>
        <package name="pdns-backend-mysql" arch="x86_64" version="2.9.21" release="143.3">
          <filename>pdns-backend-mysql-2.9.21-143.3.x86_64.rpm</filename>
        </package>
        <package name="pdns-backend-postgresql" arch="i586" version="2.9.21" release="143.3">
          <filename>pdns-backend-postgresql-2.9.21-143.3.i586.rpm</filename>
        </package>
        <package name="pdns-backend-postgresql" arch="ppc" version="2.9.21" release="143.3">
          <filename>pdns-backend-postgresql-2.9.21-143.3.ppc.rpm</filename>
        </package>
        <package name="pdns-backend-postgresql" arch="x86_64" version="2.9.21" release="143.3">
          <filename>pdns-backend-postgresql-2.9.21-143.3.x86_64.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite2" arch="i586" version="2.9.21" release="143.3">
          <filename>pdns-backend-sqlite2-2.9.21-143.3.i586.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite2" arch="ppc" version="2.9.21" release="143.3">
          <filename>pdns-backend-sqlite2-2.9.21-143.3.ppc.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite2" arch="x86_64" version="2.9.21" release="143.3">
          <filename>pdns-backend-sqlite2-2.9.21-143.3.x86_64.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite3" arch="i586" version="2.9.21" release="143.3">
          <filename>pdns-backend-sqlite3-2.9.21-143.3.i586.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite3" arch="ppc" version="2.9.21" release="143.3">
          <filename>pdns-backend-sqlite3-2.9.21-143.3.ppc.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite3" arch="x86_64" version="2.9.21" release="143.3">
          <filename>pdns-backend-sqlite3-2.9.21-143.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3ea73f18ea8e55bcc2626bbf75feb4ad"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="147">
  <id>dnsmasq</id>
  <title>dnsmasq: random UDP ports and random TRXID</title>
  <release>openSUSE 11.0</release>
  <issued date="1218630680"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=411761" id="411761" title="bug number 411761" type="bugzilla"/>
  </references>
  <description>This update of dnsmasq uses random UDP source ports and a
random TRXID now. (CVE-2008-1447)
</description>
  <pkglist>
    <collection>
        <package name="dnsmasq" arch="i586" version="2.45" release="0.1">
          <filename>dnsmasq-2.45-0.1.i586.rpm</filename>
        </package>
        <package name="dnsmasq" arch="ppc" version="2.45" release="0.1">
          <filename>dnsmasq-2.45-0.1.ppc.rpm</filename>
        </package>
        <package name="dnsmasq" arch="x86_64" version="2.45" release="0.1">
          <filename>dnsmasq-2.45-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="dc6c4ede98a83e45868508bd87a1f74d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="133">
  <id>postfix</id>
  <title>postfix: local privilege escalation (CVE-2008-2936 and CVE-2008-2937)</title>
  <release>openSUSE 11.0</release>
  <issued date="1217857471"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=409120" id="409120" title="bug number 409120" type="bugzilla"/>
  </references>
  <description>A (local) privilege escalation vulnerability as well as a
mailbox ownership problem has been fixed in postfix.
CVE-2008-2936 and CVE-2008-2937 have been assigned to this
problem.
</description>
  <pkglist>
    <collection>
        <package name="postfix" arch="i586" version="2.5.1" release="28.3">
          <filename>postfix-2.5.1-28.3.i586.rpm</filename>
        </package>
        <package name="postfix" arch="ppc" version="2.5.1" release="28.3">
          <filename>postfix-2.5.1-28.3.ppc.rpm</filename>
        </package>
        <package name="postfix" arch="x86_64" version="2.5.1" release="28.3">
          <filename>postfix-2.5.1-28.3.x86_64.rpm</filename>
        </package>
        <package name="postfix-devel" arch="i586" version="2.5.1" release="28.3">
          <filename>postfix-devel-2.5.1-28.3.i586.rpm</filename>
        </package>
        <package name="postfix-devel" arch="ppc" version="2.5.1" release="28.3">
          <filename>postfix-devel-2.5.1-28.3.ppc.rpm</filename>
        </package>
        <package name="postfix-devel" arch="x86_64" version="2.5.1" release="28.3">
          <filename>postfix-devel-2.5.1-28.3.x86_64.rpm</filename>
        </package>
        <package name="postfix-mysql" arch="i586" version="2.5.1" release="28.3">
          <filename>postfix-mysql-2.5.1-28.3.i586.rpm</filename>
        </package>
        <package name="postfix-mysql" arch="ppc" version="2.5.1" release="28.3">
          <filename>postfix-mysql-2.5.1-28.3.ppc.rpm</filename>
        </package>
        <package name="postfix-mysql" arch="x86_64" version="2.5.1" release="28.3">
          <filename>postfix-mysql-2.5.1-28.3.x86_64.rpm</filename>
        </package>
        <package name="postfix-postgresql" arch="i586" version="2.5.1" release="28.3">
          <filename>postfix-postgresql-2.5.1-28.3.i586.rpm</filename>
        </package>
        <package name="postfix-postgresql" arch="ppc" version="2.5.1" release="28.3">
          <filename>postfix-postgresql-2.5.1-28.3.ppc.rpm</filename>
        </package>
        <package name="postfix-postgresql" arch="x86_64" version="2.5.1" release="28.3">
          <filename>postfix-postgresql-2.5.1-28.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5f48cdc404b25daaf60fd931bcf4e204"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="143">
  <id>yast2-gtk</id>
  <title>yast2-gtk: Configuring printer through Yast</title>
  <release>openSUSE 11.0</release>
  <issued date="1218120981"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=394309" id="394309" title="bug number 394309" type="bugzilla"/>
  </references>
  <description>Configuring printer through Yast crashes when selecting the
basic settings dialog
</description>
  <pkglist>
    <collection>
        <package name="yast2-gtk" arch="i586" version="2.16.14" release="1.2">
          <filename>yast2-gtk-2.16.14-1.2.i586.rpm</filename>
        </package>
        <package name="yast2-gtk" arch="ppc" version="2.16.14" release="1.2">
          <filename>yast2-gtk-2.16.14-1.2.ppc.rpm</filename>
        </package>
        <package name="yast2-gtk" arch="x86_64" version="2.16.14" release="1.2">
          <filename>yast2-gtk-2.16.14-1.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c8b656554bbd35c8bfbd98a7d349cf23"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="128">
  <id>python</id>
  <title>python: multiple security vulnerabilities got fixed</title>
  <release>openSUSE 11.0</release>
  <issued date="1217552054"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406051" id="406051" title="bug number 406051" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=377090" id="377090" title="bug number 377090" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=379534" id="379534" title="bug number 379534" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=379121" id="379121" title="bug number 379121" type="bugzilla"/>
  </references>
  <description>This update of python fixes several security
vulnerabilities. (CVE-2008-1679,CVE-2008-1887,
CVE-2008-3143, CVE-2008-3142, CVE-2008-3144, CVE-2008-2315,
CVE-2008-2316)
</description>
  <pkglist>
    <collection>
        <package name="python" arch="i586" version="2.5.2" release="26.2">
          <filename>python-2.5.2-26.2.i586.rpm</filename>
        </package>
        <package name="python" arch="ppc" version="2.5.2" release="26.2">
          <filename>python-2.5.2-26.2.ppc.rpm</filename>
        </package>
        <package name="python" arch="x86_64" version="2.5.2" release="26.2">
          <filename>python-2.5.2-26.2.x86_64.rpm</filename>
        </package>
        <package name="python-32bit" arch="x86_64" version="2.5.2" release="26.2">
          <filename>python-32bit-2.5.2-26.2.x86_64.rpm</filename>
        </package>
        <package name="python-64bit" arch="ppc" version="2.5.2" release="26.2">
          <filename>python-64bit-2.5.2-26.2.ppc.rpm</filename>
        </package>
        <package name="python-curses" arch="i586" version="2.5.2" release="26.2">
          <filename>python-curses-2.5.2-26.2.i586.rpm</filename>
        </package>
        <package name="python-curses" arch="ppc" version="2.5.2" release="26.2">
          <filename>python-curses-2.5.2-26.2.ppc.rpm</filename>
        </package>
        <package name="python-curses" arch="x86_64" version="2.5.2" release="26.2">
          <filename>python-curses-2.5.2-26.2.x86_64.rpm</filename>
        </package>
        <package name="python-demo" arch="i586" version="2.5.2" release="26.2">
          <filename>python-demo-2.5.2-26.2.i586.rpm</filename>
        </package>
        <package name="python-demo" arch="ppc" version="2.5.2" release="26.2">
          <filename>python-demo-2.5.2-26.2.ppc.rpm</filename>
        </package>
        <package name="python-demo" arch="x86_64" version="2.5.2" release="26.2">
          <filename>python-demo-2.5.2-26.2.x86_64.rpm</filename>
        </package>
        <package name="python-devel" arch="i586" version="2.5.2" release="26.2">
          <filename>python-devel-2.5.2-26.2.i586.rpm</filename>
        </package>
        <package name="python-devel" arch="ppc" version="2.5.2" release="26.2">
          <filename>python-devel-2.5.2-26.2.ppc.rpm</filename>
        </package>
        <package name="python-devel" arch="x86_64" version="2.5.2" release="26.2">
          <filename>python-devel-2.5.2-26.2.x86_64.rpm</filename>
        </package>
        <package name="python-gdbm" arch="i586" version="2.5.2" release="26.2">
          <filename>python-gdbm-2.5.2-26.2.i586.rpm</filename>
        </package>
        <package name="python-gdbm" arch="ppc" version="2.5.2" release="26.2">
          <filename>python-gdbm-2.5.2-26.2.ppc.rpm</filename>
        </package>
        <package name="python-gdbm" arch="x86_64" version="2.5.2" release="26.2">
          <filename>python-gdbm-2.5.2-26.2.x86_64.rpm</filename>
        </package>
        <package name="python-idle" arch="i586" version="2.5.2" release="26.2">
          <filename>python-idle-2.5.2-26.2.i586.rpm</filename>
        </package>
        <package name="python-idle" arch="ppc" version="2.5.2" release="26.2">
          <filename>python-idle-2.5.2-26.2.ppc.rpm</filename>
        </package>
        <package name="python-idle" arch="x86_64" version="2.5.2" release="26.2">
          <filename>python-idle-2.5.2-26.2.x86_64.rpm</filename>
        </package>
        <package name="python-tk" arch="i586" version="2.5.2" release="26.2">
          <filename>python-tk-2.5.2-26.2.i586.rpm</filename>
        </package>
        <package name="python-tk" arch="ppc" version="2.5.2" release="26.2">
          <filename>python-tk-2.5.2-26.2.ppc.rpm</filename>
        </package>
        <package name="python-tk" arch="x86_64" version="2.5.2" release="26.2">
          <filename>python-tk-2.5.2-26.2.x86_64.rpm</filename>
        </package>
        <package name="python-xml" arch="i586" version="2.5.2" release="26.2">
          <filename>python-xml-2.5.2-26.2.i586.rpm</filename>
        </package>
        <package name="python-xml" arch="ppc" version="2.5.2" release="26.2">
          <filename>python-xml-2.5.2-26.2.ppc.rpm</filename>
        </package>
        <package name="python-xml" arch="x86_64" version="2.5.2" release="26.2">
          <filename>python-xml-2.5.2-26.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="03e5b36ba668b1a9bbf9f70a7e23d36f"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="144">
  <id>NetworkManager-kde</id>
  <title>KNetworkManager online update</title>
  <release>openSUSE 11.0</release>
  <issued date="1218540186"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405631" id="405631" title="bug number 405631" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=401773" id="401773" title="bug number 401773" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402493" id="402493" title="bug number 402493" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=403816" id="403816" title="bug number 403816" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404117" id="404117" title="bug number 404117" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404896" id="404896" title="bug number 404896" type="bugzilla"/>
  </references>
  <description>* Fix crash during reconnect after s2ram
* Add tooltips again
* Allow VPN disconnection
* Fix disconnecting UMTS connections
</description>
  <pkglist>
    <collection>
        <package name="NetworkManager-kde" arch="i586" version="0.7r821737" release="0.3">
          <filename>NetworkManager-kde-0.7r821737-0.3.i586.rpm</filename>
        </package>
        <package name="NetworkManager-kde" arch="ppc" version="0.7r821737" release="0.3">
          <filename>NetworkManager-kde-0.7r821737-0.3.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-kde" arch="x86_64" version="0.7r821737" release="0.3">
          <filename>NetworkManager-kde-0.7r821737-0.3.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-kde-devel" arch="i586" version="0.7r821737" release="0.3">
          <filename>NetworkManager-kde-devel-0.7r821737-0.3.i586.rpm</filename>
        </package>
        <package name="NetworkManager-kde-devel" arch="ppc" version="0.7r821737" release="0.3">
          <filename>NetworkManager-kde-devel-0.7r821737-0.3.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-kde-devel" arch="x86_64" version="0.7r821737" release="0.3">
          <filename>NetworkManager-kde-devel-0.7r821737-0.3.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-openvpn-kde" arch="i586" version="0.7r821737" release="0.3">
          <filename>NetworkManager-openvpn-kde-0.7r821737-0.3.i586.rpm</filename>
        </package>
        <package name="NetworkManager-openvpn-kde" arch="ppc" version="0.7r821737" release="0.3">
          <filename>NetworkManager-openvpn-kde-0.7r821737-0.3.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-openvpn-kde" arch="x86_64" version="0.7r821737" release="0.3">
          <filename>NetworkManager-openvpn-kde-0.7r821737-0.3.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-vpnc-kde" arch="i586" version="0.7r821737" release="0.3">
          <filename>NetworkManager-vpnc-kde-0.7r821737-0.3.i586.rpm</filename>
        </package>
        <package name="NetworkManager-vpnc-kde" arch="ppc" version="0.7r821737" release="0.3">
          <filename>NetworkManager-vpnc-kde-0.7r821737-0.3.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-vpnc-kde" arch="x86_64" version="0.7r821737" release="0.3">
          <filename>NetworkManager-vpnc-kde-0.7r821737-0.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d8de51a7a7bf95ef8e9ed9002c124bc5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="157">
  <id>libwsman-devel</id>
  <title>openwsman: fixing multiple security issues</title>
  <release>openSUSE 11.0</release>
  <issued date="1218693510"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=373693" id="373693" title="bug number 373693" type="bugzilla"/>
  </references>
  <description>This update of openwsman fixes several security
vulnerabilities found by the SuSE Security-Team:
- remote buffer overflows while decoding the HTTP basic
  authentication header (CVE-2008-2234)
- a possible SSL session replay attack affecting the client
  (depending on the configuration) (CVE-2008-2233)
</description>
  <pkglist>
    <collection>
        <package name="libwsman-devel" arch="i586" version="2.0.0" release="3.3">
          <filename>libwsman-devel-2.0.0-3.3.i586.rpm</filename>
        </package>
        <package name="libwsman-devel" arch="ppc" version="2.0.0" release="3.3">
          <filename>libwsman-devel-2.0.0-3.3.ppc.rpm</filename>
        </package>
        <package name="libwsman-devel" arch="x86_64" version="2.0.0" release="3.3">
          <filename>libwsman-devel-2.0.0-3.3.x86_64.rpm</filename>
        </package>
        <package name="libwsman1" arch="i586" version="2.0.0" release="3.3">
          <filename>libwsman1-2.0.0-3.3.i586.rpm</filename>
        </package>
        <package name="libwsman1" arch="ppc" version="2.0.0" release="3.3">
          <filename>libwsman1-2.0.0-3.3.ppc.rpm</filename>
        </package>
        <package name="libwsman1" arch="x86_64" version="2.0.0" release="3.3">
          <filename>libwsman1-2.0.0-3.3.x86_64.rpm</filename>
        </package>
        <package name="openwsman-client" arch="i586" version="2.0.0" release="3.3">
          <filename>openwsman-client-2.0.0-3.3.i586.rpm</filename>
        </package>
        <package name="openwsman-client" arch="ppc" version="2.0.0" release="3.3">
          <filename>openwsman-client-2.0.0-3.3.ppc.rpm</filename>
        </package>
        <package name="openwsman-client" arch="x86_64" version="2.0.0" release="3.3">
          <filename>openwsman-client-2.0.0-3.3.x86_64.rpm</filename>
        </package>
        <package name="openwsman-python" arch="i586" version="2.0.0" release="3.3">
          <filename>openwsman-python-2.0.0-3.3.i586.rpm</filename>
        </package>
        <package name="openwsman-ruby" arch="i586" version="2.0.0" release="3.3">
          <filename>openwsman-ruby-2.0.0-3.3.i586.rpm</filename>
        </package>
        <package name="openwsman-server" arch="i586" version="2.0.0" release="3.3">
          <filename>openwsman-server-2.0.0-3.3.i586.rpm</filename>
        </package>
        <package name="openwsman-server" arch="ppc" version="2.0.0" release="3.3">
          <filename>openwsman-server-2.0.0-3.3.ppc.rpm</filename>
        </package>
        <package name="openwsman-server" arch="x86_64" version="2.0.0" release="3.3">
          <filename>openwsman-server-2.0.0-3.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9c9b5c83e5ae93eeed2887de78a0c0fe"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="151">
  <id>mailman</id>
  <title>mailman: cross-site-scripting bug</title>
  <release>openSUSE 11.0</release>
  <issued date="1218687776"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=359182" id="359182" title="bug number 359182" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=409352" id="409352" title="bug number 409352" type="bugzilla"/>
  </references>
  <description>This update of mailman fixes a cross-site-scripting bug
(CVE-2008-0564) and a mistake in translation.
</description>
  <pkglist>
    <collection>
        <package name="mailman" arch="i586" version="2.1.9" release="159.2">
          <filename>mailman-2.1.9-159.2.i586.rpm</filename>
        </package>
        <package name="mailman" arch="ppc" version="2.1.9" release="159.2">
          <filename>mailman-2.1.9-159.2.ppc.rpm</filename>
        </package>
        <package name="mailman" arch="x86_64" version="2.1.9" release="159.2">
          <filename>mailman-2.1.9-159.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8e2d9589bcc85d88502a19667437e254"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="123">
  <id>ruby</id>
  <title>ruby: fix for several security vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1217351329"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=368618" id="368618" title="bug number 368618" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=383299" id="383299" title="bug number 383299" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=397346" id="397346" title="bug number 397346" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405339" id="405339" title="bug number 405339" type="bugzilla"/>
  </references>
  <description>This update of ruby fixes: 
- a possible information leakage (CVE-2008-1145) 
- a directory traversal bug (CVE-2008-1891) in WEBrick 
- various memory corruptions and integer overflows in array
  and string handling (CVE-2008-2662, CVE-2008-2663,
  CVE-2008-2664, CVE-2008-2725, CVE-2008-2726,
  CVE-2008-2727, CVE-2008-2728)
</description>
  <pkglist>
    <collection>
        <package name="ruby" arch="i586" version="1.8.6.p114" release="6.2">
          <filename>ruby-1.8.6.p114-6.2.i586.rpm</filename>
        </package>
        <package name="ruby" arch="ppc" version="1.8.6.p114" release="6.2">
          <filename>ruby-1.8.6.p114-6.2.ppc.rpm</filename>
        </package>
        <package name="ruby" arch="x86_64" version="1.8.6.p114" release="6.2">
          <filename>ruby-1.8.6.p114-6.2.x86_64.rpm</filename>
        </package>
        <package name="ruby-devel" arch="i586" version="1.8.6.p114" release="6.2">
          <filename>ruby-devel-1.8.6.p114-6.2.i586.rpm</filename>
        </package>
        <package name="ruby-devel" arch="ppc" version="1.8.6.p114" release="6.2">
          <filename>ruby-devel-1.8.6.p114-6.2.ppc.rpm</filename>
        </package>
        <package name="ruby-devel" arch="x86_64" version="1.8.6.p114" release="6.2">
          <filename>ruby-devel-1.8.6.p114-6.2.x86_64.rpm</filename>
        </package>
        <package name="ruby-doc-html" arch="i586" version="1.8.6.p114" release="6.2">
          <filename>ruby-doc-html-1.8.6.p114-6.2.i586.rpm</filename>
        </package>
        <package name="ruby-doc-html" arch="ppc" version="1.8.6.p114" release="6.2">
          <filename>ruby-doc-html-1.8.6.p114-6.2.ppc.rpm</filename>
        </package>
        <package name="ruby-doc-html" arch="x86_64" version="1.8.6.p114" release="6.2">
          <filename>ruby-doc-html-1.8.6.p114-6.2.x86_64.rpm</filename>
        </package>
        <package name="ruby-doc-ri" arch="i586" version="1.8.6.p114" release="6.2">
          <filename>ruby-doc-ri-1.8.6.p114-6.2.i586.rpm</filename>
        </package>
        <package name="ruby-doc-ri" arch="ppc" version="1.8.6.p114" release="6.2">
          <filename>ruby-doc-ri-1.8.6.p114-6.2.ppc.rpm</filename>
        </package>
        <package name="ruby-doc-ri" arch="x86_64" version="1.8.6.p114" release="6.2">
          <filename>ruby-doc-ri-1.8.6.p114-6.2.x86_64.rpm</filename>
        </package>
        <package name="ruby-examples" arch="i586" version="1.8.6.p114" release="6.2">
          <filename>ruby-examples-1.8.6.p114-6.2.i586.rpm</filename>
        </package>
        <package name="ruby-examples" arch="ppc" version="1.8.6.p114" release="6.2">
          <filename>ruby-examples-1.8.6.p114-6.2.ppc.rpm</filename>
        </package>
        <package name="ruby-examples" arch="x86_64" version="1.8.6.p114" release="6.2">
          <filename>ruby-examples-1.8.6.p114-6.2.x86_64.rpm</filename>
        </package>
        <package name="ruby-test-suite" arch="i586" version="1.8.6.p114" release="6.2">
          <filename>ruby-test-suite-1.8.6.p114-6.2.i586.rpm</filename>
        </package>
        <package name="ruby-test-suite" arch="ppc" version="1.8.6.p114" release="6.2">
          <filename>ruby-test-suite-1.8.6.p114-6.2.ppc.rpm</filename>
        </package>
        <package name="ruby-test-suite" arch="x86_64" version="1.8.6.p114" release="6.2">
          <filename>ruby-test-suite-1.8.6.p114-6.2.x86_64.rpm</filename>
        </package>
        <package name="ruby-tk" arch="i586" version="1.8.6.p114" release="6.2">
          <filename>ruby-tk-1.8.6.p114-6.2.i586.rpm</filename>
        </package>
        <package name="ruby-tk" arch="ppc" version="1.8.6.p114" release="6.2">
          <filename>ruby-tk-1.8.6.p114-6.2.ppc.rpm</filename>
        </package>
        <package name="ruby-tk" arch="x86_64" version="1.8.6.p114" release="6.2">
          <filename>ruby-tk-1.8.6.p114-6.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="29bd7c22af0e0a0ab10d8d69e6fbc1d1"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="153">
  <id>nfs-client</id>
  <title>nfs-utils: Fix non-critical bugs in mount.nfs and sm-notify.</title>
  <release>openSUSE 11.0</release>
  <issued date="1218759967"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404170" id="404170" title="bug number 404170" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405081" id="405081" title="bug number 405081" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=397078" id="397078" title="bug number 397078" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=410802" id="410802" title="bug number 410802" type="bugzilla"/>
  </references>
  <description>Fix bugs with mount.nfs: mount would fail incorrectly if
server does not listen on UDP mount would retry incorrectly
if server reported &quot;access denied&quot; Fix excessive timeout
problem with sm-notify if network not connected, sm-notify
would slow the boot process excessively. Fix nfsstat to
report on nfsv4 mounts as well as nfs mounts.
</description>
  <pkglist>
    <collection>
        <package name="nfs-client" arch="i586" version="1.1.2" release="9.2">
          <filename>nfs-client-1.1.2-9.2.i586.rpm</filename>
        </package>
        <package name="nfs-client" arch="ppc" version="1.1.2" release="9.2">
          <filename>nfs-client-1.1.2-9.2.ppc.rpm</filename>
        </package>
        <package name="nfs-client" arch="x86_64" version="1.1.2" release="9.2">
          <filename>nfs-client-1.1.2-9.2.x86_64.rpm</filename>
        </package>
        <package name="nfs-doc" arch="i586" version="1.1.2" release="9.2">
          <filename>nfs-doc-1.1.2-9.2.i586.rpm</filename>
        </package>
        <package name="nfs-doc" arch="ppc" version="1.1.2" release="9.2">
          <filename>nfs-doc-1.1.2-9.2.ppc.rpm</filename>
        </package>
        <package name="nfs-doc" arch="x86_64" version="1.1.2" release="9.2">
          <filename>nfs-doc-1.1.2-9.2.x86_64.rpm</filename>
        </package>
        <package name="nfs-kernel-server" arch="i586" version="1.1.2" release="9.2">
          <filename>nfs-kernel-server-1.1.2-9.2.i586.rpm</filename>
        </package>
        <package name="nfs-kernel-server" arch="ppc" version="1.1.2" release="9.2">
          <filename>nfs-kernel-server-1.1.2-9.2.ppc.rpm</filename>
        </package>
        <package name="nfs-kernel-server" arch="x86_64" version="1.1.2" release="9.2">
          <filename>nfs-kernel-server-1.1.2-9.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="56fd06e9a3f73c74f0e0329d8fcb9954"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="152">
  <id>release-notes-openSUSE</id>
  <title>Update Some Translations</title>
  <release>openSUSE 11.0</release>
  <issued date="1218759977"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=227392" id="227392" title="bug number 227392" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404073" id="404073" title="bug number 404073" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398247" id="398247" title="bug number 398247" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=399561" id="399561" title="bug number 399561" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400382" id="400382" title="bug number 400382" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=401882" id="401882" title="bug number 401882" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402551" id="402551" title="bug number 402551" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402885" id="402885" title="bug number 402885" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=403716" id="403716" title="bug number 403716" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407285" id="407285" title="bug number 407285" type="bugzilla"/>
  </references>
  <description>Update of some YaST and desktop translation.
</description>
  <pkglist>
    <collection>
        <package name="release-notes-openSUSE" arch="noarch" version="11.0.7" release="0.1">
          <filename>release-notes-openSUSE-11.0.7-0.1.noarch.rpm</filename>
        </package>
        <package name="translation-update-es" arch="noarch" version="10.3" release="27.2">
          <filename>translation-update-es-10.3-27.2.noarch.rpm</filename>
        </package>
        <package name="yast2-trans-de" arch="noarch" version="2.16.17" release="0.1">
          <filename>yast2-trans-de-2.16.17-0.1.noarch.rpm</filename>
        </package>
        <package name="yast2-trans-fi" arch="noarch" version="2.16.17" release="0.1">
          <filename>yast2-trans-fi-2.16.17-0.1.noarch.rpm</filename>
        </package>
        <package name="yast2-trans-pl" arch="noarch" version="2.16.12" release="0.1">
          <filename>yast2-trans-pl-2.16.12-0.1.noarch.rpm</filename>
        </package>
        <package name="yast2-trans-zh_TW" arch="noarch" version="2.16.15" release="0.1">
          <filename>yast2-trans-zh_TW-2.16.15-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7a3b4b70b2c9cce8fb9ee8798c7c48cf"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="154">
  <id>NetworkManager</id>
  <title>networkmanager: fix for UMTS dialup via NM</title>
  <release>openSUSE 11.0</release>
  <issued date="1218700281"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=392598" id="392598" title="bug number 392598" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=266215" id="266215" title="bug number 266215" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=394731" id="394731" title="bug number 394731" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=378802" id="378802" title="bug number 378802" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=394598" id="394598" title="bug number 394598" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=381769" id="381769" title="bug number 381769" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404967" id="404967" title="bug number 404967" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=365597" id="365597" title="bug number 365597" type="bugzilla"/>
  </references>
  <description>Fix multiple issues with NetworkManager:

UMTS dialup via NM does not set default route nor
nameservers. Wireless Access is not working on Vienna
Airport. NetworkManager / UMTS: cannot enter PIN code with
Novatel XU870. NetworkManager uses the wrong config with
YaST configured settings. NetworkManager leaves pppd
running after restart. NetworkManager can't connect with
Nortel VPN. Can not add new GSM/CDMA configurations.
nm-applet DHCP animation looks odd.
</description>
  <pkglist>
    <collection>
        <package name="NetworkManager" arch="i586" version="0.7.0.r3685" release="7.2">
          <filename>NetworkManager-0.7.0.r3685-7.2.i586.rpm</filename>
        </package>
        <package name="NetworkManager" arch="ppc" version="0.7.0.r3685" release="7.2">
          <filename>NetworkManager-0.7.0.r3685-7.2.ppc.rpm</filename>
        </package>
        <package name="NetworkManager" arch="x86_64" version="0.7.0.r3685" release="7.2">
          <filename>NetworkManager-0.7.0.r3685-7.2.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-devel" arch="i586" version="0.7.0.r3685" release="7.2">
          <filename>NetworkManager-devel-0.7.0.r3685-7.2.i586.rpm</filename>
        </package>
        <package name="NetworkManager-devel" arch="ppc" version="0.7.0.r3685" release="7.2">
          <filename>NetworkManager-devel-0.7.0.r3685-7.2.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-devel" arch="x86_64" version="0.7.0.r3685" release="7.2">
          <filename>NetworkManager-devel-0.7.0.r3685-7.2.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-glib" arch="i586" version="0.7.0.r3685" release="7.2">
          <filename>NetworkManager-glib-0.7.0.r3685-7.2.i586.rpm</filename>
        </package>
        <package name="NetworkManager-glib" arch="ppc" version="0.7.0.r3685" release="7.2">
          <filename>NetworkManager-glib-0.7.0.r3685-7.2.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-glib" arch="x86_64" version="0.7.0.r3685" release="7.2">
          <filename>NetworkManager-glib-0.7.0.r3685-7.2.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-gnome" arch="i586" version="0.7.0.r729" release="7.2">
          <filename>NetworkManager-gnome-0.7.0.r729-7.2.i586.rpm</filename>
        </package>
        <package name="NetworkManager-gnome" arch="ppc" version="0.7.0.r729" release="7.2">
          <filename>NetworkManager-gnome-0.7.0.r729-7.2.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-gnome" arch="x86_64" version="0.7.0.r729" release="7.2">
          <filename>NetworkManager-gnome-0.7.0.r729-7.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="dccc0f34bdeba4184d5d71319c39e271"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="160">
  <id>opera</id>
  <title>opera: version upgrade to 9.52</title>
  <release>openSUSE 11.0</release>
  <issued date="1219252376"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=418683" id="418683" title="bug number 418683" type="bugzilla"/>
  </references>
  <description>This is a version upgrade for opera to version 9.52 to fix
possible security vulnerabilities.
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="9.52" release="0.1">
          <filename>opera-9.52-0.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="9.52" release="0.1">
          <filename>opera-9.52-0.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="9.52" release="0.1">
          <filename>opera-9.52-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="dccba2fa989d299ee08fa9b07530c2a9"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="166">
  <id>libneon-devel</id>
  <title>neon: NULL pointer dereference in the Digest authentication</title>
  <release>openSUSE 11.0</release>
  <issued date="1219341183"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=419075" id="419075" title="bug number 419075" type="bugzilla"/>
  </references>
  <description>This update of neon fixes a NULL pointer dereference in the
digest authentication code. (CVE-2008-3746)
</description>
  <pkglist>
    <collection>
        <package name="libneon-devel" arch="i586" version="0.28.2" release="17.2">
          <filename>libneon-devel-0.28.2-17.2.i586.rpm</filename>
        </package>
        <package name="libneon-devel" arch="ppc" version="0.28.2" release="17.2">
          <filename>libneon-devel-0.28.2-17.2.ppc.rpm</filename>
        </package>
        <package name="libneon-devel" arch="x86_64" version="0.28.2" release="17.2">
          <filename>libneon-devel-0.28.2-17.2.x86_64.rpm</filename>
        </package>
        <package name="libneon27" arch="i586" version="0.28.2" release="17.2">
          <filename>libneon27-0.28.2-17.2.i586.rpm</filename>
        </package>
        <package name="libneon27" arch="ppc" version="0.28.2" release="17.2">
          <filename>libneon27-0.28.2-17.2.ppc.rpm</filename>
        </package>
        <package name="libneon27" arch="x86_64" version="0.28.2" release="17.2">
          <filename>libneon27-0.28.2-17.2.x86_64.rpm</filename>
        </package>
        <package name="libneon27-32bit" arch="x86_64" version="0.28.2" release="17.2">
          <filename>libneon27-32bit-0.28.2-17.2.x86_64.rpm</filename>
        </package>
        <package name="libneon27-64bit" arch="ppc" version="0.28.2" release="17.2">
          <filename>libneon27-64bit-0.28.2-17.2.ppc.rpm</filename>
        </package>
        <package name="neon" arch="i586" version="0.28.2" release="17.2">
          <filename>neon-0.28.2-17.2.i586.rpm</filename>
        </package>
        <package name="neon" arch="ppc" version="0.28.2" release="17.2">
          <filename>neon-0.28.2-17.2.ppc.rpm</filename>
        </package>
        <package name="neon" arch="x86_64" version="0.28.2" release="17.2">
          <filename>neon-0.28.2-17.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8bf75a0d68acecd2887398f1ed38be88"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="163">
  <id>rxvt-unicode</id>
  <title>rxvt-unicode security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1218685476"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415661" id="415661" title="bug number 415661" type="bugzilla"/>
  </references>
  <description>It was possible to open a terminal on :0 when the
environment variable was not set. This could be exploited
by local users to hijack X11 connections (CVE-2008-1142).
</description>
  <pkglist>
    <collection>
        <package name="rxvt-unicode" arch="i586" version="9.02" release="14.2">
          <filename>rxvt-unicode-9.02-14.2.i586.rpm</filename>
        </package>
        <package name="rxvt-unicode" arch="ppc" version="9.02" release="14.2">
          <filename>rxvt-unicode-9.02-14.2.ppc.rpm</filename>
        </package>
        <package name="rxvt-unicode" arch="x86_64" version="9.02" release="14.2">
          <filename>rxvt-unicode-9.02-14.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="41ad61a3b96e3c5933083d44f06d5ac4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="101">
  <id>perl</id>
  <title>perl security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1216133577"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=372331" id="372331" title="bug number 372331" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=381901" id="381901" title="bug number 381901" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402660" id="402660" title="bug number 402660" type="bugzilla"/>
  </references>
  <description>Specially crafted regular expressions could crash perl
(CVE-2008-1927).

Insufficient symlink checks in the File::Path could result
in wrong file permissions (CVE-2008-2827).

Additionally problem in the CGI module was fixed that could
result in an endless loop if uploads were cancelled.
</description>
  <pkglist>
    <collection>
        <package name="perl" arch="i586" version="5.10.0" release="37.4">
          <filename>perl-5.10.0-37.4.i586.rpm</filename>
        </package>
        <package name="perl" arch="ppc" version="5.10.0" release="37.4">
          <filename>perl-5.10.0-37.4.ppc.rpm</filename>
        </package>
        <package name="perl" arch="x86_64" version="5.10.0" release="37.4">
          <filename>perl-5.10.0-37.4.x86_64.rpm</filename>
        </package>
        <package name="perl-32bit" arch="x86_64" version="5.10.0" release="37.4">
          <filename>perl-32bit-5.10.0-37.4.x86_64.rpm</filename>
        </package>
        <package name="perl-64bit" arch="ppc" version="5.10.0" release="37.4">
          <filename>perl-64bit-5.10.0-37.4.ppc.rpm</filename>
        </package>
        <package name="perl-base" arch="i586" version="5.10.0" release="37.4">
          <filename>perl-base-5.10.0-37.4.i586.rpm</filename>
        </package>
        <package name="perl-base" arch="ppc" version="5.10.0" release="37.4">
          <filename>perl-base-5.10.0-37.4.ppc.rpm</filename>
        </package>
        <package name="perl-base" arch="x86_64" version="5.10.0" release="37.4">
          <filename>perl-base-5.10.0-37.4.x86_64.rpm</filename>
        </package>
        <package name="perl-doc" arch="i586" version="5.10.0" release="37.4">
          <filename>perl-doc-5.10.0-37.4.i586.rpm</filename>
        </package>
        <package name="perl-doc" arch="ppc" version="5.10.0" release="37.4">
          <filename>perl-doc-5.10.0-37.4.ppc.rpm</filename>
        </package>
        <package name="perl-doc" arch="x86_64" version="5.10.0" release="37.4">
          <filename>perl-doc-5.10.0-37.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="619e2632e70e459017e1f83140ed9d5b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="96">
  <id>java-1_5_0-sun</id>
  <title>java-1_5_0-sun: Security update to 1.5.0 update 16</title>
  <release>openSUSE 11.0</release>
  <issued date="1216084351"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407935" id="407935" title="bug number 407935" type="bugzilla"/>
  </references>
  <description>Sun Java was updated to 1.5.0u16 to fix following security
vulnerabilities:

CVE-2008-3115: Secure Static Versioning in Sun Java JDK and
JRE 6 Update 6 and earlier, and 5.0 Update 6 through 15,
does not properly prevent execution of applets on older JRE
releases, which might allow remote attackers to exploit
vulnerabilities in these older releases.

CVE-2008-3114: Unspecified vulnerability in Sun Java Web
Start in JDK and JRE 6 before Update 7, JDK and JRE 5.0
before Update 16, and SDK and JRE 1.4.x before 1.4.2_18
allows context-dependent attackers to obtain sensitive
information (the cache location) via an untrusted
application, aka CR 6704074. 

CVE-2008-3113: Unspecified vulnerability in Sun Java Web
Start in JDK and JRE 5.0 before Update 16 and SDK and JRE
1.4.x before 1.4.2_18 allows remote attackers to create or
delete arbitrary files via an untrusted application, aka CR
6704077. 

CVE-2008-3112: Unspecified vulnerability in Sun Java Web
Start in JDK and JRE 6 before Update 7, JDK and JRE 5.0
before Update 16, and SDK and JRE 1.4.x before 1.4.2_18
allows remote attackers to create arbitrary files via an
untrusted application, aka CR 6703909. 

CVE-2008-3111: Multiple buffer overflows in Sun Java Web
Start in JDK and JRE 6 before Update 4, JDK and JRE 5.0
before Update 16, and SDK and JRE 1.4.x before 1.4.2_18
allow context-dependent attackers to gain privileges via an
untrusted application, as demonstrated by an application
that grants itself privileges to (1) read local files, (2)
write to local files, or (3) execute local programs, aka CR
6557220.

CVE-2008-3108:  Buffer overflow in Sun Java Runtime
Environment (JRE) in JDK and JRE 5.0 before Update 10, SDK
and JRE 1.4.x before 1.4.2_18, and SDK and JRE 1.3.x before
1.3.1_23 allows context-dependent attackers to gain
privileges via unspecified vectors related to font
processing. 

CVE-2008-3107: Unspecified vulnerability in the Virtual
Machine in Sun Java Runtime Environment (JRE) in JDK and
JRE 6 before Update 7, JDK and JRE 5.0 before Update 16,
and SDK and JRE 1.4.x before 1.4.2_18 allows
context-dependent attackers to gain privileges via an
untrusted (1) application or (2) applet, as demonstrated by
an application or applet that grants itself privileges to
(a) read local files, (b) write to local files, or (c)
execute local programs.

CVE-2008-3106: Unspecified vulnerability in Sun Java
Runtime Environment (JRE) in JDK and JRE 6 Update 6 and
earlier and JDK and JRE 5.0 Update 15 and earlier allows
remote attackers to access URLs via unknown vectors
involving processing of XML data by an untrusted (1)
application or (2) applet, a different vulnerability than
CVE-2008-3105. 

CVE-2008-3104: Multiple unspecified vulnerabilities in Sun
Java Runtime Environment (JRE) in JDK and JRE 6 before
Update 7, JDK and JRE 5.0 before Update 16, SDK and JRE
1.4.x before 1.4.2_18, and SDK and JRE 1.3.x before
1.3.1_23 allow remote attackers to violate the security
model for an applet's outbound connections by connecting to
localhost services running on the machine that loaded the
applet. 

CVE-2008-3103: Unspecified vulnerability in the Java
Management Extensions (JMX) management agent in Sun Java
Runtime Environment (JRE) in JDK and JRE 6 Update 6 and
earlier and JDK and JRE 5.0 Update 15 and earlier, when
local monitoring is enabled, allows remote attackers to
&quot;perform unauthorized operations&quot; via unspecified vectors.
</description>
  <pkglist>
    <collection>
        <package name="java-1_5_0-sun" arch="i586" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-1.5.0_update16-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun" arch="x86_64" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-1.5.0_update16-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="i586" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update16-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="x86_64" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update16-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="i586" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update16-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="x86_64" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update16-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="i586" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update16-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="x86_64" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update16-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="i586" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update16-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="x86_64" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update16-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-plugin" arch="i586" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-plugin-1.5.0_update16-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="i586" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-src-1.5.0_update16-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="x86_64" version="1.5.0_update16" release="1.1">
          <filename>java-1_5_0-sun-src-1.5.0_update16-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="310064634aaa1eb786789b6e26d97495"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="97">
  <id>java-1_6_0-sun</id>
  <title>java-1_6_0-sun: Security update to 1.6.0 update 7</title>
  <release>openSUSE 11.0</release>
  <issued date="1216084762"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407935" id="407935" title="bug number 407935" type="bugzilla"/>
  </references>
  <description>This update brings the SUN JDK 6 to update level 7.

CVE-2008-3115: Secure Static Versioning in Sun Java JDK and
JRE 6 Update 6 and earlier, and 5.0 Update 6 through 15,
does not properly prevent execution of applets on older JRE
releases, which might allow remote attackers to exploit
vulnerabilities in these older releases.

CVE-2008-3114: Unspecified vulnerability in Sun Java Web
Start in JDK and JRE 6 before Update 7, JDK and JRE 5.0
before Update 16, and SDK and JRE 1.4.x before 1.4.2_18
allows context-dependent attackers to obtain sensitive
information (the cache location) via an untrusted
application, aka CR 6704074. 

CVE-2008-3112: Unspecified vulnerability in Sun Java Web
Start in JDK and JRE 6 before Update 7, JDK and JRE 5.0
before Update 16, and SDK and JRE 1.4.x before 1.4.2_18
allows remote attackers to create arbitrary files via an
untrusted application, aka CR 6703909. 

CVE-2008-3111: Multiple buffer overflows in Sun Java Web
Start in JDK and JRE 6 before Update 4, JDK and JRE 5.0
before Update 16, and SDK and JRE 1.4.x before 1.4.2_18
allow context-dependent attackers to gain privileges via an
untrusted application, as demonstrated by an application
that grants itself privileges to (1) read local files, (2)
write to local files, or (3) execute local programs, aka CR
6557220.

CVE-2008-3110:  Unspecified vulnerability in scripting
language support in Sun Java Runtime Environment (JRE) in
JDK and JRE 6 Update 6 and earlier allows remote attackers
to obtain sensitive information by using an applet to read
information from another applet. 

CVE-2008-3109:  Unspecified vulnerability in scripting
language support in Sun Java Runtime Environment (JRE) in
JDK and JRE 6 Update 6 and earlier allows context-dependent
attackers to gain privileges via an untrusted (1)
application or (2) applet, as demonstrated by an
application or applet that grants itself privileges to (a)
read local files, (b) write to local files, or (c) execute
local programs. 

CVE-2008-3107: Unspecified vulnerability in the Virtual
Machine in Sun Java Runtime Environment (JRE) in JDK and
JRE 6 before Update 7, JDK and JRE 5.0 before Update 16,
and SDK and JRE 1.4.x before 1.4.2_18 allows
context-dependent attackers to gain privileges via an
untrusted (1) application or (2) applet, as demonstrated by
an application or applet that grants itself privileges to
(a) read local files, (b) write to local files, or (c)
execute local programs.

CVE-2008-3106: Unspecified vulnerability in Sun Java
Runtime Environment (JRE) in JDK and JRE 6 Update 6 and
earlier and JDK and JRE 5.0 Update 15 and earlier allows
remote attackers to access URLs via unknown vectors
involving processing of XML data by an untrusted (1)
application or (2) applet, a different vulnerability than
CVE-2008-3105. 

CVE-2008-3105: Unspecified vulnerability in the JAX-WS
client and service in Sun Java Runtime Environment (JRE) in
JDK and JRE 6 Update 6 and earlier allows remote attackers
to access URLs or cause a denial of service via unknown
vectors involving &quot;processing of XML data&quot; by a trusted
application. 

CVE-2008-3104: Multiple unspecified vulnerabilities in Sun
Java Runtime Environment (JRE) in JDK and JRE 6 before
Update 7, JDK and JRE 5.0 before Update 16, SDK and JRE
1.4.x before 1.4.2_18, and SDK and JRE 1.3.x before
1.3.1_23 allow remote attackers to violate the security
model for an applet's outbound connections by connecting to
localhost services running on the machine that loaded the
applet. 

CVE-2008-3103: Unspecified vulnerability in the Java
Management Extensions (JMX) management agent in Sun Java
Runtime Environment (JRE) in JDK and JRE 6 Update 6 and
earlier and JDK and JRE 5.0 Update 15 and earlier, when
local monitoring is enabled, allows remote attackers to
&quot;perform unauthorized operations&quot; via unspecified vectors.
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-1.6.0.u7-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-1.6.0.u7-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u7-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u7-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-debuginfo" arch="x86_64" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-debuginfo-1.6.0.u7-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u7-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u7-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u7-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u7-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u7-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u7-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u7" release="1.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u7-1.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5ca9a416ac4ec30747e7cba00b549045"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="149">
  <id>wireshark</id>
  <title>wireshark: various vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1218691866"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405266" id="405266" title="bug number 405266" type="bugzilla"/>
  </references>
  <description>Various vulnerabilities have been fixed in wireshark:
CVE-2008-3137, CVE-2008-3138, CVE-2008-3139, CVE-2008-3140,
CVE-2008-3141, CVE-2008-3145 and CVE-2008-3146.
</description>
  <pkglist>
    <collection>
        <package name="wireshark" arch="i586" version="1.0.0" release="17.2">
          <filename>wireshark-1.0.0-17.2.i586.rpm</filename>
        </package>
        <package name="wireshark" arch="ppc" version="1.0.0" release="17.2">
          <filename>wireshark-1.0.0-17.2.ppc.rpm</filename>
        </package>
        <package name="wireshark" arch="x86_64" version="1.0.0" release="17.2">
          <filename>wireshark-1.0.0-17.2.x86_64.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="i586" version="1.0.0" release="17.2">
          <filename>wireshark-devel-1.0.0-17.2.i586.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="ppc" version="1.0.0" release="17.2">
          <filename>wireshark-devel-1.0.0-17.2.ppc.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="x86_64" version="1.0.0" release="17.2">
          <filename>wireshark-devel-1.0.0-17.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d34dc97404c4206250eb37653bff6cb8"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="165">
  <id>evolution-data-server</id>
  <title>evolution: fixes hang creating an appointment</title>
  <release>openSUSE 11.0</release>
  <issued date="1219341994"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=410329" id="410329" title="bug number 410329" type="bugzilla"/>
  </references>
  <description>Trying to create an appointment hangs Evolution.  This is
because of  a missing mutex of the server connection
object. The groupWise server will not accept more than one
request at a time from a connection and hence all the
network requests must be serialized. (Novell Bugzilla
410329)

This update fixes the problem.
</description>
  <pkglist>
    <collection>
        <package name="evolution-data-server" arch="i586" version="2.22.1.1" release="11.2">
          <filename>evolution-data-server-2.22.1.1-11.2.i586.rpm</filename>
        </package>
        <package name="evolution-data-server" arch="ppc" version="2.22.1.1" release="11.2">
          <filename>evolution-data-server-2.22.1.1-11.2.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server" arch="x86_64" version="2.22.1.1" release="11.2">
          <filename>evolution-data-server-2.22.1.1-11.2.x86_64.rpm</filename>
        </package>
        <package name="evolution-data-server-32bit" arch="x86_64" version="2.22.1.1" release="11.2">
          <filename>evolution-data-server-32bit-2.22.1.1-11.2.x86_64.rpm</filename>
        </package>
        <package name="evolution-data-server-64bit" arch="ppc" version="2.22.1.1" release="11.2">
          <filename>evolution-data-server-64bit-2.22.1.1-11.2.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server-devel" arch="i586" version="2.22.1.1" release="11.2">
          <filename>evolution-data-server-devel-2.22.1.1-11.2.i586.rpm</filename>
        </package>
        <package name="evolution-data-server-devel" arch="ppc" version="2.22.1.1" release="11.2">
          <filename>evolution-data-server-devel-2.22.1.1-11.2.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server-devel" arch="x86_64" version="2.22.1.1" release="11.2">
          <filename>evolution-data-server-devel-2.22.1.1-11.2.x86_64.rpm</filename>
        </package>
        <package name="evolution-data-server-doc" arch="i586" version="2.22.1.1" release="11.2">
          <filename>evolution-data-server-doc-2.22.1.1-11.2.i586.rpm</filename>
        </package>
        <package name="evolution-data-server-doc" arch="ppc" version="2.22.1.1" release="11.2">
          <filename>evolution-data-server-doc-2.22.1.1-11.2.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server-doc" arch="x86_64" version="2.22.1.1" release="11.2">
          <filename>evolution-data-server-doc-2.22.1.1-11.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b67478a603662b8769580be65be75385"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="169">
  <id>libpulse-browse0</id>
  <title>PulseAudio: various bugfixes</title>
  <release>openSUSE 11.0</release>
  <issued date="1219259017"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=412831" id="412831" title="bug number 412831" type="bugzilla"/>
  </references>
  <description>PulseAudio wasn't checking if a stale PID file really
corresponded to a pulseaudio daemon process. This patch
adds code to check that so that it doesn't fail at startup
if a stale pid file corresponds to a different process.
</description>
  <pkglist>
    <collection>
        <package name="libpulse-browse0" arch="i586" version="0.9.10" release="26.5">
          <filename>libpulse-browse0-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="libpulse-browse0" arch="ppc" version="0.9.10" release="26.5">
          <filename>libpulse-browse0-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="libpulse-browse0" arch="x86_64" version="0.9.10" release="26.5">
          <filename>libpulse-browse0-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="libpulse-devel" arch="i586" version="0.9.10" release="26.5">
          <filename>libpulse-devel-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="libpulse-mainloop-glib0" arch="i586" version="0.9.10" release="26.5">
          <filename>libpulse-mainloop-glib0-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="libpulse-mainloop-glib0" arch="ppc" version="0.9.10" release="26.5">
          <filename>libpulse-mainloop-glib0-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="libpulse-mainloop-glib0" arch="x86_64" version="0.9.10" release="26.5">
          <filename>libpulse-mainloop-glib0-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="libpulse0" arch="i586" version="0.9.10" release="26.5">
          <filename>libpulse0-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="libpulse0" arch="ppc" version="0.9.10" release="26.5">
          <filename>libpulse0-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="libpulse0" arch="x86_64" version="0.9.10" release="26.5">
          <filename>libpulse0-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="libpulse0-32bit" arch="x86_64" version="0.9.10" release="26.5">
          <filename>libpulse0-32bit-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="libpulse0-64bit" arch="ppc" version="0.9.10" release="26.5">
          <filename>libpulse0-64bit-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="libpulsecore4" arch="i586" version="0.9.10" release="26.5">
          <filename>libpulsecore4-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="libpulsecore4" arch="ppc" version="0.9.10" release="26.5">
          <filename>libpulsecore4-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="libpulsecore4" arch="x86_64" version="0.9.10" release="26.5">
          <filename>libpulsecore4-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio" arch="i586" version="0.9.10" release="26.5">
          <filename>pulseaudio-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="pulseaudio" arch="ppc" version="0.9.10" release="26.5">
          <filename>pulseaudio-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="pulseaudio" arch="x86_64" version="0.9.10" release="26.5">
          <filename>pulseaudio-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-esound-compat" arch="i586" version="0.9.10" release="26.5">
          <filename>pulseaudio-esound-compat-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="pulseaudio-esound-compat" arch="ppc" version="0.9.10" release="26.5">
          <filename>pulseaudio-esound-compat-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-esound-compat" arch="x86_64" version="0.9.10" release="26.5">
          <filename>pulseaudio-esound-compat-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-bluetooth" arch="i586" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-bluetooth-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-bluetooth" arch="ppc" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-bluetooth-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-bluetooth" arch="x86_64" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-bluetooth-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-gconf" arch="i586" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-gconf-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-gconf" arch="ppc" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-gconf-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-gconf" arch="x86_64" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-gconf-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-jack" arch="i586" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-jack-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-lirc" arch="i586" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-lirc-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-lirc" arch="ppc" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-lirc-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-lirc" arch="x86_64" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-lirc-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-x11" arch="i586" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-x11-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-x11" arch="ppc" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-x11-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-x11" arch="x86_64" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-x11-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-zeroconf" arch="i586" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-zeroconf-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-zeroconf" arch="ppc" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-zeroconf-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-zeroconf" arch="x86_64" version="0.9.10" release="26.5">
          <filename>pulseaudio-module-zeroconf-0.9.10-26.5.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-utils" arch="i586" version="0.9.10" release="26.5">
          <filename>pulseaudio-utils-0.9.10-26.5.i586.rpm</filename>
        </package>
        <package name="pulseaudio-utils" arch="ppc" version="0.9.10" release="26.5">
          <filename>pulseaudio-utils-0.9.10-26.5.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-utils" arch="x86_64" version="0.9.10" release="26.5">
          <filename>pulseaudio-utils-0.9.10-26.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ddb7b1fdb3087f74f4fd0df101ac86e5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="174">
  <id>samba</id>
  <title>Samba Update for openSUSE 11.0 to version 3.2.3</title>
  <release>openSUSE 11.0</release>
  <issued date="1219923015"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=412589" id="412589" title="bug number 412589" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=411493" id="411493" title="bug number 411493" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406623" id="406623" title="bug number 406623" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=391969" id="391969" title="bug number 391969" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=420634" id="420634" title="bug number 420634" type="bugzilla"/>
  </references>
  <description>This is an update to version 3.2.3 of Samba.

This release includes several bugfixes and performance
enhancements for Samba and its components. It is
recommended for every user to update to this version.

Among several other bugs the following list shows some
detail:
- Fix a race condition in winbind leading to a crash
  (bnc#406623).
- Fix emptying the printing queue; (bnc#411493).
- Fix the webinface SWAT; (bnc#391969).
- Fixed a file permission problem. (CVE-2008-3789)
  bnc#420634
</description>
  <pkglist>
    <collection>
        <package name="cifs-mount" arch="i586" version="3.2.3" release="0.1">
          <filename>cifs-mount-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="cifs-mount" arch="ppc" version="3.2.3" release="0.1">
          <filename>cifs-mount-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="cifs-mount" arch="x86_64" version="3.2.3" release="0.1">
          <filename>cifs-mount-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="ldapsmb" arch="i586" version="1.34b" release="195.4">
          <filename>ldapsmb-1.34b-195.4.i586.rpm</filename>
        </package>
        <package name="ldapsmb" arch="ppc" version="1.34b" release="195.4">
          <filename>ldapsmb-1.34b-195.4.ppc.rpm</filename>
        </package>
        <package name="ldapsmb" arch="x86_64" version="1.34b" release="195.4">
          <filename>ldapsmb-1.34b-195.4.x86_64.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="i586" version="3.2.3" release="0.1">
          <filename>libnetapi-devel-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="ppc" version="3.2.3" release="0.1">
          <filename>libnetapi-devel-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libnetapi-devel-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libnetapi0" arch="i586" version="3.2.3" release="0.1">
          <filename>libnetapi0-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libnetapi0" arch="ppc" version="3.2.3" release="0.1">
          <filename>libnetapi0-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libnetapi0" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libnetapi0-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="i586" version="3.2.3" release="0.1">
          <filename>libsmbclient-devel-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="ppc" version="3.2.3" release="0.1">
          <filename>libsmbclient-devel-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libsmbclient-devel-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="i586" version="3.2.3" release="0.1">
          <filename>libsmbclient0-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="ppc" version="3.2.3" release="0.1">
          <filename>libsmbclient0-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libsmbclient0-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-32bit" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libsmbclient0-32bit-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-64bit" arch="ppc" version="3.2.3" release="0.1">
          <filename>libsmbclient0-64bit-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="i586" version="3.2.3" release="0.1">
          <filename>libsmbsharemodes-devel-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="ppc" version="3.2.3" release="0.1">
          <filename>libsmbsharemodes-devel-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libsmbsharemodes-devel-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="i586" version="3.2.3" release="0.1">
          <filename>libsmbsharemodes0-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="ppc" version="3.2.3" release="0.1">
          <filename>libsmbsharemodes0-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libsmbsharemodes0-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="i586" version="3.2.3" release="0.1">
          <filename>libtalloc-devel-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="ppc" version="3.2.3" release="0.1">
          <filename>libtalloc-devel-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libtalloc-devel-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1" arch="i586" version="3.2.3" release="0.1">
          <filename>libtalloc1-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libtalloc1" arch="ppc" version="3.2.3" release="0.1">
          <filename>libtalloc1-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libtalloc1" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libtalloc1-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-32bit" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libtalloc1-32bit-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-64bit" arch="ppc" version="3.2.3" release="0.1">
          <filename>libtalloc1-64bit-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="i586" version="3.2.3" release="0.1">
          <filename>libtdb-devel-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="ppc" version="3.2.3" release="0.1">
          <filename>libtdb-devel-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libtdb-devel-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libtdb1" arch="i586" version="3.2.3" release="0.1">
          <filename>libtdb1-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libtdb1" arch="ppc" version="3.2.3" release="0.1">
          <filename>libtdb1-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libtdb1" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libtdb1-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-32bit" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libtdb1-32bit-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-64bit" arch="ppc" version="3.2.3" release="0.1">
          <filename>libtdb1-64bit-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="i586" version="3.2.3" release="0.1">
          <filename>libwbclient-devel-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="ppc" version="3.2.3" release="0.1">
          <filename>libwbclient-devel-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libwbclient-devel-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0" arch="i586" version="3.2.3" release="0.1">
          <filename>libwbclient0-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="libwbclient0" arch="ppc" version="3.2.3" release="0.1">
          <filename>libwbclient0-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libwbclient0" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libwbclient0-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-32bit" arch="x86_64" version="3.2.3" release="0.1">
          <filename>libwbclient0-32bit-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-64bit" arch="ppc" version="3.2.3" release="0.1">
          <filename>libwbclient0-64bit-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="samba" arch="i586" version="3.2.3" release="0.1">
          <filename>samba-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="samba" arch="ppc" version="3.2.3" release="0.1">
          <filename>samba-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="samba" arch="x86_64" version="3.2.3" release="0.1">
          <filename>samba-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="samba-32bit" arch="x86_64" version="3.2.3" release="0.1">
          <filename>samba-32bit-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="samba-64bit" arch="ppc" version="3.2.3" release="0.1">
          <filename>samba-64bit-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="i586" version="3.2.3" release="0.1">
          <filename>samba-client-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="samba-client" arch="ppc" version="3.2.3" release="0.1">
          <filename>samba-client-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="x86_64" version="3.2.3" release="0.1">
          <filename>samba-client-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="samba-client-32bit" arch="x86_64" version="3.2.3" release="0.1">
          <filename>samba-client-32bit-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="samba-client-64bit" arch="ppc" version="3.2.3" release="0.1">
          <filename>samba-client-64bit-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="i586" version="3.2.3" release="0.1">
          <filename>samba-devel-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="samba-devel" arch="ppc" version="3.2.3" release="0.1">
          <filename>samba-devel-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="x86_64" version="3.2.3" release="0.1">
          <filename>samba-devel-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="samba-doc" arch="noarch" version="3.2.3" release="0.1">
          <filename>samba-doc-3.2.3-0.1.noarch.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="i586" version="3.2.3" release="0.1">
          <filename>samba-krb-printing-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="ppc" version="3.2.3" release="0.1">
          <filename>samba-krb-printing-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="x86_64" version="3.2.3" release="0.1">
          <filename>samba-krb-printing-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind" arch="i586" version="3.2.3" release="0.1">
          <filename>samba-winbind-3.2.3-0.1.i586.rpm</filename>
        </package>
        <package name="samba-winbind" arch="ppc" version="3.2.3" release="0.1">
          <filename>samba-winbind-3.2.3-0.1.ppc.rpm</filename>
        </package>
        <package name="samba-winbind" arch="x86_64" version="3.2.3" release="0.1">
          <filename>samba-winbind-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-32bit" arch="x86_64" version="3.2.3" release="0.1">
          <filename>samba-winbind-32bit-3.2.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-64bit" arch="ppc" version="3.2.3" release="0.1">
          <filename>samba-winbind-64bit-3.2.3-0.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="305e62b046e5a6cb3066d3b78eae5989"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="162">
  <id>libtiff</id>
  <title>libtiff: fixed CVE-2008-2327</title>
  <release>openSUSE 11.0</release>
  <issued date="1219253518"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=414946" id="414946" title="bug number 414946" type="bugzilla"/>
  </references>
  <description>A buffer underflow (CVE-2008-2327) has been fixed in
libtiff.
</description>
  <pkglist>
    <collection>
        <package name="libtiff-devel" arch="i586" version="3.8.2" release="108.2">
          <filename>libtiff-devel-3.8.2-108.2.i586.rpm</filename>
        </package>
        <package name="libtiff-devel" arch="ppc" version="3.8.2" release="108.2">
          <filename>libtiff-devel-3.8.2-108.2.ppc.rpm</filename>
        </package>
        <package name="libtiff-devel" arch="x86_64" version="3.8.2" release="108.2">
          <filename>libtiff-devel-3.8.2-108.2.x86_64.rpm</filename>
        </package>
        <package name="libtiff-devel-32bit" arch="x86_64" version="3.8.2" release="108.2">
          <filename>libtiff-devel-32bit-3.8.2-108.2.x86_64.rpm</filename>
        </package>
        <package name="libtiff-devel-64bit" arch="ppc" version="3.8.2" release="108.2">
          <filename>libtiff-devel-64bit-3.8.2-108.2.ppc.rpm</filename>
        </package>
        <package name="libtiff3" arch="i586" version="3.8.2" release="108.2">
          <filename>libtiff3-3.8.2-108.2.i586.rpm</filename>
        </package>
        <package name="libtiff3" arch="ppc" version="3.8.2" release="108.2">
          <filename>libtiff3-3.8.2-108.2.ppc.rpm</filename>
        </package>
        <package name="libtiff3" arch="x86_64" version="3.8.2" release="108.2">
          <filename>libtiff3-3.8.2-108.2.x86_64.rpm</filename>
        </package>
        <package name="libtiff3-32bit" arch="x86_64" version="3.8.2" release="108.2">
          <filename>libtiff3-32bit-3.8.2-108.2.x86_64.rpm</filename>
        </package>
        <package name="libtiff3-64bit" arch="ppc" version="3.8.2" release="108.2">
          <filename>libtiff3-64bit-3.8.2-108.2.ppc.rpm</filename>
        </package>
        <package name="tiff" arch="i586" version="3.8.2" release="108.2">
          <filename>tiff-3.8.2-108.2.i586.rpm</filename>
        </package>
        <package name="tiff" arch="ppc" version="3.8.2" release="108.2">
          <filename>tiff-3.8.2-108.2.ppc.rpm</filename>
        </package>
        <package name="tiff" arch="x86_64" version="3.8.2" release="108.2">
          <filename>tiff-3.8.2-108.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f321531b834ba0b2d81c4bcefc93ea78"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="110">
  <id>libxslt</id>
  <title>libxslt: Fixed heap overflow</title>
  <release>openSUSE 11.0</release>
  <issued date="1216593144"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=410256" id="410256" title="bug number 410256" type="bugzilla"/>
  </references>
  <description>A heap overflow in the RC4 cryptographic routines in
libxslt was fixed which could be used by attackers to
potentially execute code. (CVE-2008-2935)
</description>
  <pkglist>
    <collection>
        <package name="libxslt" arch="i586" version="1.1.23" release="13.2">
          <filename>libxslt-1.1.23-13.2.i586.rpm</filename>
        </package>
        <package name="libxslt" arch="ppc" version="1.1.23" release="13.2">
          <filename>libxslt-1.1.23-13.2.ppc.rpm</filename>
        </package>
        <package name="libxslt" arch="x86_64" version="1.1.23" release="13.2">
          <filename>libxslt-1.1.23-13.2.x86_64.rpm</filename>
        </package>
        <package name="libxslt-32bit" arch="x86_64" version="1.1.23" release="13.2">
          <filename>libxslt-32bit-1.1.23-13.2.x86_64.rpm</filename>
        </package>
        <package name="libxslt-64bit" arch="ppc" version="1.1.23" release="13.2">
          <filename>libxslt-64bit-1.1.23-13.2.ppc.rpm</filename>
        </package>
        <package name="libxslt-devel" arch="i586" version="1.1.23" release="13.2">
          <filename>libxslt-devel-1.1.23-13.2.i586.rpm</filename>
        </package>
        <package name="libxslt-devel" arch="ppc" version="1.1.23" release="13.2">
          <filename>libxslt-devel-1.1.23-13.2.ppc.rpm</filename>
        </package>
        <package name="libxslt-devel" arch="x86_64" version="1.1.23" release="13.2">
          <filename>libxslt-devel-1.1.23-13.2.x86_64.rpm</filename>
        </package>
        <package name="libxslt-devel-32bit" arch="x86_64" version="1.1.23" release="13.2">
          <filename>libxslt-devel-32bit-1.1.23-13.2.x86_64.rpm</filename>
        </package>
        <package name="libxslt-devel-64bit" arch="ppc" version="1.1.23" release="13.2">
          <filename>libxslt-devel-64bit-1.1.23-13.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0172c8227ed27c753945cd3cbb221756"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="173">
  <id>bytefx-data-mysql</id>
  <title>mono-core: Fixes CVE-2008-3422</title>
  <release>openSUSE 11.0</release>
  <issued date="1219916585"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=413534" id="413534" title="bug number 413534" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=418744" id="418744" title="bug number 418744" type="bugzilla"/>
  </references>
  <description>This patch fixes two security problems and one critical bug:

Makes sure that values of all the tags which can be
exploited are encoded to make sure no exploit is possible.
(CVE-2008-3422)

A header injection problem in Sys.Web was fixed.
</description>
  <pkglist>
    <collection>
        <package name="bytefx-data-mysql" arch="i586" version="1.9.1" release="6.3">
          <filename>bytefx-data-mysql-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="bytefx-data-mysql" arch="ppc" version="1.9.1" release="6.3">
          <filename>bytefx-data-mysql-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="bytefx-data-mysql" arch="x86_64" version="1.9.1" release="6.3">
          <filename>bytefx-data-mysql-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="ibm-data-db2" arch="i586" version="1.9.1" release="6.3">
          <filename>ibm-data-db2-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="ibm-data-db2" arch="ppc" version="1.9.1" release="6.3">
          <filename>ibm-data-db2-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="ibm-data-db2" arch="x86_64" version="1.9.1" release="6.3">
          <filename>ibm-data-db2-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-complete" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-complete-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-complete" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-complete-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-complete" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-complete-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-core" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-core-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-core" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-core-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-core" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-core-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-core-32bit" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-core-32bit-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-data" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-data-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-data" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-data-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-data" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-data-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-data-firebird" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-data-firebird-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-data-firebird" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-data-firebird-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-data-firebird" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-data-firebird-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-data-oracle" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-data-oracle-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-data-oracle" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-data-oracle-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-data-oracle" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-data-oracle-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-data-postgresql" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-data-postgresql-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-data-postgresql" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-data-postgresql-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-data-postgresql" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-data-postgresql-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-data-sqlite" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-data-sqlite-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-data-sqlite" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-data-sqlite-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-data-sqlite" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-data-sqlite-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-data-sybase" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-data-sybase-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-data-sybase" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-data-sybase-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-data-sybase" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-data-sybase-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-devel" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-devel-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-devel" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-devel-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-devel" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-devel-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-extras" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-extras-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-extras" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-extras-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-extras" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-extras-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-jscript" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-jscript-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-jscript" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-jscript-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-jscript" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-jscript-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-locale-extras" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-locale-extras-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-locale-extras" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-locale-extras-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-locale-extras" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-locale-extras-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-nunit" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-nunit-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-nunit" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-nunit-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-nunit" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-nunit-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-web" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-web-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-web" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-web-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-web" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-web-1.9.1-6.3.x86_64.rpm</filename>
        </package>
        <package name="mono-winforms" arch="i586" version="1.9.1" release="6.3">
          <filename>mono-winforms-1.9.1-6.3.i586.rpm</filename>
        </package>
        <package name="mono-winforms" arch="ppc" version="1.9.1" release="6.3">
          <filename>mono-winforms-1.9.1-6.3.ppc.rpm</filename>
        </package>
        <package name="mono-winforms" arch="x86_64" version="1.9.1" release="6.3">
          <filename>mono-winforms-1.9.1-6.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="bc585ff1ceb92bdb83ac53c4c29d5210"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="130">
  <id>libopensc2</id>
  <title>opensc: security issue with Siemens CardOS M4</title>
  <release>openSUSE 11.0</release>
  <issued date="1217591683"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=413496" id="413496" title="bug number 413496" type="bugzilla"/>
  </references>
  <description>This update fixes a security issues with opensc that occurs
during initializing blank smart cards with Siemens CardOS
M4. It allows to set the PIN of the smart card without
authorization.  (CVE-2008-2235)

NOTE: Already initialized cards are still vulnerable after
this update. Please use the command-line tool pkcs15-tool
with option --test-update and --update when necessary.
</description>
  <pkglist>
    <collection>
        <package name="libopensc2" arch="i586" version="0.11.4" release="37.2">
          <filename>libopensc2-0.11.4-37.2.i586.rpm</filename>
        </package>
        <package name="libopensc2" arch="ppc" version="0.11.4" release="37.2">
          <filename>libopensc2-0.11.4-37.2.ppc.rpm</filename>
        </package>
        <package name="libopensc2" arch="x86_64" version="0.11.4" release="37.2">
          <filename>libopensc2-0.11.4-37.2.x86_64.rpm</filename>
        </package>
        <package name="libopensc2-32bit" arch="x86_64" version="0.11.4" release="37.2">
          <filename>libopensc2-32bit-0.11.4-37.2.x86_64.rpm</filename>
        </package>
        <package name="libopensc2-64bit" arch="ppc" version="0.11.4" release="37.2">
          <filename>libopensc2-64bit-0.11.4-37.2.ppc.rpm</filename>
        </package>
        <package name="opensc" arch="i586" version="0.11.4" release="37.2">
          <filename>opensc-0.11.4-37.2.i586.rpm</filename>
        </package>
        <package name="opensc" arch="ppc" version="0.11.4" release="37.2">
          <filename>opensc-0.11.4-37.2.ppc.rpm</filename>
        </package>
        <package name="opensc" arch="x86_64" version="0.11.4" release="37.2">
          <filename>opensc-0.11.4-37.2.x86_64.rpm</filename>
        </package>
        <package name="opensc-32bit" arch="x86_64" version="0.11.4" release="37.2">
          <filename>opensc-32bit-0.11.4-37.2.x86_64.rpm</filename>
        </package>
        <package name="opensc-64bit" arch="ppc" version="0.11.4" release="37.2">
          <filename>opensc-64bit-0.11.4-37.2.ppc.rpm</filename>
        </package>
        <package name="opensc-devel" arch="i586" version="0.11.4" release="37.2">
          <filename>opensc-devel-0.11.4-37.2.i586.rpm</filename>
        </package>
        <package name="opensc-devel" arch="ppc" version="0.11.4" release="37.2">
          <filename>opensc-devel-0.11.4-37.2.ppc.rpm</filename>
        </package>
        <package name="opensc-devel" arch="x86_64" version="0.11.4" release="37.2">
          <filename>opensc-devel-0.11.4-37.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="558faab80607c0168a2b79db6b250906"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="175">
  <id>devhelp</id>
  <title>devhelp: Fix various crashes in devhelp.</title>
  <release>openSUSE 11.0</release>
  <issued date="1219930906"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=411497" id="411497" title="bug number 411497" type="bugzilla"/>
  </references>
  <description>Because of a missing initialization call, the port of
devhelp using xulrunner 1.9 was not fully usable and
crashing in various circumstances.
</description>
  <pkglist>
    <collection>
        <package name="devhelp" arch="i586" version="0.19" release="35.2">
          <filename>devhelp-0.19-35.2.i586.rpm</filename>
        </package>
        <package name="devhelp" arch="ppc" version="0.19" release="35.2">
          <filename>devhelp-0.19-35.2.ppc.rpm</filename>
        </package>
        <package name="devhelp" arch="x86_64" version="0.19" release="35.2">
          <filename>devhelp-0.19-35.2.x86_64.rpm</filename>
        </package>
        <package name="devhelp-devel" arch="i586" version="0.19" release="35.2">
          <filename>devhelp-devel-0.19-35.2.i586.rpm</filename>
        </package>
        <package name="devhelp-devel" arch="ppc" version="0.19" release="35.2">
          <filename>devhelp-devel-0.19-35.2.ppc.rpm</filename>
        </package>
        <package name="devhelp-devel" arch="x86_64" version="0.19" release="35.2">
          <filename>devhelp-devel-0.19-35.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="84b92b5534b65af87a6698129708afe8"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="176">
  <id>gcalctool</id>
  <title>Fix of freezes in some locales</title>
  <release>openSUSE 11.0</release>
  <issued date="1219927480"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402630" id="402630" title="bug number 402630" type="bugzilla"/>
  </references>
  <description>Calculator failed to start in some locales and caused 100%
CPU load instead. This update fixes this problem.
</description>
  <pkglist>
    <collection>
        <package name="gcalctool" arch="i586" version="5.22.1" release="22.2">
          <filename>gcalctool-5.22.1-22.2.i586.rpm</filename>
        </package>
        <package name="gcalctool" arch="ppc" version="5.22.1" release="22.2">
          <filename>gcalctool-5.22.1-22.2.ppc.rpm</filename>
        </package>
        <package name="gcalctool" arch="x86_64" version="5.22.1" release="22.2">
          <filename>gcalctool-5.22.1-22.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0c42e93bf3989f225ffe4fab4801e61e"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="179">
  <id>pure-ftpd</id>
  <title>Fix PureFTPD upload segfault</title>
  <release>openSUSE 11.0</release>
  <issued date="1220453525"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407363" id="407363" title="bug number 407363" type="bugzilla"/>
  </references>
  <description>A bug in an optimization of TCP buffers did cause a
segmentation fault in any upload request. This patch fixes
this.
</description>
  <pkglist>
    <collection>
        <package name="pure-ftpd" arch="i586" version="1.0.21" release="145.2">
          <filename>pure-ftpd-1.0.21-145.2.i586.rpm</filename>
        </package>
        <package name="pure-ftpd" arch="ppc" version="1.0.21" release="145.2">
          <filename>pure-ftpd-1.0.21-145.2.ppc.rpm</filename>
        </package>
        <package name="pure-ftpd" arch="x86_64" version="1.0.21" release="145.2">
          <filename>pure-ftpd-1.0.21-145.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d88a6adae32c8dd6f662e3ad350b921c"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="177">
  <id>gvfs</id>
  <title>Fixes random crashes in gvfsd and gvfs-fuse-daemon.</title>
  <release>openSUSE 11.0</release>
  <issued date="1219927157"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=368628" id="368628" title="bug number 368628" type="bugzilla"/>
  </references>
  <description>This patch fixes multiple bugs in GNOME's virtual
filesystem daemon and its FUSE compatibility layer that
could cause crashes during normal operation.
</description>
  <pkglist>
    <collection>
        <package name="gvfs" arch="i586" version="0.2.3" release="29.2">
          <filename>gvfs-0.2.3-29.2.i586.rpm</filename>
        </package>
        <package name="gvfs" arch="ppc" version="0.2.3" release="29.2">
          <filename>gvfs-0.2.3-29.2.ppc.rpm</filename>
        </package>
        <package name="gvfs" arch="x86_64" version="0.2.3" release="29.2">
          <filename>gvfs-0.2.3-29.2.x86_64.rpm</filename>
        </package>
        <package name="gvfs-backends" arch="i586" version="0.2.3" release="29.2">
          <filename>gvfs-backends-0.2.3-29.2.i586.rpm</filename>
        </package>
        <package name="gvfs-backends" arch="ppc" version="0.2.3" release="29.2">
          <filename>gvfs-backends-0.2.3-29.2.ppc.rpm</filename>
        </package>
        <package name="gvfs-backends" arch="x86_64" version="0.2.3" release="29.2">
          <filename>gvfs-backends-0.2.3-29.2.x86_64.rpm</filename>
        </package>
        <package name="gvfs-devel" arch="i586" version="0.2.3" release="29.2">
          <filename>gvfs-devel-0.2.3-29.2.i586.rpm</filename>
        </package>
        <package name="gvfs-devel" arch="ppc" version="0.2.3" release="29.2">
          <filename>gvfs-devel-0.2.3-29.2.ppc.rpm</filename>
        </package>
        <package name="gvfs-devel" arch="x86_64" version="0.2.3" release="29.2">
          <filename>gvfs-devel-0.2.3-29.2.x86_64.rpm</filename>
        </package>
        <package name="gvfs-fuse" arch="i586" version="0.2.3" release="29.2">
          <filename>gvfs-fuse-0.2.3-29.2.i586.rpm</filename>
        </package>
        <package name="gvfs-fuse" arch="ppc" version="0.2.3" release="29.2">
          <filename>gvfs-fuse-0.2.3-29.2.ppc.rpm</filename>
        </package>
        <package name="gvfs-fuse" arch="x86_64" version="0.2.3" release="29.2">
          <filename>gvfs-fuse-0.2.3-29.2.x86_64.rpm</filename>
        </package>
        <package name="libgvfscommon0" arch="i586" version="0.2.3" release="29.2">
          <filename>libgvfscommon0-0.2.3-29.2.i586.rpm</filename>
        </package>
        <package name="libgvfscommon0" arch="ppc" version="0.2.3" release="29.2">
          <filename>libgvfscommon0-0.2.3-29.2.ppc.rpm</filename>
        </package>
        <package name="libgvfscommon0" arch="x86_64" version="0.2.3" release="29.2">
          <filename>libgvfscommon0-0.2.3-29.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="49090f61c593e2816ef92da6b9fc9ebc"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="180">
  <id>SuSEfirewall2</id>
  <title>SuSEfirewall: fix iptables &quot;recent&quot; module handling</title>
  <release>openSUSE 11.0</release>
  <issued date="1220453285"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=421806" id="421806" title="bug number 421806" type="bugzilla"/>
  </references>
  <description>This update fixes a regression related to the handling of
the iptables &quot;recent&quot; module introduced by the previous
update.
</description>
  <pkglist>
    <collection>
        <package name="SuSEfirewall2" arch="noarch" version="3.6_SVNr195" release="9.4">
          <filename>SuSEfirewall2-3.6_SVNr195-9.4.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5b76530260217c7ec6bbefae736cb7c8"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="161">
  <id>tomcat6</id>
  <title>tomcat: fix for directory traversal vulnerability</title>
  <release>openSUSE 11.0</release>
  <issued date="1219339220"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=417217" id="417217" title="bug number 417217" type="bugzilla"/>
  </references>
  <description>This update of tomcat fixes another directory traversal bug
which occurs when allowLinking and UTF-8 are enabled.
(CVE-2008-2938)
</description>
  <pkglist>
    <collection>
        <package name="tomcat6" arch="noarch" version="6.0.16" release="6.4">
          <filename>tomcat6-6.0.16-6.4.noarch.rpm</filename>
        </package>
        <package name="tomcat6-admin-webapps" arch="noarch" version="6.0.16" release="6.4">
          <filename>tomcat6-admin-webapps-6.0.16-6.4.noarch.rpm</filename>
        </package>
        <package name="tomcat6-docs-webapp" arch="noarch" version="6.0.16" release="6.4">
          <filename>tomcat6-docs-webapp-6.0.16-6.4.noarch.rpm</filename>
        </package>
        <package name="tomcat6-javadoc" arch="noarch" version="6.0.16" release="6.4">
          <filename>tomcat6-javadoc-6.0.16-6.4.noarch.rpm</filename>
        </package>
        <package name="tomcat6-jsp-2_1-api" arch="noarch" version="6.0.16" release="6.4">
          <filename>tomcat6-jsp-2_1-api-6.0.16-6.4.noarch.rpm</filename>
        </package>
        <package name="tomcat6-lib" arch="noarch" version="6.0.16" release="6.4">
          <filename>tomcat6-lib-6.0.16-6.4.noarch.rpm</filename>
        </package>
        <package name="tomcat6-servlet-2_5-api" arch="noarch" version="6.0.16" release="6.4">
          <filename>tomcat6-servlet-2_5-api-6.0.16-6.4.noarch.rpm</filename>
        </package>
        <package name="tomcat6-webapps" arch="noarch" version="6.0.16" release="6.4">
          <filename>tomcat6-webapps-6.0.16-6.4.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="df940324c4d021a37ad8504b3e520515"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="183">
  <id>git</id>
  <title>git: fix for buffer overflows</title>
  <release>openSUSE 11.0</release>
  <issued date="1220754263"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415345" id="415345" title="bug number 415345" type="bugzilla"/>
  </references>
  <description>This patch fixes several buffer overflows in some git
tools, when repositories contain very long pathnames.
(CVE-2008-3546)
</description>
  <pkglist>
    <collection>
        <package name="git" arch="i586" version="1.5.6" release="43.1">
          <filename>git-1.5.6-43.1.i586.rpm</filename>
        </package>
        <package name="git" arch="ppc" version="1.5.6" release="43.1">
          <filename>git-1.5.6-43.1.ppc.rpm</filename>
        </package>
        <package name="git" arch="x86_64" version="1.5.6" release="43.1">
          <filename>git-1.5.6-43.1.x86_64.rpm</filename>
        </package>
        <package name="git-arch" arch="i586" version="1.5.6" release="43.1">
          <filename>git-arch-1.5.6-43.1.i586.rpm</filename>
        </package>
        <package name="git-arch" arch="ppc" version="1.5.6" release="43.1">
          <filename>git-arch-1.5.6-43.1.ppc.rpm</filename>
        </package>
        <package name="git-arch" arch="x86_64" version="1.5.6" release="43.1">
          <filename>git-arch-1.5.6-43.1.x86_64.rpm</filename>
        </package>
        <package name="git-core" arch="i586" version="1.5.6" release="43.1">
          <filename>git-core-1.5.6-43.1.i586.rpm</filename>
        </package>
        <package name="git-core" arch="ppc" version="1.5.6" release="43.1">
          <filename>git-core-1.5.6-43.1.ppc.rpm</filename>
        </package>
        <package name="git-core" arch="x86_64" version="1.5.6" release="43.1">
          <filename>git-core-1.5.6-43.1.x86_64.rpm</filename>
        </package>
        <package name="git-cvs" arch="i586" version="1.5.6" release="43.1">
          <filename>git-cvs-1.5.6-43.1.i586.rpm</filename>
        </package>
        <package name="git-cvs" arch="ppc" version="1.5.6" release="43.1">
          <filename>git-cvs-1.5.6-43.1.ppc.rpm</filename>
        </package>
        <package name="git-cvs" arch="x86_64" version="1.5.6" release="43.1">
          <filename>git-cvs-1.5.6-43.1.x86_64.rpm</filename>
        </package>
        <package name="git-email" arch="i586" version="1.5.6" release="43.1">
          <filename>git-email-1.5.6-43.1.i586.rpm</filename>
        </package>
        <package name="git-email" arch="ppc" version="1.5.6" release="43.1">
          <filename>git-email-1.5.6-43.1.ppc.rpm</filename>
        </package>
        <package name="git-email" arch="x86_64" version="1.5.6" release="43.1">
          <filename>git-email-1.5.6-43.1.x86_64.rpm</filename>
        </package>
        <package name="git-svn" arch="i586" version="1.5.6" release="43.1">
          <filename>git-svn-1.5.6-43.1.i586.rpm</filename>
        </package>
        <package name="git-svn" arch="ppc" version="1.5.6" release="43.1">
          <filename>git-svn-1.5.6-43.1.ppc.rpm</filename>
        </package>
        <package name="git-svn" arch="x86_64" version="1.5.6" release="43.1">
          <filename>git-svn-1.5.6-43.1.x86_64.rpm</filename>
        </package>
        <package name="gitk" arch="i586" version="1.5.6" release="43.1">
          <filename>gitk-1.5.6-43.1.i586.rpm</filename>
        </package>
        <package name="gitk" arch="ppc" version="1.5.6" release="43.1">
          <filename>gitk-1.5.6-43.1.ppc.rpm</filename>
        </package>
        <package name="gitk" arch="x86_64" version="1.5.6" release="43.1">
          <filename>gitk-1.5.6-43.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d71afe9107757598b782acbd6db9f278"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="171">
  <id>kernel</id>
  <title>Linux Kernel update</title>
  <release>openSUSE 11.0</release>
  <issued date="1219415511"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400874" id="400874" title="bug number 400874" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=216857" id="216857" title="bug number 216857" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404892" id="404892" title="bug number 404892" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=400815" id="400815" title="bug number 400815" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=408734" id="408734" title="bug number 408734" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=394667" id="394667" title="bug number 394667" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407689" id="407689" title="bug number 407689" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=417505" id="417505" title="bug number 417505" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415607" id="415607" title="bug number 415607" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=412823" id="412823" title="bug number 412823" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415690" id="415690" title="bug number 415690" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406637" id="406637" title="bug number 406637" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=374099" id="374099" title="bug number 374099" type="bugzilla"/>
  </references>
  <description>The openSUSE 11.0 kernel was updated to 2.6.25.16.

It fixes various stability bugs and also security bugs.

CVE-2008-1673: Fixed the range checking in the ASN.1
decoder in NAT for SNMP and CIFS, which could have been
used by a remote attacker to crash the machine.

CVE-2008-3276: An integer overflow flaw was found in the
Linux kernel dccp_setsockopt_change() function. An attacker
may leverage this vulnerability to trigger a kernel panic
on a victim's machine remotely.

CVE-2008-3272: The snd_seq_oss_synth_make_info function in
sound/core/seq/oss/seq_oss_synth.c in the sound subsystem
does not verify that the device number is within the range
defined by max_synthdev before returning certain data to
the caller, which allows local users to obtain sensitive
information.

CVE-2008-3275: The (1) real_lookup and (2) __lookup_hash
functions in fs/namei.c in the vfs implementation do not
prevent creation of a child dentry for a deleted (aka
S_DEAD) directory, which allows local users to cause a
denial of service (&quot;overflow&quot; of the UBIFS orphan area) via
a series of attempted file creations within deleted
directories.

Also lots of bugs were fixed.
</description>
  <pkglist>
    <collection>
        <package name="kernel-debug" arch="i586" version="2.6.25.16" release="0.1">
          <filename>kernel-debug-2.6.25.16-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="x86_64" version="2.6.25.16" release="0.1">
          <filename>kernel-debug-2.6.25.16-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="i586" version="2.6.25.16" release="0.1">
          <filename>kernel-default-2.6.25.16-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="ppc" version="2.6.25.16" release="0.1">
          <filename>kernel-default-2.6.25.16-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="x86_64" version="2.6.25.16" release="0.1">
          <filename>kernel-default-2.6.25.16-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-docs" arch="noarch" version="2.6.25.16" release="0.1">
          <filename>kernel-docs-2.6.25.16-0.1.noarch.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-kdump" arch="ppc" version="2.6.25.16" release="0.1">
          <filename>kernel-kdump-2.6.25.16-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-pae" arch="i586" version="2.6.25.16" release="0.1">
          <filename>kernel-pae-2.6.25.16-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ppc64" arch="ppc" version="2.6.25.16" release="0.1">
          <filename>kernel-ppc64-2.6.25.16-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt" arch="i586" version="2.6.25.16" release="0.1">
          <filename>kernel-rt-2.6.25.16-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt" arch="x86_64" version="2.6.25.16" release="0.1">
          <filename>kernel-rt-2.6.25.16-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt_debug" arch="i586" version="2.6.25.16" release="0.1">
          <filename>kernel-rt_debug-2.6.25.16-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="i586" version="2.6.25.16" release="0.1">
          <filename>kernel-source-2.6.25.16-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="ppc" version="2.6.25.16" release="0.1">
          <filename>kernel-source-2.6.25.16-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="x86_64" version="2.6.25.16" release="0.1">
          <filename>kernel-source-2.6.25.16-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="i586" version="2.6.25.16" release="0.1">
          <filename>kernel-syms-2.6.25.16-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="ppc" version="2.6.25.16" release="0.1">
          <filename>kernel-syms-2.6.25.16-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="x86_64" version="2.6.25.16" release="0.1">
          <filename>kernel-syms-2.6.25.16-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="i586" version="2.6.25.16" release="0.1">
          <filename>kernel-vanilla-2.6.25.16-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="ppc" version="2.6.25.16" release="0.1">
          <filename>kernel-vanilla-2.6.25.16-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="x86_64" version="2.6.25.16" release="0.1">
          <filename>kernel-vanilla-2.6.25.16-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="i586" version="2.6.25.16" release="0.1">
          <filename>kernel-xen-2.6.25.16-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="x86_64" version="2.6.25.16" release="0.1">
          <filename>kernel-xen-2.6.25.16-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="52c9d8c4668a4786035121ed839b40aa"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="181">
  <id>clamav</id>
  <title>clamav security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1220642506"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=422317" id="422317" title="bug number 422317" type="bugzilla"/>
  </references>
  <description>This version update to 0.94 fixes numerous problems
including some security relevant ones (CVE-2008-3912,
CVE-2008-1389, CVE-2008-3913, CVE-2008-3914).
</description>
  <pkglist>
    <collection>
        <package name="clamav" arch="i586" version="0.94" release="0.1">
          <filename>clamav-0.94-0.1.i586.rpm</filename>
        </package>
        <package name="clamav" arch="ppc" version="0.94" release="0.1">
          <filename>clamav-0.94-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav" arch="x86_64" version="0.94" release="0.1">
          <filename>clamav-0.94-0.1.x86_64.rpm</filename>
        </package>
        <package name="clamav-db" arch="i586" version="0.94" release="0.1">
          <filename>clamav-db-0.94-0.1.i586.rpm</filename>
        </package>
        <package name="clamav-db" arch="ppc" version="0.94" release="0.1">
          <filename>clamav-db-0.94-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav-db" arch="x86_64" version="0.94" release="0.1">
          <filename>clamav-db-0.94-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="bcdc9d540e9f21e297939e86656e5f92"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="178">
  <id>imlib2</id>
  <title>imlib2: Fixed an overflow in the XPM and a crash in the PNM loader</title>
  <release>openSUSE 11.0</release>
  <issued date="1220453524"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=394703" id="394703" title="bug number 394703" type="bugzilla"/>
  </references>
  <description>This update fixes two security problems in imlib2.

Specially crafted xpm files could trigger a stack based
buffer overflow in imlib2 which could potentially be
exploited to execute arbitrary code (CVE-2008-2426).

A crash in PNM handling due to a NULL pointer dereference
was fixed.
</description>
  <pkglist>
    <collection>
        <package name="imlib2" arch="i586" version="1.4.0" release="46.3">
          <filename>imlib2-1.4.0-46.3.i586.rpm</filename>
        </package>
        <package name="imlib2" arch="ppc" version="1.4.0" release="46.3">
          <filename>imlib2-1.4.0-46.3.ppc.rpm</filename>
        </package>
        <package name="imlib2" arch="x86_64" version="1.4.0" release="46.3">
          <filename>imlib2-1.4.0-46.3.x86_64.rpm</filename>
        </package>
        <package name="imlib2-devel" arch="i586" version="1.4.0" release="46.3">
          <filename>imlib2-devel-1.4.0-46.3.i586.rpm</filename>
        </package>
        <package name="imlib2-devel" arch="ppc" version="1.4.0" release="46.3">
          <filename>imlib2-devel-1.4.0-46.3.ppc.rpm</filename>
        </package>
        <package name="imlib2-devel" arch="x86_64" version="1.4.0" release="46.3">
          <filename>imlib2-devel-1.4.0-46.3.x86_64.rpm</filename>
        </package>
        <package name="imlib2-filters" arch="i586" version="1.4.0" release="46.3">
          <filename>imlib2-filters-1.4.0-46.3.i586.rpm</filename>
        </package>
        <package name="imlib2-filters" arch="ppc" version="1.4.0" release="46.3">
          <filename>imlib2-filters-1.4.0-46.3.ppc.rpm</filename>
        </package>
        <package name="imlib2-filters" arch="x86_64" version="1.4.0" release="46.3">
          <filename>imlib2-filters-1.4.0-46.3.x86_64.rpm</filename>
        </package>
        <package name="imlib2-loaders" arch="i586" version="1.4.0" release="46.3">
          <filename>imlib2-loaders-1.4.0-46.3.i586.rpm</filename>
        </package>
        <package name="imlib2-loaders" arch="ppc" version="1.4.0" release="46.3">
          <filename>imlib2-loaders-1.4.0-46.3.ppc.rpm</filename>
        </package>
        <package name="imlib2-loaders" arch="x86_64" version="1.4.0" release="46.3">
          <filename>imlib2-loaders-1.4.0-46.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ea9754c57ea8497ff369046cb5102727"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="188">
  <id>finch</id>
  <title>pidgin security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1220454610"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406416" id="406416" title="bug number 406416" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404163" id="404163" title="bug number 404163" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405632" id="405632" title="bug number 405632" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415679" id="415679" title="bug number 415679" type="bugzilla"/>
  </references>
  <description>- specially crafted MSN SLP messages could cause an integer
  overflow in pidgin. Attackers could potentially exploit
  that to execute arbitrary code (CVE-2008-2927).

- overly long file names in MSN file transfers could crash
  pidgin (CVE-2008-2955).

- SSL certifcates were not verfied. Therefore piding didn't
  notice faked certificates (CVE-2008-3532)

Additionally a problem was fixed that prevented gaim
clients from  connecting to the ICQ network after a server
change on July 1st  2008.
</description>
  <pkglist>
    <collection>
        <package name="finch" arch="i586" version="2.4.1" release="28.4">
          <filename>finch-2.4.1-28.4.i586.rpm</filename>
        </package>
        <package name="finch" arch="ppc" version="2.4.1" release="28.4">
          <filename>finch-2.4.1-28.4.ppc.rpm</filename>
        </package>
        <package name="finch" arch="x86_64" version="2.4.1" release="28.4">
          <filename>finch-2.4.1-28.4.x86_64.rpm</filename>
        </package>
        <package name="finch-devel" arch="i586" version="2.4.1" release="28.4">
          <filename>finch-devel-2.4.1-28.4.i586.rpm</filename>
        </package>
        <package name="finch-devel" arch="ppc" version="2.4.1" release="28.4">
          <filename>finch-devel-2.4.1-28.4.ppc.rpm</filename>
        </package>
        <package name="finch-devel" arch="x86_64" version="2.4.1" release="28.4">
          <filename>finch-devel-2.4.1-28.4.x86_64.rpm</filename>
        </package>
        <package name="libpurple" arch="i586" version="2.4.1" release="28.4">
          <filename>libpurple-2.4.1-28.4.i586.rpm</filename>
        </package>
        <package name="libpurple" arch="ppc" version="2.4.1" release="28.4">
          <filename>libpurple-2.4.1-28.4.ppc.rpm</filename>
        </package>
        <package name="libpurple" arch="x86_64" version="2.4.1" release="28.4">
          <filename>libpurple-2.4.1-28.4.x86_64.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="i586" version="2.4.1" release="28.4">
          <filename>libpurple-devel-2.4.1-28.4.i586.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="ppc" version="2.4.1" release="28.4">
          <filename>libpurple-devel-2.4.1-28.4.ppc.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="x86_64" version="2.4.1" release="28.4">
          <filename>libpurple-devel-2.4.1-28.4.x86_64.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="i586" version="2.4.1" release="28.4">
          <filename>libpurple-meanwhile-2.4.1-28.4.i586.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="ppc" version="2.4.1" release="28.4">
          <filename>libpurple-meanwhile-2.4.1-28.4.ppc.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="x86_64" version="2.4.1" release="28.4">
          <filename>libpurple-meanwhile-2.4.1-28.4.x86_64.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="i586" version="2.4.1" release="28.4">
          <filename>libpurple-mono-2.4.1-28.4.i586.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="ppc" version="2.4.1" release="28.4">
          <filename>libpurple-mono-2.4.1-28.4.ppc.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="x86_64" version="2.4.1" release="28.4">
          <filename>libpurple-mono-2.4.1-28.4.x86_64.rpm</filename>
        </package>
        <package name="pidgin" arch="i586" version="2.4.1" release="28.4">
          <filename>pidgin-2.4.1-28.4.i586.rpm</filename>
        </package>
        <package name="pidgin" arch="ppc" version="2.4.1" release="28.4">
          <filename>pidgin-2.4.1-28.4.ppc.rpm</filename>
        </package>
        <package name="pidgin" arch="x86_64" version="2.4.1" release="28.4">
          <filename>pidgin-2.4.1-28.4.x86_64.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="i586" version="2.4.1" release="28.4">
          <filename>pidgin-devel-2.4.1-28.4.i586.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="ppc" version="2.4.1" release="28.4">
          <filename>pidgin-devel-2.4.1-28.4.ppc.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="x86_64" version="2.4.1" release="28.4">
          <filename>pidgin-devel-2.4.1-28.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="157ef14746abeaecbcb665f51bb72f14"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="192">
  <id>MozillaThunderbird</id>
  <title>MozillaThunderbird: Update to 2.0.0.16</title>
  <release>openSUSE 11.0</release>
  <issued date="1221183980"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407573" id="407573" title="bug number 407573" type="bugzilla"/>
  </references>
  <description>Mozilla Thunderbird was updated to 2.0.0.16.

MFSA 2008-34 / CVE-2008-2785: An anonymous researcher, via
TippingPoint's Zero Day Initiative program, reported a
vulnerability in Mozilla CSS reference counting code. The
vulnerability was caused by an insufficiently sized
variable being used as a reference counter for CSS objects.
By creating a very large number of references to a common
CSS object, this counter could be overflowed which could
cause a crash when the browser attempts to free the CSS
object while still in use. An attacker could use this crash
to run arbitrary code on the victim's computer
</description>
  <pkglist>
    <collection>
        <package name="MozillaThunderbird" arch="i586" version="2.0.0.16" release="0.1">
          <filename>MozillaThunderbird-2.0.0.16-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="ppc" version="2.0.0.16" release="0.1">
          <filename>MozillaThunderbird-2.0.0.16-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="x86_64" version="2.0.0.16" release="0.1">
          <filename>MozillaThunderbird-2.0.0.16-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="i586" version="2.0.0.16" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.16-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="ppc" version="2.0.0.16" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.16-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="x86_64" version="2.0.0.16" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.16-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="i586" version="2.0.0.16" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.16-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="ppc" version="2.0.0.16" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.16-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="x86_64" version="2.0.0.16" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.16-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d05ce9e43b6c852145ebe9dba03f33be"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="193">
  <id>seamonkey</id>
  <title>seamonkey: Security update to 1.1.11</title>
  <release>openSUSE 11.0</release>
  <issued date="1221183365"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407573" id="407573" title="bug number 407573" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=416147" id="416147" title="bug number 416147" type="bugzilla"/>
  </references>
  <description>Seamonkey was updated to version 1.1.11.

Problems fixed in the 1.1.11 update: CVE-2008-2785 MFSA
2008-34: An anonymous researcher, via TippingPoint's Zero
Day Initiative program, reported a vulnerability in
Mozilla's internal CSSValue array data structure. The
vulnerability was caused by an insufficiently sized
variable being used as a reference counter for CSS objects.
By creating a very large number of references to a common
CSS object, this counter could be overflowed which could
cause a crash when the browser attempts to free the CSS
object while still in use. An attacker could use this crash
to run arbitrary code on the victim's computer.

Problems fixed in the 1.1.10 update: CVE-2008-2811 MFSA
2008-33: Security research firm Astabis reported a
vulnerability in Firefox 2 submitted through the iSIGHT
Partners GVP Program by Greg McManus, Primary GVP
Researcher. The reported crash in Mozilla's block reflow
code could be used by an attacker to crash the browser and
run arbitrary code on the victim's computer.

CVE-2008-2810 MFSA-2008-32: Mozilla community member Geoff
reported a vulnerability in the way Mozilla opens URL files
sent directly to the browser. He demonstrated that such
files were opened with local file privileges, giving the
remote content access to read from the local filesystem. If
a user opened a bookmark to a malicious page in this
manner, the page could potentially read from other local
files on the user's computer.

CVE-2008-2809 MFSA-2008-31: Mozilla developer John G. Myers
reported a weakness in the trust model used by Mozilla
regarding alternate names on self-signed certificates. A
user could be prompted to accept a self-signed certificate
from a website which includes alt-name entries. If the user
accepted the certificate, they would also extend trust to
any alternate domains listed in the certificate, despite
not being prompted about the additional domains. This
technique could be used by an attacker to impersonate
another server.

CVE-2008-2808 MFSA-2008-30: Mozilla contributor Masahiro
Yamada reported that file URLs in directory listings were
not being HTML escaped properly when the filenames
contained particular characters. This resulted in files
from directory listings being opened in unintended ways or
files not being able to be opened by the browser altogether.

CVE-2008-2807 MFSA-2008-29: Mozilla developer Daniel
Glazman demonstrated that an improperly encoded .properties
file in an add-on can result in uninitialized memory being
used. This could potentially result in small chunks of data
from other programs being exposed in the browser.

CVE-2008-2806 MFSA-2008-28: Security researcher Gregory
Fleischer reported a vulnerability in the way Mozilla
indicates the origin of a document to the Java plugin. This
vulnerability could allow a malicious Java applet to bypass
the same-origin policy and create arbitrary socket
connections to other domains.

CVE-2008-2805 MFSA-2008-27: Opera developer Claudio
Santambrogio reported a vulnerability which allows
malicious content to force the browser into uploading local
files to the remote server. This could be used by an
attacker to steal arbitrary files from a victim's computer.

MFSA-2008-26: As a follow-up to vulnerability reported in
MFSA 2008-12 Mozilla has checked similar constructs in the
rest of the MIME handling code. Although no further buffer
overflows were found we changed several function calls to
use safer versions of the string routines that will be more
robust in the face of future code changes.

CVE-2008-2803 MFSA-2008-25: Mozilla contributor
moz_bug_r_a4 reported a vulnerability which allows
arbitrary JavaScript to be executed with chrome privileges.
The privilege escalation was possible because JavaScript
loaded via mozIJSSubScriptLoader.loadSubScript() was not
using XPCNativeWrappers when accessing content. This could
allow an attacker to overwrite trusted objects with
arbitrary code which would be executed with chrome
privileges when the trusted objects were called by the
browser.

CVE-2008-2802 MFSA-2008-24: Mozilla contributor
moz_bug_r_a4 reported a vulnerability that allowed
non-priviliged XUL documents to load chrome scripts from
the fastload file. This could allow an attacker to run
arbitrary JavaScript code with chrome privileges.


CVE-2008-2801 MFSA-2008-23: Security researcher Collin
Jackson reported a series of vulnerabilities which allow
JavaScript to be injected into signed JARs and executed
under the context of the JAR's signer. This could allow an
attacker to run JavaScript in a victim's browser with the
privileges of a different website, provided the attacker
possesses a JAR signed by the other website.

CVE-2008-2800 MFSA-2008-22: Mozilla contributor
moz_bug_r_a4 submitted a set of vulnerabilities which allow
scripts from one document to be executed in the context of
a different document. These vulnerabilities could be used
by an attacker to violate the same-origin policy and
perform an XSS attack.

CVE-2008-2798 CVE-2008-2799 MFSA-2008-21: Mozilla
developers identified and fixed several stability bugs in
the browser engine used in Firefox and other Mozilla-based
products. Some of these crashes showed evidence of memory
corruption under certain circumstances and we presume that
with enough effort at least some of these could be
exploited to run arbitrary code.
</description>
  <pkglist>
    <collection>
        <package name="seamonkey" arch="i586" version="1.1.11" release="3.1">
          <filename>seamonkey-1.1.11-3.1.i586.rpm</filename>
        </package>
        <package name="seamonkey" arch="ppc" version="1.1.11" release="3.1">
          <filename>seamonkey-1.1.11-3.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey" arch="x86_64" version="1.1.11" release="3.1">
          <filename>seamonkey-1.1.11-3.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="i586" version="1.1.11" release="3.1">
          <filename>seamonkey-dom-inspector-1.1.11-3.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="ppc" version="1.1.11" release="3.1">
          <filename>seamonkey-dom-inspector-1.1.11-3.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="x86_64" version="1.1.11" release="3.1">
          <filename>seamonkey-dom-inspector-1.1.11-3.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="i586" version="1.1.11" release="3.1">
          <filename>seamonkey-irc-1.1.11-3.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="ppc" version="1.1.11" release="3.1">
          <filename>seamonkey-irc-1.1.11-3.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="x86_64" version="1.1.11" release="3.1">
          <filename>seamonkey-irc-1.1.11-3.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="i586" version="1.1.11" release="3.1">
          <filename>seamonkey-mail-1.1.11-3.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="ppc" version="1.1.11" release="3.1">
          <filename>seamonkey-mail-1.1.11-3.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="x86_64" version="1.1.11" release="3.1">
          <filename>seamonkey-mail-1.1.11-3.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="i586" version="1.1.11" release="3.1">
          <filename>seamonkey-spellchecker-1.1.11-3.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="ppc" version="1.1.11" release="3.1">
          <filename>seamonkey-spellchecker-1.1.11-3.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="x86_64" version="1.1.11" release="3.1">
          <filename>seamonkey-spellchecker-1.1.11-3.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="i586" version="1.1.11" release="3.1">
          <filename>seamonkey-venkman-1.1.11-3.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="ppc" version="1.1.11" release="3.1">
          <filename>seamonkey-venkman-1.1.11-3.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="x86_64" version="1.1.11" release="3.1">
          <filename>seamonkey-venkman-1.1.11-3.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="079effb353d9569d5320db0e80e80d60"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="190">
  <id>emacs</id>
  <title>emacs security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1221186618"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=424340" id="424340" title="bug number 424340" type="bugzilla"/>
  </references>
  <description>When editing Python files Emacs accidently imported other
Python script in the current directory (CVE-2008-3949).
</description>
  <pkglist>
    <collection>
        <package name="emacs" arch="i586" version="22.2" release="24.2">
          <filename>emacs-22.2-24.2.i586.rpm</filename>
        </package>
        <package name="emacs" arch="ppc" version="22.2" release="24.2">
          <filename>emacs-22.2-24.2.ppc.rpm</filename>
        </package>
        <package name="emacs" arch="x86_64" version="22.2" release="24.2">
          <filename>emacs-22.2-24.2.x86_64.rpm</filename>
        </package>
        <package name="emacs-el" arch="i586" version="22.2" release="24.2">
          <filename>emacs-el-22.2-24.2.i586.rpm</filename>
        </package>
        <package name="emacs-el" arch="ppc" version="22.2" release="24.2">
          <filename>emacs-el-22.2-24.2.ppc.rpm</filename>
        </package>
        <package name="emacs-el" arch="x86_64" version="22.2" release="24.2">
          <filename>emacs-el-22.2-24.2.x86_64.rpm</filename>
        </package>
        <package name="emacs-info" arch="i586" version="22.2" release="24.2">
          <filename>emacs-info-22.2-24.2.i586.rpm</filename>
        </package>
        <package name="emacs-info" arch="ppc" version="22.2" release="24.2">
          <filename>emacs-info-22.2-24.2.ppc.rpm</filename>
        </package>
        <package name="emacs-info" arch="x86_64" version="22.2" release="24.2">
          <filename>emacs-info-22.2-24.2.x86_64.rpm</filename>
        </package>
        <package name="emacs-nox" arch="i586" version="22.2" release="24.2">
          <filename>emacs-nox-22.2-24.2.i586.rpm</filename>
        </package>
        <package name="emacs-nox" arch="ppc" version="22.2" release="24.2">
          <filename>emacs-nox-22.2-24.2.ppc.rpm</filename>
        </package>
        <package name="emacs-nox" arch="x86_64" version="22.2" release="24.2">
          <filename>emacs-nox-22.2-24.2.x86_64.rpm</filename>
        </package>
        <package name="emacs-x11" arch="i586" version="22.2" release="24.2">
          <filename>emacs-x11-22.2-24.2.i586.rpm</filename>
        </package>
        <package name="emacs-x11" arch="ppc" version="22.2" release="24.2">
          <filename>emacs-x11-22.2-24.2.ppc.rpm</filename>
        </package>
        <package name="emacs-x11" arch="x86_64" version="22.2" release="24.2">
          <filename>emacs-x11-22.2-24.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cb85bf797f7a59a3d3dd88dcfdc9e054"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="184">
  <id>libxml2</id>
  <title>libxml2 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1220622894"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415371" id="415371" title="bug number 415371" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=422636" id="422636" title="bug number 422636" type="bugzilla"/>
  </references>
  <description>Specially crafted xml files could cause a crash or a heap
based buffer overlow in libxml2 (CVE-2008-3281,
CVE-2008-3529).
</description>
  <pkglist>
    <collection>
        <package name="libxml2" arch="i586" version="2.6.32" release="11.3">
          <filename>libxml2-2.6.32-11.3.i586.rpm</filename>
        </package>
        <package name="libxml2" arch="ppc" version="2.6.32" release="11.3">
          <filename>libxml2-2.6.32-11.3.ppc.rpm</filename>
        </package>
        <package name="libxml2" arch="x86_64" version="2.6.32" release="11.3">
          <filename>libxml2-2.6.32-11.3.x86_64.rpm</filename>
        </package>
        <package name="libxml2-32bit" arch="x86_64" version="2.6.32" release="11.3">
          <filename>libxml2-32bit-2.6.32-11.3.x86_64.rpm</filename>
        </package>
        <package name="libxml2-64bit" arch="ppc" version="2.6.32" release="11.3">
          <filename>libxml2-64bit-2.6.32-11.3.ppc.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="i586" version="2.6.32" release="11.3">
          <filename>libxml2-devel-2.6.32-11.3.i586.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="ppc" version="2.6.32" release="11.3">
          <filename>libxml2-devel-2.6.32-11.3.ppc.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="x86_64" version="2.6.32" release="11.3">
          <filename>libxml2-devel-2.6.32-11.3.x86_64.rpm</filename>
        </package>
        <package name="libxml2-devel-32bit" arch="x86_64" version="2.6.32" release="11.3">
          <filename>libxml2-devel-32bit-2.6.32-11.3.x86_64.rpm</filename>
        </package>
        <package name="libxml2-devel-64bit" arch="ppc" version="2.6.32" release="11.3">
          <filename>libxml2-devel-64bit-2.6.32-11.3.ppc.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="i586" version="2.6.32" release="11.3">
          <filename>libxml2-doc-2.6.32-11.3.i586.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="ppc" version="2.6.32" release="11.3">
          <filename>libxml2-doc-2.6.32-11.3.ppc.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="x86_64" version="2.6.32" release="11.3">
          <filename>libxml2-doc-2.6.32-11.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2d81fb843afb99e0d699f415400068df"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="185">
  <id>aufs</id>
  <title>aufs kernel module: support weak update</title>
  <release>openSUSE 11.0</release>
  <issued date="1221004528"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=423625" id="423625" title="bug number 423625" type="bugzilla"/>
  </references>
  <description>The aufs kernel module did not support weak updates on
kernel updates, which caused
</description>
  <pkglist>
    <collection>
        <package name="aufs" arch="i586" version="cvs20080429" release="13.2">
          <filename>aufs-cvs20080429-13.2.i586.rpm</filename>
        </package>
        <package name="aufs" arch="ppc" version="cvs20080429" release="13.2">
          <filename>aufs-cvs20080429-13.2.ppc.rpm</filename>
        </package>
        <package name="aufs" arch="x86_64" version="cvs20080429" release="13.2">
          <filename>aufs-cvs20080429-13.2.x86_64.rpm</filename>
        </package>
        <package name="aufs-kmp-debug" arch="i586" version="cvs20080429_2.6.25.16_0.1" release="13.2">
          <filename>aufs-kmp-debug-cvs20080429_2.6.25.16_0.1-13.2.i586.rpm</filename>
        </package>
        <package name="aufs-kmp-debug" arch="x86_64" version="cvs20080429_2.6.25.16_0.1" release="13.2">
          <filename>aufs-kmp-debug-cvs20080429_2.6.25.16_0.1-13.2.x86_64.rpm</filename>
        </package>
        <package name="aufs-kmp-default" arch="i586" version="cvs20080429_2.6.25.16_0.1" release="13.2">
          <filename>aufs-kmp-default-cvs20080429_2.6.25.16_0.1-13.2.i586.rpm</filename>
        </package>
        <package name="aufs-kmp-default" arch="ppc" version="cvs20080429_2.6.25.16_0.1" release="13.2">
          <filename>aufs-kmp-default-cvs20080429_2.6.25.16_0.1-13.2.ppc.rpm</filename>
        </package>
        <package name="aufs-kmp-default" arch="x86_64" version="cvs20080429_2.6.25.16_0.1" release="13.2">
          <filename>aufs-kmp-default-cvs20080429_2.6.25.16_0.1-13.2.x86_64.rpm</filename>
        </package>
        <package name="aufs-kmp-pae" arch="i586" version="cvs20080429_2.6.25.16_0.1" release="13.2">
          <filename>aufs-kmp-pae-cvs20080429_2.6.25.16_0.1-13.2.i586.rpm</filename>
        </package>
        <package name="aufs-kmp-ppc64" arch="ppc" version="cvs20080429_2.6.25.16_0.1" release="13.2">
          <filename>aufs-kmp-ppc64-cvs20080429_2.6.25.16_0.1-13.2.ppc.rpm</filename>
        </package>
        <package name="aufs-kmp-xen" arch="i586" version="cvs20080429_2.6.25.16_0.1" release="13.2">
          <filename>aufs-kmp-xen-cvs20080429_2.6.25.16_0.1-13.2.i586.rpm</filename>
        </package>
        <package name="aufs-kmp-xen" arch="x86_64" version="cvs20080429_2.6.25.16_0.1" release="13.2">
          <filename>aufs-kmp-xen-cvs20080429_2.6.25.16_0.1-13.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7d59d98c96517376a88d8fdea1148b73"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="168">
  <id>apache2-mod_php5</id>
  <title>php5: various vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1219258456"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=416178" id="416178" title="bug number 416178" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406891" id="406891" title="bug number 406891" type="bugzilla"/>
  </references>
  <description>CVE-2008-3658, CVE-2008-3659 and CVE-2008-3660 have been
fixed in the php5 update.
</description>
  <pkglist>
    <collection>
        <package name="apache2-mod_php5" arch="i586" version="5.2.6" release="0.4">
          <filename>apache2-mod_php5-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="ppc" version="5.2.6" release="0.4">
          <filename>apache2-mod_php5-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="x86_64" version="5.2.6" release="0.4">
          <filename>apache2-mod_php5-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-bcmath-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-bcmath-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-bcmath-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-bz2" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-bz2-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-bz2" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-bz2-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-bz2" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-bz2-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-calendar" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-calendar-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-calendar" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-calendar-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-calendar" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-calendar-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-ctype" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-ctype-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-ctype" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-ctype-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-ctype" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-ctype-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-curl" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-curl-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-curl" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-curl-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-curl" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-curl-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-dba" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-dba-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-dba" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-dba-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-dba" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-dba-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-dbase" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-dbase-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-dbase" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-dbase-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-dbase" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-dbase-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-devel" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-devel-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-devel" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-devel-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-devel" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-devel-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-dom" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-dom-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-dom" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-dom-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-dom" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-dom-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-exif" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-exif-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-exif" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-exif-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-exif" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-exif-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-fastcgi-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-fastcgi-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-fastcgi-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-ftp" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-ftp-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-ftp" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-ftp-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-ftp" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-ftp-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-gd" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-gd-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-gd" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-gd-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-gd" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-gd-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-gettext" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-gettext-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-gettext" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-gettext-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-gettext" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-gettext-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-gmp" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-gmp-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-gmp" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-gmp-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-gmp" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-gmp-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-hash" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-hash-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-hash" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-hash-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-hash" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-hash-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-iconv" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-iconv-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-iconv" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-iconv-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-iconv" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-iconv-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-imap" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-imap-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-imap" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-imap-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-imap" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-imap-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-json" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-json-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-json" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-json-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-json" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-json-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-ldap" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-ldap-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-ldap" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-ldap-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-ldap" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-ldap-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-mbstring-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-mbstring-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-mbstring-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-mcrypt-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-mcrypt-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-mcrypt-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-mysql" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-mysql-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-mysql" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-mysql-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-mysql" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-mysql-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-ncurses-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-ncurses-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-ncurses-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-odbc" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-odbc-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-odbc" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-odbc-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-odbc" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-odbc-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-openssl" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-openssl-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-openssl" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-openssl-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-openssl" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-openssl-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-pcntl-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-pcntl-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-pcntl-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-pdo" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-pdo-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-pdo" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-pdo-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-pdo" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-pdo-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-pear" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-pear-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-pear" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-pear-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-pear" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-pear-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-pgsql-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-pgsql-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-pgsql-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-posix" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-posix-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-posix" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-posix-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-posix" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-posix-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-pspell" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-pspell-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-pspell" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-pspell-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-pspell" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-pspell-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-readline" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-readline-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-readline" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-readline-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-readline" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-readline-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-shmop" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-shmop-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-shmop" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-shmop-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-shmop" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-shmop-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-snmp" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-snmp-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-snmp" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-snmp-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-snmp" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-snmp-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-soap" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-soap-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-soap" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-soap-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-soap" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-soap-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-sockets" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-sockets-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-sockets" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-sockets-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-sockets" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-sockets-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-sqlite-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-sqlite-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-sqlite-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-suhosin-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-suhosin-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-suhosin-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-sysvmsg-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-sysvmsg-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-sysvmsg-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-sysvsem-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-sysvsem-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-sysvsem-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-sysvshm-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-sysvshm-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-sysvshm-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-tidy" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-tidy-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-tidy" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-tidy-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-tidy" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-tidy-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-tokenizer-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-tokenizer-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-tokenizer-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-wddx" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-wddx-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-wddx" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-wddx-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-wddx" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-wddx-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-xmlreader-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-xmlreader-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-xmlreader-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-xmlrpc-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-xmlrpc-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-xmlrpc-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-xmlwriter-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-xmlwriter-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-xmlwriter-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-xsl" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-xsl-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-xsl" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-xsl-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-xsl" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-xsl-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-zip" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-zip-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-zip" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-zip-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-zip" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-zip-5.2.6-0.4.x86_64.rpm</filename>
        </package>
        <package name="php5-zlib" arch="i586" version="5.2.6" release="0.4">
          <filename>php5-zlib-5.2.6-0.4.i586.rpm</filename>
        </package>
        <package name="php5-zlib" arch="ppc" version="5.2.6" release="0.4">
          <filename>php5-zlib-5.2.6-0.4.ppc.rpm</filename>
        </package>
        <package name="php5-zlib" arch="x86_64" version="5.2.6" release="0.4">
          <filename>php5-zlib-5.2.6-0.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="87e6028c90a8a210753a5a29c29740ab"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="194">
  <id>postfix</id>
  <title>postfix security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1221182949"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=421847" id="421847" title="bug number 421847" type="bugzilla"/>
  </references>
  <description>When exectuting external programs postfix didn't close the
file descriptor of the epoll system call. This could
potentially be exploited to shutdown postfix
(CVE-2008-3889).
</description>
  <pkglist>
    <collection>
        <package name="postfix" arch="i586" version="2.5.1" release="28.5">
          <filename>postfix-2.5.1-28.5.i586.rpm</filename>
        </package>
        <package name="postfix" arch="ppc" version="2.5.1" release="28.5">
          <filename>postfix-2.5.1-28.5.ppc.rpm</filename>
        </package>
        <package name="postfix" arch="x86_64" version="2.5.1" release="28.5">
          <filename>postfix-2.5.1-28.5.x86_64.rpm</filename>
        </package>
        <package name="postfix-devel" arch="i586" version="2.5.1" release="28.5">
          <filename>postfix-devel-2.5.1-28.5.i586.rpm</filename>
        </package>
        <package name="postfix-devel" arch="ppc" version="2.5.1" release="28.5">
          <filename>postfix-devel-2.5.1-28.5.ppc.rpm</filename>
        </package>
        <package name="postfix-devel" arch="x86_64" version="2.5.1" release="28.5">
          <filename>postfix-devel-2.5.1-28.5.x86_64.rpm</filename>
        </package>
        <package name="postfix-mysql" arch="i586" version="2.5.1" release="28.5">
          <filename>postfix-mysql-2.5.1-28.5.i586.rpm</filename>
        </package>
        <package name="postfix-mysql" arch="ppc" version="2.5.1" release="28.5">
          <filename>postfix-mysql-2.5.1-28.5.ppc.rpm</filename>
        </package>
        <package name="postfix-mysql" arch="x86_64" version="2.5.1" release="28.5">
          <filename>postfix-mysql-2.5.1-28.5.x86_64.rpm</filename>
        </package>
        <package name="postfix-postgresql" arch="i586" version="2.5.1" release="28.5">
          <filename>postfix-postgresql-2.5.1-28.5.i586.rpm</filename>
        </package>
        <package name="postfix-postgresql" arch="ppc" version="2.5.1" release="28.5">
          <filename>postfix-postgresql-2.5.1-28.5.ppc.rpm</filename>
        </package>
        <package name="postfix-postgresql" arch="x86_64" version="2.5.1" release="28.5">
          <filename>postfix-postgresql-2.5.1-28.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="afd77c2ca37046bf3ce9139dc6894cf8"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="189">
  <id>aide</id>
  <title>aide: Fix database handling to make it work</title>
  <release>openSUSE 11.0</release>
  <issued date="1221180715"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406597" id="406597" title="bug number 406597" type="bugzilla"/>
  </references>
  <description>Aide was configured incorrectly with signature protection
but without signature, so its database was not accessible
and could not work.
</description>
  <pkglist>
    <collection>
        <package name="aide" arch="i586" version="0.13.1" release="20.2">
          <filename>aide-0.13.1-20.2.i586.rpm</filename>
        </package>
        <package name="aide" arch="ppc" version="0.13.1" release="20.2">
          <filename>aide-0.13.1-20.2.ppc.rpm</filename>
        </package>
        <package name="aide" arch="x86_64" version="0.13.1" release="20.2">
          <filename>aide-0.13.1-20.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="531f8fa347b7ee2de5828067bfeeb48a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="195">
  <id>klamav</id>
  <title>klamav security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1221190704"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=368963" id="368963" title="bug number 368963" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=350987" id="350987" title="bug number 350987" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=196236" id="196236" title="bug number 196236" type="bugzilla"/>
  </references>
  <description>clamav has been updated due to security problems. The
version number of the clamav library has been changed with
that update. Therefore programs like klamav that are linked
against libclamav need to be updated as well.
</description>
  <pkglist>
    <collection>
        <package name="klamav" arch="i586" version="0.42" release="54.1">
          <filename>klamav-0.42-54.1.i586.rpm</filename>
        </package>
        <package name="klamav" arch="ppc" version="0.42" release="54.1">
          <filename>klamav-0.42-54.1.ppc.rpm</filename>
        </package>
        <package name="klamav" arch="x86_64" version="0.42" release="54.1">
          <filename>klamav-0.42-54.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cd7559ee4dbc8e406b32f846f2ab8e42"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="148">
  <id>uvcvideo-kmp-bigsmp</id>
  <title>uvcvideo: buffer overflow</title>
  <release>openSUSE 11.0</release>
  <issued date="1219018004"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415702" id="415702" title="bug number 415702" type="bugzilla"/>
  </references>
  <description>The kernel driver uvcvideo was vulnerable to a buffer
overflow in format descriptor parsing. (CVE-2008-3496)
</description>
  <pkglist>
    <collection>
        <package name="uvcvideo-kmp-debug" arch="i586" version="r200_2.6.25.11_0.1" release="2.4">
          <filename>uvcvideo-kmp-debug-r200_2.6.25.11_0.1-2.4.i586.rpm</filename>
        </package>
        <package name="uvcvideo-kmp-debug" arch="x86_64" version="r200_2.6.25.11_0.1" release="2.4">
          <filename>uvcvideo-kmp-debug-r200_2.6.25.11_0.1-2.4.x86_64.rpm</filename>
        </package>
        <package name="uvcvideo-kmp-default" arch="i586" version="r200_2.6.25.11_0.1" release="2.4">
          <filename>uvcvideo-kmp-default-r200_2.6.25.11_0.1-2.4.i586.rpm</filename>
        </package>
        <package name="uvcvideo-kmp-default" arch="ppc" version="r200_2.6.25.11_0.1" release="2.4">
          <filename>uvcvideo-kmp-default-r200_2.6.25.11_0.1-2.4.ppc.rpm</filename>
        </package>
        <package name="uvcvideo-kmp-default" arch="x86_64" version="r200_2.6.25.11_0.1" release="2.4">
          <filename>uvcvideo-kmp-default-r200_2.6.25.11_0.1-2.4.x86_64.rpm</filename>
        </package>
        <package name="uvcvideo-kmp-pae" arch="i586" version="r200_2.6.25.11_0.1" release="2.4">
          <filename>uvcvideo-kmp-pae-r200_2.6.25.11_0.1-2.4.i586.rpm</filename>
        </package>
        <package name="uvcvideo-kmp-ppc64" arch="ppc" version="r200_2.6.25.11_0.1" release="2.4">
          <filename>uvcvideo-kmp-ppc64-r200_2.6.25.11_0.1-2.4.ppc.rpm</filename>
        </package>
        <package name="uvcvideo-kmp-xen" arch="i586" version="r200_2.6.25.11_0.1" release="2.4">
          <filename>uvcvideo-kmp-xen-r200_2.6.25.11_0.1-2.4.i586.rpm</filename>
        </package>
        <package name="uvcvideo-kmp-xen" arch="x86_64" version="r200_2.6.25.11_0.1" release="2.4">
          <filename>uvcvideo-kmp-xen-r200_2.6.25.11_0.1-2.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="356fafd865d9a87cec63f644d32481f2"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="191">
  <id>pam_mount</id>
  <title>pam_mount security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1221180741"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=423557" id="423557" title="bug number 423557" type="bugzilla"/>
  </references>
  <description>pam_mount allowed users to mount arbitrary devices to any
directory when the 'luserconf' configuration directive was
set (CVE-2008-3970).
</description>
  <pkglist>
    <collection>
        <package name="pam_mount" arch="i586" version="0.35" release="15.2">
          <filename>pam_mount-0.35-15.2.i586.rpm</filename>
        </package>
        <package name="pam_mount" arch="ppc" version="0.35" release="15.2">
          <filename>pam_mount-0.35-15.2.ppc.rpm</filename>
        </package>
        <package name="pam_mount" arch="x86_64" version="0.35" release="15.2">
          <filename>pam_mount-0.35-15.2.x86_64.rpm</filename>
        </package>
        <package name="pam_mount-32bit" arch="x86_64" version="0.35" release="15.2">
          <filename>pam_mount-32bit-0.35-15.2.x86_64.rpm</filename>
        </package>
        <package name="pam_mount-64bit" arch="ppc" version="0.35" release="15.2">
          <filename>pam_mount-64bit-0.35-15.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c600d2f5bbb047710b6e84397c4fe84e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="186">
  <id>libopensc2</id>
  <title>opensc security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1221006146"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=413496" id="413496" title="bug number 413496" type="bugzilla"/>
  </references>
  <description>This update fixes a security issues with opensc that
occured when initializing blank smart cards with Siemens
CardOS M4. After the initialization anyone could set the
PIN of the smart card without authorization (CVE-2008-2235).

NOTE: Already initialized cards are still vulnerable after
this update. Please use the command-line tool pkcs15-tool
with option
--test-update and --update when necessary.

Please find more information at
http://www.opensc-project.org/security.html

This is the second attempt to fix this problem. The
previous update was unforunately incomplete.
</description>
  <pkglist>
    <collection>
        <package name="libopensc2" arch="i586" version="0.11.4" release="37.4">
          <filename>libopensc2-0.11.4-37.4.i586.rpm</filename>
        </package>
        <package name="libopensc2" arch="ppc" version="0.11.4" release="37.4">
          <filename>libopensc2-0.11.4-37.4.ppc.rpm</filename>
        </package>
        <package name="libopensc2" arch="x86_64" version="0.11.4" release="37.4">
          <filename>libopensc2-0.11.4-37.4.x86_64.rpm</filename>
        </package>
        <package name="libopensc2-32bit" arch="x86_64" version="0.11.4" release="37.4">
          <filename>libopensc2-32bit-0.11.4-37.4.x86_64.rpm</filename>
        </package>
        <package name="libopensc2-64bit" arch="ppc" version="0.11.4" release="37.4">
          <filename>libopensc2-64bit-0.11.4-37.4.ppc.rpm</filename>
        </package>
        <package name="opensc" arch="i586" version="0.11.4" release="37.4">
          <filename>opensc-0.11.4-37.4.i586.rpm</filename>
        </package>
        <package name="opensc" arch="ppc" version="0.11.4" release="37.4">
          <filename>opensc-0.11.4-37.4.ppc.rpm</filename>
        </package>
        <package name="opensc" arch="x86_64" version="0.11.4" release="37.4">
          <filename>opensc-0.11.4-37.4.x86_64.rpm</filename>
        </package>
        <package name="opensc-32bit" arch="x86_64" version="0.11.4" release="37.4">
          <filename>opensc-32bit-0.11.4-37.4.x86_64.rpm</filename>
        </package>
        <package name="opensc-64bit" arch="ppc" version="0.11.4" release="37.4">
          <filename>opensc-64bit-0.11.4-37.4.ppc.rpm</filename>
        </package>
        <package name="opensc-devel" arch="i586" version="0.11.4" release="37.4">
          <filename>opensc-devel-0.11.4-37.4.i586.rpm</filename>
        </package>
        <package name="opensc-devel" arch="ppc" version="0.11.4" release="37.4">
          <filename>opensc-devel-0.11.4-37.4.ppc.rpm</filename>
        </package>
        <package name="opensc-devel" arch="x86_64" version="0.11.4" release="37.4">
          <filename>opensc-devel-0.11.4-37.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1abf069a10f40d998b87313298df42bf"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="215">
  <id>klamav</id>
  <title>klamav security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1222091980"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=426238" id="426238" title="bug number 426238" type="bugzilla"/>
  </references>
  <description>clamav has been updated due to security problems. The
version number of the clamav library has been changed with
that update. Therefore programs like klamav that are linked
against libclamav need to be updated as well.
</description>
  <pkglist>
    <collection>
        <package name="klamav" arch="i586" version="0.42" release="54.3">
          <filename>klamav-0.42-54.3.i586.rpm</filename>
        </package>
        <package name="klamav" arch="ppc" version="0.42" release="54.3">
          <filename>klamav-0.42-54.3.ppc.rpm</filename>
        </package>
        <package name="klamav" arch="x86_64" version="0.42" release="54.3">
          <filename>klamav-0.42-54.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b57e051e87c4ef68949162a446822247"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="216">
  <id>libQtWebKit-devel</id>
  <title>libqt4 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1221878265"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=426919" id="426919" title="bug number 426919" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=384674" id="384674" title="bug number 384674" type="bugzilla"/>
  </references>
  <description>A flaw in the CSS loader of the WebKit engine could crash
programs and potentially allows execution of arbitrary code
(CVE-2008-3632).

This update also fixes unrelated problems with printing.
</description>
  <pkglist>
    <collection>
        <package name="libQtWebKit-devel" arch="i586" version="4.4.0" release="12.3">
          <filename>libQtWebKit-devel-4.4.0-12.3.i586.rpm</filename>
        </package>
        <package name="libQtWebKit-devel" arch="ppc" version="4.4.0" release="12.3">
          <filename>libQtWebKit-devel-4.4.0-12.3.ppc.rpm</filename>
        </package>
        <package name="libQtWebKit-devel" arch="x86_64" version="4.4.0" release="12.3">
          <filename>libQtWebKit-devel-4.4.0-12.3.x86_64.rpm</filename>
        </package>
        <package name="libQtWebKit4" arch="i586" version="4.4.0" release="12.3">
          <filename>libQtWebKit4-4.4.0-12.3.i586.rpm</filename>
        </package>
        <package name="libQtWebKit4" arch="ppc" version="4.4.0" release="12.3">
          <filename>libQtWebKit4-4.4.0-12.3.ppc.rpm</filename>
        </package>
        <package name="libQtWebKit4" arch="x86_64" version="4.4.0" release="12.3">
          <filename>libQtWebKit4-4.4.0-12.3.x86_64.rpm</filename>
        </package>
        <package name="libqt4" arch="i586" version="4.4.0" release="12.4">
          <filename>libqt4-4.4.0-12.4.i586.rpm</filename>
        </package>
        <package name="libqt4" arch="ppc" version="4.4.0" release="12.4">
          <filename>libqt4-4.4.0-12.4.ppc.rpm</filename>
        </package>
        <package name="libqt4" arch="x86_64" version="4.4.0" release="12.4">
          <filename>libqt4-4.4.0-12.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-32bit" arch="x86_64" version="4.4.0" release="12.4">
          <filename>libqt4-32bit-4.4.0-12.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-64bit" arch="ppc" version="4.4.0" release="12.4">
          <filename>libqt4-64bit-4.4.0-12.4.ppc.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="i586" version="4.4.0" release="12.4">
          <filename>libqt4-devel-4.4.0-12.4.i586.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="ppc" version="4.4.0" release="12.4">
          <filename>libqt4-devel-4.4.0-12.4.ppc.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="x86_64" version="4.4.0" release="12.4">
          <filename>libqt4-devel-4.4.0-12.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-devel-doc" arch="i586" version="4.4.0" release="12.3">
          <filename>libqt4-devel-doc-4.4.0-12.3.i586.rpm</filename>
        </package>
        <package name="libqt4-devel-doc" arch="ppc" version="4.4.0" release="12.3">
          <filename>libqt4-devel-doc-4.4.0-12.3.ppc.rpm</filename>
        </package>
        <package name="libqt4-devel-doc" arch="x86_64" version="4.4.0" release="12.3">
          <filename>libqt4-devel-doc-4.4.0-12.3.x86_64.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="i586" version="4.4.0" release="12.4">
          <filename>libqt4-qt3support-4.4.0-12.4.i586.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="ppc" version="4.4.0" release="12.4">
          <filename>libqt4-qt3support-4.4.0-12.4.ppc.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="x86_64" version="4.4.0" release="12.4">
          <filename>libqt4-qt3support-4.4.0-12.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-qt3support-32bit" arch="x86_64" version="4.4.0" release="12.4">
          <filename>libqt4-qt3support-32bit-4.4.0-12.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-qt3support-64bit" arch="ppc" version="4.4.0" release="12.4">
          <filename>libqt4-qt3support-64bit-4.4.0-12.4.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="i586" version="4.4.0" release="12.4">
          <filename>libqt4-sql-4.4.0-12.4.i586.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="ppc" version="4.4.0" release="12.4">
          <filename>libqt4-sql-4.4.0-12.4.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="x86_64" version="4.4.0" release="12.4">
          <filename>libqt4-sql-4.4.0-12.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-32bit" arch="x86_64" version="4.4.0" release="12.4">
          <filename>libqt4-sql-32bit-4.4.0-12.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-64bit" arch="ppc" version="4.4.0" release="12.4">
          <filename>libqt4-sql-64bit-4.4.0-12.4.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="i586" version="4.4.0" release="12.4">
          <filename>libqt4-sql-sqlite-4.4.0-12.4.i586.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="ppc" version="4.4.0" release="12.4">
          <filename>libqt4-sql-sqlite-4.4.0-12.4.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="x86_64" version="4.4.0" release="12.4">
          <filename>libqt4-sql-sqlite-4.4.0-12.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="i586" version="4.4.0" release="12.4">
          <filename>libqt4-x11-4.4.0-12.4.i586.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="ppc" version="4.4.0" release="12.4">
          <filename>libqt4-x11-4.4.0-12.4.ppc.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="x86_64" version="4.4.0" release="12.4">
          <filename>libqt4-x11-4.4.0-12.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11-32bit" arch="x86_64" version="4.4.0" release="12.4">
          <filename>libqt4-x11-32bit-4.4.0-12.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11-64bit" arch="ppc" version="4.4.0" release="12.4">
          <filename>libqt4-x11-64bit-4.4.0-12.4.ppc.rpm</filename>
        </package>
        <package name="qt4-x11-tools" arch="i586" version="4.4.0" release="12.3">
          <filename>qt4-x11-tools-4.4.0-12.3.i586.rpm</filename>
        </package>
        <package name="qt4-x11-tools" arch="ppc" version="4.4.0" release="12.3">
          <filename>qt4-x11-tools-4.4.0-12.3.ppc.rpm</filename>
        </package>
        <package name="qt4-x11-tools" arch="x86_64" version="4.4.0" release="12.3">
          <filename>qt4-x11-tools-4.4.0-12.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="235afd94c065cb5b786cd4467541053a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="212">
  <id>WebKitGtk</id>
  <title>WebKitGtk security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1221938534"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=427349" id="427349" title="bug number 427349" type="bugzilla"/>
  </references>
  <description>A flaw in the CSS loader of the WebKit engine could crash
programs and potentially allows execution of arbitrary code
(CVE-2008-3632).
</description>
  <pkglist>
    <collection>
        <package name="WebKitGtk" arch="i586" version="1.0.29509" release="49.2">
          <filename>WebKitGtk-1.0.29509-49.2.i586.rpm</filename>
        </package>
        <package name="WebKitGtk" arch="ppc" version="1.0.29509" release="49.2">
          <filename>WebKitGtk-1.0.29509-49.2.ppc.rpm</filename>
        </package>
        <package name="WebKitGtk" arch="x86_64" version="1.0.29509" release="49.2">
          <filename>WebKitGtk-1.0.29509-49.2.x86_64.rpm</filename>
        </package>
        <package name="WebKitGtk-devel" arch="i586" version="1.0.29509" release="49.2">
          <filename>WebKitGtk-devel-1.0.29509-49.2.i586.rpm</filename>
        </package>
        <package name="WebKitGtk-devel" arch="ppc" version="1.0.29509" release="49.2">
          <filename>WebKitGtk-devel-1.0.29509-49.2.ppc.rpm</filename>
        </package>
        <package name="WebKitGtk-devel" arch="x86_64" version="1.0.29509" release="49.2">
          <filename>WebKitGtk-devel-1.0.29509-49.2.x86_64.rpm</filename>
        </package>
        <package name="libWebKitGtk0" arch="i586" version="1.0.29509" release="49.2">
          <filename>libWebKitGtk0-1.0.29509-49.2.i586.rpm</filename>
        </package>
        <package name="libWebKitGtk0" arch="ppc" version="1.0.29509" release="49.2">
          <filename>libWebKitGtk0-1.0.29509-49.2.ppc.rpm</filename>
        </package>
        <package name="libWebKitGtk0" arch="x86_64" version="1.0.29509" release="49.2">
          <filename>libWebKitGtk0-1.0.29509-49.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6dc784ab0d16da7d3d1e152e4331e82a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="100">
  <id>bluez-audio</id>
  <title>bluez security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1216171535"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404963" id="404963" title="bug number 404963" type="bugzilla"/>
  </references>
  <description>Missing length checks in bluez-libs could cause a buffer
overflow in Bluetooth applications. Malicious bluetooth
devices could potentially exploit that to execute arbitrary
code (CVE-2008-2374).

Note: The source code of each application that uses
vulnerable functions of bluez-libs needs to be adapted to
actually fix the problem.
</description>
  <pkglist>
    <collection>
        <package name="bluez-audio" arch="i586" version="3.32" release="8.2">
          <filename>bluez-audio-3.32-8.2.i586.rpm</filename>
        </package>
        <package name="bluez-cups" arch="i586" version="3.32" release="8.2">
          <filename>bluez-cups-3.32-8.2.i586.rpm</filename>
        </package>
        <package name="bluez-cups" arch="ppc" version="3.32" release="8.2">
          <filename>bluez-cups-3.32-8.2.ppc.rpm</filename>
        </package>
        <package name="bluez-cups" arch="x86_64" version="3.32" release="8.2">
          <filename>bluez-cups-3.32-8.2.x86_64.rpm</filename>
        </package>
        <package name="bluez-libs" arch="i586" version="3.32" release="3.2">
          <filename>bluez-libs-3.32-3.2.i586.rpm</filename>
        </package>
        <package name="bluez-libs" arch="ppc" version="3.32" release="3.2">
          <filename>bluez-libs-3.32-3.2.ppc.rpm</filename>
        </package>
        <package name="bluez-libs" arch="x86_64" version="3.32" release="3.2">
          <filename>bluez-libs-3.32-3.2.x86_64.rpm</filename>
        </package>
        <package name="bluez-test" arch="i586" version="3.32" release="8.2">
          <filename>bluez-test-3.32-8.2.i586.rpm</filename>
        </package>
        <package name="bluez-test" arch="ppc" version="3.32" release="8.2">
          <filename>bluez-test-3.32-8.2.ppc.rpm</filename>
        </package>
        <package name="bluez-test" arch="x86_64" version="3.32" release="8.2">
          <filename>bluez-test-3.32-8.2.x86_64.rpm</filename>
        </package>
        <package name="bluez-utils" arch="i586" version="3.32" release="8.2">
          <filename>bluez-utils-3.32-8.2.i586.rpm</filename>
        </package>
        <package name="bluez-utils" arch="ppc" version="3.32" release="8.2">
          <filename>bluez-utils-3.32-8.2.ppc.rpm</filename>
        </package>
        <package name="bluez-utils" arch="x86_64" version="3.32" release="8.2">
          <filename>bluez-utils-3.32-8.2.x86_64.rpm</filename>
        </package>
        <package name="obex-data-server" arch="i586" version="0.3" release="26.2">
          <filename>obex-data-server-0.3-26.2.i586.rpm</filename>
        </package>
        <package name="obex-data-server" arch="ppc" version="0.3" release="26.2">
          <filename>obex-data-server-0.3-26.2.ppc.rpm</filename>
        </package>
        <package name="obex-data-server" arch="x86_64" version="0.3" release="26.2">
          <filename>obex-data-server-0.3-26.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="75a32e4e4e2b032f558b96eb5c932d65"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="155">
  <id>xgl</id>
  <title>xgl: Fixes for security vulnerabilities in included X server.</title>
  <release>openSUSE 11.0</release>
  <issued date="1218760585"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=387544" id="387544" title="bug number 387544" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=332447" id="332447" title="bug number 332447" type="bugzilla"/>
  </references>
  <description>This update fixes multiple vulnerabilities reported by
iDefense for the included X server:
- CVE-2008-2360 - RENDER Extension heap buffer overflow
- CVE-2008-2361 - RENDER Extension crash
- CVE-2008-2362 - RENDER Extension memory corruption 
- CVE-2008-1379 - MIT-SHM arbitrary memory read
- CVE-2008-1377 - RECORD and Security extensions  memory
  corruption
</description>
  <pkglist>
    <collection>
        <package name="xgl" arch="i586" version="git_071026" release="79.3">
          <filename>xgl-git_071026-79.3.i586.rpm</filename>
        </package>
        <package name="xgl" arch="ppc" version="git_071026" release="79.3">
          <filename>xgl-git_071026-79.3.ppc.rpm</filename>
        </package>
        <package name="xgl" arch="x86_64" version="git_071026" release="79.3">
          <filename>xgl-git_071026-79.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="31fa87b4609a116426f5322dd87b0fe6"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="187">
  <id>yast2-pkg-bindings</id>
  <title>yast2-pkg-bindings: let one click installer select the best architecture</title>
  <release>openSUSE 11.0</release>
  <issued date="1221007088"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=413150" id="413150" title="bug number 413150" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402135" id="402135" title="bug number 402135" type="bugzilla"/>
  </references>
  <description>The one click installer for 11.0/x86_64 selected packages
for i586 if they had a higher release number than the one
in x86_64 (bnc#413150).

The problem with setting priorities greater than 99 in the
repository manager has been also fixed (bnc#402135).
</description>
  <pkglist>
    <collection>
        <package name="yast2-pkg-bindings" arch="i586" version="2.16.41" release="0.1">
          <filename>yast2-pkg-bindings-2.16.41-0.1.i586.rpm</filename>
        </package>
        <package name="yast2-pkg-bindings" arch="ppc" version="2.16.41" release="0.1">
          <filename>yast2-pkg-bindings-2.16.41-0.1.ppc.rpm</filename>
        </package>
        <package name="yast2-pkg-bindings" arch="x86_64" version="2.16.41" release="0.1">
          <filename>yast2-pkg-bindings-2.16.41-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="062934582b8c9c0f88e5069cc77f0685"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="220">
  <id>dhcpcd</id>
  <title>dhcpcd: dhcpcd lease file parsing fixes</title>
  <release>openSUSE 11.0</release>
  <issued date="1221825361"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=423145" id="423145" title="bug number 423145" type="bugzilla"/>
  </references>
  <description>A suse specific patch caused dhcpcd to re-read lease files
incorrectly. The patch also adds documentation about
extended DHCP queries being sent by our dhcpcd (bnc#423145).
</description>
  <pkglist>
    <collection>
        <package name="dhcpcd" arch="i586" version="3.2.3" release="6.3">
          <filename>dhcpcd-3.2.3-6.3.i586.rpm</filename>
        </package>
        <package name="dhcpcd" arch="ppc" version="3.2.3" release="6.3">
          <filename>dhcpcd-3.2.3-6.3.ppc.rpm</filename>
        </package>
        <package name="dhcpcd" arch="x86_64" version="3.2.3" release="6.3">
          <filename>dhcpcd-3.2.3-6.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9201f00917bda2abec5039ad92befb65"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="214">
  <id>gnome-main-menu</id>
  <title>gnome-main-menu: make it faster by not generating thumbnails here</title>
  <release>openSUSE 11.0</release>
  <issued date="1221932074"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402256" id="402256" title="bug number 402256" type="bugzilla"/>
  </references>
  <description>This makes gnome-main-menu not do thumbnailing by itself
anymore, as the thumbnail creation process would halt
main-menu for as long as thumbnails were being generated.
Instead, we now rely on Nautilus to generate thumbnails for
the user's files.
</description>
  <pkglist>
    <collection>
        <package name="gnome-main-menu" arch="i586" version="0.9.10" release="30.2">
          <filename>gnome-main-menu-0.9.10-30.2.i586.rpm</filename>
        </package>
        <package name="gnome-main-menu" arch="ppc" version="0.9.10" release="30.2">
          <filename>gnome-main-menu-0.9.10-30.2.ppc.rpm</filename>
        </package>
        <package name="gnome-main-menu" arch="x86_64" version="0.9.10" release="30.2">
          <filename>gnome-main-menu-0.9.10-30.2.x86_64.rpm</filename>
        </package>
        <package name="gnome-main-menu-devel" arch="i586" version="0.9.10" release="30.2">
          <filename>gnome-main-menu-devel-0.9.10-30.2.i586.rpm</filename>
        </package>
        <package name="gnome-main-menu-devel" arch="ppc" version="0.9.10" release="30.2">
          <filename>gnome-main-menu-devel-0.9.10-30.2.ppc.rpm</filename>
        </package>
        <package name="gnome-main-menu-devel" arch="x86_64" version="0.9.10" release="30.2">
          <filename>gnome-main-menu-devel-0.9.10-30.2.x86_64.rpm</filename>
        </package>
        <package name="nautilus-gnome-main-menu" arch="i586" version="0.9.10" release="30.2">
          <filename>nautilus-gnome-main-menu-0.9.10-30.2.i586.rpm</filename>
        </package>
        <package name="nautilus-gnome-main-menu" arch="ppc" version="0.9.10" release="30.2">
          <filename>nautilus-gnome-main-menu-0.9.10-30.2.ppc.rpm</filename>
        </package>
        <package name="nautilus-gnome-main-menu" arch="x86_64" version="0.9.10" release="30.2">
          <filename>nautilus-gnome-main-menu-0.9.10-30.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b5bb7b0615d4f2adfb73a3788a1c6be6"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="229">
  <id>GraphicsMagick</id>
  <title>GraphicsMagick security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1222706657"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=408852" id="408852" title="bug number 408852" type="bugzilla"/>
  </references>
  <description>Specially crafted image files could crash GraphicsMagick
(CVE-2008-3134).
</description>
  <pkglist>
    <collection>
        <package name="GraphicsMagick" arch="i586" version="1.1.11" release="29.2">
          <filename>GraphicsMagick-1.1.11-29.2.i586.rpm</filename>
        </package>
        <package name="GraphicsMagick" arch="ppc" version="1.1.11" release="29.2">
          <filename>GraphicsMagick-1.1.11-29.2.ppc.rpm</filename>
        </package>
        <package name="GraphicsMagick" arch="x86_64" version="1.1.11" release="29.2">
          <filename>GraphicsMagick-1.1.11-29.2.x86_64.rpm</filename>
        </package>
        <package name="GraphicsMagick-devel" arch="i586" version="1.1.11" release="29.2">
          <filename>GraphicsMagick-devel-1.1.11-29.2.i586.rpm</filename>
        </package>
        <package name="GraphicsMagick-devel" arch="ppc" version="1.1.11" release="29.2">
          <filename>GraphicsMagick-devel-1.1.11-29.2.ppc.rpm</filename>
        </package>
        <package name="GraphicsMagick-devel" arch="x86_64" version="1.1.11" release="29.2">
          <filename>GraphicsMagick-devel-1.1.11-29.2.x86_64.rpm</filename>
        </package>
        <package name="libGraphicsMagick++-devel" arch="i586" version="1.1.11" release="29.2">
          <filename>libGraphicsMagick++-devel-1.1.11-29.2.i586.rpm</filename>
        </package>
        <package name="libGraphicsMagick++-devel" arch="ppc" version="1.1.11" release="29.2">
          <filename>libGraphicsMagick++-devel-1.1.11-29.2.ppc.rpm</filename>
        </package>
        <package name="libGraphicsMagick++-devel" arch="x86_64" version="1.1.11" release="29.2">
          <filename>libGraphicsMagick++-devel-1.1.11-29.2.x86_64.rpm</filename>
        </package>
        <package name="libGraphicsMagick++1" arch="i586" version="1.1.11" release="29.2">
          <filename>libGraphicsMagick++1-1.1.11-29.2.i586.rpm</filename>
        </package>
        <package name="libGraphicsMagick++1" arch="ppc" version="1.1.11" release="29.2">
          <filename>libGraphicsMagick++1-1.1.11-29.2.ppc.rpm</filename>
        </package>
        <package name="libGraphicsMagick++1" arch="x86_64" version="1.1.11" release="29.2">
          <filename>libGraphicsMagick++1-1.1.11-29.2.x86_64.rpm</filename>
        </package>
        <package name="libGraphicsMagick1" arch="i586" version="1.1.11" release="29.2">
          <filename>libGraphicsMagick1-1.1.11-29.2.i586.rpm</filename>
        </package>
        <package name="libGraphicsMagick1" arch="ppc" version="1.1.11" release="29.2">
          <filename>libGraphicsMagick1-1.1.11-29.2.ppc.rpm</filename>
        </package>
        <package name="libGraphicsMagick1" arch="x86_64" version="1.1.11" release="29.2">
          <filename>libGraphicsMagick1-1.1.11-29.2.x86_64.rpm</filename>
        </package>
        <package name="libGraphicsMagickWand0" arch="i586" version="1.1.11" release="29.2">
          <filename>libGraphicsMagickWand0-1.1.11-29.2.i586.rpm</filename>
        </package>
        <package name="libGraphicsMagickWand0" arch="ppc" version="1.1.11" release="29.2">
          <filename>libGraphicsMagickWand0-1.1.11-29.2.ppc.rpm</filename>
        </package>
        <package name="libGraphicsMagickWand0" arch="x86_64" version="1.1.11" release="29.2">
          <filename>libGraphicsMagickWand0-1.1.11-29.2.x86_64.rpm</filename>
        </package>
        <package name="perl-GraphicsMagick" arch="i586" version="1.1.11" release="29.2">
          <filename>perl-GraphicsMagick-1.1.11-29.2.i586.rpm</filename>
        </package>
        <package name="perl-GraphicsMagick" arch="ppc" version="1.1.11" release="29.2">
          <filename>perl-GraphicsMagick-1.1.11-29.2.ppc.rpm</filename>
        </package>
        <package name="perl-GraphicsMagick" arch="x86_64" version="1.1.11" release="29.2">
          <filename>perl-GraphicsMagick-1.1.11-29.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e2458257cb5d9e5ee260c2609afd2a16"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="230">
  <id>mercurial</id>
  <title>mercurial security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1222703800"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=427243" id="427243" title="bug number 427243" type="bugzilla"/>
  </references>
  <description>The hgweb script didn't enforce the 'allowpull' permission
setting which allowed anyone to retrieve files from the
repository (CVE-2008-4297)
</description>
  <pkglist>
    <collection>
        <package name="mercurial" arch="i586" version="1.0" release="30.4">
          <filename>mercurial-1.0-30.4.i586.rpm</filename>
        </package>
        <package name="mercurial" arch="ppc" version="1.0" release="30.4">
          <filename>mercurial-1.0-30.4.ppc.rpm</filename>
        </package>
        <package name="mercurial" arch="x86_64" version="1.0" release="30.4">
          <filename>mercurial-1.0-30.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9097c988668a4bcbd38480f4c13d913a"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="225">
  <id>digikam</id>
  <title>digikam: Resolve race condition in while downloading photos</title>
  <release>openSUSE 11.0</release>
  <issued date="1222422857"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=418199" id="418199" title="bug number 418199" type="bugzilla"/>
  </references>
  <description>This patch resolves a race condition in Digikam's photo
download code that could cause loss of pictures.  The
download code now uses unique pathnames for each photo's
temporary file during download, preventing overwrites.
</description>
  <pkglist>
    <collection>
        <package name="digikam" arch="i586" version="0.9.3" release="70.2">
          <filename>digikam-0.9.3-70.2.i586.rpm</filename>
        </package>
        <package name="digikam" arch="ppc" version="0.9.3" release="70.2">
          <filename>digikam-0.9.3-70.2.ppc.rpm</filename>
        </package>
        <package name="digikam" arch="x86_64" version="0.9.3" release="70.2">
          <filename>digikam-0.9.3-70.2.x86_64.rpm</filename>
        </package>
        <package name="digikamimageplugins" arch="i586" version="0.9.3" release="70.2">
          <filename>digikamimageplugins-0.9.3-70.2.i586.rpm</filename>
        </package>
        <package name="digikamimageplugins" arch="ppc" version="0.9.3" release="70.2">
          <filename>digikamimageplugins-0.9.3-70.2.ppc.rpm</filename>
        </package>
        <package name="digikamimageplugins" arch="x86_64" version="0.9.3" release="70.2">
          <filename>digikamimageplugins-0.9.3-70.2.x86_64.rpm</filename>
        </package>
        <package name="digikamimageplugins-superimpose" arch="i586" version="0.9.3" release="70.2">
          <filename>digikamimageplugins-superimpose-0.9.3-70.2.i586.rpm</filename>
        </package>
        <package name="digikamimageplugins-superimpose" arch="ppc" version="0.9.3" release="70.2">
          <filename>digikamimageplugins-superimpose-0.9.3-70.2.ppc.rpm</filename>
        </package>
        <package name="digikamimageplugins-superimpose" arch="x86_64" version="0.9.3" release="70.2">
          <filename>digikamimageplugins-superimpose-0.9.3-70.2.x86_64.rpm</filename>
        </package>
        <package name="libdigikam-devel" arch="i586" version="0.9.3" release="70.2">
          <filename>libdigikam-devel-0.9.3-70.2.i586.rpm</filename>
        </package>
        <package name="libdigikam-devel" arch="ppc" version="0.9.3" release="70.2">
          <filename>libdigikam-devel-0.9.3-70.2.ppc.rpm</filename>
        </package>
        <package name="libdigikam-devel" arch="x86_64" version="0.9.3" release="70.2">
          <filename>libdigikam-devel-0.9.3-70.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a50ec6a7f9d198345a261750995da42c"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="231">
  <id>yast2-pkg-bindings</id>
  <title>yast2-pkg-bindings: let one click installer select the best architecture</title>
  <release>openSUSE 11.0</release>
  <issued date="1222882251"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=413150" id="413150" title="bug number 413150" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402135" id="402135" title="bug number 402135" type="bugzilla"/>
  </references>
  <description>The one click installer for 11.0/x86_64 selected packages
for i586 if they had a higher release number than the one
in x86_64 (bnc#413150).

The problem with setting priorities greater than 99 in the
repository manager has been also fixed (bnc#402135).
</description>
  <pkglist>
    <collection>
        <package name="yast2-pkg-bindings" arch="i586" version="2.16.41" release="0.3">
          <filename>yast2-pkg-bindings-2.16.41-0.3.i586.rpm</filename>
        </package>
        <package name="yast2-pkg-bindings" arch="ppc" version="2.16.41" release="0.3">
          <filename>yast2-pkg-bindings-2.16.41-0.3.ppc.rpm</filename>
        </package>
        <package name="yast2-pkg-bindings" arch="x86_64" version="2.16.41" release="0.3">
          <filename>yast2-pkg-bindings-2.16.41-0.3.x86_64.rpm</filename>
        </package>
        <package name="yast2-pkg-bindings-devel-doc" arch="noarch" version="2.16.41" release="0.3">
          <filename>yast2-pkg-bindings-devel-doc-2.16.41-0.3.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9d4bf02682deca951672e43797f7cba1"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="233">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Update to 3.0.3</title>
  <release>openSUSE 11.0</release>
  <issued date="1222987244"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429179" id="429179" title="bug number 429179" type="bugzilla"/>
  </references>
  <description>This update brings MozillaFirefox to version 3.0.3, fixing
a number of bugs and security problems:

MFSA 2008-44 / CVE-2008-4067 / CVE-2008-4068: resource:
traversal vulnerabilities

MFSA 2008-43: BOM characters stripped from JavaScript
before execution CVE-2008-4065: Stripped BOM characters bug
CVE-2008-4066: HTML escaped low surrogates bug

MFSA 2008-42 Crashes with evidence of memory corruption
(rv:1.9.0.2/1.8.1.17): CVE-2008-4061: Jesse Ruderman
reported a crash in the layout engine. CVE-2008-4062: Igor
Bukanov, Philip Taylor, Georgi Guninski, and Antoine Labour
reported crashes in the JavaScript engine. CVE-2008-4063:
Jesse Ruderman, Bob Clary, and Martijn Wargers reported
crashes in the layout engine which only affected Firefox 3.
CVE-2008-4064: David Maciejak and Drew Yao reported crashes
in graphics rendering which only affected Firefox 3.

MFSA 2008-41 Privilege escalation via XPCnativeWrapper
pollution CVE-2008-4058: XPCnativeWrapper pollution bugs
CVE-2008-4059: XPCnativeWrapper pollution (Firefox 2)
CVE-2008-4060: Documents without script handling objects

MFSA 2008-40 / CVE-2008-3837: Forced mouse drag
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.3" release="1.1">
          <filename>MozillaFirefox-3.0.3-1.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.3" release="1.1">
          <filename>MozillaFirefox-3.0.3-1.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.3" release="1.1">
          <filename>MozillaFirefox-3.0.3-1.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.3" release="1.1">
          <filename>MozillaFirefox-translations-3.0.3-1.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.3" release="1.1">
          <filename>MozillaFirefox-translations-3.0.3-1.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.3" release="1.1">
          <filename>MozillaFirefox-translations-3.0.3-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f9957a380c8d1790bc79a80ccc209f19"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="234">
  <id>mozilla-xulrunner190</id>
  <title>mozilla-xulrunner190: Update to 1.9.0.3</title>
  <release>openSUSE 11.0</release>
  <issued date="1222984520"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429179" id="429179" title="bug number 429179" type="bugzilla"/>
  </references>
  <description>This update brings the mozilla-xulrunner190 engine to
version 1.9.0.3, fixing a number of bugs and security
problems:

MFSA 2008-44 / CVE-2008-4067 / CVE-2008-4068: resource:
traversal vulnerabilities

MFSA 2008-43: BOM characters stripped from JavaScript
before execution CVE-2008-4065: Stripped BOM characters bug
CVE-2008-4066: HTML escaped low surrogates bug

MFSA 2008-42 Crashes with evidence of memory corruption
(rv:1.9.0.2/1.8.1.17): CVE-2008-4061: Jesse Ruderman
reported a crash in the layout engine. CVE-2008-4062: Igor
Bukanov, Philip Taylor, Georgi Guninski, and Antoine Labour
reported crashes in the JavaScript engine. CVE-2008-4063:
Jesse Ruderman, Bob Clary, and Martijn Wargers reported
crashes in the layout engine which only affected Firefox 3.
CVE-2008-4064: David Maciejak and Drew Yao reported crashes
in graphics rendering which only affected Firefox 3.

MFSA 2008-41 Privilege escalation via XPCnativeWrapper
pollution CVE-2008-4058: XPCnativeWrapper pollution bugs
CVE-2008-4059: XPCnativeWrapper pollution (Firefox 2)
CVE-2008-4060: Documents without script handling objects

MFSA 2008-40 / CVE-2008-3837: Forced mouse drag
</description>
  <pkglist>
    <collection>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.3-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.3-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.3-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.3-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.3-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.3-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.3-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.3-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.3-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.3-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.3-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.3-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.3-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.3-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.3-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.3-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.3-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.3" release="1.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.3-1.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="48fcbb624a95b290275340017ad12e5c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="236">
  <id>MozillaThunderbird</id>
  <title>MozillaThunderbird: Security update to 2.0.0.17</title>
  <release>openSUSE 11.0</release>
  <issued date="1223007401"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429179" id="429179" title="bug number 429179" type="bugzilla"/>
  </references>
  <description>This update brings Mozilla Thunderbird to version 2.0.0.17.

It contains the following security fixes: MFSA 2008-46 /
CVE-2008-4070: Heap overflow when canceling a newsgroup
message

MFSA 2008-44 / CVE-2008-4067 / CVE-2008-4068: resource:
traversal vulnerabilities

MFSA 2008-43: BOM characters stripped from JavaScript
before execution CVE-2008-4065: Stripped BOM characters bug
CVE-2008-4066: HTML escaped low surrogates bug

MFSA 2008-42 Crashes with evidence of memory corruption
(rv:1.9.0.2/1.8.1.17): CVE-2008-4061: Jesse Ruderman
reported a crash in the layout engine. CVE-2008-4062: Igor
Bukanov, Philip Taylor, Georgi Guninski, and Antoine Labour
reported crashes in the JavaScript engine. CVE-2008-4063:
Jesse Ruderman, Bob Clary, and Martijn Wargers reported
crashes in the layout engine which only affected Firefox 3.
CVE-2008-4064: David Maciejak and Drew Yao reported crashes
in graphics rendering which only affected Firefox 3.

MFSA 2008-41 Privilege escalation via XPCnativeWrapper
pollution CVE-2008-4058: XPCnativeWrapper pollution bugs
CVE-2008-4059: XPCnativeWrapper pollution (Firefox 2)
CVE-2008-4060: Documents without script handling objects

MFSA 2008-38 / CVE-2008-3835:
nsXMLDocument::OnChannelRedirect() same-origin violation

MFSA 2008-37 / CVE-2008-0016: UTF-8 URL stack buffer
overflow

For more details:
http://www.mozilla.org/security/known-vulnerabilities/thunde
rbird20.html
</description>
  <pkglist>
    <collection>
        <package name="MozillaThunderbird" arch="i586" version="2.0.0.17" release="0.1">
          <filename>MozillaThunderbird-2.0.0.17-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="ppc" version="2.0.0.17" release="0.1">
          <filename>MozillaThunderbird-2.0.0.17-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="x86_64" version="2.0.0.17" release="0.1">
          <filename>MozillaThunderbird-2.0.0.17-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="i586" version="2.0.0.17" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.17-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="ppc" version="2.0.0.17" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.17-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="x86_64" version="2.0.0.17" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.17-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="i586" version="2.0.0.17" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.17-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="ppc" version="2.0.0.17" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.17-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="x86_64" version="2.0.0.17" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.17-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6393a99a5913d7d11ba39976c6a96737"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="238">
  <id>seamonkey</id>
  <title>seamonkey: Update to 1.1.12 security update version</title>
  <release>openSUSE 11.0</release>
  <issued date="1223023967"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429179" id="429179" title="bug number 429179" type="bugzilla"/>
  </references>
  <description>This patch updates Seamonkey to version 1.1.12, fixing
security and other bugs:

MFSA 2008-45 / CVE-2008-4069: XBM image uninitialized
memory reading

MFSA 2008-44 / CVE-2008-4067 / CVE-2008-4068: resource:
traversal vulnerabilities

MFSA 2008-43: BOM characters stripped from JavaScript
before execution CVE-2008-4065: Stripped BOM characters bug
CVE-2008-4066: HTML escaped low surrogates bug

MFSA 2008-42 Crashes with evidence of memory corruption
(rv:1.9.0.2/1.8.1.17): CVE-2008-4061: Jesse Ruderman
reported a crash in the layout engine. CVE-2008-4062: Igor
Bukanov, Philip Taylor, Georgi Guninski, and Antoine Labour
reported crashes in the JavaScript engine. CVE-2008-4063:
Jesse Ruderman, Bob Clary, and Martijn Wargers reported
crashes in the layout engine which only affected Firefox 3.
CVE-2008-4064: David Maciejak and Drew Yao reported crashes
in graphics rendering which only affected Firefox 3.

MFSA 2008-41 Privilege escalation via XPCnativeWrapper
pollution CVE-2008-4058: XPCnativeWrapper pollution bugs
CVE-2008-4059: XPCnativeWrapper pollution (Firefox 2)
CVE-2008-4060: Documents without script handling objects

MFSA 2008-40 / CVE-2008-3837: Forced mouse drag

MFSA 2008-38 / CVE-2008-3835:
nsXMLDocument::OnChannelRedirect() same-origin violation

MFSA 2008-37 / CVE-2008-0016: UTF-8 URL stack buffer
overflow

Details can be found here:
http://www.mozilla.org/security/known-vulnerabilities/seamon
key11.html
</description>
  <pkglist>
    <collection>
        <package name="seamonkey" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-1.1.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-irc-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-irc-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-irc-1.1.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-mail-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-mail-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-mail-1.1.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-spellchecker-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-spellchecker-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-spellchecker-1.1.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-venkman-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-venkman-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-venkman-1.1.12-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3586142cf9caac3aeae282ce5f562d43"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="232">
  <id>cups</id>
  <title>cups security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1222962984"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=430543" id="430543" title="bug number 430543" type="bugzilla"/>
  </references>
  <description>Specially crafted print jobs could trigger buffer overflows
in the 'imagetops', 'texttops' and 'hpgltops' filters.
Attackers could potentially exploit that to execute
arbitrary code on the cups server (CVE-2008-3639,
CVE-2008-3640, CVE-2008-3641).
</description>
  <pkglist>
    <collection>
        <package name="cups" arch="i586" version="1.3.7" release="25.2">
          <filename>cups-1.3.7-25.2.i586.rpm</filename>
        </package>
        <package name="cups" arch="ppc" version="1.3.7" release="25.2">
          <filename>cups-1.3.7-25.2.ppc.rpm</filename>
        </package>
        <package name="cups" arch="x86_64" version="1.3.7" release="25.2">
          <filename>cups-1.3.7-25.2.x86_64.rpm</filename>
        </package>
        <package name="cups-client" arch="i586" version="1.3.7" release="25.2">
          <filename>cups-client-1.3.7-25.2.i586.rpm</filename>
        </package>
        <package name="cups-client" arch="ppc" version="1.3.7" release="25.2">
          <filename>cups-client-1.3.7-25.2.ppc.rpm</filename>
        </package>
        <package name="cups-client" arch="x86_64" version="1.3.7" release="25.2">
          <filename>cups-client-1.3.7-25.2.x86_64.rpm</filename>
        </package>
        <package name="cups-devel" arch="i586" version="1.3.7" release="25.2">
          <filename>cups-devel-1.3.7-25.2.i586.rpm</filename>
        </package>
        <package name="cups-devel" arch="ppc" version="1.3.7" release="25.2">
          <filename>cups-devel-1.3.7-25.2.ppc.rpm</filename>
        </package>
        <package name="cups-devel" arch="x86_64" version="1.3.7" release="25.2">
          <filename>cups-devel-1.3.7-25.2.x86_64.rpm</filename>
        </package>
        <package name="cups-libs" arch="i586" version="1.3.7" release="25.2">
          <filename>cups-libs-1.3.7-25.2.i586.rpm</filename>
        </package>
        <package name="cups-libs" arch="ppc" version="1.3.7" release="25.2">
          <filename>cups-libs-1.3.7-25.2.ppc.rpm</filename>
        </package>
        <package name="cups-libs" arch="x86_64" version="1.3.7" release="25.2">
          <filename>cups-libs-1.3.7-25.2.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-32bit" arch="x86_64" version="1.3.7" release="25.2">
          <filename>cups-libs-32bit-1.3.7-25.2.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-64bit" arch="ppc" version="1.3.7" release="25.2">
          <filename>cups-libs-64bit-1.3.7-25.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cf6f6a3d88cd2e0c3aaf5f3d91439ad8"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="237">
  <id>mozilla-xulrunner181</id>
  <title>mozilla-xulrunner181: Security update to 1.8.1.17</title>
  <release>openSUSE 11.0</release>
  <issued date="1222976168"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429179" id="429179" title="bug number 429179" type="bugzilla"/>
  </references>
  <description>This update brings mozilla-xulrunner181 to security fix
version 1.8.1.17.

It contains the following security fixes: MFSA 2008-45 /
CVE-2008-4069: XBM image uninitialized memory reading

MFSA 2008-44 / CVE-2008-4067 / CVE-2008-4068: resource:
traversal vulnerabilities

MFSA 2008-43: BOM characters stripped from JavaScript
before execution CVE-2008-4065: Stripped BOM characters bug
CVE-2008-4066: HTML escaped low surrogates bug

MFSA 2008-42 Crashes with evidence of memory corruption
(rv:1.9.0.2/1.8.1.17): CVE-2008-4061: Jesse Ruderman
reported a crash in the layout engine. CVE-2008-4062: Igor
Bukanov, Philip Taylor, Georgi Guninski, and Antoine Labour
reported crashes in the JavaScript engine. CVE-2008-4063:
Jesse Ruderman, Bob Clary, and Martijn Wargers reported
crashes in the layout engine which only affected Firefox 3.
CVE-2008-4064: David Maciejak and Drew Yao reported crashes
in graphics rendering which only affected Firefox 3.

MFSA 2008-41 Privilege escalation via XPCnativeWrapper
pollution CVE-2008-4058: XPCnativeWrapper pollution bugs
CVE-2008-4059: XPCnativeWrapper pollution (Firefox 2)
CVE-2008-4060: Documents without script handling objects

MFSA 2008-40 / CVE-2008-3837: Forced mouse drag

MFSA 2008-39 / CVE-2008-3836: Privilege escalation using
feed preview page and XSS flaw

MFSA 2008-38 / CVE-2008-3835:
nsXMLDocument::OnChannelRedirect() same-origin violation

MFSA 2008-37 / CVE-2008-0016: UTF-8 URL stack buffer
overflow

For more details:
http://www.mozilla.org/security/known-vulnerabilities/firefo
x20.html
</description>
  <pkglist>
    <collection>
        <package name="mozilla-xulrunner181" arch="i586" version="1.8.1.13" release="22.1">
          <filename>mozilla-xulrunner181-1.8.1.13-22.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181" arch="ppc" version="1.8.1.13" release="22.1">
          <filename>mozilla-xulrunner181-1.8.1.13-22.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181" arch="x86_64" version="1.8.1.13" release="22.1">
          <filename>mozilla-xulrunner181-1.8.1.13-22.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-32bit" arch="x86_64" version="1.8.1.13" release="22.1">
          <filename>mozilla-xulrunner181-32bit-1.8.1.13-22.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-64bit" arch="ppc" version="1.8.1.13" release="22.1">
          <filename>mozilla-xulrunner181-64bit-1.8.1.13-22.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-devel" arch="i586" version="1.8.1.13" release="22.1">
          <filename>mozilla-xulrunner181-devel-1.8.1.13-22.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-devel" arch="ppc" version="1.8.1.13" release="22.1">
          <filename>mozilla-xulrunner181-devel-1.8.1.13-22.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-devel" arch="x86_64" version="1.8.1.13" release="22.1">
          <filename>mozilla-xulrunner181-devel-1.8.1.13-22.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-l10n" arch="i586" version="1.8.1.13" release="22.1">
          <filename>mozilla-xulrunner181-l10n-1.8.1.13-22.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-l10n" arch="ppc" version="1.8.1.13" release="22.1">
          <filename>mozilla-xulrunner181-l10n-1.8.1.13-22.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-l10n" arch="x86_64" version="1.8.1.13" release="22.1">
          <filename>mozilla-xulrunner181-l10n-1.8.1.13-22.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f41af77a5b6b9b2a13f4816533e8225c"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="240">
  <id>epiphany</id>
  <title>epiphany: Update to match mozilla-xulrunner181</title>
  <release>openSUSE 11.0</release>
  <issued date="1222987982"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429179" id="429179" title="bug number 429179" type="bugzilla"/>
  </references>
  <description>This patch updates epiphany to match the current
mozilla-xulrunner181 package.
</description>
  <pkglist>
    <collection>
        <package name="epiphany" arch="i586" version="2.22.1.1" release="25.1">
          <filename>epiphany-2.22.1.1-25.1.i586.rpm</filename>
        </package>
        <package name="epiphany" arch="ppc" version="2.22.1.1" release="25.1">
          <filename>epiphany-2.22.1.1-25.1.ppc.rpm</filename>
        </package>
        <package name="epiphany" arch="x86_64" version="2.22.1.1" release="25.1">
          <filename>epiphany-2.22.1.1-25.1.x86_64.rpm</filename>
        </package>
        <package name="epiphany-devel" arch="i586" version="2.22.1.1" release="25.1">
          <filename>epiphany-devel-2.22.1.1-25.1.i586.rpm</filename>
        </package>
        <package name="epiphany-devel" arch="ppc" version="2.22.1.1" release="25.1">
          <filename>epiphany-devel-2.22.1.1-25.1.ppc.rpm</filename>
        </package>
        <package name="epiphany-devel" arch="x86_64" version="2.22.1.1" release="25.1">
          <filename>epiphany-devel-2.22.1.1-25.1.x86_64.rpm</filename>
        </package>
        <package name="epiphany-doc" arch="i586" version="2.22.1.1" release="25.1">
          <filename>epiphany-doc-2.22.1.1-25.1.i586.rpm</filename>
        </package>
        <package name="epiphany-doc" arch="ppc" version="2.22.1.1" release="25.1">
          <filename>epiphany-doc-2.22.1.1-25.1.ppc.rpm</filename>
        </package>
        <package name="epiphany-doc" arch="x86_64" version="2.22.1.1" release="25.1">
          <filename>epiphany-doc-2.22.1.1-25.1.x86_64.rpm</filename>
        </package>
        <package name="epiphany-extensions" arch="i586" version="2.22.0" release="37.1">
          <filename>epiphany-extensions-2.22.0-37.1.i586.rpm</filename>
        </package>
        <package name="epiphany-extensions" arch="ppc" version="2.22.0" release="37.1">
          <filename>epiphany-extensions-2.22.0-37.1.ppc.rpm</filename>
        </package>
        <package name="epiphany-extensions" arch="x86_64" version="2.22.0" release="37.1">
          <filename>epiphany-extensions-2.22.0-37.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d7a8b3aacb2d284d5c249fa994bb8df6"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="92">
  <id>mkinitrd</id>
  <title>mkinitrd cannot setup root on NFS</title>
  <release>openSUSE 11.0</release>
  <issued date="1216084071"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=389672" id="389672" title="bug number 389672" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398950" id="398950" title="bug number 398950" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=389672" id="389672" title="bug number 389672" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=403995" id="403995" title="bug number 403995" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406554" id="406554" title="bug number 406554" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=401660" id="401660" title="bug number 401660" type="bugzilla"/>
  </references>
  <description>Fixup some issues with NFS-root systems:
- Update static IP configuration
- Update DHCP network configuration
- Parse ip= parameter correctly And also fix booting from
  LVM devices
</description>
  <pkglist>
    <collection>
        <package name="mkinitrd" arch="i586" version="2.2" release="19.2">
          <filename>mkinitrd-2.2-19.2.i586.rpm</filename>
        </package>
        <package name="mkinitrd" arch="ppc" version="2.2" release="19.2">
          <filename>mkinitrd-2.2-19.2.ppc.rpm</filename>
        </package>
        <package name="mkinitrd" arch="x86_64" version="2.2" release="19.2">
          <filename>mkinitrd-2.2-19.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0f4b6dd522350b04341a42f69190de9f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="380">
  <id>seamonkey</id>
  <title>seamonkey: Security Update to 1.1.14</title>
  <release>openSUSE 11.0</release>
  <issued date="1229613806"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=455804" id="455804" title="bug number 455804" type="bugzilla"/>
  </references>
  <description>The Mozilla Seamonkey browser suite was updated to version
1.1.14.

The following security issues were fixed:

MFSA 2008-68 / CVE-2008-5512 / CVE-2008-5511: Mozilla
security researcher moz_bug_r_a4 reported that an XBL
binding, when attached to an unloaded document, can be used
to violate the same-origin policy and execute arbitrary
JavaScript within the context of a different website.
moz_bug_r_a4 also reported two vulnerabilities by which
page content can pollute XPCNativeWrappers and run arbitary
JavaScript with chrome priviliges. Thunderbird shares the
browser engine with Firefox and could be vulnerable if
JavaScript were to be enabled in mail. This is not the
default setting and we strongly discourage users from
running JavaScript in mail. Workaround Disable JavaScript
until a version containing these fixes can be installed.

MFSA 2008-67 / CVE-2008-5510: Kojima Hajime reported that
unlike literal null characters which were handled
correctly, the escaped form '\0' was ignored by the CSS
parser and treated as if it was not present in the CSS
input string. This issue could potentially be used to
bypass script sanitization routines in web applications.
The severity of this issue was determined to be low.


MFSA 2008-66 / CVE-2008-5508: Perl developer Chip
Salzenberg reported that certain control characters, when
placed at the beginning of a URL, would lead to incorrect
parsing resulting in a malformed URL being output by the
parser. IBM researchers Justin Schuh, Tom Cross, and Peter
William also reported a related symptom as part of their
research that resulted in MFSA 2008-37.  There was no
direct security impact from this issue and its effect was
limited to the improper rendering of hyperlinks containing
specific characters. The severity of this issue was
determined to be low.


MFSA 2008-65 / CVE-2008-5507: Google security researcher
Chris Evans reported that a website could access a limited
amount of data from a different domain by loading a
same-domain JavaScript URL which redirects to an off-domain
target resource containing data which is not parsable as
JavaScript. Upon attempting to load the data as JavaScript
a syntax error is generated that can reveal some of the
file context via the window.onerror DOM API. This issue
could be used by a malicious website to steal private data
from users who are authenticated on the redirected website.
How much data could be at risk would depend on the format
of the data and how the JavaScript parser attempts to
interpret it. For most files the amount of data that can be
recovered would be limited to the first word or two. Some
data files might allow deeper probing with repeated loads.
Thunderbird shares the browser engine with Firefox and
could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail.
Workaround Disable JavaScript until a version containing
these fixes can be installed.

MFSA 2008-64 / CVE-2008-5506: Marius Schilder of Google
Security reported that when a XMLHttpRequest is made to a
same-origin resource which 302 redirects to a resource in a
different domain, the response from the cross-domain
resource is readable by the site issuing the XHR. Cookies
marked HttpOnly were not readable, but other potentially
sensitive data could be revealed in the XHR response
including URL parameters and content in the response body.
Thunderbird shares the browser engine with Firefox and
could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail.
Workaround Disable JavaScript until a version containing
these fixes can be installed.

MFSA 2008-61 / CVE-2008-5503: Mozilla developer Boris
Zbarsky reported that XBL bindings could be used to read
data from other domains, a violation of the same-origin
policy. The severity of this issue was determined to be
moderate due to several mitigating factors: The target
document requires a &lt;bindingsi&gt; element in the XBL
namespace in order to be read. The reader of the data needs
to know the id attribute of the binding being read in
advance. It is unlikely that web services will expose
private data in the manner described above. Firefox 3 is
not affected by this issue. Thunderbird shares the browser
engine with Firefox and could be vulnerable if JavaScript
were to be enabled in mail. This is not the default setting
and we strongly discourage users from running JavaScript in
mail. Workaround Products built from the Mozilla 1.9.0
branch and later, Firefox 3 for example, are not affected
by this issue. Upgrading to one of these products is a
reliable workaround for this particular issue and it is
also Mozilla's recommendation that the most current version
of any Mozilla product be used. Alternatively, you can
disable JavaScript until a version containing these fixes
can be installed.

MFSA 2008-60 / CVE-2008-5500: Mozilla developers identified
and fixed several stability bugs in the browser engine used
in Firefox and other Mozilla-based products. Some of these
crashes showed evidence of memory corruption under certain
circumstances and we presume that with enough effort at
least some of these could be exploited to run arbitrary
code. Thunderbird shares the browser engine with Firefox
and could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail. Without
further investigation we cannot rule out the possibility
that for some of these an attacker might be able to prepare
memory for exploitation through some means other than
JavaScript such as large images. Workaround Disable
JavaScript until a version containing these fixes can be
installed.
</description>
  <pkglist>
    <collection>
        <package name="seamonkey" arch="i586" version="1.1.14" release="0.1">
          <filename>seamonkey-1.1.14-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey" arch="ppc" version="1.1.14" release="0.1">
          <filename>seamonkey-1.1.14-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey" arch="x86_64" version="1.1.14" release="0.1">
          <filename>seamonkey-1.1.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="i586" version="1.1.14" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.14-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="ppc" version="1.1.14" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.14-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="x86_64" version="1.1.14" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="i586" version="1.1.14" release="0.1">
          <filename>seamonkey-irc-1.1.14-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="ppc" version="1.1.14" release="0.1">
          <filename>seamonkey-irc-1.1.14-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="x86_64" version="1.1.14" release="0.1">
          <filename>seamonkey-irc-1.1.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="i586" version="1.1.14" release="0.1">
          <filename>seamonkey-mail-1.1.14-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="ppc" version="1.1.14" release="0.1">
          <filename>seamonkey-mail-1.1.14-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="x86_64" version="1.1.14" release="0.1">
          <filename>seamonkey-mail-1.1.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="i586" version="1.1.14" release="0.1">
          <filename>seamonkey-spellchecker-1.1.14-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="ppc" version="1.1.14" release="0.1">
          <filename>seamonkey-spellchecker-1.1.14-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="x86_64" version="1.1.14" release="0.1">
          <filename>seamonkey-spellchecker-1.1.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="i586" version="1.1.14" release="0.1">
          <filename>seamonkey-venkman-1.1.14-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="ppc" version="1.1.14" release="0.1">
          <filename>seamonkey-venkman-1.1.14-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="x86_64" version="1.1.14" release="0.1">
          <filename>seamonkey-venkman-1.1.14-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c8cd829cb3194840ad7bcf16c4ea4684"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="227">
  <id>pam_mount</id>
  <title>pam_mount: Fix for the LOSETUP variable in script umount</title>
  <release>openSUSE 11.0</release>
  <issued date="1222649554"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=427343" id="427343" title="bug number 427343" type="bugzilla"/>
  </references>
  <description>In the script /sbin/umount.crypt the losetup command is
accessed by a variable named LOSETUP. This variable is not
specified, so container files will not be unbound from
/dev/loop* by umount.crypt.
</description>
  <pkglist>
    <collection>
        <package name="pam_mount" arch="i586" version="0.35" release="15.4">
          <filename>pam_mount-0.35-15.4.i586.rpm</filename>
        </package>
        <package name="pam_mount" arch="ppc" version="0.35" release="15.4">
          <filename>pam_mount-0.35-15.4.ppc.rpm</filename>
        </package>
        <package name="pam_mount" arch="x86_64" version="0.35" release="15.4">
          <filename>pam_mount-0.35-15.4.x86_64.rpm</filename>
        </package>
        <package name="pam_mount-32bit" arch="x86_64" version="0.35" release="15.4">
          <filename>pam_mount-32bit-0.35-15.4.x86_64.rpm</filename>
        </package>
        <package name="pam_mount-64bit" arch="ppc" version="0.35" release="15.4">
          <filename>pam_mount-64bit-0.35-15.4.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7d3149685991447ffcd14b12a0ce97e3"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="145">
  <id>openldap2</id>
  <title>openldap2: Fix for liblber denial-of-service bug</title>
  <release>openSUSE 11.0</release>
  <issued date="1218621773"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405089" id="405089" title="bug number 405089" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407552" id="407552" title="bug number 407552" type="bugzilla"/>
  </references>
  <description>This update fixes a security problem in the liblber client
library of openldap that allowed remote attackers to cause
a denial of service (program termination) via crafted ASN.1
BER datagrams, which triggers an assertion error.
(CVE-2008-2952) Additionally a bug was fixed in
ldap_free_connection which could result in client crashes
when the server closed a connection while an operation is
active.
</description>
  <pkglist>
    <collection>
        <package name="openldap2" arch="i586" version="2.4.9" release="7.4">
          <filename>openldap2-2.4.9-7.4.i586.rpm</filename>
        </package>
        <package name="openldap2" arch="ppc" version="2.4.9" release="7.4">
          <filename>openldap2-2.4.9-7.4.ppc.rpm</filename>
        </package>
        <package name="openldap2" arch="x86_64" version="2.4.9" release="7.4">
          <filename>openldap2-2.4.9-7.4.x86_64.rpm</filename>
        </package>
        <package name="openldap2-back-meta" arch="i586" version="2.4.9" release="7.4">
          <filename>openldap2-back-meta-2.4.9-7.4.i586.rpm</filename>
        </package>
        <package name="openldap2-back-meta" arch="ppc" version="2.4.9" release="7.4">
          <filename>openldap2-back-meta-2.4.9-7.4.ppc.rpm</filename>
        </package>
        <package name="openldap2-back-meta" arch="x86_64" version="2.4.9" release="7.4">
          <filename>openldap2-back-meta-2.4.9-7.4.x86_64.rpm</filename>
        </package>
        <package name="openldap2-back-perl" arch="i586" version="2.4.9" release="7.4">
          <filename>openldap2-back-perl-2.4.9-7.4.i586.rpm</filename>
        </package>
        <package name="openldap2-back-perl" arch="ppc" version="2.4.9" release="7.4">
          <filename>openldap2-back-perl-2.4.9-7.4.ppc.rpm</filename>
        </package>
        <package name="openldap2-back-perl" arch="x86_64" version="2.4.9" release="7.4">
          <filename>openldap2-back-perl-2.4.9-7.4.x86_64.rpm</filename>
        </package>
        <package name="openldap2-client" arch="i586" version="2.4.9" release="7.4">
          <filename>openldap2-client-2.4.9-7.4.i586.rpm</filename>
        </package>
        <package name="openldap2-client" arch="ppc" version="2.4.9" release="7.4">
          <filename>openldap2-client-2.4.9-7.4.ppc.rpm</filename>
        </package>
        <package name="openldap2-client" arch="x86_64" version="2.4.9" release="7.4">
          <filename>openldap2-client-2.4.9-7.4.x86_64.rpm</filename>
        </package>
        <package name="openldap2-client-32bit" arch="x86_64" version="2.4.9" release="7.4">
          <filename>openldap2-client-32bit-2.4.9-7.4.x86_64.rpm</filename>
        </package>
        <package name="openldap2-client-64bit" arch="ppc" version="2.4.9" release="7.4">
          <filename>openldap2-client-64bit-2.4.9-7.4.ppc.rpm</filename>
        </package>
        <package name="openldap2-devel" arch="i586" version="2.4.9" release="7.4">
          <filename>openldap2-devel-2.4.9-7.4.i586.rpm</filename>
        </package>
        <package name="openldap2-devel" arch="ppc" version="2.4.9" release="7.4">
          <filename>openldap2-devel-2.4.9-7.4.ppc.rpm</filename>
        </package>
        <package name="openldap2-devel" arch="x86_64" version="2.4.9" release="7.4">
          <filename>openldap2-devel-2.4.9-7.4.x86_64.rpm</filename>
        </package>
        <package name="openldap2-devel-32bit" arch="x86_64" version="2.4.9" release="7.4">
          <filename>openldap2-devel-32bit-2.4.9-7.4.x86_64.rpm</filename>
        </package>
        <package name="openldap2-devel-64bit" arch="ppc" version="2.4.9" release="7.4">
          <filename>openldap2-devel-64bit-2.4.9-7.4.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="091987756a0486cee873ae3cd55a9aa0"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="257">
  <id>opera</id>
  <title>opera: version 9.60 fixes security bugs.</title>
  <release>openSUSE 11.0</release>
  <issued date="1224172789"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=433357" id="433357" title="bug number 433357" type="bugzilla"/>
  </references>
  <description>This update of opera fixes several security problems. See:
http://www.opera.com/docs/changelogs/linux/960/#sec
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="9.60" release="0.1">
          <filename>opera-9.60-0.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="9.60" release="0.1">
          <filename>opera-9.60-0.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="9.60" release="0.1">
          <filename>opera-9.60-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f4b85b1b912225c90863e849f6ab70ed"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="258">
  <id>timezone</id>
  <title>glibc: Timezone Update, dladdr() fix</title>
  <release>openSUSE 11.0</release>
  <issued date="1224172750"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=427373" id="427373" title="bug number 427373" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=194711" id="194711" title="bug number 194711" type="bugzilla"/>
  </references>
  <description>Various timezone information updates:
* DST changes for Indian/Mauritius, Africa/Casablanca,
  Asia/Karachi, Asia/Gaza, Asia/Damascus, Argentina and
  Brazil
* Historical DST information change for Central Europe and
  America/Nassau
* Leap second introduction for 2008
* Fix location of Pacific/Niue

Also, glibc dladdr() call has been fixed not to return
incorrect values sometimes.
</description>
  <pkglist>
    <collection>
        <package name="timezone" arch="i586" version="2008h" release="1.1">
          <filename>timezone-2008h-1.1.i586.rpm</filename>
        </package>
        <package name="timezone" arch="ppc" version="2008h" release="1.1">
          <filename>timezone-2008h-1.1.ppc.rpm</filename>
        </package>
        <package name="timezone" arch="x86_64" version="2008h" release="1.1">
          <filename>timezone-2008h-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="edf6508eeeb3b37ed6a45300416f9ed2"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="242">
  <id>libgnomecanvas</id>
  <title>libgnomecanvas: Fix repainting issues in xournal and teg</title>
  <release>openSUSE 11.0</release>
  <issued date="1223379740"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=430785" id="430785" title="bug number 430785" type="bugzilla"/>
  </references>
  <description>This is a fix for
https://bugzilla.novell.com/show_bug.cgi?id=430785, where
libgnomecanvas would cause some applications like xournal
and teg to repaint incorrectly.
</description>
  <pkglist>
    <collection>
        <package name="libgnomecanvas" arch="i586" version="2.20.1.1" release="42.2">
          <filename>libgnomecanvas-2.20.1.1-42.2.i586.rpm</filename>
        </package>
        <package name="libgnomecanvas" arch="ppc" version="2.20.1.1" release="42.2">
          <filename>libgnomecanvas-2.20.1.1-42.2.ppc.rpm</filename>
        </package>
        <package name="libgnomecanvas" arch="x86_64" version="2.20.1.1" release="42.2">
          <filename>libgnomecanvas-2.20.1.1-42.2.x86_64.rpm</filename>
        </package>
        <package name="libgnomecanvas-32bit" arch="x86_64" version="2.20.1.1" release="42.2">
          <filename>libgnomecanvas-32bit-2.20.1.1-42.2.x86_64.rpm</filename>
        </package>
        <package name="libgnomecanvas-64bit" arch="ppc" version="2.20.1.1" release="42.2">
          <filename>libgnomecanvas-64bit-2.20.1.1-42.2.ppc.rpm</filename>
        </package>
        <package name="libgnomecanvas-devel" arch="i586" version="2.20.1.1" release="42.2">
          <filename>libgnomecanvas-devel-2.20.1.1-42.2.i586.rpm</filename>
        </package>
        <package name="libgnomecanvas-devel" arch="ppc" version="2.20.1.1" release="42.2">
          <filename>libgnomecanvas-devel-2.20.1.1-42.2.ppc.rpm</filename>
        </package>
        <package name="libgnomecanvas-devel" arch="x86_64" version="2.20.1.1" release="42.2">
          <filename>libgnomecanvas-devel-2.20.1.1-42.2.x86_64.rpm</filename>
        </package>
        <package name="libgnomecanvas-doc" arch="i586" version="2.20.1.1" release="42.2">
          <filename>libgnomecanvas-doc-2.20.1.1-42.2.i586.rpm</filename>
        </package>
        <package name="libgnomecanvas-doc" arch="ppc" version="2.20.1.1" release="42.2">
          <filename>libgnomecanvas-doc-2.20.1.1-42.2.ppc.rpm</filename>
        </package>
        <package name="libgnomecanvas-doc" arch="x86_64" version="2.20.1.1" release="42.2">
          <filename>libgnomecanvas-doc-2.20.1.1-42.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5eec00597f9421e2d1a3492b3ec3e198"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="243">
  <id>systemtap</id>
  <title>systemtap: Fix stap compilation errors on i386</title>
  <release>openSUSE 11.0</release>
  <issued date="1223384659"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=417573" id="417573" title="bug number 417573" type="bugzilla"/>
  </references>
  <description>The systemtap package for i386 on openSUSE 11.0 doesn't
work with the recent kernel including the shipped openSUSE
kernel. This update fixes the breakage.
</description>
  <pkglist>
    <collection>
        <package name="systemtap" arch="i586" version="0.6" release="60.2">
          <filename>systemtap-0.6-60.2.i586.rpm</filename>
        </package>
        <package name="systemtap" arch="ppc" version="0.6" release="60.2">
          <filename>systemtap-0.6-60.2.ppc.rpm</filename>
        </package>
        <package name="systemtap" arch="x86_64" version="0.6" release="60.2">
          <filename>systemtap-0.6-60.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ce37fbe8c3c2a6b3d2d04ba0e4b1ef39"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="217">
  <id>timezone</id>
  <title>update timezone data to 2008f</title>
  <release>openSUSE 11.0</release>
  <issued date="1222127452"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=427373" id="427373" title="bug number 427373" type="bugzilla"/>
  </references>
  <description>This updates the timezone data files to version 2008f,
current as of 2008-09-19.  Amongst other it changes the
daylight saving time rules for Brazil.
</description>
  <pkglist>
    <collection>
        <package name="timezone" arch="i586" version="2008f" release="0.1">
          <filename>timezone-2008f-0.1.i586.rpm</filename>
        </package>
        <package name="timezone" arch="ppc" version="2008f" release="0.1">
          <filename>timezone-2008f-0.1.ppc.rpm</filename>
        </package>
        <package name="timezone" arch="x86_64" version="2008f" release="0.1">
          <filename>timezone-2008f-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="512ffce35c64301e871a11d8e561a8cd"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="268">
  <id>opera</id>
  <title>opera: version 9.61 fixes security issues</title>
  <release>openSUSE 11.0</release>
  <issued date="1224636155"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=437260" id="437260" title="bug number 437260" type="bugzilla"/>
  </references>
  <description>Opera 9.61 fixes several security vulnerabilities.
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="9.61" release="0.1">
          <filename>opera-9.61-0.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="9.61" release="0.1">
          <filename>opera-9.61-0.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="9.61" release="0.1">
          <filename>opera-9.61-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9c90fa02b7fabbc3f9d581e25bd91ec7"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="256">
  <id>tsclient</id>
  <title>tsclient: Fix crash when saving a connection.</title>
  <release>openSUSE 11.0</release>
  <issued date="1224240837"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=430070" id="430070" title="bug number 430070" type="bugzilla"/>
  </references>
  <description>This update for tsclient fixes a crash when saving a
connection (bnc#430070).
</description>
  <pkglist>
    <collection>
        <package name="tsclient" arch="i586" version="0.150" release="28.2">
          <filename>tsclient-0.150-28.2.i586.rpm</filename>
        </package>
        <package name="tsclient" arch="ppc" version="0.150" release="28.2">
          <filename>tsclient-0.150-28.2.ppc.rpm</filename>
        </package>
        <package name="tsclient" arch="x86_64" version="0.150" release="28.2">
          <filename>tsclient-0.150-28.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4053eb0f45b438d8224e063017e79664"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="247">
  <id>pam_mount</id>
  <title>pam_mount: pam_mount failed with luserconf active</title>
  <release>openSUSE 11.0</release>
  <issued date="1224172001"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=433812" id="433812" title="bug number 433812" type="bugzilla"/>
  </references>
  <description>pam_mount does not work any longer if a local user specific
configuration is active.
</description>
  <pkglist>
    <collection>
        <package name="pam_mount" arch="i586" version="0.35" release="15.6">
          <filename>pam_mount-0.35-15.6.i586.rpm</filename>
        </package>
        <package name="pam_mount" arch="ppc" version="0.35" release="15.6">
          <filename>pam_mount-0.35-15.6.ppc.rpm</filename>
        </package>
        <package name="pam_mount" arch="x86_64" version="0.35" release="15.6">
          <filename>pam_mount-0.35-15.6.x86_64.rpm</filename>
        </package>
        <package name="pam_mount-32bit" arch="x86_64" version="0.35" release="15.6">
          <filename>pam_mount-32bit-0.35-15.6.x86_64.rpm</filename>
        </package>
        <package name="pam_mount-64bit" arch="ppc" version="0.35" release="15.6">
          <filename>pam_mount-64bit-0.35-15.6.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f428d1cb42db986870ff21b7ef52d6fd"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="251">
  <id>lvm2</id>
  <title>lvm2: Add missing Symlinks to shared libraries</title>
  <release>openSUSE 11.0</release>
  <issued date="1224171921"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=422839" id="422839" title="bug number 422839" type="bugzilla"/>
  </references>
  <description>lvm2 was missing the symlinks to shared libraries, which
did not work with the default configuration in lvm.conf.
This update adds those symlinks (bnc#422839).
</description>
  <pkglist>
    <collection>
        <package name="lvm2" arch="i586" version="2.02.33" release="28.2">
          <filename>lvm2-2.02.33-28.2.i586.rpm</filename>
        </package>
        <package name="lvm2" arch="ppc" version="2.02.33" release="28.2">
          <filename>lvm2-2.02.33-28.2.ppc.rpm</filename>
        </package>
        <package name="lvm2" arch="x86_64" version="2.02.33" release="28.2">
          <filename>lvm2-2.02.33-28.2.x86_64.rpm</filename>
        </package>
        <package name="lvm2-clvm" arch="i586" version="2.02.33" release="28.2">
          <filename>lvm2-clvm-2.02.33-28.2.i586.rpm</filename>
        </package>
        <package name="lvm2-clvm" arch="ppc" version="2.02.33" release="28.2">
          <filename>lvm2-clvm-2.02.33-28.2.ppc.rpm</filename>
        </package>
        <package name="lvm2-clvm" arch="x86_64" version="2.02.33" release="28.2">
          <filename>lvm2-clvm-2.02.33-28.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0f86160fd260a30d7c5f3e6a83efb848"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="253">
  <id>yum</id>
  <title>yum: correct default channel configuration</title>
  <release>openSUSE 11.0</release>
  <issued date="1224171978"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=430470" id="430470" title="bug number 430470" type="bugzilla"/>
  </references>
  <description>This update fixes the default channel configuration to
match openSUSE 11.0.
</description>
  <pkglist>
    <collection>
        <package name="yum" arch="i586" version="3.2.14" release="15.2">
          <filename>yum-3.2.14-15.2.i586.rpm</filename>
        </package>
        <package name="yum" arch="ppc" version="3.2.14" release="15.2">
          <filename>yum-3.2.14-15.2.ppc.rpm</filename>
        </package>
        <package name="yum" arch="x86_64" version="3.2.14" release="15.2">
          <filename>yum-3.2.14-15.2.x86_64.rpm</filename>
        </package>
        <package name="yum-updatesd" arch="i586" version="3.2.14" release="15.2">
          <filename>yum-updatesd-3.2.14-15.2.i586.rpm</filename>
        </package>
        <package name="yum-updatesd" arch="ppc" version="3.2.14" release="15.2">
          <filename>yum-updatesd-3.2.14-15.2.ppc.rpm</filename>
        </package>
        <package name="yum-updatesd" arch="x86_64" version="3.2.14" release="15.2">
          <filename>yum-updatesd-3.2.14-15.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3ec46f9b360e9f191b987a8a525eeb70"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="266">
  <id>libsatsolver</id>
  <title>libzypp: fixed a shell-escape bug</title>
  <release>openSUSE 11.0</release>
  <issued date="1224547853"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=420046" id="420046" title="bug number 420046" type="bugzilla"/>
  </references>
  <description>A remotely exploitable code execution vulnerability via
shell metachars has been fixed in libzypp.
</description>
  <pkglist>
    <collection>
        <package name="libsatsolver-devel" arch="i586" version="0.9.5" release="0.1">
          <filename>libsatsolver-devel-0.9.5-0.1.i586.rpm</filename>
        </package>
        <package name="libsatsolver-devel" arch="ppc" version="0.9.5" release="0.1">
          <filename>libsatsolver-devel-0.9.5-0.1.ppc.rpm</filename>
        </package>
        <package name="libsatsolver-devel" arch="x86_64" version="0.9.5" release="0.1">
          <filename>libsatsolver-devel-0.9.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="libsatsolver-perl" arch="i586" version="0.9.5" release="0.1">
          <filename>libsatsolver-perl-0.9.5-0.1.i586.rpm</filename>
        </package>
        <package name="libsatsolver-perl" arch="ppc" version="0.9.5" release="0.1">
          <filename>libsatsolver-perl-0.9.5-0.1.ppc.rpm</filename>
        </package>
        <package name="libsatsolver-perl" arch="x86_64" version="0.9.5" release="0.1">
          <filename>libsatsolver-perl-0.9.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="libsatsolver-ruby" arch="i586" version="0.9.5" release="0.1">
          <filename>libsatsolver-ruby-0.9.5-0.1.i586.rpm</filename>
        </package>
        <package name="libsatsolver-ruby" arch="ppc" version="0.9.5" release="0.1">
          <filename>libsatsolver-ruby-0.9.5-0.1.ppc.rpm</filename>
        </package>
        <package name="libsatsolver-ruby" arch="x86_64" version="0.9.5" release="0.1">
          <filename>libsatsolver-ruby-0.9.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="libzypp" arch="i586" version="4.27.3" release="0.1">
          <filename>libzypp-4.27.3-0.1.i586.rpm</filename>
        </package>
        <package name="libzypp" arch="ppc" version="4.27.3" release="0.1">
          <filename>libzypp-4.27.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libzypp" arch="x86_64" version="4.27.3" release="0.1">
          <filename>libzypp-4.27.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libzypp-devel" arch="i586" version="4.27.3" release="0.1">
          <filename>libzypp-devel-4.27.3-0.1.i586.rpm</filename>
        </package>
        <package name="libzypp-devel" arch="ppc" version="4.27.3" release="0.1">
          <filename>libzypp-devel-4.27.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libzypp-devel" arch="x86_64" version="4.27.3" release="0.1">
          <filename>libzypp-devel-4.27.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="satsolver-tools" arch="i586" version="0.9.5" release="0.1">
          <filename>satsolver-tools-0.9.5-0.1.i586.rpm</filename>
        </package>
        <package name="satsolver-tools" arch="ppc" version="0.9.5" release="0.1">
          <filename>satsolver-tools-0.9.5-0.1.ppc.rpm</filename>
        </package>
        <package name="satsolver-tools" arch="x86_64" version="0.9.5" release="0.1">
          <filename>satsolver-tools-0.9.5-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8a35b6a73a048032f18bed4fea58df79"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="270">
  <id>kernel</id>
  <title>Linux Kernel update</title>
  <release>openSUSE 11.0</release>
  <issued date="1224690342"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406656" id="406656" title="bug number 406656" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=403346" id="403346" title="bug number 403346" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=432488" id="432488" title="bug number 432488" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=432490" id="432490" title="bug number 432490" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=432490" id="432490" title="bug number 432490" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=409961" id="409961" title="bug number 409961" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=427244" id="427244" title="bug number 427244" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=417821" id="417821" title="bug number 417821" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415372" id="415372" title="bug number 415372" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=419134" id="419134" title="bug number 419134" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=421321" id="421321" title="bug number 421321" type="bugzilla"/>
  </references>
  <description>This patch updates the openSUSE 11.0 kernel to the
2.6.25.18 stable release.

It also includes bugfixes and security fixes:

CVE-2008-4410: The vmi_write_ldt_entry function in
arch/x86/kernel/vmi_32.c in the Virtual Machine Interface
(VMI) in the Linux kernel 2.6.26.5 invokes write_idt_entry
where write_ldt_entry was intended, which allows local
users to cause a denial of service (persistent application
failure) via crafted function calls, related to the Java
Runtime Environment (JRE) experiencing improper LDT
selector state.

sctp: Fix kernel panic while process protocol violation
parameter.

CVE-2008-3528: The ext[234] filesystem code fails to
properly handle corrupted data structures. With a mounted
filesystem image or partition that have corrupted
dir-&gt;i_size and dir-&gt;i_blocks, a user performing either a
read or write operation on the mounted image or partition
can lead to a possible denial of service by spamming the
logfile.

CVE-2008-3526: Integer overflow in the
sctp_setsockopt_auth_key function in net/sctp/socket.c in
the Stream Control Transmission Protocol (sctp)
implementation in the Linux kernel allows remote attackers
to cause a denial of service (panic) or possibly have
unspecified other impact via a crafted sca_keylength field
associated with the SCTP_AUTH_KEY option.

CVE-2008-3525: Added missing capability checks in
sbni_ioctl().

CVE-2008-4576: SCTP in Linux kernel before 2.6.25.18 allows
remote attackers to cause a denial of service (OOPS) via an
INIT-ACK that states the peer does not support AUTH, which
causes the sctp_process_init function to clean up active
transports and triggers the OOPS when the T1-Init timer
expires.

CVE-2008-4445: The sctp_auth_ep_set_hmacs function in
net/sctp/auth.c in the Stream Control Transmission Protocol
(sctp) implementation in the Linux kernel before 2.6.26.4,
when the SCTP-AUTH extension is enabled, does not verify
that the identifier index is within the bounds established
by SCTP_AUTH_HMAC_ID_MAX, which allows local users to
obtain sensitive information via a crafted SCTP_HMAC_IDENT
IOCTL request involving the sctp_getsockopt function.

CVE-2008-3792: net/sctp/socket.c in the Stream Control
Transmission Protocol (sctp) implementation in the Linux
kernel 2.6.26.3 does not verify that the SCTP-AUTH
extension is enabled before proceeding with SCTP-AUTH API
functions, which allows attackers to cause a denial of
service (panic) via vectors that result in calls to (1)
sctp_setsockopt_auth_chunk, (2) sctp_setsockopt_hmac_ident,
(3) sctp_setsockopt_auth_key, (4)
sctp_setsockopt_active_key, (5) sctp_setsockopt_del_key,
(6) sctp_getsockopt_maxburst, (7)
sctp_getsockopt_active_key, (8)
sctp_getsockopt_peer_auth_chunks, or (9)
sctp_getsockopt_local_auth_chunks.

CVE-2008-4113: The sctp_getsockopt_hmac_ident function in
net/sctp/socket.c in the Stream Control Transmission
Protocol (sctp) implementation in the Linux kernel before
2.6.26.4, when the SCTP-AUTH extension is enabled, relies
on an untrusted length value to limit copying of data from
kernel memory, which allows local users to obtain sensitive
information via a crafted SCTP_HMAC_IDENT IOCTL request
involving the sctp_getsockopt function.

CVE-2008-3911: The proc_do_xprt function in
net/sunrpc/sysctl.c in the Linux kernel 2.6.26.3 does not
check the length of a certain buffer obtained from
userspace, which allows local users to overflow a
stack-based buffer and have unspecified other impact via a
crafted read system call for the
/proc/sys/sunrpc/transports file.
</description>
  <pkglist>
    <collection>
        <package name="kernel-debug" arch="i586" version="2.6.25.18" release="0.2">
          <filename>kernel-debug-2.6.25.18-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="x86_64" version="2.6.25.18" release="0.2">
          <filename>kernel-debug-2.6.25.18-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="i586" version="2.6.25.18" release="0.2">
          <filename>kernel-default-2.6.25.18-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="ppc" version="2.6.25.18" release="0.2">
          <filename>kernel-default-2.6.25.18-0.2.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="x86_64" version="2.6.25.18" release="0.2">
          <filename>kernel-default-2.6.25.18-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-docs" arch="noarch" version="2.6.25.18" release="0.2">
          <filename>kernel-docs-2.6.25.18-0.2.noarch.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-kdump" arch="ppc" version="2.6.25.18" release="0.2">
          <filename>kernel-kdump-2.6.25.18-0.2.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-pae" arch="i586" version="2.6.25.18" release="0.2">
          <filename>kernel-pae-2.6.25.18-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ppc64" arch="ppc" version="2.6.25.18" release="0.2">
          <filename>kernel-ppc64-2.6.25.18-0.2.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ps3" arch="ppc" version="2.6.25.18" release="0.2">
          <filename>kernel-ps3-2.6.25.18-0.2.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt" arch="i586" version="2.6.25.18" release="0.2">
          <filename>kernel-rt-2.6.25.18-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt" arch="x86_64" version="2.6.25.18" release="0.2">
          <filename>kernel-rt-2.6.25.18-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt_debug" arch="i586" version="2.6.25.18" release="0.2">
          <filename>kernel-rt_debug-2.6.25.18-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt_debug" arch="x86_64" version="2.6.25.18" release="0.2">
          <filename>kernel-rt_debug-2.6.25.18-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="i586" version="2.6.25.18" release="0.2">
          <filename>kernel-source-2.6.25.18-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="ppc" version="2.6.25.18" release="0.2">
          <filename>kernel-source-2.6.25.18-0.2.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="x86_64" version="2.6.25.18" release="0.2">
          <filename>kernel-source-2.6.25.18-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="i586" version="2.6.25.18" release="0.2">
          <filename>kernel-syms-2.6.25.18-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="ppc" version="2.6.25.18" release="0.2">
          <filename>kernel-syms-2.6.25.18-0.2.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="x86_64" version="2.6.25.18" release="0.2">
          <filename>kernel-syms-2.6.25.18-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="i586" version="2.6.25.18" release="0.2">
          <filename>kernel-vanilla-2.6.25.18-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="ppc" version="2.6.25.18" release="0.2">
          <filename>kernel-vanilla-2.6.25.18-0.2.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="x86_64" version="2.6.25.18" release="0.2">
          <filename>kernel-vanilla-2.6.25.18-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="i586" version="2.6.25.18" release="0.2">
          <filename>kernel-xen-2.6.25.18-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="x86_64" version="2.6.25.18" release="0.2">
          <filename>kernel-xen-2.6.25.18-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2640a22b504713df35bbd8426673a4ca"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="249">
  <id>graphviz</id>
  <title>graphviz: fix buffer overflow while parsing DOT files</title>
  <release>openSUSE 11.0</release>
  <issued date="1224170908"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=433747" id="433747" title="bug number 433747" type="bugzilla"/>
  </references>
  <description>This update of graphviz fixes a buffer overflow that occurs
while parsing a DOT file. (CVE-2008-4555)
</description>
  <pkglist>
    <collection>
        <package name="graphviz" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-devel" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-devel-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-devel" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-devel-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-devel" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-devel-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-doc" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-doc-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-doc" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-doc-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-doc" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-doc-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-gd" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-gd-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-gd" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-gd-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-gd" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-gd-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-gnome" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-gnome-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-gnome" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-gnome-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-gnome" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-gnome-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-guile" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-guile-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-guile" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-guile-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-guile" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-guile-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-java" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-java-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-java" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-java-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-java" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-java-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-lua" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-lua-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-lua" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-lua-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-lua" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-lua-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-ocaml" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-ocaml-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-ocaml" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-ocaml-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-ocaml" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-ocaml-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-perl" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-perl-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-perl" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-perl-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-perl" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-perl-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-php" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-php-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-php" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-php-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-php" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-php-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-python" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-python-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-python" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-python-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-python" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-python-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-ruby" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-ruby-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-ruby" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-ruby-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-ruby" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-ruby-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-sharp" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-sharp-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-sharp" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-sharp-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-sharp" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-sharp-2.18-25.2.x86_64.rpm</filename>
        </package>
        <package name="graphviz-tcl" arch="i586" version="2.18" release="25.2">
          <filename>graphviz-tcl-2.18-25.2.i586.rpm</filename>
        </package>
        <package name="graphviz-tcl" arch="ppc" version="2.18" release="25.2">
          <filename>graphviz-tcl-2.18-25.2.ppc.rpm</filename>
        </package>
        <package name="graphviz-tcl" arch="x86_64" version="2.18" release="25.2">
          <filename>graphviz-tcl-2.18-25.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c39278b1e873683795d542a8e79f7e81"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="267">
  <id>exiv2</id>
  <title>exiv2: denial of service</title>
  <release>openSUSE 11.0</release>
  <issued date="1224636274"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=435509" id="435509" title="bug number 435509" type="bugzilla"/>
  </references>
  <description>This update of exiv2 solves a denial of service bug that
can be triggered by using crafted metadata. (CVE-2008-2696)
</description>
  <pkglist>
    <collection>
        <package name="exiv2" arch="i586" version="0.16" release="29.2">
          <filename>exiv2-0.16-29.2.i586.rpm</filename>
        </package>
        <package name="exiv2" arch="ppc" version="0.16" release="29.2">
          <filename>exiv2-0.16-29.2.ppc.rpm</filename>
        </package>
        <package name="exiv2" arch="x86_64" version="0.16" release="29.2">
          <filename>exiv2-0.16-29.2.x86_64.rpm</filename>
        </package>
        <package name="libexiv2-2" arch="i586" version="0.16" release="29.2">
          <filename>libexiv2-2-0.16-29.2.i586.rpm</filename>
        </package>
        <package name="libexiv2-2" arch="ppc" version="0.16" release="29.2">
          <filename>libexiv2-2-0.16-29.2.ppc.rpm</filename>
        </package>
        <package name="libexiv2-2" arch="x86_64" version="0.16" release="29.2">
          <filename>libexiv2-2-0.16-29.2.x86_64.rpm</filename>
        </package>
        <package name="libexiv2-2-32bit" arch="x86_64" version="0.16" release="29.2">
          <filename>libexiv2-2-32bit-0.16-29.2.x86_64.rpm</filename>
        </package>
        <package name="libexiv2-2-64bit" arch="ppc" version="0.16" release="29.2">
          <filename>libexiv2-2-64bit-0.16-29.2.ppc.rpm</filename>
        </package>
        <package name="libexiv2-devel" arch="i586" version="0.16" release="29.2">
          <filename>libexiv2-devel-0.16-29.2.i586.rpm</filename>
        </package>
        <package name="libexiv2-devel" arch="ppc" version="0.16" release="29.2">
          <filename>libexiv2-devel-0.16-29.2.ppc.rpm</filename>
        </package>
        <package name="libexiv2-devel" arch="x86_64" version="0.16" release="29.2">
          <filename>libexiv2-devel-0.16-29.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e9d98d519ed4f1bd7ea0a52731c85651"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="272">
  <id>libgadu</id>
  <title>libgadu: remote denial of service fix</title>
  <release>openSUSE 11.0</release>
  <issued date="1225328084"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439770" id="439770" title="bug number 439770" type="bugzilla"/>
  </references>
  <description>This update fixes a remote denial of service bug in
libgadu. (CVE-2008-4776)
</description>
  <pkglist>
    <collection>
        <package name="libgadu" arch="i586" version="1.8.0" release="16.2">
          <filename>libgadu-1.8.0-16.2.i586.rpm</filename>
        </package>
        <package name="libgadu" arch="ppc" version="1.8.0" release="16.2">
          <filename>libgadu-1.8.0-16.2.ppc.rpm</filename>
        </package>
        <package name="libgadu" arch="x86_64" version="1.8.0" release="16.2">
          <filename>libgadu-1.8.0-16.2.x86_64.rpm</filename>
        </package>
        <package name="libgadu-devel" arch="i586" version="1.8.0" release="16.2">
          <filename>libgadu-devel-1.8.0-16.2.i586.rpm</filename>
        </package>
        <package name="libgadu-devel" arch="ppc" version="1.8.0" release="16.2">
          <filename>libgadu-devel-1.8.0-16.2.ppc.rpm</filename>
        </package>
        <package name="libgadu-devel" arch="x86_64" version="1.8.0" release="16.2">
          <filename>libgadu-devel-1.8.0-16.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="991fc6e57c972ef152b927a22dd8b657"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="276">
  <id>opera</id>
  <title>Opera 9.62 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1225447845"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=438134" id="438134" title="bug number 438134" type="bugzilla"/>
  </references>
  <description>This update to Opera 9.62 fixes a security bug that allowed
the execution of arbitrary commands remotely.
http://www.opera.com/docs/changelogs/linux/962/
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="9.62" release="0.1">
          <filename>opera-9.62-0.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="9.62" release="0.1">
          <filename>opera-9.62-0.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="9.62" release="0.1">
          <filename>opera-9.62-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4a7af0fa0c0c9fc63a294353e1ad9271"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="271">
  <id>yelp</id>
  <title>yelp: format string bug</title>
  <release>openSUSE 11.0</release>
  <issued date="1224807428"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=414936" id="414936" title="bug number 414936" type="bugzilla"/>
  </references>
  <description>This update of yelp fixes a format string bug.
(CVE-2008-3533)
</description>
  <pkglist>
    <collection>
        <package name="yelp" arch="i586" version="2.22.1" release="25.2">
          <filename>yelp-2.22.1-25.2.i586.rpm</filename>
        </package>
        <package name="yelp" arch="ppc" version="2.22.1" release="25.2">
          <filename>yelp-2.22.1-25.2.ppc.rpm</filename>
        </package>
        <package name="yelp" arch="x86_64" version="2.22.1" release="25.2">
          <filename>yelp-2.22.1-25.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="40c0f4b4c3138c04d11e60a73807d985"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="273">
  <id>libzypp</id>
  <title>libzypp: improve handling of meta-chars</title>
  <release>openSUSE 11.0</release>
  <issued date="1225284127"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439058" id="439058" title="bug number 439058" type="bugzilla"/>
  </references>
  <description>This update fixes the handling of meta-characters in repos.
</description>
  <pkglist>
    <collection>
        <package name="libzypp" arch="i586" version="4.27.4" release="0.1">
          <filename>libzypp-4.27.4-0.1.i586.rpm</filename>
        </package>
        <package name="libzypp" arch="ppc" version="4.27.4" release="0.1">
          <filename>libzypp-4.27.4-0.1.ppc.rpm</filename>
        </package>
        <package name="libzypp" arch="x86_64" version="4.27.4" release="0.1">
          <filename>libzypp-4.27.4-0.1.x86_64.rpm</filename>
        </package>
        <package name="libzypp-devel" arch="i586" version="4.27.4" release="0.1">
          <filename>libzypp-devel-4.27.4-0.1.i586.rpm</filename>
        </package>
        <package name="libzypp-devel" arch="ppc" version="4.27.4" release="0.1">
          <filename>libzypp-devel-4.27.4-0.1.ppc.rpm</filename>
        </package>
        <package name="libzypp-devel" arch="x86_64" version="4.27.4" release="0.1">
          <filename>libzypp-devel-4.27.4-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f32a02ba67a7d63536e7f14b6d2caa76"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="222">
  <id>apache2</id>
  <title>apache2 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1222344554"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415061" id="415061" title="bug number 415061" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=373903" id="373903" title="bug number 373903" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=392096" id="392096" title="bug number 392096" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=210904" id="210904" title="bug number 210904" type="bugzilla"/>
  </references>
  <description>Missing sanity checks of FTP URLs allowed cross site
scripting (XSS) attacks via the mod_proxy_ftp module
(CVE-2008-2939).

Missing precautions allowed cross site request forgery
(CSRF) via the mod_proxy_balancer interface (CVE-2007-6420).

A memory leak in the ssl module could crash apache
(CVE-2008-1678)
</description>
  <pkglist>
    <collection>
        <package name="apache2" arch="i586" version="2.2.8" release="28.2">
          <filename>apache2-2.2.8-28.2.i586.rpm</filename>
        </package>
        <package name="apache2" arch="ppc" version="2.2.8" release="28.2">
          <filename>apache2-2.2.8-28.2.ppc.rpm</filename>
        </package>
        <package name="apache2" arch="x86_64" version="2.2.8" release="28.2">
          <filename>apache2-2.2.8-28.2.x86_64.rpm</filename>
        </package>
        <package name="apache2-devel" arch="i586" version="2.2.8" release="28.2">
          <filename>apache2-devel-2.2.8-28.2.i586.rpm</filename>
        </package>
        <package name="apache2-devel" arch="ppc" version="2.2.8" release="28.2">
          <filename>apache2-devel-2.2.8-28.2.ppc.rpm</filename>
        </package>
        <package name="apache2-devel" arch="x86_64" version="2.2.8" release="28.2">
          <filename>apache2-devel-2.2.8-28.2.x86_64.rpm</filename>
        </package>
        <package name="apache2-doc" arch="i586" version="2.2.8" release="28.2">
          <filename>apache2-doc-2.2.8-28.2.i586.rpm</filename>
        </package>
        <package name="apache2-doc" arch="ppc" version="2.2.8" release="28.2">
          <filename>apache2-doc-2.2.8-28.2.ppc.rpm</filename>
        </package>
        <package name="apache2-doc" arch="x86_64" version="2.2.8" release="28.2">
          <filename>apache2-doc-2.2.8-28.2.x86_64.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="i586" version="2.2.8" release="28.2">
          <filename>apache2-example-pages-2.2.8-28.2.i586.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="ppc" version="2.2.8" release="28.2">
          <filename>apache2-example-pages-2.2.8-28.2.ppc.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="x86_64" version="2.2.8" release="28.2">
          <filename>apache2-example-pages-2.2.8-28.2.x86_64.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="i586" version="2.2.8" release="28.2">
          <filename>apache2-prefork-2.2.8-28.2.i586.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="ppc" version="2.2.8" release="28.2">
          <filename>apache2-prefork-2.2.8-28.2.ppc.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="x86_64" version="2.2.8" release="28.2">
          <filename>apache2-prefork-2.2.8-28.2.x86_64.rpm</filename>
        </package>
        <package name="apache2-utils" arch="i586" version="2.2.8" release="28.2">
          <filename>apache2-utils-2.2.8-28.2.i586.rpm</filename>
        </package>
        <package name="apache2-utils" arch="ppc" version="2.2.8" release="28.2">
          <filename>apache2-utils-2.2.8-28.2.ppc.rpm</filename>
        </package>
        <package name="apache2-utils" arch="x86_64" version="2.2.8" release="28.2">
          <filename>apache2-utils-2.2.8-28.2.x86_64.rpm</filename>
        </package>
        <package name="apache2-worker" arch="i586" version="2.2.8" release="28.2">
          <filename>apache2-worker-2.2.8-28.2.i586.rpm</filename>
        </package>
        <package name="apache2-worker" arch="ppc" version="2.2.8" release="28.2">
          <filename>apache2-worker-2.2.8-28.2.ppc.rpm</filename>
        </package>
        <package name="apache2-worker" arch="x86_64" version="2.2.8" release="28.2">
          <filename>apache2-worker-2.2.8-28.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0c345c662d265ac43f250d57f85774a5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="274">
  <id>enscript</id>
  <title>enscript: fix for various buffer overflows</title>
  <release>openSUSE 11.0</release>
  <issued date="1225328050"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=433756" id="433756" title="bug number 433756" type="bugzilla"/>
  </references>
  <description>This update of enscript fixes buffer overflows in the
setfilename (CVE-2008-3863), process_file and
read_special_escape function that can be exploited during
file processing.
</description>
  <pkglist>
    <collection>
        <package name="enscript" arch="i586" version="1.6.4" release="124.2">
          <filename>enscript-1.6.4-124.2.i586.rpm</filename>
        </package>
        <package name="enscript" arch="ppc" version="1.6.4" release="124.2">
          <filename>enscript-1.6.4-124.2.ppc.rpm</filename>
        </package>
        <package name="enscript" arch="x86_64" version="1.6.4" release="124.2">
          <filename>enscript-1.6.4-124.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f95bfd633a5f05b4cf8d7e7fc0a5fa0d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="293">
  <id>libcdaudio</id>
  <title>libcdaudio remotely exploitable buffer overflow</title>
  <release>openSUSE 11.0</release>
  <issued date="1226017803"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=432933" id="432933" title="bug number 432933" type="bugzilla"/>
  </references>
  <description>This update fixes a heap-based buffer overflow in
libcdaudio that can be exploited remotely to execute
arbitrary code.
</description>
  <pkglist>
    <collection>
        <package name="libcdaudio" arch="i586" version="0.99.12" release="114.2">
          <filename>libcdaudio-0.99.12-114.2.i586.rpm</filename>
        </package>
        <package name="libcdaudio" arch="ppc" version="0.99.12" release="114.2">
          <filename>libcdaudio-0.99.12-114.2.ppc.rpm</filename>
        </package>
        <package name="libcdaudio" arch="x86_64" version="0.99.12" release="114.2">
          <filename>libcdaudio-0.99.12-114.2.x86_64.rpm</filename>
        </package>
        <package name="libcdaudio-devel" arch="i586" version="0.99.12" release="114.2">
          <filename>libcdaudio-devel-0.99.12-114.2.i586.rpm</filename>
        </package>
        <package name="libcdaudio-devel" arch="ppc" version="0.99.12" release="114.2">
          <filename>libcdaudio-devel-0.99.12-114.2.ppc.rpm</filename>
        </package>
        <package name="libcdaudio-devel" arch="x86_64" version="0.99.12" release="114.2">
          <filename>libcdaudio-devel-0.99.12-114.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b8bbfbd29ad606b6532cbb01157c1be7"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="279">
  <id>perl-Socket6</id>
  <title>perl-Socket6: redefinition errors with current perl</title>
  <release>openSUSE 11.0</release>
  <issued date="1225471178"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=426256" id="426256" title="bug number 426256" type="bugzilla"/>
  </references>
  <description>perl-5.10.0's Socket module defines PF_INET6, this clashes
when perl-Socket6 also tries to define this symbol. This
update brings perl-Socket6 to version 0.22 which fixes the
problem.
</description>
  <pkglist>
    <collection>
        <package name="perl-Socket6" arch="i586" version="0.22" release="0.1">
          <filename>perl-Socket6-0.22-0.1.i586.rpm</filename>
        </package>
        <package name="perl-Socket6" arch="ppc" version="0.22" release="0.1">
          <filename>perl-Socket6-0.22-0.1.ppc.rpm</filename>
        </package>
        <package name="perl-Socket6" arch="x86_64" version="0.22" release="0.1">
          <filename>perl-Socket6-0.22-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="daac38ca0c5c3691baed09fffe2f0476"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="223">
  <id>ipsec-tools</id>
  <title>ipsec-tools security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1222343892"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=416905" id="416905" title="bug number 416905" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=416906" id="416906" title="bug number 416906" type="bugzilla"/>
  </references>
  <description>Remote attackers could exploit memory leaks in the 'racoon'
daemon to crash it (CVE-2008-3651, CVE-2008-3652)
</description>
  <pkglist>
    <collection>
        <package name="ipsec-tools" arch="i586" version="0.7" release="61.3">
          <filename>ipsec-tools-0.7-61.3.i586.rpm</filename>
        </package>
        <package name="ipsec-tools" arch="ppc" version="0.7" release="61.3">
          <filename>ipsec-tools-0.7-61.3.ppc.rpm</filename>
        </package>
        <package name="ipsec-tools" arch="x86_64" version="0.7" release="61.3">
          <filename>ipsec-tools-0.7-61.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c9b6a449d2efb86a3688acc98b0a4316"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="281">
  <id>kpowersave</id>
  <title>Several KPowersave fixes.</title>
  <release>openSUSE 11.0</release>
  <issued date="1225738065"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429546" id="429546" title="bug number 429546" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=401214" id="401214" title="bug number 401214" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406842" id="406842" title="bug number 406842" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=397871" id="397871" title="bug number 397871" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=395042" id="395042" title="bug number 395042" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396241" id="396241" title="bug number 396241" type="bugzilla"/>
  </references>
  <description>This update fixes several autosuspend related problems in
KPowersave: stop autosuspend if the first suspend call or
resume from suspend fails (bnc#429546), add zypper and rpm
to the generic autosuspend blacklist to prevent autosuspend
while updates (bnc#396241). Also fixed: handling of the
'Apply' button in the configure dialog to set the config
correctly for the actual scheme (bnc#395042), fixed
problems/handling if a DBus call fails (bnc#397871), fixed
problems with Console-/PolicyKit policies for a user - read
always the actual values before call a DBus method.
</description>
  <pkglist>
    <collection>
        <package name="kpowersave" arch="i586" version="0.7.3" release="100.2">
          <filename>kpowersave-0.7.3-100.2.i586.rpm</filename>
        </package>
        <package name="kpowersave" arch="ppc" version="0.7.3" release="100.2">
          <filename>kpowersave-0.7.3-100.2.ppc.rpm</filename>
        </package>
        <package name="kpowersave" arch="x86_64" version="0.7.3" release="100.2">
          <filename>kpowersave-0.7.3-100.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7728fa8aa49a8cf7a4da694adb474f85"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="294">
  <id>flash-player</id>
  <title>VUL-0: flash-player: official update to address multiple vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1226017763"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=435201" id="435201" title="bug number 435201" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=436058" id="436058" title="bug number 436058" type="bugzilla"/>
  </references>
  <description>This update of flash-player fixes several critical security
vulnerabilities. (CVE-2007-6243, CVE-2008-3873,
CVE-2007-4324, CVE-2008-4401, CVE-2008-4503, CVE-2008-4546)
</description>
  <pkglist>
    <collection>
        <package name="flash-player" arch="i586" version="9.0.151.0" release="0.1">
          <filename>flash-player-9.0.151.0-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="040ec4283d5ec5680015058fd951a40a"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="282">
  <id>sudo</id>
  <title>sudo: Fix for a parse error in /etc/sudoers near line -1</title>
  <release>openSUSE 11.0</release>
  <issued date="1225734947"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=414854" id="414854" title="bug number 414854" type="bugzilla"/>
  </references>
  <description>After configuring LDAP logins with YaST on an 11.0 system,
I discovered a problem with sudo, relating to users who are
in LDAP but not in sudoers.  Attempting to do anything with
sudo (even &quot;sudo -l&quot;) as such a user results in the error
message &quot;sudo: parse error in /etc/sudoers near line -1&quot;.  

Sudo never even prompts for a password, and worse, it sends
a security email to root with this error message. 

This is a regression from 10.3, and it is definitely a
problem with sudo itself, rather than pam_ldap or something
else.
</description>
  <pkglist>
    <collection>
        <package name="sudo" arch="i586" version="1.6.9p15" release="13.2">
          <filename>sudo-1.6.9p15-13.2.i586.rpm</filename>
        </package>
        <package name="sudo" arch="ppc" version="1.6.9p15" release="13.2">
          <filename>sudo-1.6.9p15-13.2.ppc.rpm</filename>
        </package>
        <package name="sudo" arch="x86_64" version="1.6.9p15" release="13.2">
          <filename>sudo-1.6.9p15-13.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="71d3470a27c510a4af7be088c1f6d651"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="289">
  <id>aaa_base</id>
  <title>aaa_base: ncpfs is missing in boot.local</title>
  <release>openSUSE 11.0</release>
  <issued date="1225887292"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439437" id="439437" title="bug number 439437" type="bugzilla"/>
  </references>
  <description>The netfs list in the beginning of the script doesn't
mention the (nb. Novell Netware) ncpfs, which causes
machines using netware volumes to hang during shutdown.
</description>
  <pkglist>
    <collection>
        <package name="aaa_base" arch="i586" version="11.0" release="79.4">
          <filename>aaa_base-11.0-79.4.i586.rpm</filename>
        </package>
        <package name="aaa_base" arch="ppc" version="11.0" release="79.4">
          <filename>aaa_base-11.0-79.4.ppc.rpm</filename>
        </package>
        <package name="aaa_base" arch="x86_64" version="11.0" release="79.4">
          <filename>aaa_base-11.0-79.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="df46fcbc0676410dcb04c3bafc2a0a2d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="298">
  <id>ktorrent</id>
  <title>ktorrent: fix for several security issues</title>
  <release>openSUSE 11.0</release>
  <issued date="1226361471"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439471" id="439471" title="bug number 439471" type="bugzilla"/>
  </references>
  <description>This update of ktorrent fixes several security issues.
</description>
  <pkglist>
    <collection>
        <package name="ktorrent" arch="i586" version="3.0.2" release="22.2">
          <filename>ktorrent-3.0.2-22.2.i586.rpm</filename>
        </package>
        <package name="ktorrent" arch="ppc" version="3.0.2" release="22.2">
          <filename>ktorrent-3.0.2-22.2.ppc.rpm</filename>
        </package>
        <package name="ktorrent" arch="x86_64" version="3.0.2" release="22.2">
          <filename>ktorrent-3.0.2-22.2.x86_64.rpm</filename>
        </package>
        <package name="ktorrent-devel" arch="i586" version="3.0.2" release="22.2">
          <filename>ktorrent-devel-3.0.2-22.2.i586.rpm</filename>
        </package>
        <package name="ktorrent-devel" arch="ppc" version="3.0.2" release="22.2">
          <filename>ktorrent-devel-3.0.2-22.2.ppc.rpm</filename>
        </package>
        <package name="ktorrent-devel" arch="x86_64" version="3.0.2" release="22.2">
          <filename>ktorrent-devel-3.0.2-22.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="77b95e94207378a6e05ed4ba981f1ed6"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="309">
  <id>lighttpd</id>
  <title>lighttpd: fixed CVE-2008-4298, CVE-2008-4359 and CVE-2008-4360</title>
  <release>openSUSE 11.0</release>
  <issued date="1226682857"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429764" id="429764" title="bug number 429764" type="bugzilla"/>
  </references>
  <description>Various issues have been fixed in lighttpd. CVE-2008-4298,
CVE-2008-4359 and CVE-2008-4360 have been assigned to thess
issues.
</description>
  <pkglist>
    <collection>
        <package name="lighttpd" arch="i586" version="1.4.19" release="6.2">
          <filename>lighttpd-1.4.19-6.2.i586.rpm</filename>
        </package>
        <package name="lighttpd" arch="ppc" version="1.4.19" release="6.2">
          <filename>lighttpd-1.4.19-6.2.ppc.rpm</filename>
        </package>
        <package name="lighttpd" arch="x86_64" version="1.4.19" release="6.2">
          <filename>lighttpd-1.4.19-6.2.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="i586" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_cml-1.4.19-6.2.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="ppc" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_cml-1.4.19-6.2.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="x86_64" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_cml-1.4.19-6.2.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="i586" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_magnet-1.4.19-6.2.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="ppc" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_magnet-1.4.19-6.2.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="x86_64" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_magnet-1.4.19-6.2.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="i586" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.2.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="ppc" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.2.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="x86_64" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.2.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="i586" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.2.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="ppc" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.2.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="x86_64" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.2.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="i586" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.2.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="ppc" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.2.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="x86_64" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.2.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="i586" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_webdav-1.4.19-6.2.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="ppc" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_webdav-1.4.19-6.2.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="x86_64" version="1.4.19" release="6.2">
          <filename>lighttpd-mod_webdav-1.4.19-6.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="aba3a52238dabac82fa8decba6d5c778"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="406">
  <id>cifs-mount</id>
  <title>samba: fixes two potential security issues</title>
  <release>openSUSE 11.0</release>
  <issued date="1231378794"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=460764" id="460764" title="bug number 460764" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=446971" id="446971" title="bug number 446971" type="bugzilla"/>
  </references>
  <description>This update fixes a bug that allowed the client to retrieve
arbitrary memory content from the server process.
(CVE-2008-4314) Additionally another bug was fixed that
affects environments that enabled registry shares by
setting &quot;registry shares = yes&quot;. In this case an
authenticated user is accidently allowed to access the root
filesystem &quot;/&quot;. (CVE-2009-0022)
</description>
  <pkglist>
    <collection>
        <package name="cifs-mount" arch="i586" version="3.2.4" release="4.3">
          <filename>cifs-mount-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="cifs-mount" arch="ppc" version="3.2.4" release="4.3">
          <filename>cifs-mount-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="cifs-mount" arch="x86_64" version="3.2.4" release="4.3">
          <filename>cifs-mount-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="ldapsmb" arch="i586" version="1.34b" release="195.8">
          <filename>ldapsmb-1.34b-195.8.i586.rpm</filename>
        </package>
        <package name="ldapsmb" arch="ppc" version="1.34b" release="195.8">
          <filename>ldapsmb-1.34b-195.8.ppc.rpm</filename>
        </package>
        <package name="ldapsmb" arch="x86_64" version="1.34b" release="195.8">
          <filename>ldapsmb-1.34b-195.8.x86_64.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="i586" version="3.2.4" release="4.3">
          <filename>libnetapi-devel-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="ppc" version="3.2.4" release="4.3">
          <filename>libnetapi-devel-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libnetapi-devel-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libnetapi0" arch="i586" version="3.2.4" release="4.3">
          <filename>libnetapi0-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libnetapi0" arch="ppc" version="3.2.4" release="4.3">
          <filename>libnetapi0-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libnetapi0" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libnetapi0-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="i586" version="3.2.4" release="4.3">
          <filename>libsmbclient-devel-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="ppc" version="3.2.4" release="4.3">
          <filename>libsmbclient-devel-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libsmbclient-devel-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="i586" version="3.2.4" release="4.3">
          <filename>libsmbclient0-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="ppc" version="3.2.4" release="4.3">
          <filename>libsmbclient0-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libsmbclient0-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-32bit" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libsmbclient0-32bit-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-64bit" arch="ppc" version="3.2.4" release="4.3">
          <filename>libsmbclient0-64bit-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="i586" version="3.2.4" release="4.3">
          <filename>libsmbsharemodes-devel-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="ppc" version="3.2.4" release="4.3">
          <filename>libsmbsharemodes-devel-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libsmbsharemodes-devel-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="i586" version="3.2.4" release="4.3">
          <filename>libsmbsharemodes0-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="ppc" version="3.2.4" release="4.3">
          <filename>libsmbsharemodes0-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libsmbsharemodes0-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="i586" version="3.2.4" release="4.3">
          <filename>libtalloc-devel-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="ppc" version="3.2.4" release="4.3">
          <filename>libtalloc-devel-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libtalloc-devel-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1" arch="i586" version="3.2.4" release="4.3">
          <filename>libtalloc1-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libtalloc1" arch="ppc" version="3.2.4" release="4.3">
          <filename>libtalloc1-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libtalloc1" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libtalloc1-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-32bit" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libtalloc1-32bit-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-64bit" arch="ppc" version="3.2.4" release="4.3">
          <filename>libtalloc1-64bit-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="i586" version="3.2.4" release="4.3">
          <filename>libtdb-devel-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="ppc" version="3.2.4" release="4.3">
          <filename>libtdb-devel-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libtdb-devel-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libtdb1" arch="i586" version="3.2.4" release="4.3">
          <filename>libtdb1-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libtdb1" arch="ppc" version="3.2.4" release="4.3">
          <filename>libtdb1-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libtdb1" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libtdb1-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-32bit" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libtdb1-32bit-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-64bit" arch="ppc" version="3.2.4" release="4.3">
          <filename>libtdb1-64bit-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="i586" version="3.2.4" release="4.3">
          <filename>libwbclient-devel-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="ppc" version="3.2.4" release="4.3">
          <filename>libwbclient-devel-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libwbclient-devel-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0" arch="i586" version="3.2.4" release="4.3">
          <filename>libwbclient0-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="libwbclient0" arch="ppc" version="3.2.4" release="4.3">
          <filename>libwbclient0-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="libwbclient0" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libwbclient0-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-32bit" arch="x86_64" version="3.2.4" release="4.3">
          <filename>libwbclient0-32bit-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-64bit" arch="ppc" version="3.2.4" release="4.3">
          <filename>libwbclient0-64bit-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="samba" arch="i586" version="3.2.4" release="4.3">
          <filename>samba-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="samba" arch="ppc" version="3.2.4" release="4.3">
          <filename>samba-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="samba" arch="x86_64" version="3.2.4" release="4.3">
          <filename>samba-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="samba-32bit" arch="x86_64" version="3.2.4" release="4.3">
          <filename>samba-32bit-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="samba-64bit" arch="ppc" version="3.2.4" release="4.3">
          <filename>samba-64bit-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="i586" version="3.2.4" release="4.3">
          <filename>samba-client-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="samba-client" arch="ppc" version="3.2.4" release="4.3">
          <filename>samba-client-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="x86_64" version="3.2.4" release="4.3">
          <filename>samba-client-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="samba-client-32bit" arch="x86_64" version="3.2.4" release="4.3">
          <filename>samba-client-32bit-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="samba-client-64bit" arch="ppc" version="3.2.4" release="4.3">
          <filename>samba-client-64bit-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="i586" version="3.2.4" release="4.3">
          <filename>samba-devel-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="samba-devel" arch="ppc" version="3.2.4" release="4.3">
          <filename>samba-devel-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="x86_64" version="3.2.4" release="4.3">
          <filename>samba-devel-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="i586" version="3.2.4" release="4.3">
          <filename>samba-krb-printing-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="ppc" version="3.2.4" release="4.3">
          <filename>samba-krb-printing-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="x86_64" version="3.2.4" release="4.3">
          <filename>samba-krb-printing-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind" arch="i586" version="3.2.4" release="4.3">
          <filename>samba-winbind-3.2.4-4.3.i586.rpm</filename>
        </package>
        <package name="samba-winbind" arch="ppc" version="3.2.4" release="4.3">
          <filename>samba-winbind-3.2.4-4.3.ppc.rpm</filename>
        </package>
        <package name="samba-winbind" arch="x86_64" version="3.2.4" release="4.3">
          <filename>samba-winbind-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-32bit" arch="x86_64" version="3.2.4" release="4.3">
          <filename>samba-winbind-32bit-3.2.4-4.3.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-64bit" arch="ppc" version="3.2.4" release="4.3">
          <filename>samba-winbind-64bit-3.2.4-4.3.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="73adad68b37fe8bb88a7a57d6f7234c4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="442">
  <id>phpMyAdmin</id>
  <title>phpMyAdmin: security upgrade to version 2.11.9.4</title>
  <release>openSUSE 11.0</release>
  <issued date="1232376087"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=410768" id="410768" title="bug number 410768" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=403093" id="403093" title="bug number 403093" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=409459" id="409459" title="bug number 409459" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=369063" id="369063" title="bug number 369063" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=375320" id="375320" title="bug number 375320" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=383135" id="383135" title="bug number 383135" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=426517" id="426517" title="bug number 426517" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=450796" id="450796" title="bug number 450796" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457889" id="457889" title="bug number 457889" type="bugzilla"/>
  </references>
  <description>This is a version upgrade to phpMyAdmin 2.11.9.4 to fix
various security bugs.  (CVE-2008-2960, CVE-2008-3197,
CVE-2008-1149, CVE-2008-1567, CVE-2008-1924, CVE-2008-4096,
CVE-2008-4326, CVE-2008-5621, CVE-2008-5622)
</description>
  <pkglist>
    <collection>
        <package name="phpMyAdmin" arch="noarch" version="2.11.9.4" release="0.1">
          <filename>phpMyAdmin-2.11.9.4-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="32c0adf7d03e6d4364b600f088248fd1"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="288">
  <id>OpenOffice_org</id>
  <title>OOo: update to fix various security and non-security bugs</title>
  <release>openSUSE 11.0</release>
  <issued date="1225342634"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=437304" id="437304" title="bug number 437304" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=426403" id="426403" title="bug number 426403" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=420323" id="420323" title="bug number 420323" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=336242" id="336242" title="bug number 336242" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=388802" id="388802" title="bug number 388802" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=426894" id="426894" title="bug number 426894" type="bugzilla"/>
  </references>
  <description>This update fixes an integer overflow in the WMF handler
(CVE-2008-2237) and multiple bugs in the EMF parser
(CVE-2008-2238). Additionally multiple non-security fixes
were added.
</description>
  <pkglist>
    <collection>
        <package name="OpenOffice_org" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-af" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-af-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-ar" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-ar-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-base-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-base-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-base-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-be-BY" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-be-BY-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-bg" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-bg-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-ca" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-ca-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-calc-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-calc-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-calc-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-cs" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-cs-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-cy" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-cy-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-da" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-da-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-de" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-de-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-devel-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-devel-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-devel-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-draw-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-draw-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-draw-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-el" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-el-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-en-GB" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-en-GB-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-es" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-es-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-et" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-et-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-fi" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-fi-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-filters-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-filters-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-filters-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-fr" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-fr-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-gu-IN" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-gu-IN-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-hi-IN" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-hi-IN-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-hr" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-hr-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-hu" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-hu-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-impress-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-impress-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-impress-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-it" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-it-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-ja" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-ja-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-kde-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-kde-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-kde-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-km" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-km-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-ko" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-ko-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-lt" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-lt-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-math-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-math-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-math-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-mk" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-mk-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-mono-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-mono-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-mono-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-nb" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-nb-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-nl" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-nl-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-nn" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-nn-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-pa-IN" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-pa-IN-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-pl" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-pl-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-pt" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-pt-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-pt-BR" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-pt-BR-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-ru" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-ru-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-rw" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-rw-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-sk" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-sk-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-sl" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-sl-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-sr-CS" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-sr-CS-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-st" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-st-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-sv" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-sv-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-tr" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-tr-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-ts" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-ts-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-vi" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-vi-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="i586" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-writer-2.4.0.14-1.2.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="ppc" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-writer-2.4.0.14-1.2.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="x86_64" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-writer-2.4.0.14-1.2.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-xh" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-xh-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-zh-CN" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-zh-CN-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-zh-TW" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-zh-TW-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
        <package name="OpenOffice_org-zu" arch="noarch" version="2.4.0.14" release="1.2">
          <filename>OpenOffice_org-zu-2.4.0.14-1.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7b68b577cb6a75e88befc1442968efc0"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="255">
  <id>strongswan</id>
  <title>strongswan: fix remote denial of service bug</title>
  <release>openSUSE 11.0</release>
  <issued date="1224172307"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=435194" id="435194" title="bug number 435194" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=392062" id="392062" title="bug number 392062" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=435200" id="435200" title="bug number 435200" type="bugzilla"/>
  </references>
  <description>This update of strongswan fixes a denial of service problem
that occurs while parsing a IKE_SA_INIT message dursing key
exchange. This allows an remote attacker to crash the
daemon. (CVE-2008-4551)
</description>
  <pkglist>
    <collection>
        <package name="strongswan" arch="i586" version="4.2.1" release="11.4">
          <filename>strongswan-4.2.1-11.4.i586.rpm</filename>
        </package>
        <package name="strongswan" arch="ppc" version="4.2.1" release="11.4">
          <filename>strongswan-4.2.1-11.4.ppc.rpm</filename>
        </package>
        <package name="strongswan" arch="x86_64" version="4.2.1" release="11.4">
          <filename>strongswan-4.2.1-11.4.x86_64.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="i586" version="4.2.1" release="11.4">
          <filename>strongswan-doc-4.2.1-11.4.i586.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="ppc" version="4.2.1" release="11.4">
          <filename>strongswan-doc-4.2.1-11.4.ppc.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="x86_64" version="4.2.1" release="11.4">
          <filename>strongswan-doc-4.2.1-11.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="17720f32e7411a0c200b3521299dfb29"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="313">
  <id>imp</id>
  <title>imp: fixed XSS bug</title>
  <release>openSUSE 11.0</release>
  <issued date="1227233406"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=430547" id="430547" title="bug number 430547" type="bugzilla"/>
  </references>
  <description>This update fixes a XSS vulnerability in imp.
(CVE-2008-4182)
</description>
  <pkglist>
    <collection>
        <package name="imp" arch="noarch" version="4.1.4" release="70.2">
          <filename>imp-4.1.4-70.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3e1b3ac70c8f64e9f5d3d51ffa68e942"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="305">
  <id>clamav</id>
  <title>clamav:f ixed get_unicode_name() off-by-one buffer overflow</title>
  <release>openSUSE 11.0</release>
  <issued date="1226694973"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443311" id="443311" title="bug number 443311" type="bugzilla"/>
  </references>
  <description>Various bugs such as a get_unicode_name() off-by-one buffer
overflow, a bug in URL parsing of phishing checks as well
as minor other issues have been fixed in clamav.
(CVE-2008-5050)
</description>
  <pkglist>
    <collection>
        <package name="clamav" arch="i586" version="0.94.1" release="2.1">
          <filename>clamav-0.94.1-2.1.i586.rpm</filename>
        </package>
        <package name="clamav" arch="ppc" version="0.94.1" release="2.1">
          <filename>clamav-0.94.1-2.1.ppc.rpm</filename>
        </package>
        <package name="clamav" arch="x86_64" version="0.94.1" release="2.1">
          <filename>clamav-0.94.1-2.1.x86_64.rpm</filename>
        </package>
        <package name="clamav-db" arch="i586" version="0.94.1" release="2.1">
          <filename>clamav-db-0.94.1-2.1.i586.rpm</filename>
        </package>
        <package name="clamav-db" arch="ppc" version="0.94.1" release="2.1">
          <filename>clamav-db-0.94.1-2.1.ppc.rpm</filename>
        </package>
        <package name="clamav-db" arch="x86_64" version="0.94.1" release="2.1">
          <filename>clamav-db-0.94.1-2.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="bca1a43d8becbd129b2df6ecff93ceb0"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="295">
  <id>acroread</id>
  <title>acroread: fix for several security vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1226030171"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=441739" id="441739" title="bug number 441739" type="bugzilla"/>
  </references>
  <description>The acroread package was update to fix several security
vulnerabilities in the JavaScript engine. (CVE-2008-2992,
CVE-2008-2549, CVE-2008-4812, CVE-2008-4813, CVE-2008-4817,
CVE-2008-4816, CVE-2008-4814, CVE-2008-4815)
</description>
  <pkglist>
    <collection>
        <package name="acroread" arch="i586" version="8.1.3" release="1.1">
          <filename>acroread-8.1.3-1.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e6eebf954de2c1a1f212078c0ffe5850"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="332">
  <id>htop</id>
  <title>htop security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1227486995"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=440951" id="440951" title="bug number 440951" type="bugzilla"/>
  </references>
  <description>insufficient character filters in htop when displaying
commands allowed programs that rewrite their program name
to inject escape sequences (CVE-2008-5076).
</description>
  <pkglist>
    <collection>
        <package name="htop" arch="i586" version="0.7" release="32.2">
          <filename>htop-0.7-32.2.i586.rpm</filename>
        </package>
        <package name="htop" arch="ppc" version="0.7" release="32.2">
          <filename>htop-0.7-32.2.ppc.rpm</filename>
        </package>
        <package name="htop" arch="x86_64" version="0.7" release="32.2">
          <filename>htop-0.7-32.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="751fc18602ea709aeb4c094c51cc9056"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="322">
  <id>cups</id>
  <title>cups security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1227290198"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=446975" id="446975" title="bug number 446975" type="bugzilla"/>
  </references>
  <description>local users could crash cups by adding a large number of
RSS subscriptions (CVE-2008-5183, CVE-2008-5184).
</description>
  <pkglist>
    <collection>
        <package name="cups" arch="i586" version="1.3.7" release="25.4">
          <filename>cups-1.3.7-25.4.i586.rpm</filename>
        </package>
        <package name="cups" arch="ppc" version="1.3.7" release="25.4">
          <filename>cups-1.3.7-25.4.ppc.rpm</filename>
        </package>
        <package name="cups" arch="x86_64" version="1.3.7" release="25.4">
          <filename>cups-1.3.7-25.4.x86_64.rpm</filename>
        </package>
        <package name="cups-client" arch="i586" version="1.3.7" release="25.4">
          <filename>cups-client-1.3.7-25.4.i586.rpm</filename>
        </package>
        <package name="cups-client" arch="ppc" version="1.3.7" release="25.4">
          <filename>cups-client-1.3.7-25.4.ppc.rpm</filename>
        </package>
        <package name="cups-client" arch="x86_64" version="1.3.7" release="25.4">
          <filename>cups-client-1.3.7-25.4.x86_64.rpm</filename>
        </package>
        <package name="cups-devel" arch="i586" version="1.3.7" release="25.4">
          <filename>cups-devel-1.3.7-25.4.i586.rpm</filename>
        </package>
        <package name="cups-devel" arch="ppc" version="1.3.7" release="25.4">
          <filename>cups-devel-1.3.7-25.4.ppc.rpm</filename>
        </package>
        <package name="cups-devel" arch="x86_64" version="1.3.7" release="25.4">
          <filename>cups-devel-1.3.7-25.4.x86_64.rpm</filename>
        </package>
        <package name="cups-libs" arch="i586" version="1.3.7" release="25.4">
          <filename>cups-libs-1.3.7-25.4.i586.rpm</filename>
        </package>
        <package name="cups-libs" arch="ppc" version="1.3.7" release="25.4">
          <filename>cups-libs-1.3.7-25.4.ppc.rpm</filename>
        </package>
        <package name="cups-libs" arch="x86_64" version="1.3.7" release="25.4">
          <filename>cups-libs-1.3.7-25.4.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-32bit" arch="x86_64" version="1.3.7" release="25.4">
          <filename>cups-libs-32bit-1.3.7-25.4.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-64bit" arch="ppc" version="1.3.7" release="25.4">
          <filename>cups-libs-64bit-1.3.7-25.4.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cb48097a7e63637c0a5034f65e4d2f89"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="333">
  <id>MozillaThunderbird</id>
  <title>MozillaThunderbird: Security update to 2.0.0.18</title>
  <release>openSUSE 11.0</release>
  <issued date="1227489428"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439841" id="439841" title="bug number 439841" type="bugzilla"/>
  </references>
  <description>This update brings the Mozilla Thunderbird E-Mail program
to version 2.0.0.18.

It fixes following security problems:

CVE-2008-5012 / MFSA 2008-48: Mozilla Firefox 2.x before
2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey
1.x before 1.1.13 do not properly change the source URI
when processing a canvas element and an HTTP redirect,
which allows remote attackers to bypass the same origin
policy and access arbitrary images that are not directly
accessible to the attacker.  NOTE: this issue can be
leveraged to enumerate software on the client by performing
redirections related to moz-icon.




CVE-2008-5014 / MFSA 2008-50

jslock.cpp in Mozilla Firefox 3.x before 3.0.2, Firefox 2.x
before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and
SeaMonkey 1.x before 1.1.13 allows remote attackers to
cause a denial of service (crash) and possibly execute
arbitrary code by modifying the window.__proto__.__proto__
object in a way that causes a lock on a non-native object,
which triggers an assertion failure related to the
OBJ_IS_NATIVE function.


CVE-2008-5016 / MFSA 2008-52:

The layout engine in Mozilla Firefox 3.x before 3.0.4,
Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before
1.1.13 allows remote attackers to cause a denial of service
(crash) via multiple vectors that trigger an assertion
failure or other consequences.

CVE-2008-5017 / MFSA 2008-52: Integer overflow in
xpcom/io/nsEscape.cpp in the browser engine in Mozilla
Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18,
Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before
1.1.13 allows remote attackers to cause a denial of service
(crash) via unknown vectors.

CVE-2008-5018 / MFSA 2008-52: The JavaScript engine in
Mozilla Firefox 3.x before 3.0.4, Firefox 2.x before
2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey
1.x before 1.1.13 allows remote attackers to cause a denial
of service (crash) via vectors related to &quot;insufficient
class checking&quot; in the Date class. CVE-2008-5019 / MFSA
2008-53: The session restore feature in Mozilla Firefox 3.x
before 3.0.4 and 2.x before 2.0.0.18 allows remote
attackers to violate the same origin policy to conduct
cross-site scripting (XSS) attacks and execute arbitrary
JavaScript with chrome privileges via unknown vectors.

CVE-2008-5021 / MFSA 2008-55: nsFrameManager in Firefox 3.x
before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x
before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows
remote attackers to cause a denial of service (crash) and
possibly execute arbitrary code by modifying properties of
a file input element while it is still being initialized,
then using the blur method to access uninitialized memory.

CVE-2008-5022 / MFSA 2008-56: The
nsXMLHttpRequest::NotifyEventListeners method in Firefox
3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird
2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows
remote attackers to bypass the same-origin policy and
execute arbitrary script via multiple listeners, which
bypass the inner window check.

CVE-2008-5024 / MFSA 2008-58: Mozilla Firefox 3.x before
3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before
2.0.0.18, and SeaMonkey 1.x before 1.1.13 do not properly
escape quote characters used for XML processing, allows
remote attackers to conduct XML injection attacks via the
default namespace in an E4X document.

CVE-2008-5052 / MFSA 2008-52: The AppendAttributeValue
function in the JavaScript engine in Mozilla Firefox 2.x
before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and
SeaMonkey 1.x before 1.1.13 allows remote attackers to
cause a denial of service (crash) via unknown vectors that
trigger memory corruption, as demonstrated by
e4x/extensions/regress-410192.js.

MFSA 2008-59: Mozilla developer Boris Zbarsky reported that
a malicious mail message might be able to glean personal
information about the recipient from the mailbox URI (such
as computer account name) if the mail recipient has enabled
JavaScript in mail. If a malicious mail is forwarded
&quot;in-line&quot; to a recipient who has enabled JavaScript, then
comments added by the forwarder could be accessed by
scripts in the message and potentially revealed to the
original malicious author if that message has also been
allowed to load remote content. Scripts in mail messages no
longer have access to the DOM properties .documentURI and
.textContent.
</description>
  <pkglist>
    <collection>
        <package name="MozillaThunderbird" arch="i586" version="2.0.0.18" release="1.1">
          <filename>MozillaThunderbird-2.0.0.18-1.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="ppc" version="2.0.0.18" release="1.1">
          <filename>MozillaThunderbird-2.0.0.18-1.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="x86_64" version="2.0.0.18" release="1.1">
          <filename>MozillaThunderbird-2.0.0.18-1.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="i586" version="2.0.0.18" release="1.1">
          <filename>MozillaThunderbird-devel-2.0.0.18-1.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="ppc" version="2.0.0.18" release="1.1">
          <filename>MozillaThunderbird-devel-2.0.0.18-1.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="x86_64" version="2.0.0.18" release="1.1">
          <filename>MozillaThunderbird-devel-2.0.0.18-1.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="i586" version="2.0.0.18" release="1.1">
          <filename>MozillaThunderbird-translations-2.0.0.18-1.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="ppc" version="2.0.0.18" release="1.1">
          <filename>MozillaThunderbird-translations-2.0.0.18-1.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="x86_64" version="2.0.0.18" release="1.1">
          <filename>MozillaThunderbird-translations-2.0.0.18-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="053dcf38e8e9d6fdeeb7f45d6ec75497"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="311">
  <id>horde</id>
  <title>horde: multiple vulnerabilities fixed</title>
  <release>openSUSE 11.0</release>
  <issued date="1227103621"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=368593" id="368593" title="bug number 368593" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=412566" id="412566" title="bug number 412566" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=423520" id="423520" title="bug number 423520" type="bugzilla"/>
  </references>
  <description>This update of horde fixes the following vulnerabilities:
- CVE-2008-1284: directory traversal allows authenticated
  user to access and execute arbitrary files
- CVE-2008-3330: remotely exploitable XSS
- CVE-2008-3824: remotely exploitable XSS
</description>
  <pkglist>
    <collection>
        <package name="horde" arch="noarch" version="3.1.4" release="121.2">
          <filename>horde-3.1.4-121.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="061d649b399bf6dc687c2e75acae19b0"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="329">
  <id>mozilla-xulrunner181</id>
  <title>mozilla-xulrunner181: Add latest security fixes</title>
  <release>openSUSE 11.0</release>
  <issued date="1227366185"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439841" id="439841" title="bug number 439841" type="bugzilla"/>
  </references>
  <description>This update backports security fixes to the Mozilla
XULRunner engine.

It fixes following security issues:

CVE-2008-0017 / MFSA 2008-54: The http-index-format MIME
type parser (nsDirIndexParser) in Firefox 3.x before 3.0.4,
Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before
1.1.13 does not check for an allocation failure, which
allows remote attackers to cause a denial of service
(crash) and possibly execute arbitrary code via an HTTP
index response with a crafted 200 header, which triggers
memory corruption and a buffer overflow.



CVE-2008-5012 / MFSA 2008-48: Mozilla Firefox 2.x before
2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey
1.x before 1.1.13 do not properly change the source URI
when processing a canvas element and an HTTP redirect,
which allows remote attackers to bypass the same origin
policy and access arbitrary images that are not directly
accessible to the attacker.  NOTE: this issue can be
leveraged to enumerate software on the client by performing
redirections related to moz-icon.



CVE-2008-5013 / MFSA 2008-49: Mozilla Firefox 2.x before
2.0.0.18 and SeaMonkey 1.x before 1.1.13 do not properly
check when the Flash module has been dynamically unloaded
properly, which allows remote attackers to execute
arbitrary code via a crafted SWF file that &quot;dynamically
unloads itself from an outside JavaScript function,&quot; which
triggers an access of an expired memory address.


CVE-2008-5014 / MFSA 2008-50: jslock.cpp in Mozilla Firefox
3.x before 3.0.2, Firefox 2.x before 2.0.0.18, Thunderbird
2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows
remote attackers to cause a denial of service (crash) and
possibly execute arbitrary code by modifying the
window.__proto__.__proto__ object in a way that causes a
lock on a non-native object, which triggers an assertion
failure related to the OBJ_IS_NATIVE function.


CVE-2008-5016 / MFSA 2008-52: The layout engine in Mozilla
Firefox 3.x before 3.0.4, Thunderbird 2.x before 2.0.0.18,
and SeaMonkey 1.x before 1.1.13 allows remote attackers to
cause a denial of service (crash) via multiple vectors that
trigger an assertion failure or other consequences.

CVE-2008-5017 / MFSA 2008-52: Integer overflow in
xpcom/io/nsEscape.cpp in the browser engine in Mozilla
Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18,
Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before
1.1.13 allows remote attackers to cause a denial of service
(crash) via unknown vectors.

CVE-2008-5018 / MFSA 2008-52: The JavaScript engine in
Mozilla Firefox 3.x before 3.0.4, Firefox 2.x before
2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey
1.x before 1.1.13 allows remote attackers to cause a denial
of service (crash) via vectors related to &quot;insufficient
class checking&quot; in the Date class.


CVE-2008-5021 / MFSA 2008-55: nsFrameManager in Firefox 3.x
before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x
before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows
remote attackers to cause a denial of service (crash) and
possibly execute arbitrary code by modifying properties of
a file input element while it is still being initialized,
then using the blur method to access uninitialized memory.

CVE-2008-5022 / MFSA 2008-56: The
nsXMLHttpRequest::NotifyEventListeners method in Firefox
3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird
2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows
remote attackers to bypass the same-origin policy and
execute arbitrary script via multiple listeners, which
bypass the inner window check.

CVE-2008-5023 / MFSA 2008-57: Firefox 3.x before 3.0.4,
Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before
1.1.13 allows remote attackers to bypass the protection
mechanism for codebase principals and execute arbitrary
script via the -moz-binding CSS property in a signed JAR
file.

CVE-2008-5024 / MFSA 2008-58: Mozilla Firefox 3.x before
3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before
2.0.0.18, and SeaMonkey 1.x before 1.1.13 do not properly
escape quote characters used for XML processing, allows
remote attackers to conduct XML injection attacks via the
default namespace in an E4X document.

CVE-2008-5052 / MFSA 2008-52: The AppendAttributeValue
function in the JavaScript engine in Mozilla Firefox 2.x
before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and
SeaMonkey 1.x before 1.1.13 allows remote attackers to
cause a denial of service (crash) via unknown vectors that
trigger memory corruption, as demonstrated by
e4x/extensions/regress-410192.js.
</description>
  <pkglist>
    <collection>
        <package name="epiphany" arch="i586" version="2.22.1.1" release="25.2">
          <filename>epiphany-2.22.1.1-25.2.i586.rpm</filename>
        </package>
        <package name="epiphany" arch="ppc" version="2.22.1.1" release="25.2">
          <filename>epiphany-2.22.1.1-25.2.ppc.rpm</filename>
        </package>
        <package name="epiphany" arch="x86_64" version="2.22.1.1" release="25.2">
          <filename>epiphany-2.22.1.1-25.2.x86_64.rpm</filename>
        </package>
        <package name="epiphany-devel" arch="i586" version="2.22.1.1" release="25.2">
          <filename>epiphany-devel-2.22.1.1-25.2.i586.rpm</filename>
        </package>
        <package name="epiphany-devel" arch="ppc" version="2.22.1.1" release="25.2">
          <filename>epiphany-devel-2.22.1.1-25.2.ppc.rpm</filename>
        </package>
        <package name="epiphany-devel" arch="x86_64" version="2.22.1.1" release="25.2">
          <filename>epiphany-devel-2.22.1.1-25.2.x86_64.rpm</filename>
        </package>
        <package name="epiphany-doc" arch="i586" version="2.22.1.1" release="25.2">
          <filename>epiphany-doc-2.22.1.1-25.2.i586.rpm</filename>
        </package>
        <package name="epiphany-doc" arch="ppc" version="2.22.1.1" release="25.2">
          <filename>epiphany-doc-2.22.1.1-25.2.ppc.rpm</filename>
        </package>
        <package name="epiphany-doc" arch="x86_64" version="2.22.1.1" release="25.2">
          <filename>epiphany-doc-2.22.1.1-25.2.x86_64.rpm</filename>
        </package>
        <package name="epiphany-extensions" arch="i586" version="2.22.0" release="37.2">
          <filename>epiphany-extensions-2.22.0-37.2.i586.rpm</filename>
        </package>
        <package name="epiphany-extensions" arch="ppc" version="2.22.0" release="37.2">
          <filename>epiphany-extensions-2.22.0-37.2.ppc.rpm</filename>
        </package>
        <package name="epiphany-extensions" arch="x86_64" version="2.22.0" release="37.2">
          <filename>epiphany-extensions-2.22.0-37.2.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181" arch="i586" version="1.8.1.18" release="0.1">
          <filename>mozilla-xulrunner181-1.8.1.18-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181" arch="ppc" version="1.8.1.18" release="0.1">
          <filename>mozilla-xulrunner181-1.8.1.18-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181" arch="x86_64" version="1.8.1.18" release="0.1">
          <filename>mozilla-xulrunner181-1.8.1.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-32bit" arch="x86_64" version="1.8.1.18" release="0.1">
          <filename>mozilla-xulrunner181-32bit-1.8.1.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-64bit" arch="ppc" version="1.8.1.18" release="0.1">
          <filename>mozilla-xulrunner181-64bit-1.8.1.18-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-devel" arch="i586" version="1.8.1.18" release="0.1">
          <filename>mozilla-xulrunner181-devel-1.8.1.18-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-devel" arch="ppc" version="1.8.1.18" release="0.1">
          <filename>mozilla-xulrunner181-devel-1.8.1.18-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-devel" arch="x86_64" version="1.8.1.18" release="0.1">
          <filename>mozilla-xulrunner181-devel-1.8.1.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-l10n" arch="i586" version="1.8.1.18" release="0.1">
          <filename>mozilla-xulrunner181-l10n-1.8.1.18-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-l10n" arch="ppc" version="1.8.1.18" release="0.1">
          <filename>mozilla-xulrunner181-l10n-1.8.1.18-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-l10n" arch="x86_64" version="1.8.1.18" release="0.1">
          <filename>mozilla-xulrunner181-l10n-1.8.1.18-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d3727a2e3ce36a415dccc357e982ccb4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="326">
  <id>seamonkey</id>
  <title>seamonkey: Security update to 1.1.13</title>
  <release>openSUSE 11.0</release>
  <issued date="1227394895"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439841" id="439841" title="bug number 439841" type="bugzilla"/>
  </references>
  <description>This update brings the Mozilla Seamonkey browser to version
1.1.13.

It fixes following security issues:

CVE-2008-0017 / MFSA 2008-54:

The http-index-format MIME type parser (nsDirIndexParser)
in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18,
and SeaMonkey 1.x before 1.1.13 does not check for an
allocation failure, which allows remote attackers to cause
a denial of service (crash) and possibly execute arbitrary
code via an HTTP index response with a crafted 200 header,
which triggers memory corruption and a buffer overflow.



CVE-2008-5012 / MFSA 2008-48: Mozilla Firefox 2.x before
2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey
1.x before 1.1.13 do not properly change the source URI
when processing a canvas element and an HTTP redirect,
which allows remote attackers to bypass the same origin
policy and access arbitrary images that are not directly
accessible to the attacker.  NOTE: this issue can be
leveraged to enumerate software on the client by performing
redirections related to moz-icon.



CVE-2008-5013 / MFSA 2008-49:

Mozilla Firefox 2.x before 2.0.0.18 and SeaMonkey 1.x
before 1.1.13 do not properly check when the Flash module
has been dynamically unloaded properly, which allows remote
attackers to execute arbitrary code via a crafted SWF file
that &quot;dynamically unloads itself from an outside JavaScript
function,&quot; which triggers an access of an expired memory
address.


CVE-2008-5014 / MFSA 2008-50

jslock.cpp in Mozilla Firefox 3.x before 3.0.2, Firefox 2.x
before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and
SeaMonkey 1.x before 1.1.13 allows remote attackers to
cause a denial of service (crash) and possibly execute
arbitrary code by modifying the window.__proto__.__proto__
object in a way that causes a lock on a non-native object,
which triggers an assertion failure related to the
OBJ_IS_NATIVE function.


CVE-2008-5016 / MFSA 2008-52:

The layout engine in Mozilla Firefox 3.x before 3.0.4,
Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before
1.1.13 allows remote attackers to cause a denial of service
(crash) via multiple vectors that trigger an assertion
failure or other consequences.

CVE-2008-5017 / MFSA 2008-52: Integer overflow in
xpcom/io/nsEscape.cpp in the browser engine in Mozilla
Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18,
Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before
1.1.13 allows remote attackers to cause a denial of service
(crash) via unknown vectors.

CVE-2008-5018 / MFSA 2008-52: The JavaScript engine in
Mozilla Firefox 3.x before 3.0.4, Firefox 2.x before
2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey
1.x before 1.1.13 allows remote attackers to cause a denial
of service (crash) via vectors related to &quot;insufficient
class checking&quot; in the Date class.


CVE-2008-5021 / MFSA 2008-55: nsFrameManager in Firefox 3.x
before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x
before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows
remote attackers to cause a denial of service (crash) and
possibly execute arbitrary code by modifying properties of
a file input element while it is still being initialized,
then using the blur method to access uninitialized memory.

CVE-2008-5022 / MFSA 2008-56: The
nsXMLHttpRequest::NotifyEventListeners method in Firefox
3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird
2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows
remote attackers to bypass the same-origin policy and
execute arbitrary script via multiple listeners, which
bypass the inner window check.

CVE-2008-5023 / MFSA 2008-57: Firefox 3.x before 3.0.4,
Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before
1.1.13 allows remote attackers to bypass the protection
mechanism for codebase principals and execute arbitrary
script via the -moz-binding CSS property in a signed JAR
file.

CVE-2008-5024 / MFSA 2008-58: Mozilla Firefox 3.x before
3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before
2.0.0.18, and SeaMonkey 1.x before 1.1.13 do not properly
escape quote characters used for XML processing, allows
remote attackers to conduct XML injection attacks via the
default namespace in an E4X document.

CVE-2008-5052 / MFSA 2008-52: The AppendAttributeValue
function in the JavaScript engine in Mozilla Firefox 2.x
before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and
SeaMonkey 1.x before 1.1.13 allows remote attackers to
cause a denial of service (crash) via unknown vectors that
trigger memory corruption, as demonstrated by
e4x/extensions/regress-410192.js.
</description>
  <pkglist>
    <collection>
        <package name="seamonkey" arch="i586" version="1.1.13" release="1.1">
          <filename>seamonkey-1.1.13-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey" arch="ppc" version="1.1.13" release="1.1">
          <filename>seamonkey-1.1.13-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey" arch="x86_64" version="1.1.13" release="1.1">
          <filename>seamonkey-1.1.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="i586" version="1.1.13" release="1.1">
          <filename>seamonkey-dom-inspector-1.1.13-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="ppc" version="1.1.13" release="1.1">
          <filename>seamonkey-dom-inspector-1.1.13-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="x86_64" version="1.1.13" release="1.1">
          <filename>seamonkey-dom-inspector-1.1.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="i586" version="1.1.13" release="1.1">
          <filename>seamonkey-irc-1.1.13-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="ppc" version="1.1.13" release="1.1">
          <filename>seamonkey-irc-1.1.13-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="x86_64" version="1.1.13" release="1.1">
          <filename>seamonkey-irc-1.1.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="i586" version="1.1.13" release="1.1">
          <filename>seamonkey-mail-1.1.13-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="ppc" version="1.1.13" release="1.1">
          <filename>seamonkey-mail-1.1.13-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="x86_64" version="1.1.13" release="1.1">
          <filename>seamonkey-mail-1.1.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="i586" version="1.1.13" release="1.1">
          <filename>seamonkey-spellchecker-1.1.13-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="ppc" version="1.1.13" release="1.1">
          <filename>seamonkey-spellchecker-1.1.13-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="x86_64" version="1.1.13" release="1.1">
          <filename>seamonkey-spellchecker-1.1.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="i586" version="1.1.13" release="1.1">
          <filename>seamonkey-venkman-1.1.13-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="ppc" version="1.1.13" release="1.1">
          <filename>seamonkey-venkman-1.1.13-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="x86_64" version="1.1.13" release="1.1">
          <filename>seamonkey-venkman-1.1.13-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d955e99934e5a544abf7fecfb4718732"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="280">
  <id>yast2-backup</id>
  <title>yast2-backup: Fix for arbitrary shell code injection and improvemnt for handling symlinks</title>
  <release>openSUSE 11.0</release>
  <issued date="1225335462"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=421214" id="421214" title="bug number 421214" type="bugzilla"/>
  </references>
  <description>This updated of yast2-backup fixes a sellcode injection
vulnerability and improves handling of symlinks for the
backup process.
</description>
  <pkglist>
    <collection>
        <package name="yast2-backup" arch="noarch" version="2.16.6" release="0.1">
          <filename>yast2-backup-2.16.6-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1d512d5e7c85248991f695fbaab5b60b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="303">
  <id>jasper</id>
  <title>jasper security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1226680935"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=392410" id="392410" title="bug number 392410" type="bugzilla"/>
  </references>
  <description>Multiple, potentially dangerous integer overflows, buffer
overflows and a problem with temporary files have been
fixed (CVE-2008-3520, CVE-2008-3521, CVE-2008-3522).
</description>
  <pkglist>
    <collection>
        <package name="jasper" arch="i586" version="1.900.1" release="98.3">
          <filename>jasper-1.900.1-98.3.i586.rpm</filename>
        </package>
        <package name="jasper" arch="ppc" version="1.900.1" release="98.3">
          <filename>jasper-1.900.1-98.3.ppc.rpm</filename>
        </package>
        <package name="jasper" arch="x86_64" version="1.900.1" release="98.3">
          <filename>jasper-1.900.1-98.3.x86_64.rpm</filename>
        </package>
        <package name="libjasper" arch="i586" version="1.900.1" release="98.3">
          <filename>libjasper-1.900.1-98.3.i586.rpm</filename>
        </package>
        <package name="libjasper" arch="ppc" version="1.900.1" release="98.3">
          <filename>libjasper-1.900.1-98.3.ppc.rpm</filename>
        </package>
        <package name="libjasper" arch="x86_64" version="1.900.1" release="98.3">
          <filename>libjasper-1.900.1-98.3.x86_64.rpm</filename>
        </package>
        <package name="libjasper-32bit" arch="x86_64" version="1.900.1" release="98.3">
          <filename>libjasper-32bit-1.900.1-98.3.x86_64.rpm</filename>
        </package>
        <package name="libjasper-64bit" arch="ppc" version="1.900.1" release="98.3">
          <filename>libjasper-64bit-1.900.1-98.3.ppc.rpm</filename>
        </package>
        <package name="libjasper-devel" arch="i586" version="1.900.1" release="98.3">
          <filename>libjasper-devel-1.900.1-98.3.i586.rpm</filename>
        </package>
        <package name="libjasper-devel" arch="ppc" version="1.900.1" release="98.3">
          <filename>libjasper-devel-1.900.1-98.3.ppc.rpm</filename>
        </package>
        <package name="libjasper-devel" arch="x86_64" version="1.900.1" release="98.3">
          <filename>libjasper-devel-1.900.1-98.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="dcca763f7fa11e2e87b0262562054338"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="334">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Security update to 3.0.4</title>
  <release>openSUSE 11.0</release>
  <issued date="1227552818"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439841" id="439841" title="bug number 439841" type="bugzilla"/>
  </references>
  <description>This update brings the Mozilla Firefox browser to version
3.0.4.

It fixes following security issues:

CVE-2008-0017 / MFSA 2008-54:

The http-index-format MIME type parser (nsDirIndexParser)
in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18,
and SeaMonkey 1.x before 1.1.13 does not check for an
allocation failure, which allows remote attackers to cause
a denial of service (crash) and possibly execute arbitrary
code via an HTTP index response with a crafted 200 header,
which triggers memory corruption and a buffer overflow.



CVE-2008-5012 / MFSA 2008-48: Mozilla Firefox 2.x before
2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey
1.x before 1.1.13 do not properly change the source URI
when processing a canvas element and an HTTP redirect,
which allows remote attackers to bypass the same origin
policy and access arbitrary images that are not directly
accessible to the attacker.  NOTE: this issue can be
leveraged to enumerate software on the client by performing
redirections related to moz-icon.



CVE-2008-5013 / MFSA 2008-49:

Mozilla Firefox 2.x before 2.0.0.18 and SeaMonkey 1.x
before 1.1.13 do not properly check when the Flash module
has been dynamically unloaded properly, which allows remote
attackers to execute arbitrary code via a crafted SWF file
that &quot;dynamically unloads itself from an outside JavaScript
function,&quot; which triggers an access of an expired memory
address.


CVE-2008-5014 / MFSA 2008-50

jslock.cpp in Mozilla Firefox 3.x before 3.0.2, Firefox 2.x
before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and
SeaMonkey 1.x before 1.1.13 allows remote attackers to
cause a denial of service (crash) and possibly execute
arbitrary code by modifying the window.__proto__.__proto__
object in a way that causes a lock on a non-native object,
which triggers an assertion failure related to the
OBJ_IS_NATIVE function.


CVE-2008-5015 / MFSA 2008-51:

Mozilla Firefox 3.x before 3.0.4 assigns chrome privileges
to a file: URI when it is accessed in the same tab from a
chrome or privileged about: page, which makes it easier for
user-assisted attackers to execute arbitrary JavaScript
with chrome privileges via malicious code in a file that
has already been saved on the local system.

CVE-2008-5016 / MFSA 2008-52:

The layout engine in Mozilla Firefox 3.x before 3.0.4,
Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before
1.1.13 allows remote attackers to cause a denial of service
(crash) via multiple vectors that trigger an assertion
failure or other consequences.

CVE-2008-5017 / MFSA 2008-52: Integer overflow in
xpcom/io/nsEscape.cpp in the browser engine in Mozilla
Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18,
Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before
1.1.13 allows remote attackers to cause a denial of service
(crash) via unknown vectors.

CVE-2008-5018 / MFSA 2008-52: The JavaScript engine in
Mozilla Firefox 3.x before 3.0.4, Firefox 2.x before
2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey
1.x before 1.1.13 allows remote attackers to cause a denial
of service (crash) via vectors related to &quot;insufficient
class checking&quot; in the Date class. CVE-2008-5019 / MFSA
2008-53: The session restore feature in Mozilla Firefox 3.x
before 3.0.4 and 2.x before 2.0.0.18 allows remote
attackers to violate the same origin policy to conduct
cross-site scripting (XSS) attacks and execute arbitrary
JavaScript with chrome privileges via unknown vectors.
CVE-2008-5021 / MFSA 2008-55: nsFrameManager in Firefox 3.x
before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x
before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows
remote attackers to cause a denial of service (crash) and
possibly execute arbitrary code by modifying properties of
a file input element while it is still being initialized,
then using the blur method to access uninitialized memory.

CVE-2008-5022 / MFSA 2008-56: The
nsXMLHttpRequest::NotifyEventListeners method in Firefox
3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird
2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows
remote attackers to bypass the same-origin policy and
execute arbitrary script via multiple listeners, which
bypass the inner window check.

CVE-2008-5023 / MFSA 2008-57: Firefox 3.x before 3.0.4,
Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before
1.1.13 allows remote attackers to bypass the protection
mechanism for codebase principals and execute arbitrary
script via the -moz-binding CSS property in a signed JAR
file.

CVE-2008-5024 / MFSA 2008-58: Mozilla Firefox 3.x before
3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before
2.0.0.18, and SeaMonkey 1.x before 1.1.13 do not properly
escape quote characters used for XML processing, allows
remote attackers to conduct XML injection attacks via the
default namespace in an E4X document.

CVE-2008-5052 / MFSA 2008-52: The AppendAttributeValue
function in the JavaScript engine in Mozilla Firefox 2.x
before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and
SeaMonkey 1.x before 1.1.13 allows remote attackers to
cause a denial of service (crash) via unknown vectors that
trigger memory corruption, as demonstrated by
e4x/extensions/regress-410192.js.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.4" release="3.1">
          <filename>MozillaFirefox-3.0.4-3.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.4" release="3.1">
          <filename>MozillaFirefox-3.0.4-3.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.4" release="3.1">
          <filename>MozillaFirefox-3.0.4-3.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.4" release="3.1">
          <filename>MozillaFirefox-translations-3.0.4-3.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.4" release="3.1">
          <filename>MozillaFirefox-translations-3.0.4-3.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.4" release="3.1">
          <filename>MozillaFirefox-translations-3.0.4-3.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-1.9.0.4-2.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-1.9.0.4-2.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-1.9.0.4-2.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.4-2.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.4-2.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.4-2.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.4-2.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.4-2.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.4-2.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.4-2.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.4-2.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.4-2.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.4-2.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.4-2.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.4-2.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.4-2.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.4-2.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.4" release="2.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.4-2.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4b95ac2b65abbadffe94e2714cf14695"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="285">
  <id>hal</id>
  <title>Several fixes for the HAL daemon</title>
  <release>openSUSE 11.0</release>
  <issued date="1225735058"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=430263" id="430263" title="bug number 430263" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429681" id="429681" title="bug number 429681" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=411189" id="411189" title="bug number 411189" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=410730" id="410730" title="bug number 410730" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=410174" id="410174" title="bug number 410174" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405332" id="405332" title="bug number 405332" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=398846" id="398846" title="bug number 398846" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=394390" id="394390" title="bug number 394390" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=382855" id="382855" title="bug number 382855" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=366434" id="366434" title="bug number 366434" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=235059" id="235059" title="bug number 235059" type="bugzilla"/>
  </references>
  <description>This update contains serveral fixes: HAL now gets
storage.model via a ioctl instead from sysfs if the storage
device use the SCSI-layer to prevent truncated strings
(bnc#397871), fix internal handling of PropertyModified
signal (fd.o#16427), fix battery handling on PPC (PMU)
machines to prevent list the same battery multiple times
(fd.o#15482), fix some memory leaks (fd.o#16376 and other),
fix handling of volume devices (dont set storage.model),
fixed rc file (bnc#405332), fixed keymapping for machines
using the ThinkPad kernel module (bnc#382855); Sony
(bnc#410730); HP (bnc#411189,#398846); a Toshiba A110
(bnc#430263) and Dell (bnc#410174), fixed interface Lock()
handling to prevent locks get not removed if the lock owner
dies or exit without calling Unlock(), fix generation of
UDIs to prevent problems with invalid DBus paths causing
crashes (fd.o#16040), fix brightness handling for some
machines (bnc#42968) which handle brightness keys directly
in hardware/bios, enable support for the ppdev subsystem
(bnc#235059) including ACL handling, mark another CDMA
device as modem (bnc#405332).
</description>
  <pkglist>
    <collection>
        <package name="hal" arch="i586" version="0.5.11" release="8.2">
          <filename>hal-0.5.11-8.2.i586.rpm</filename>
        </package>
        <package name="hal" arch="ppc" version="0.5.11" release="8.2">
          <filename>hal-0.5.11-8.2.ppc.rpm</filename>
        </package>
        <package name="hal" arch="x86_64" version="0.5.11" release="8.2">
          <filename>hal-0.5.11-8.2.x86_64.rpm</filename>
        </package>
        <package name="hal-32bit" arch="x86_64" version="0.5.11" release="8.2">
          <filename>hal-32bit-0.5.11-8.2.x86_64.rpm</filename>
        </package>
        <package name="hal-64bit" arch="ppc" version="0.5.11" release="8.2">
          <filename>hal-64bit-0.5.11-8.2.ppc.rpm</filename>
        </package>
        <package name="hal-devel" arch="i586" version="0.5.11" release="8.2">
          <filename>hal-devel-0.5.11-8.2.i586.rpm</filename>
        </package>
        <package name="hal-devel" arch="ppc" version="0.5.11" release="8.2">
          <filename>hal-devel-0.5.11-8.2.ppc.rpm</filename>
        </package>
        <package name="hal-devel" arch="x86_64" version="0.5.11" release="8.2">
          <filename>hal-devel-0.5.11-8.2.x86_64.rpm</filename>
        </package>
        <package name="hal-doc" arch="i586" version="0.5.11" release="9.2">
          <filename>hal-doc-0.5.11-9.2.i586.rpm</filename>
        </package>
        <package name="hal-doc" arch="ppc" version="0.5.11" release="9.2">
          <filename>hal-doc-0.5.11-9.2.ppc.rpm</filename>
        </package>
        <package name="hal-doc" arch="x86_64" version="0.5.11" release="9.2">
          <filename>hal-doc-0.5.11-9.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4bfab8ff403a9995a1f82caef039015f"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="316">
  <id>xorg-x11</id>
  <title>xorg-x11: X Font Server (xfs) startup fixed</title>
  <release>openSUSE 11.0</release>
  <issued date="1227236487"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=408006" id="408006" title="bug number 408006" type="bugzilla"/>
  </references>
  <description>Due to changes in mktemp's behaviour, the X Font Server
(xfs) startup in  /etc/init.d/xfs did no longer work,
thereby preventing xfs to be started.
</description>
  <pkglist>
    <collection>
        <package name="xorg-x11" arch="i586" version="7.3" release="96.4">
          <filename>xorg-x11-7.3-96.4.i586.rpm</filename>
        </package>
        <package name="xorg-x11" arch="ppc" version="7.3" release="96.4">
          <filename>xorg-x11-7.3-96.4.ppc.rpm</filename>
        </package>
        <package name="xorg-x11" arch="x86_64" version="7.3" release="96.4">
          <filename>xorg-x11-7.3-96.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="91a281b85963cc929b731d5d2a7f46ec"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="306">
  <id>openvpn</id>
  <title>openvpn: init script corrections</title>
  <release>openSUSE 11.0</release>
  <issued date="1226696696"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=435421" id="435421" title="bug number 435421" type="bugzilla"/>
  </references>
  <description>This update fixes pid file related start/stop problems in
the openvpn init script.
</description>
  <pkglist>
    <collection>
        <package name="openvpn" arch="i586" version="2.0.9" release="96.2">
          <filename>openvpn-2.0.9-96.2.i586.rpm</filename>
        </package>
        <package name="openvpn" arch="ppc" version="2.0.9" release="96.2">
          <filename>openvpn-2.0.9-96.2.ppc.rpm</filename>
        </package>
        <package name="openvpn" arch="x86_64" version="2.0.9" release="96.2">
          <filename>openvpn-2.0.9-96.2.x86_64.rpm</filename>
        </package>
        <package name="openvpn-auth-pam-plugin" arch="i586" version="2.0.9" release="96.2">
          <filename>openvpn-auth-pam-plugin-2.0.9-96.2.i586.rpm</filename>
        </package>
        <package name="openvpn-auth-pam-plugin" arch="ppc" version="2.0.9" release="96.2">
          <filename>openvpn-auth-pam-plugin-2.0.9-96.2.ppc.rpm</filename>
        </package>
        <package name="openvpn-auth-pam-plugin" arch="x86_64" version="2.0.9" release="96.2">
          <filename>openvpn-auth-pam-plugin-2.0.9-96.2.x86_64.rpm</filename>
        </package>
        <package name="openvpn-down-root-plugin" arch="i586" version="2.0.9" release="96.2">
          <filename>openvpn-down-root-plugin-2.0.9-96.2.i586.rpm</filename>
        </package>
        <package name="openvpn-down-root-plugin" arch="ppc" version="2.0.9" release="96.2">
          <filename>openvpn-down-root-plugin-2.0.9-96.2.ppc.rpm</filename>
        </package>
        <package name="openvpn-down-root-plugin" arch="x86_64" version="2.0.9" release="96.2">
          <filename>openvpn-down-root-plugin-2.0.9-96.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e92e461ebc539c51199559600e4420d9"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="182">
  <id>rsh</id>
  <title>rexecd: fix system limits.conf usage</title>
  <release>openSUSE 11.0</release>
  <issued date="1220622620"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=422442" id="422442" title="bug number 422442" type="bugzilla"/>
  </references>
  <description>in.rexecd was not using the system wide limits, potentially
allowing remote rexec users to exhaust all system resources.

This patch fixes it.
</description>
  <pkglist>
    <collection>
        <package name="rsh" arch="i586" version="0.17" release="680.2">
          <filename>rsh-0.17-680.2.i586.rpm</filename>
        </package>
        <package name="rsh" arch="ppc" version="0.17" release="680.2">
          <filename>rsh-0.17-680.2.ppc.rpm</filename>
        </package>
        <package name="rsh" arch="x86_64" version="0.17" release="680.2">
          <filename>rsh-0.17-680.2.x86_64.rpm</filename>
        </package>
        <package name="rsh-server" arch="i586" version="0.17" release="680.2">
          <filename>rsh-server-0.17-680.2.i586.rpm</filename>
        </package>
        <package name="rsh-server" arch="ppc" version="0.17" release="680.2">
          <filename>rsh-server-0.17-680.2.ppc.rpm</filename>
        </package>
        <package name="rsh-server" arch="x86_64" version="0.17" release="680.2">
          <filename>rsh-server-0.17-680.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d0bf9bf48ad271e4748f45908fc273cb"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="321">
  <id>valgrind</id>
  <title>valgrind security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1227298750"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=445013" id="445013" title="bug number 445013" type="bugzilla"/>
  </references>
  <description>valgrind reads a file .valgrindrc in the current directory.
Therefore local users could place such a file a world
writable directory such as /tmp and influence other users'
valgrind when it's executed there (CVE-2008-4865).
</description>
  <pkglist>
    <collection>
        <package name="valgrind" arch="i586" version="3.3.0" release="43.2">
          <filename>valgrind-3.3.0-43.2.i586.rpm</filename>
        </package>
        <package name="valgrind" arch="ppc" version="3.3.0" release="43.2">
          <filename>valgrind-3.3.0-43.2.ppc.rpm</filename>
        </package>
        <package name="valgrind" arch="x86_64" version="3.3.0" release="43.2">
          <filename>valgrind-3.3.0-43.2.x86_64.rpm</filename>
        </package>
        <package name="valgrind-devel" arch="i586" version="3.3.0" release="43.2">
          <filename>valgrind-devel-3.3.0-43.2.i586.rpm</filename>
        </package>
        <package name="valgrind-devel" arch="ppc" version="3.3.0" release="43.2">
          <filename>valgrind-devel-3.3.0-43.2.ppc.rpm</filename>
        </package>
        <package name="valgrind-devel" arch="x86_64" version="3.3.0" release="43.2">
          <filename>valgrind-devel-3.3.0-43.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2e9df6cb6a3a433dd3f0d3837d1529a0"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="330">
  <id>apache2</id>
  <title>apache2: Fix problem in mod_proxy_http introduced by previous security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1227483385"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443824" id="443824" title="bug number 443824" type="bugzilla"/>
  </references>
  <description>This updated fixes a problem in mod_proxy_http that was
introduced by previous security update.
</description>
  <pkglist>
    <collection>
        <package name="apache2" arch="i586" version="2.2.8" release="28.4">
          <filename>apache2-2.2.8-28.4.i586.rpm</filename>
        </package>
        <package name="apache2" arch="ppc" version="2.2.8" release="28.4">
          <filename>apache2-2.2.8-28.4.ppc.rpm</filename>
        </package>
        <package name="apache2" arch="x86_64" version="2.2.8" release="28.4">
          <filename>apache2-2.2.8-28.4.x86_64.rpm</filename>
        </package>
        <package name="apache2-devel" arch="i586" version="2.2.8" release="28.4">
          <filename>apache2-devel-2.2.8-28.4.i586.rpm</filename>
        </package>
        <package name="apache2-devel" arch="ppc" version="2.2.8" release="28.4">
          <filename>apache2-devel-2.2.8-28.4.ppc.rpm</filename>
        </package>
        <package name="apache2-devel" arch="x86_64" version="2.2.8" release="28.4">
          <filename>apache2-devel-2.2.8-28.4.x86_64.rpm</filename>
        </package>
        <package name="apache2-doc" arch="i586" version="2.2.8" release="28.4">
          <filename>apache2-doc-2.2.8-28.4.i586.rpm</filename>
        </package>
        <package name="apache2-doc" arch="ppc" version="2.2.8" release="28.4">
          <filename>apache2-doc-2.2.8-28.4.ppc.rpm</filename>
        </package>
        <package name="apache2-doc" arch="x86_64" version="2.2.8" release="28.4">
          <filename>apache2-doc-2.2.8-28.4.x86_64.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="i586" version="2.2.8" release="28.4">
          <filename>apache2-example-pages-2.2.8-28.4.i586.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="ppc" version="2.2.8" release="28.4">
          <filename>apache2-example-pages-2.2.8-28.4.ppc.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="x86_64" version="2.2.8" release="28.4">
          <filename>apache2-example-pages-2.2.8-28.4.x86_64.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="i586" version="2.2.8" release="28.4">
          <filename>apache2-prefork-2.2.8-28.4.i586.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="ppc" version="2.2.8" release="28.4">
          <filename>apache2-prefork-2.2.8-28.4.ppc.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="x86_64" version="2.2.8" release="28.4">
          <filename>apache2-prefork-2.2.8-28.4.x86_64.rpm</filename>
        </package>
        <package name="apache2-utils" arch="i586" version="2.2.8" release="28.4">
          <filename>apache2-utils-2.2.8-28.4.i586.rpm</filename>
        </package>
        <package name="apache2-utils" arch="ppc" version="2.2.8" release="28.4">
          <filename>apache2-utils-2.2.8-28.4.ppc.rpm</filename>
        </package>
        <package name="apache2-utils" arch="x86_64" version="2.2.8" release="28.4">
          <filename>apache2-utils-2.2.8-28.4.x86_64.rpm</filename>
        </package>
        <package name="apache2-worker" arch="i586" version="2.2.8" release="28.4">
          <filename>apache2-worker-2.2.8-28.4.i586.rpm</filename>
        </package>
        <package name="apache2-worker" arch="ppc" version="2.2.8" release="28.4">
          <filename>apache2-worker-2.2.8-28.4.ppc.rpm</filename>
        </package>
        <package name="apache2-worker" arch="x86_64" version="2.2.8" release="28.4">
          <filename>apache2-worker-2.2.8-28.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="352227649d481caa0a4c10e7e04d1c8f"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="299">
  <id>java-1_4_2-sun</id>
  <title>2008 Brazil DST start date change, SLE10, Sun Java</title>
  <release>openSUSE 11.0</release>
  <issued date="1226454237"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=427616" id="427616" title="bug number 427616" type="bugzilla"/>
  </references>
  <description>This update changes the timezone information in Sun Java to
2008g. This includes changes in Brazilia, Mauritius,
Moroco, Gaza, Pakistan, Turkey and Argentina.
</description>
  <pkglist>
    <collection>
        <package name="java-1_5_0-sun" arch="i586" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-1.5.0_update16-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun" arch="x86_64" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-1.5.0_update16-1.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="i586" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-alsa-1.5.0_update16-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="x86_64" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-alsa-1.5.0_update16-1.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="i586" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-demo-1.5.0_update16-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="x86_64" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-demo-1.5.0_update16-1.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="i586" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-devel-1.5.0_update16-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="x86_64" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-devel-1.5.0_update16-1.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="i586" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update16-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="x86_64" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update16-1.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-plugin" arch="i586" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-plugin-1.5.0_update16-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="i586" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-src-1.5.0_update16-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="x86_64" version="1.5.0_update16" release="1.3">
          <filename>java-1_5_0-sun-src-1.5.0_update16-1.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u7" release="1.3">
          <filename>java-1_6_0-sun-1.6.0.u7-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u7" release="1.3">
          <filename>java-1_6_0-sun-1.6.0.u7-1.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u7" release="1.3">
          <filename>java-1_6_0-sun-alsa-1.6.0.u7-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u7" release="1.3">
          <filename>java-1_6_0-sun-alsa-1.6.0.u7-1.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u7" release="1.3">
          <filename>java-1_6_0-sun-demo-1.6.0.u7-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u7" release="1.3">
          <filename>java-1_6_0-sun-demo-1.6.0.u7-1.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u7" release="1.3">
          <filename>java-1_6_0-sun-devel-1.6.0.u7-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u7" release="1.3">
          <filename>java-1_6_0-sun-devel-1.6.0.u7-1.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u7" release="1.3">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u7-1.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u7" release="1.3">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u7-1.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u7" release="1.3">
          <filename>java-1_6_0-sun-plugin-1.6.0.u7-1.3.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8b5448483a7207ffd99ed24461ee4a8a"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="317">
  <id>pdns-recursor</id>
  <title>pdns-recursor: Fix path to configuration file</title>
  <release>openSUSE 11.0</release>
  <issued date="1227233678"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=446608" id="446608" title="bug number 446608" type="bugzilla"/>
  </references>
  <description>PowerDNS recursor was looking in the wrong path for its
configuration file.
</description>
  <pkglist>
    <collection>
        <package name="pdns-recursor" arch="i586" version="3.1.5" release="14.2">
          <filename>pdns-recursor-3.1.5-14.2.i586.rpm</filename>
        </package>
        <package name="pdns-recursor" arch="ppc" version="3.1.5" release="14.2">
          <filename>pdns-recursor-3.1.5-14.2.ppc.rpm</filename>
        </package>
        <package name="pdns-recursor" arch="x86_64" version="3.1.5" release="14.2">
          <filename>pdns-recursor-3.1.5-14.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a0c8660fc6823cc21b28e7d1652e5f1e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="314">
  <id>libxml2</id>
  <title>libxml2 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1226018006"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=445677" id="445677" title="bug number 445677" type="bugzilla"/>
  </references>
  <description>libxml2 could run into an endless loop when processing
specially crafted XML files (CVE-2008-4225)
</description>
  <pkglist>
    <collection>
        <package name="libxml2" arch="i586" version="2.6.32" release="11.5">
          <filename>libxml2-2.6.32-11.5.i586.rpm</filename>
        </package>
        <package name="libxml2" arch="ppc" version="2.6.32" release="11.5">
          <filename>libxml2-2.6.32-11.5.ppc.rpm</filename>
        </package>
        <package name="libxml2" arch="x86_64" version="2.6.32" release="11.5">
          <filename>libxml2-2.6.32-11.5.x86_64.rpm</filename>
        </package>
        <package name="libxml2-32bit" arch="x86_64" version="2.6.32" release="11.5">
          <filename>libxml2-32bit-2.6.32-11.5.x86_64.rpm</filename>
        </package>
        <package name="libxml2-64bit" arch="ppc" version="2.6.32" release="11.5">
          <filename>libxml2-64bit-2.6.32-11.5.ppc.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="i586" version="2.6.32" release="11.5">
          <filename>libxml2-devel-2.6.32-11.5.i586.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="ppc" version="2.6.32" release="11.5">
          <filename>libxml2-devel-2.6.32-11.5.ppc.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="x86_64" version="2.6.32" release="11.5">
          <filename>libxml2-devel-2.6.32-11.5.x86_64.rpm</filename>
        </package>
        <package name="libxml2-devel-32bit" arch="x86_64" version="2.6.32" release="11.5">
          <filename>libxml2-devel-32bit-2.6.32-11.5.x86_64.rpm</filename>
        </package>
        <package name="libxml2-devel-64bit" arch="ppc" version="2.6.32" release="11.5">
          <filename>libxml2-devel-64bit-2.6.32-11.5.ppc.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="i586" version="2.6.32" release="11.5">
          <filename>libxml2-doc-2.6.32-11.5.i586.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="ppc" version="2.6.32" release="11.5">
          <filename>libxml2-doc-2.6.32-11.5.ppc.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="x86_64" version="2.6.32" release="11.5">
          <filename>libxml2-doc-2.6.32-11.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e318098af5c9ad5e5d2891944e05ac09"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="275">
  <id>lynx</id>
  <title>VUL-0: lynx: lynxcgi command execution possible</title>
  <release>openSUSE 11.0</release>
  <issued date="1225328218"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439149" id="439149" title="bug number 439149" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439427" id="439427" title="bug number 439427" type="bugzilla"/>
  </references>
  <description>This update of lynx fixes a security bug that can be
exploited by remote attackers to execute arbitrary commands
when advanced mode is enabled and lynx is used as URL
handler (CVE-2008-4690)
</description>
  <pkglist>
    <collection>
        <package name="lynx" arch="i586" version="2.8.6" release="109.2">
          <filename>lynx-2.8.6-109.2.i586.rpm</filename>
        </package>
        <package name="lynx" arch="ppc" version="2.8.6" release="109.2">
          <filename>lynx-2.8.6-109.2.ppc.rpm</filename>
        </package>
        <package name="lynx" arch="x86_64" version="2.8.6" release="109.2">
          <filename>lynx-2.8.6-109.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4d2b352f81aa03a1a9dfc717b9da0c0a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="328">
  <id>rubygem-activerecord</id>
  <title>rubygem-activerecord security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1227328914"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=426198" id="426198" title="bug number 426198" type="bugzilla"/>
  </references>
  <description>Missing sanity checks of the :limit and :offset parameters
in SQL queries could potentially be exploited to conduct
SQL inection attacks (CVE-2008-4094).
</description>
  <pkglist>
    <collection>
        <package name="rubygem-activerecord" arch="i586" version="1.15.5" release="71.2">
          <filename>rubygem-activerecord-1.15.5-71.2.i586.rpm</filename>
        </package>
        <package name="rubygem-activerecord" arch="ppc" version="1.15.5" release="71.2">
          <filename>rubygem-activerecord-1.15.5-71.2.ppc.rpm</filename>
        </package>
        <package name="rubygem-activerecord" arch="x86_64" version="1.15.5" release="71.2">
          <filename>rubygem-activerecord-1.15.5-71.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e7005d334b9ba2f2def6cfab32062d35"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="327">
  <id>rubygem-actionpack</id>
  <title>rubygem-actionpack security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1227315697"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=436934" id="436934" title="bug number 436934" type="bugzilla"/>
  </references>
  <description>Missing input sanitation in rubygem-actionpack allowed
remote attackers to inject arbitrary HTTP headers via
specially crafted URLs (CVE-2008-5189).
</description>
  <pkglist>
    <collection>
        <package name="rubygem-actionpack" arch="i586" version="1.13.5" release="71.2">
          <filename>rubygem-actionpack-1.13.5-71.2.i586.rpm</filename>
        </package>
        <package name="rubygem-actionpack" arch="ppc" version="1.13.5" release="71.2">
          <filename>rubygem-actionpack-1.13.5-71.2.ppc.rpm</filename>
        </package>
        <package name="rubygem-actionpack" arch="x86_64" version="1.13.5" release="71.2">
          <filename>rubygem-actionpack-1.13.5-71.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c5eb91524d3b494f968a574f2345be31"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="318">
  <id>imlib2</id>
  <title>imlib2: Fixed heap overflow in XPM loader</title>
  <release>openSUSE 11.0</release>
  <issued date="1227300321"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=447093" id="447093" title="bug number 447093" type="bugzilla"/>
  </references>
  <description>A security problem was fixed in imlib2 where loading a
specific XPM file could corrupt memory. (CVE-2008-5187)
</description>
  <pkglist>
    <collection>
        <package name="imlib2" arch="i586" version="1.4.0" release="46.5">
          <filename>imlib2-1.4.0-46.5.i586.rpm</filename>
        </package>
        <package name="imlib2" arch="ppc" version="1.4.0" release="46.5">
          <filename>imlib2-1.4.0-46.5.ppc.rpm</filename>
        </package>
        <package name="imlib2" arch="x86_64" version="1.4.0" release="46.5">
          <filename>imlib2-1.4.0-46.5.x86_64.rpm</filename>
        </package>
        <package name="imlib2-devel" arch="i586" version="1.4.0" release="46.5">
          <filename>imlib2-devel-1.4.0-46.5.i586.rpm</filename>
        </package>
        <package name="imlib2-devel" arch="ppc" version="1.4.0" release="46.5">
          <filename>imlib2-devel-1.4.0-46.5.ppc.rpm</filename>
        </package>
        <package name="imlib2-devel" arch="x86_64" version="1.4.0" release="46.5">
          <filename>imlib2-devel-1.4.0-46.5.x86_64.rpm</filename>
        </package>
        <package name="imlib2-filters" arch="i586" version="1.4.0" release="46.5">
          <filename>imlib2-filters-1.4.0-46.5.i586.rpm</filename>
        </package>
        <package name="imlib2-filters" arch="ppc" version="1.4.0" release="46.5">
          <filename>imlib2-filters-1.4.0-46.5.ppc.rpm</filename>
        </package>
        <package name="imlib2-filters" arch="x86_64" version="1.4.0" release="46.5">
          <filename>imlib2-filters-1.4.0-46.5.x86_64.rpm</filename>
        </package>
        <package name="imlib2-loaders" arch="i586" version="1.4.0" release="46.5">
          <filename>imlib2-loaders-1.4.0-46.5.i586.rpm</filename>
        </package>
        <package name="imlib2-loaders" arch="ppc" version="1.4.0" release="46.5">
          <filename>imlib2-loaders-1.4.0-46.5.ppc.rpm</filename>
        </package>
        <package name="imlib2-loaders" arch="x86_64" version="1.4.0" release="46.5">
          <filename>imlib2-loaders-1.4.0-46.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4a539502f8a7c8f5be6334b98e82d558"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="310">
  <id>apache2-mod_php5</id>
  <title>php5: fixed exploitable buffer overflow via old IMAP API</title>
  <release>openSUSE 11.0</release>
  <issued date="1226682056"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402665" id="402665" title="bug number 402665" type="bugzilla"/>
  </references>
  <description>This update fixes a buffer overflow in php_imap.c that uses
an old IMAP API. This bug can be exploited to execute
arbitrary code remotely via long IMAP requests.
(CVE-2008-2829)
</description>
  <pkglist>
    <collection>
        <package name="apache2-mod_php5" arch="i586" version="5.2.6" release="0.6">
          <filename>apache2-mod_php5-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="ppc" version="5.2.6" release="0.6">
          <filename>apache2-mod_php5-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="x86_64" version="5.2.6" release="0.6">
          <filename>apache2-mod_php5-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-bcmath-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-bcmath-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-bcmath-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-bz2" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-bz2-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-bz2" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-bz2-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-bz2" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-bz2-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-calendar" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-calendar-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-calendar" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-calendar-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-calendar" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-calendar-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-ctype" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-ctype-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-ctype" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-ctype-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-ctype" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-ctype-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-curl" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-curl-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-curl" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-curl-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-curl" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-curl-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-dba" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-dba-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-dba" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-dba-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-dba" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-dba-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-dbase" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-dbase-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-dbase" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-dbase-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-dbase" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-dbase-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-devel" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-devel-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-devel" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-devel-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-devel" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-devel-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-dom" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-dom-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-dom" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-dom-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-dom" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-dom-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-exif" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-exif-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-exif" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-exif-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-exif" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-exif-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-fastcgi-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-fastcgi-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-fastcgi-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-ftp" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-ftp-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-ftp" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-ftp-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-ftp" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-ftp-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-gd" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-gd-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-gd" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-gd-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-gd" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-gd-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-gettext" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-gettext-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-gettext" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-gettext-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-gettext" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-gettext-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-gmp" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-gmp-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-gmp" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-gmp-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-gmp" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-gmp-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-hash" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-hash-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-hash" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-hash-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-hash" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-hash-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-iconv" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-iconv-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-iconv" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-iconv-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-iconv" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-iconv-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-imap" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-imap-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-imap" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-imap-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-imap" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-imap-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-json" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-json-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-json" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-json-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-json" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-json-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-ldap" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-ldap-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-ldap" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-ldap-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-ldap" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-ldap-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-mbstring-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-mbstring-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-mbstring-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-mcrypt-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-mcrypt-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-mcrypt-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-mysql" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-mysql-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-mysql" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-mysql-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-mysql" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-mysql-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-ncurses-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-ncurses-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-ncurses-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-odbc" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-odbc-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-odbc" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-odbc-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-odbc" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-odbc-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-openssl" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-openssl-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-openssl" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-openssl-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-openssl" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-openssl-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-pcntl-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-pcntl-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-pcntl-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-pdo" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-pdo-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-pdo" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-pdo-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-pdo" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-pdo-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-pear" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-pear-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-pear" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-pear-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-pear" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-pear-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-pgsql-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-pgsql-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-pgsql-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-posix" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-posix-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-posix" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-posix-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-posix" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-posix-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-pspell" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-pspell-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-pspell" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-pspell-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-pspell" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-pspell-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-readline" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-readline-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-readline" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-readline-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-readline" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-readline-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-shmop" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-shmop-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-shmop" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-shmop-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-shmop" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-shmop-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-snmp" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-snmp-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-snmp" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-snmp-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-snmp" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-snmp-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-soap" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-soap-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-soap" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-soap-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-soap" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-soap-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-sockets" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-sockets-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-sockets" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-sockets-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-sockets" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-sockets-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-sqlite-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-sqlite-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-sqlite-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-suhosin-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-suhosin-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-suhosin-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-sysvmsg-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-sysvmsg-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-sysvmsg-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-sysvsem-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-sysvsem-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-sysvsem-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-sysvshm-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-sysvshm-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-sysvshm-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-tidy" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-tidy-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-tidy" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-tidy-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-tidy" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-tidy-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-tokenizer-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-tokenizer-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-tokenizer-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-wddx" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-wddx-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-wddx" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-wddx-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-wddx" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-wddx-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-xmlreader-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-xmlreader-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-xmlreader-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-xmlrpc-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-xmlrpc-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-xmlrpc-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-xmlwriter-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-xmlwriter-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-xmlwriter-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-xsl" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-xsl-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-xsl" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-xsl-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-xsl" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-xsl-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-zip" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-zip-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-zip" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-zip-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-zip" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-zip-5.2.6-0.6.x86_64.rpm</filename>
        </package>
        <package name="php5-zlib" arch="i586" version="5.2.6" release="0.6">
          <filename>php5-zlib-5.2.6-0.6.i586.rpm</filename>
        </package>
        <package name="php5-zlib" arch="ppc" version="5.2.6" release="0.6">
          <filename>php5-zlib-5.2.6-0.6.ppc.rpm</filename>
        </package>
        <package name="php5-zlib" arch="x86_64" version="5.2.6" release="0.6">
          <filename>php5-zlib-5.2.6-0.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3a9f497f4320c2dc6a5e5b07d0f5129d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="218">
  <id>pam_krb5</id>
  <title>pam_krb5 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1221835222"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=425861" id="425861" title="bug number 425861" type="bugzilla"/>
  </references>
  <description>Insufficient file access permissions checks allowed users
to read Kerberos tickes of other users if pam_krb5 was
configured with the option &quot;existing_ticket&quot;
(CVE-2008-3825).
</description>
  <pkglist>
    <collection>
        <package name="pam_krb5" arch="i586" version="2.2.22" release="35.3">
          <filename>pam_krb5-2.2.22-35.3.i586.rpm</filename>
        </package>
        <package name="pam_krb5" arch="ppc" version="2.2.22" release="35.3">
          <filename>pam_krb5-2.2.22-35.3.ppc.rpm</filename>
        </package>
        <package name="pam_krb5" arch="x86_64" version="2.2.22" release="35.3">
          <filename>pam_krb5-2.2.22-35.3.x86_64.rpm</filename>
        </package>
        <package name="pam_krb5-32bit" arch="x86_64" version="2.2.22" release="35.3">
          <filename>pam_krb5-32bit-2.2.22-35.3.x86_64.rpm</filename>
        </package>
        <package name="pam_krb5-64bit" arch="ppc" version="2.2.22" release="35.3">
          <filename>pam_krb5-64bit-2.2.22-35.3.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fcc3110c158c9897a8a198784ef30794"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="319">
  <id>libsnmp15</id>
  <title>net-snmp security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1227236423"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=440950" id="440950" title="bug number 440950" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415127" id="415127" title="bug number 415127" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=378069" id="378069" title="bug number 378069" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396773" id="396773" title="bug number 396773" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=326957" id="326957" title="bug number 326957" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439857" id="439857" title="bug number 439857" type="bugzilla"/>
  </references>
  <description>Remote attackers could crash net-snmp via GETBULK-Request
(CVE-2008-4309).

In addition the following non-security issues have been
fixed:

- typo in error message (bnc#439857)
- fix duplicate registration warnings on startup
  (bnc#326957)
- container insert errors reproducable with shared ip
  setups (bnc#396773)
- typo in the snmpd init script to really load all agents
  (bnc#415127)
- logrotate config to restart the snmptrapd aswell
  (bnc#378069)
</description>
  <pkglist>
    <collection>
        <package name="libsnmp15" arch="i586" version="5.4.1" release="77.4">
          <filename>libsnmp15-5.4.1-77.4.i586.rpm</filename>
        </package>
        <package name="libsnmp15" arch="ppc" version="5.4.1" release="77.4">
          <filename>libsnmp15-5.4.1-77.4.ppc.rpm</filename>
        </package>
        <package name="libsnmp15" arch="x86_64" version="5.4.1" release="77.4">
          <filename>libsnmp15-5.4.1-77.4.x86_64.rpm</filename>
        </package>
        <package name="net-snmp" arch="i586" version="5.4.1" release="77.4">
          <filename>net-snmp-5.4.1-77.4.i586.rpm</filename>
        </package>
        <package name="net-snmp" arch="ppc" version="5.4.1" release="77.4">
          <filename>net-snmp-5.4.1-77.4.ppc.rpm</filename>
        </package>
        <package name="net-snmp" arch="x86_64" version="5.4.1" release="77.4">
          <filename>net-snmp-5.4.1-77.4.x86_64.rpm</filename>
        </package>
        <package name="net-snmp-32bit" arch="x86_64" version="5.4.1" release="77.4">
          <filename>net-snmp-32bit-5.4.1-77.4.x86_64.rpm</filename>
        </package>
        <package name="net-snmp-64bit" arch="ppc" version="5.4.1" release="77.4">
          <filename>net-snmp-64bit-5.4.1-77.4.ppc.rpm</filename>
        </package>
        <package name="net-snmp-devel" arch="i586" version="5.4.1" release="77.4">
          <filename>net-snmp-devel-5.4.1-77.4.i586.rpm</filename>
        </package>
        <package name="net-snmp-devel" arch="ppc" version="5.4.1" release="77.4">
          <filename>net-snmp-devel-5.4.1-77.4.ppc.rpm</filename>
        </package>
        <package name="net-snmp-devel" arch="x86_64" version="5.4.1" release="77.4">
          <filename>net-snmp-devel-5.4.1-77.4.x86_64.rpm</filename>
        </package>
        <package name="net-snmp-devel-64bit" arch="ppc" version="5.4.1" release="77.4">
          <filename>net-snmp-devel-64bit-5.4.1-77.4.ppc.rpm</filename>
        </package>
        <package name="perl-SNMP" arch="i586" version="5.4.1" release="77.4">
          <filename>perl-SNMP-5.4.1-77.4.i586.rpm</filename>
        </package>
        <package name="perl-SNMP" arch="ppc" version="5.4.1" release="77.4">
          <filename>perl-SNMP-5.4.1-77.4.ppc.rpm</filename>
        </package>
        <package name="perl-SNMP" arch="x86_64" version="5.4.1" release="77.4">
          <filename>perl-SNMP-5.4.1-77.4.x86_64.rpm</filename>
        </package>
        <package name="snmp-mibs" arch="i586" version="5.4.1" release="77.4">
          <filename>snmp-mibs-5.4.1-77.4.i586.rpm</filename>
        </package>
        <package name="snmp-mibs" arch="ppc" version="5.4.1" release="77.4">
          <filename>snmp-mibs-5.4.1-77.4.ppc.rpm</filename>
        </package>
        <package name="snmp-mibs" arch="x86_64" version="5.4.1" release="77.4">
          <filename>snmp-mibs-5.4.1-77.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3b88c098c8c3391395305967817f5c07"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="320">
  <id>cifs-mount</id>
  <title>samba security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1227304441"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=446971" id="446971" title="bug number 446971" type="bugzilla"/>
  </references>
  <description>Malicious clients could potentially retrieve arbitrary
memory content from a samba server (CVE-2008-4314).
</description>
  <pkglist>
    <collection>
        <package name="cifs-mount" arch="i586" version="3.2.4" release="4.1">
          <filename>cifs-mount-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="cifs-mount" arch="ppc" version="3.2.4" release="4.1">
          <filename>cifs-mount-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="cifs-mount" arch="x86_64" version="3.2.4" release="4.1">
          <filename>cifs-mount-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="ldapsmb" arch="i586" version="1.34b" release="195.6">
          <filename>ldapsmb-1.34b-195.6.i586.rpm</filename>
        </package>
        <package name="ldapsmb" arch="ppc" version="1.34b" release="195.6">
          <filename>ldapsmb-1.34b-195.6.ppc.rpm</filename>
        </package>
        <package name="ldapsmb" arch="x86_64" version="1.34b" release="195.6">
          <filename>ldapsmb-1.34b-195.6.x86_64.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="i586" version="3.2.4" release="4.1">
          <filename>libnetapi-devel-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="ppc" version="3.2.4" release="4.1">
          <filename>libnetapi-devel-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libnetapi-devel-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libnetapi0" arch="i586" version="3.2.4" release="4.1">
          <filename>libnetapi0-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libnetapi0" arch="ppc" version="3.2.4" release="4.1">
          <filename>libnetapi0-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libnetapi0" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libnetapi0-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="i586" version="3.2.4" release="4.1">
          <filename>libsmbclient-devel-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="ppc" version="3.2.4" release="4.1">
          <filename>libsmbclient-devel-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libsmbclient-devel-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="i586" version="3.2.4" release="4.1">
          <filename>libsmbclient0-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="ppc" version="3.2.4" release="4.1">
          <filename>libsmbclient0-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libsmbclient0-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-32bit" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libsmbclient0-32bit-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-64bit" arch="ppc" version="3.2.4" release="4.1">
          <filename>libsmbclient0-64bit-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="i586" version="3.2.4" release="4.1">
          <filename>libsmbsharemodes-devel-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="ppc" version="3.2.4" release="4.1">
          <filename>libsmbsharemodes-devel-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libsmbsharemodes-devel-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="i586" version="3.2.4" release="4.1">
          <filename>libsmbsharemodes0-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="ppc" version="3.2.4" release="4.1">
          <filename>libsmbsharemodes0-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libsmbsharemodes0-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="i586" version="3.2.4" release="4.1">
          <filename>libtalloc-devel-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="ppc" version="3.2.4" release="4.1">
          <filename>libtalloc-devel-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libtalloc-devel-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1" arch="i586" version="3.2.4" release="4.1">
          <filename>libtalloc1-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libtalloc1" arch="ppc" version="3.2.4" release="4.1">
          <filename>libtalloc1-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libtalloc1" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libtalloc1-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-32bit" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libtalloc1-32bit-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-64bit" arch="ppc" version="3.2.4" release="4.1">
          <filename>libtalloc1-64bit-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="i586" version="3.2.4" release="4.1">
          <filename>libtdb-devel-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="ppc" version="3.2.4" release="4.1">
          <filename>libtdb-devel-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libtdb-devel-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libtdb1" arch="i586" version="3.2.4" release="4.1">
          <filename>libtdb1-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libtdb1" arch="ppc" version="3.2.4" release="4.1">
          <filename>libtdb1-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libtdb1" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libtdb1-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-32bit" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libtdb1-32bit-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-64bit" arch="ppc" version="3.2.4" release="4.1">
          <filename>libtdb1-64bit-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="i586" version="3.2.4" release="4.1">
          <filename>libwbclient-devel-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="ppc" version="3.2.4" release="4.1">
          <filename>libwbclient-devel-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libwbclient-devel-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0" arch="i586" version="3.2.4" release="4.1">
          <filename>libwbclient0-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="libwbclient0" arch="ppc" version="3.2.4" release="4.1">
          <filename>libwbclient0-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="libwbclient0" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libwbclient0-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-32bit" arch="x86_64" version="3.2.4" release="4.1">
          <filename>libwbclient0-32bit-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-64bit" arch="ppc" version="3.2.4" release="4.1">
          <filename>libwbclient0-64bit-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="samba" arch="i586" version="3.2.4" release="4.1">
          <filename>samba-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="samba" arch="ppc" version="3.2.4" release="4.1">
          <filename>samba-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="samba" arch="x86_64" version="3.2.4" release="4.1">
          <filename>samba-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="samba-32bit" arch="x86_64" version="3.2.4" release="4.1">
          <filename>samba-32bit-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="samba-64bit" arch="ppc" version="3.2.4" release="4.1">
          <filename>samba-64bit-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="i586" version="3.2.4" release="4.1">
          <filename>samba-client-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="samba-client" arch="ppc" version="3.2.4" release="4.1">
          <filename>samba-client-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="x86_64" version="3.2.4" release="4.1">
          <filename>samba-client-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="samba-client-32bit" arch="x86_64" version="3.2.4" release="4.1">
          <filename>samba-client-32bit-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="samba-client-64bit" arch="ppc" version="3.2.4" release="4.1">
          <filename>samba-client-64bit-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="i586" version="3.2.4" release="4.1">
          <filename>samba-devel-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="samba-devel" arch="ppc" version="3.2.4" release="4.1">
          <filename>samba-devel-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="x86_64" version="3.2.4" release="4.1">
          <filename>samba-devel-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="i586" version="3.2.4" release="4.1">
          <filename>samba-krb-printing-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="ppc" version="3.2.4" release="4.1">
          <filename>samba-krb-printing-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="x86_64" version="3.2.4" release="4.1">
          <filename>samba-krb-printing-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind" arch="i586" version="3.2.4" release="4.1">
          <filename>samba-winbind-3.2.4-4.1.i586.rpm</filename>
        </package>
        <package name="samba-winbind" arch="ppc" version="3.2.4" release="4.1">
          <filename>samba-winbind-3.2.4-4.1.ppc.rpm</filename>
        </package>
        <package name="samba-winbind" arch="x86_64" version="3.2.4" release="4.1">
          <filename>samba-winbind-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-32bit" arch="x86_64" version="3.2.4" release="4.1">
          <filename>samba-winbind-32bit-3.2.4-4.1.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-64bit" arch="ppc" version="3.2.4" release="4.1">
          <filename>samba-winbind-64bit-3.2.4-4.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="96531c9bb810b80d23f0e3663c9c56d7"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="355">
  <id>pdns</id>
  <title>pdns security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1228202385"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=445568" id="445568" title="bug number 445568" type="bugzilla"/>
  </references>
  <description>Remote attackers could crash pdnsd if the daemon was
configured with distributor-threads=1. With the default
configuration pdns is not affected by this problem
(CVE-2008-5277).
</description>
  <pkglist>
    <collection>
        <package name="pdns" arch="i586" version="2.9.21" release="143.5">
          <filename>pdns-2.9.21-143.5.i586.rpm</filename>
        </package>
        <package name="pdns" arch="ppc" version="2.9.21" release="143.5">
          <filename>pdns-2.9.21-143.5.ppc.rpm</filename>
        </package>
        <package name="pdns" arch="x86_64" version="2.9.21" release="143.5">
          <filename>pdns-2.9.21-143.5.x86_64.rpm</filename>
        </package>
        <package name="pdns-backend-ldap" arch="i586" version="2.9.21" release="143.5">
          <filename>pdns-backend-ldap-2.9.21-143.5.i586.rpm</filename>
        </package>
        <package name="pdns-backend-ldap" arch="ppc" version="2.9.21" release="143.5">
          <filename>pdns-backend-ldap-2.9.21-143.5.ppc.rpm</filename>
        </package>
        <package name="pdns-backend-ldap" arch="x86_64" version="2.9.21" release="143.5">
          <filename>pdns-backend-ldap-2.9.21-143.5.x86_64.rpm</filename>
        </package>
        <package name="pdns-backend-mysql" arch="i586" version="2.9.21" release="143.5">
          <filename>pdns-backend-mysql-2.9.21-143.5.i586.rpm</filename>
        </package>
        <package name="pdns-backend-mysql" arch="ppc" version="2.9.21" release="143.5">
          <filename>pdns-backend-mysql-2.9.21-143.5.ppc.rpm</filename>
        </package>
        <package name="pdns-backend-mysql" arch="x86_64" version="2.9.21" release="143.5">
          <filename>pdns-backend-mysql-2.9.21-143.5.x86_64.rpm</filename>
        </package>
        <package name="pdns-backend-postgresql" arch="i586" version="2.9.21" release="143.5">
          <filename>pdns-backend-postgresql-2.9.21-143.5.i586.rpm</filename>
        </package>
        <package name="pdns-backend-postgresql" arch="ppc" version="2.9.21" release="143.5">
          <filename>pdns-backend-postgresql-2.9.21-143.5.ppc.rpm</filename>
        </package>
        <package name="pdns-backend-postgresql" arch="x86_64" version="2.9.21" release="143.5">
          <filename>pdns-backend-postgresql-2.9.21-143.5.x86_64.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite2" arch="i586" version="2.9.21" release="143.5">
          <filename>pdns-backend-sqlite2-2.9.21-143.5.i586.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite2" arch="ppc" version="2.9.21" release="143.5">
          <filename>pdns-backend-sqlite2-2.9.21-143.5.ppc.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite2" arch="x86_64" version="2.9.21" release="143.5">
          <filename>pdns-backend-sqlite2-2.9.21-143.5.x86_64.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite3" arch="i586" version="2.9.21" release="143.5">
          <filename>pdns-backend-sqlite3-2.9.21-143.5.i586.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite3" arch="ppc" version="2.9.21" release="143.5">
          <filename>pdns-backend-sqlite3-2.9.21-143.5.ppc.rpm</filename>
        </package>
        <package name="pdns-backend-sqlite3" arch="x86_64" version="2.9.21" release="143.5">
          <filename>pdns-backend-sqlite3-2.9.21-143.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="61ec20dcf098e4cfec0c8e8c9e3dce91"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="338">
  <id>translation-update</id>
  <title>Translation Update (cs, es, fi, and pl)</title>
  <release>openSUSE 11.0</release>
  <issued date="1227750131"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=403716" id="403716" title="bug number 403716" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=399561" id="399561" title="bug number 399561" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402551" id="402551" title="bug number 402551" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402885" id="402885" title="bug number 402885" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407285" id="407285" title="bug number 407285" type="bugzilla"/>
  </references>
  <description>Fix several translation issues.
</description>
  <pkglist>
    <collection>
        <package name="translation-update" arch="noarch" version="10.3" release="27.3">
          <filename>translation-update-10.3-27.3.noarch.rpm</filename>
        </package>
        <package name="translation-update-de" arch="noarch" version="10.3" release="27.3">
          <filename>translation-update-de-10.3-27.3.noarch.rpm</filename>
        </package>
        <package name="translation-update-es" arch="noarch" version="10.3" release="27.3">
          <filename>translation-update-es-10.3-27.3.noarch.rpm</filename>
        </package>
        <package name="translation-update-fi" arch="noarch" version="10.3" release="27.3">
          <filename>translation-update-fi-10.3-27.3.noarch.rpm</filename>
        </package>
        <package name="translation-update-ja" arch="noarch" version="10.3" release="27.3">
          <filename>translation-update-ja-10.3-27.3.noarch.rpm</filename>
        </package>
        <package name="translation-update-pt_BR" arch="noarch" version="10.3" release="27.3">
          <filename>translation-update-pt_BR-10.3-27.3.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e7efef6764ce287b13bc6e9e31c2e424"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="246">
  <id>dbus-1</id>
  <title>dbus-1: denial of service</title>
  <release>openSUSE 11.0</release>
  <issued date="1224170554"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=432901" id="432901" title="bug number 432901" type="bugzilla"/>
  </references>
  <description>This update fixes a denial of service bug in dbus.
(CVE-2008-3834)
</description>
  <pkglist>
    <collection>
        <package name="dbus-1" arch="i586" version="1.2.1" release="15.2">
          <filename>dbus-1-1.2.1-15.2.i586.rpm</filename>
        </package>
        <package name="dbus-1" arch="ppc" version="1.2.1" release="15.2">
          <filename>dbus-1-1.2.1-15.2.ppc.rpm</filename>
        </package>
        <package name="dbus-1" arch="x86_64" version="1.2.1" release="15.2">
          <filename>dbus-1-1.2.1-15.2.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-32bit" arch="x86_64" version="1.2.1" release="15.2">
          <filename>dbus-1-32bit-1.2.1-15.2.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-64bit" arch="ppc" version="1.2.1" release="15.2">
          <filename>dbus-1-64bit-1.2.1-15.2.ppc.rpm</filename>
        </package>
        <package name="dbus-1-devel" arch="i586" version="1.2.1" release="15.2">
          <filename>dbus-1-devel-1.2.1-15.2.i586.rpm</filename>
        </package>
        <package name="dbus-1-devel" arch="ppc" version="1.2.1" release="15.2">
          <filename>dbus-1-devel-1.2.1-15.2.ppc.rpm</filename>
        </package>
        <package name="dbus-1-devel" arch="x86_64" version="1.2.1" release="15.2">
          <filename>dbus-1-devel-1.2.1-15.2.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-devel-doc" arch="i586" version="1.2.1" release="15.2">
          <filename>dbus-1-devel-doc-1.2.1-15.2.i586.rpm</filename>
        </package>
        <package name="dbus-1-devel-doc" arch="ppc" version="1.2.1" release="15.2">
          <filename>dbus-1-devel-doc-1.2.1-15.2.ppc.rpm</filename>
        </package>
        <package name="dbus-1-devel-doc" arch="x86_64" version="1.2.1" release="15.2">
          <filename>dbus-1-devel-doc-1.2.1-15.2.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-x11" arch="i586" version="1.2.1" release="18.2">
          <filename>dbus-1-x11-1.2.1-18.2.i586.rpm</filename>
        </package>
        <package name="dbus-1-x11" arch="ppc" version="1.2.1" release="18.2">
          <filename>dbus-1-x11-1.2.1-18.2.ppc.rpm</filename>
        </package>
        <package name="dbus-1-x11" arch="x86_64" version="1.2.1" release="18.2">
          <filename>dbus-1-x11-1.2.1-18.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f5dafb8f522893b0ffe6076901a0552e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="351">
  <id>ndiswrapper</id>
  <title>ndiswrapper: remote denial of service, maybe code execution</title>
  <release>openSUSE 11.0</release>
  <issued date="1226018028"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=432461" id="432461" title="bug number 432461" type="bugzilla"/>
  </references>
  <description>The ndiswrapper was updated to fix multiple buffer
overflows that can be exploited over a connected WLAN by
using long ESSID stings. (CVE-2008-4395)
</description>
  <pkglist>
    <collection>
        <package name="ndiswrapper" arch="i586" version="1.52" release="29.2">
          <filename>ndiswrapper-1.52-29.2.i586.rpm</filename>
        </package>
        <package name="ndiswrapper" arch="x86_64" version="1.52" release="29.2">
          <filename>ndiswrapper-1.52-29.2.x86_64.rpm</filename>
        </package>
        <package name="ndiswrapper-kmp-default" arch="i586" version="1.52_2.6.25.18_0.2" release="29.2">
          <filename>ndiswrapper-kmp-default-1.52_2.6.25.18_0.2-29.2.i586.rpm</filename>
        </package>
        <package name="ndiswrapper-kmp-default" arch="x86_64" version="1.52_2.6.25.18_0.2" release="29.2">
          <filename>ndiswrapper-kmp-default-1.52_2.6.25.18_0.2-29.2.x86_64.rpm</filename>
        </package>
        <package name="ndiswrapper-kmp-pae" arch="i586" version="1.52_2.6.25.18_0.2" release="29.2">
          <filename>ndiswrapper-kmp-pae-1.52_2.6.25.18_0.2-29.2.i586.rpm</filename>
        </package>
        <package name="ndiswrapper-kmp-xen" arch="i586" version="1.52_2.6.25.18_0.2" release="29.2">
          <filename>ndiswrapper-kmp-xen-1.52_2.6.25.18_0.2-29.2.i586.rpm</filename>
        </package>
        <package name="ndiswrapper-kmp-xen" arch="x86_64" version="1.52_2.6.25.18_0.2" release="29.2">
          <filename>ndiswrapper-kmp-xen-1.52_2.6.25.18_0.2-29.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="50487a78a235c0bbe7b3734b780bb9f7"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="358">
  <id>gnutls</id>
  <title>gnutls security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1228359257"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=441856" id="441856" title="bug number 441856" type="bugzilla"/>
  </references>
  <description>gnutls did not properly verify x509 certificate chains. An
attacker could exploit that to trick client programs into
trusting servers that would normally get rejected
(CVE-2008-4989).
</description>
  <pkglist>
    <collection>
        <package name="gnutls" arch="i586" version="2.2.2" release="17.2">
          <filename>gnutls-2.2.2-17.2.i586.rpm</filename>
        </package>
        <package name="gnutls" arch="ppc" version="2.2.2" release="17.2">
          <filename>gnutls-2.2.2-17.2.ppc.rpm</filename>
        </package>
        <package name="gnutls" arch="x86_64" version="2.2.2" release="17.2">
          <filename>gnutls-2.2.2-17.2.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="i586" version="2.2.2" release="17.2">
          <filename>libgnutls-devel-2.2.2-17.2.i586.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="ppc" version="2.2.2" release="17.2">
          <filename>libgnutls-devel-2.2.2-17.2.ppc.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="x86_64" version="2.2.2" release="17.2">
          <filename>libgnutls-devel-2.2.2-17.2.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="i586" version="2.2.2" release="17.2">
          <filename>libgnutls-extra-devel-2.2.2-17.2.i586.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="ppc" version="2.2.2" release="17.2">
          <filename>libgnutls-extra-devel-2.2.2-17.2.ppc.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="x86_64" version="2.2.2" release="17.2">
          <filename>libgnutls-extra-devel-2.2.2-17.2.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="i586" version="2.2.2" release="17.2">
          <filename>libgnutls-extra26-2.2.2-17.2.i586.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="ppc" version="2.2.2" release="17.2">
          <filename>libgnutls-extra26-2.2.2-17.2.ppc.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="x86_64" version="2.2.2" release="17.2">
          <filename>libgnutls-extra26-2.2.2-17.2.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26" arch="i586" version="2.2.2" release="17.2">
          <filename>libgnutls26-2.2.2-17.2.i586.rpm</filename>
        </package>
        <package name="libgnutls26" arch="ppc" version="2.2.2" release="17.2">
          <filename>libgnutls26-2.2.2-17.2.ppc.rpm</filename>
        </package>
        <package name="libgnutls26" arch="x86_64" version="2.2.2" release="17.2">
          <filename>libgnutls26-2.2.2-17.2.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26-32bit" arch="x86_64" version="2.2.2" release="17.2">
          <filename>libgnutls26-32bit-2.2.2-17.2.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26-64bit" arch="ppc" version="2.2.2" release="17.2">
          <filename>libgnutls26-64bit-2.2.2-17.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f9bb8fb1910173d5186c964e28010af4"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="211">
  <id>novell-nortelplugins</id>
  <title>Nortel VPN: Fix for Nortel VPN</title>
  <release>openSUSE 11.0</release>
  <issued date="1221835199"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415531" id="415531" title="bug number 415531" type="bugzilla"/>
  </references>
  <description>Nortel VPN Update from SP2 cannot start a connection
anymore while the SP1 package worked fine with the same
configuration. This patch brings the interface up with a
default route instead of failing if no routes were
specified by the VPN server (i.e. bifurcation was not
used). Also applies for 11.0.
</description>
  <pkglist>
    <collection>
        <package name="novell-nortelplugins" arch="i586" version="0.1.3" release="54.2">
          <filename>novell-nortelplugins-0.1.3-54.2.i586.rpm</filename>
        </package>
        <package name="novell-nortelplugins" arch="ppc" version="0.1.3" release="54.2">
          <filename>novell-nortelplugins-0.1.3-54.2.ppc.rpm</filename>
        </package>
        <package name="novell-nortelplugins" arch="x86_64" version="0.1.3" release="54.2">
          <filename>novell-nortelplugins-0.1.3-54.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7d5faed47a7d64736c21143cd3395679"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="361">
  <id>java-1_6_0-sun</id>
  <title>Update to Sun Java 1.6.0u10</title>
  <release>openSUSE 11.0</release>
  <issued date="1228439691"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=355868" id="355868" title="bug number 355868" type="bugzilla"/>
  </references>
  <description>Update to Sun Java 1.6.0u10. This is a non security bugfix
only release (like bnc#355868:
java.lang.NoClassDefFoundError: Could not initialize class
javax.crypto.SunJCE_b).
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u10" release="2.1">
          <filename>java-1_6_0-sun-1.6.0.u10-2.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u10" release="2.1">
          <filename>java-1_6_0-sun-1.6.0.u10-2.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u10" release="2.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u10-2.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u10" release="2.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u10-2.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u10" release="2.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u10-2.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u10" release="2.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u10-2.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u10" release="2.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u10-2.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u10" release="2.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u10-2.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u10" release="2.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u10-2.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u10" release="2.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u10-2.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u10" release="2.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u10-2.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="913e2e7a654f27ae5b58701dcc89d51c"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="341">
  <id>glib2</id>
  <title>gnome-main-menu: Memory leak fixes</title>
  <release>openSUSE 11.0</release>
  <issued date="1227750289"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402256" id="402256" title="bug number 402256" type="bugzilla"/>
  </references>
  <description>This fixes memory leaks found in gnome-main-menu when it
refreshes the list of recently-used files (bnc#402256).
</description>
  <pkglist>
    <collection>
        <package name="glib2" arch="i586" version="2.16.3" release="20.4">
          <filename>glib2-2.16.3-20.4.i586.rpm</filename>
        </package>
        <package name="glib2" arch="ppc" version="2.16.3" release="20.4">
          <filename>glib2-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="glib2" arch="x86_64" version="2.16.3" release="20.4">
          <filename>glib2-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="glib2-branding-upstream" arch="i586" version="2.16.3" release="20.4">
          <filename>glib2-branding-upstream-2.16.3-20.4.i586.rpm</filename>
        </package>
        <package name="glib2-branding-upstream" arch="ppc" version="2.16.3" release="20.4">
          <filename>glib2-branding-upstream-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="glib2-branding-upstream" arch="x86_64" version="2.16.3" release="20.4">
          <filename>glib2-branding-upstream-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="glib2-devel" arch="i586" version="2.16.3" release="20.4">
          <filename>glib2-devel-2.16.3-20.4.i586.rpm</filename>
        </package>
        <package name="glib2-devel" arch="ppc" version="2.16.3" release="20.4">
          <filename>glib2-devel-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="glib2-devel" arch="x86_64" version="2.16.3" release="20.4">
          <filename>glib2-devel-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="glib2-devel-64bit" arch="ppc" version="2.16.3" release="20.4">
          <filename>glib2-devel-64bit-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="glib2-doc" arch="i586" version="2.16.3" release="20.4">
          <filename>glib2-doc-2.16.3-20.4.i586.rpm</filename>
        </package>
        <package name="glib2-doc" arch="ppc" version="2.16.3" release="20.4">
          <filename>glib2-doc-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="glib2-doc" arch="x86_64" version="2.16.3" release="20.4">
          <filename>glib2-doc-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="gnome-main-menu" arch="i586" version="0.9.10" release="30.4">
          <filename>gnome-main-menu-0.9.10-30.4.i586.rpm</filename>
        </package>
        <package name="gnome-main-menu" arch="ppc" version="0.9.10" release="30.4">
          <filename>gnome-main-menu-0.9.10-30.4.ppc.rpm</filename>
        </package>
        <package name="gnome-main-menu" arch="x86_64" version="0.9.10" release="30.4">
          <filename>gnome-main-menu-0.9.10-30.4.x86_64.rpm</filename>
        </package>
        <package name="gnome-main-menu-devel" arch="i586" version="0.9.10" release="30.4">
          <filename>gnome-main-menu-devel-0.9.10-30.4.i586.rpm</filename>
        </package>
        <package name="gnome-main-menu-devel" arch="ppc" version="0.9.10" release="30.4">
          <filename>gnome-main-menu-devel-0.9.10-30.4.ppc.rpm</filename>
        </package>
        <package name="gnome-main-menu-devel" arch="x86_64" version="0.9.10" release="30.4">
          <filename>gnome-main-menu-devel-0.9.10-30.4.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="i586" version="2.16.3" release="20.4">
          <filename>libgio-2_0-0-2.16.3-20.4.i586.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="ppc" version="2.16.3" release="20.4">
          <filename>libgio-2_0-0-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="x86_64" version="2.16.3" release="20.4">
          <filename>libgio-2_0-0-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.4">
          <filename>libgio-2_0-0-32bit-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.4">
          <filename>libgio-2_0-0-64bit-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="libgio-fam" arch="i586" version="2.16.3" release="20.4">
          <filename>libgio-fam-2.16.3-20.4.i586.rpm</filename>
        </package>
        <package name="libgio-fam" arch="ppc" version="2.16.3" release="20.4">
          <filename>libgio-fam-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="libgio-fam" arch="x86_64" version="2.16.3" release="20.4">
          <filename>libgio-fam-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="i586" version="2.16.3" release="20.4">
          <filename>libglib-2_0-0-2.16.3-20.4.i586.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="ppc" version="2.16.3" release="20.4">
          <filename>libglib-2_0-0-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="x86_64" version="2.16.3" release="20.4">
          <filename>libglib-2_0-0-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.4">
          <filename>libglib-2_0-0-32bit-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.4">
          <filename>libglib-2_0-0-64bit-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="i586" version="2.16.3" release="20.4">
          <filename>libgmodule-2_0-0-2.16.3-20.4.i586.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="ppc" version="2.16.3" release="20.4">
          <filename>libgmodule-2_0-0-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="x86_64" version="2.16.3" release="20.4">
          <filename>libgmodule-2_0-0-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.4">
          <filename>libgmodule-2_0-0-32bit-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.4">
          <filename>libgmodule-2_0-0-64bit-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="i586" version="2.16.3" release="20.4">
          <filename>libgobject-2_0-0-2.16.3-20.4.i586.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="ppc" version="2.16.3" release="20.4">
          <filename>libgobject-2_0-0-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="x86_64" version="2.16.3" release="20.4">
          <filename>libgobject-2_0-0-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="libgobject-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.4">
          <filename>libgobject-2_0-0-32bit-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="libgobject-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.4">
          <filename>libgobject-2_0-0-64bit-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="i586" version="2.16.3" release="20.4">
          <filename>libgthread-2_0-0-2.16.3-20.4.i586.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="ppc" version="2.16.3" release="20.4">
          <filename>libgthread-2_0-0-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="x86_64" version="2.16.3" release="20.4">
          <filename>libgthread-2_0-0-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="libgthread-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.4">
          <filename>libgthread-2_0-0-32bit-2.16.3-20.4.x86_64.rpm</filename>
        </package>
        <package name="libgthread-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.4">
          <filename>libgthread-2_0-0-64bit-2.16.3-20.4.ppc.rpm</filename>
        </package>
        <package name="nautilus-gnome-main-menu" arch="i586" version="0.9.10" release="30.4">
          <filename>nautilus-gnome-main-menu-0.9.10-30.4.i586.rpm</filename>
        </package>
        <package name="nautilus-gnome-main-menu" arch="ppc" version="0.9.10" release="30.4">
          <filename>nautilus-gnome-main-menu-0.9.10-30.4.ppc.rpm</filename>
        </package>
        <package name="nautilus-gnome-main-menu" arch="x86_64" version="0.9.10" release="30.4">
          <filename>nautilus-gnome-main-menu-0.9.10-30.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f0d80b5b998ea6eef0bc81bf352fefac"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="248">
  <id>freeradius-server</id>
  <title>freeradius: possible symlink attack</title>
  <release>openSUSE 11.0</release>
  <issued date="1223568917"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=433762" id="433762" title="bug number 433762" type="bugzilla"/>
  </references>
  <description>This update fixes a possible symlink attack in the script
freeradius-dialupadmin. (CVE-2008-4474)
</description>
  <pkglist>
    <collection>
        <package name="freeradius-server" arch="i586" version="2.0.5" release="8.3">
          <filename>freeradius-server-2.0.5-8.3.i586.rpm</filename>
        </package>
        <package name="freeradius-server" arch="ppc" version="2.0.5" release="8.3">
          <filename>freeradius-server-2.0.5-8.3.ppc.rpm</filename>
        </package>
        <package name="freeradius-server" arch="x86_64" version="2.0.5" release="8.3">
          <filename>freeradius-server-2.0.5-8.3.x86_64.rpm</filename>
        </package>
        <package name="freeradius-server-devel" arch="i586" version="2.0.5" release="8.3">
          <filename>freeradius-server-devel-2.0.5-8.3.i586.rpm</filename>
        </package>
        <package name="freeradius-server-devel" arch="ppc" version="2.0.5" release="8.3">
          <filename>freeradius-server-devel-2.0.5-8.3.ppc.rpm</filename>
        </package>
        <package name="freeradius-server-devel" arch="x86_64" version="2.0.5" release="8.3">
          <filename>freeradius-server-devel-2.0.5-8.3.x86_64.rpm</filename>
        </package>
        <package name="freeradius-server-dialupadmin" arch="i586" version="2.0.5" release="8.3">
          <filename>freeradius-server-dialupadmin-2.0.5-8.3.i586.rpm</filename>
        </package>
        <package name="freeradius-server-dialupadmin" arch="ppc" version="2.0.5" release="8.3">
          <filename>freeradius-server-dialupadmin-2.0.5-8.3.ppc.rpm</filename>
        </package>
        <package name="freeradius-server-dialupadmin" arch="x86_64" version="2.0.5" release="8.3">
          <filename>freeradius-server-dialupadmin-2.0.5-8.3.x86_64.rpm</filename>
        </package>
        <package name="freeradius-server-doc" arch="i586" version="2.0.5" release="8.3">
          <filename>freeradius-server-doc-2.0.5-8.3.i586.rpm</filename>
        </package>
        <package name="freeradius-server-doc" arch="ppc" version="2.0.5" release="8.3">
          <filename>freeradius-server-doc-2.0.5-8.3.ppc.rpm</filename>
        </package>
        <package name="freeradius-server-doc" arch="x86_64" version="2.0.5" release="8.3">
          <filename>freeradius-server-doc-2.0.5-8.3.x86_64.rpm</filename>
        </package>
        <package name="freeradius-server-libs" arch="i586" version="2.0.5" release="8.3">
          <filename>freeradius-server-libs-2.0.5-8.3.i586.rpm</filename>
        </package>
        <package name="freeradius-server-libs" arch="ppc" version="2.0.5" release="8.3">
          <filename>freeradius-server-libs-2.0.5-8.3.ppc.rpm</filename>
        </package>
        <package name="freeradius-server-libs" arch="x86_64" version="2.0.5" release="8.3">
          <filename>freeradius-server-libs-2.0.5-8.3.x86_64.rpm</filename>
        </package>
        <package name="freeradius-server-utils" arch="i586" version="2.0.5" release="8.3">
          <filename>freeradius-server-utils-2.0.5-8.3.i586.rpm</filename>
        </package>
        <package name="freeradius-server-utils" arch="ppc" version="2.0.5" release="8.3">
          <filename>freeradius-server-utils-2.0.5-8.3.ppc.rpm</filename>
        </package>
        <package name="freeradius-server-utils" arch="x86_64" version="2.0.5" release="8.3">
          <filename>freeradius-server-utils-2.0.5-8.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d391d5f829e20ce2df22543d4fd3b6fb"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="357">
  <id>clamav</id>
  <title>clamav: security update to 0.94.2</title>
  <release>openSUSE 11.0</release>
  <issued date="1228359925"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=450207" id="450207" title="bug number 450207" type="bugzilla"/>
  </references>
  <description>Specially crafted jpg files could crash the clamd daemon of
clamav. (CVE-2008-5314)
</description>
  <pkglist>
    <collection>
        <package name="clamav" arch="i586" version="0.94.2" release="1.1">
          <filename>clamav-0.94.2-1.1.i586.rpm</filename>
        </package>
        <package name="clamav" arch="ppc" version="0.94.2" release="1.1">
          <filename>clamav-0.94.2-1.1.ppc.rpm</filename>
        </package>
        <package name="clamav" arch="x86_64" version="0.94.2" release="1.1">
          <filename>clamav-0.94.2-1.1.x86_64.rpm</filename>
        </package>
        <package name="clamav-db" arch="i586" version="0.94.2" release="1.1">
          <filename>clamav-db-0.94.2-1.1.i586.rpm</filename>
        </package>
        <package name="clamav-db" arch="ppc" version="0.94.2" release="1.1">
          <filename>clamav-db-0.94.2-1.1.ppc.rpm</filename>
        </package>
        <package name="clamav-db" arch="x86_64" version="0.94.2" release="1.1">
          <filename>clamav-db-0.94.2-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="253ee9a4e425a6314b5b7ccef2446041"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1322">
  <id>postgresql</id>
  <title>postgresql: security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1253203342"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=537706" id="537706" title="bug number 537706" type="bugzilla"/>
  </references>
  <description>Multiple security vulnerabilities have been fixed in
PostgrSQL
- CVE-2009-3229: allows remote authenticated users to cause
  a denial of service
- CVE-2009-3230: allows remote authenticated users to gain
  higher privileges
- CVE-2009-3231: when using LDAP authentication with
  anonymous binds, allows remote attackers to bypass
  authentication via an empty password
</description>
  <pkglist>
    <collection>
        <package name="postgresql" arch="i586" version="8.3.8" release="0.1">
          <filename>postgresql-8.3.8-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql" arch="ppc" version="8.3.8" release="0.1">
          <filename>postgresql-8.3.8-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql" arch="ppc64" version="8.3.8" release="0.1">
          <filename>postgresql-8.3.8-0.1.ppc64.rpm</filename>
        </package>
        <package name="postgresql" arch="x86_64" version="8.3.8" release="0.1">
          <filename>postgresql-8.3.8-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="i586" version="8.3.8" release="0.1">
          <filename>postgresql-contrib-8.3.8-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="ppc" version="8.3.8" release="0.1">
          <filename>postgresql-contrib-8.3.8-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="x86_64" version="8.3.8" release="0.1">
          <filename>postgresql-contrib-8.3.8-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="i586" version="8.3.8" release="0.1">
          <filename>postgresql-devel-8.3.8-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="ppc" version="8.3.8" release="0.1">
          <filename>postgresql-devel-8.3.8-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="x86_64" version="8.3.8" release="0.1">
          <filename>postgresql-devel-8.3.8-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="i586" version="8.3.8" release="0.1">
          <filename>postgresql-docs-8.3.8-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="ppc" version="8.3.8" release="0.1">
          <filename>postgresql-docs-8.3.8-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="x86_64" version="8.3.8" release="0.1">
          <filename>postgresql-docs-8.3.8-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="i586" version="8.3.8" release="0.1">
          <filename>postgresql-libs-8.3.8-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="ppc" version="8.3.8" release="0.1">
          <filename>postgresql-libs-8.3.8-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="x86_64" version="8.3.8" release="0.1">
          <filename>postgresql-libs-8.3.8-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs-32bit" arch="x86_64" version="8.3.8" release="0.1">
          <filename>postgresql-libs-32bit-8.3.8-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs-64bit" arch="ppc" version="8.3.8" release="0.1">
          <filename>postgresql-libs-64bit-8.3.8-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-server" arch="i586" version="8.3.8" release="0.1">
          <filename>postgresql-server-8.3.8-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-server" arch="ppc" version="8.3.8" release="0.1">
          <filename>postgresql-server-8.3.8-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-server" arch="x86_64" version="8.3.8" release="0.1">
          <filename>postgresql-server-8.3.8-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9762477ea7c8209df3f4b2315418e60e"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="364">
  <id>java-1_5_0-gcj-compat</id>
  <title>java-1_5_0: A trusted keystore of root certificates for gcc-java</title>
  <release>openSUSE 11.0</release>
  <issued date="1229093420"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=447342" id="447342" title="bug number 447342" type="bugzilla"/>
  </references>
  <description>Add a trusted keystore (cacerts) of root certificates to
java-1_5_0-gcj-compat package for gcc-java. This allows to
use SSL connections, for example.
</description>
  <pkglist>
    <collection>
        <package name="java-1_5_0-gcj-compat" arch="i586" version="1.5.0.0" release="65.2">
          <filename>java-1_5_0-gcj-compat-1.5.0.0-65.2.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-gcj-compat" arch="ppc" version="1.5.0.0" release="65.2">
          <filename>java-1_5_0-gcj-compat-1.5.0.0-65.2.ppc.rpm</filename>
        </package>
        <package name="java-1_5_0-gcj-compat" arch="x86_64" version="1.5.0.0" release="65.2">
          <filename>java-1_5_0-gcj-compat-1.5.0.0-65.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-gcj-compat-32bit" arch="x86_64" version="1.5.0.0" release="65.2">
          <filename>java-1_5_0-gcj-compat-32bit-1.5.0.0-65.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-gcj-compat-64bit" arch="ppc" version="1.5.0.0" release="65.2">
          <filename>java-1_5_0-gcj-compat-64bit-1.5.0.0-65.2.ppc.rpm</filename>
        </package>
        <package name="java-1_5_0-gcj-compat-devel" arch="i586" version="1.5.0.0" release="65.2">
          <filename>java-1_5_0-gcj-compat-devel-1.5.0.0-65.2.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-gcj-compat-devel" arch="ppc" version="1.5.0.0" release="65.2">
          <filename>java-1_5_0-gcj-compat-devel-1.5.0.0-65.2.ppc.rpm</filename>
        </package>
        <package name="java-1_5_0-gcj-compat-devel" arch="x86_64" version="1.5.0.0" release="65.2">
          <filename>java-1_5_0-gcj-compat-devel-1.5.0.0-65.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="acb7c20dde9ea7722f7db7b83b95d4a3"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="210">
  <id>libmysqlclient-devel</id>
  <title>mysql security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1221838042"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=424795" id="424795" title="bug number 424795" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=425079" id="425079" title="bug number 425079" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=424067" id="424067" title="bug number 424067" type="bugzilla"/>
  </references>
  <description>Empty bit-strings in a query could crash the MySQL server
(CVE-2008-3963).

Due to another flaw users could access tables of other
users  (CVE-2008-4097, CVE-2008-4098).

This update also fixes problems with the 'ORDER BY' query
</description>
  <pkglist>
    <collection>
        <package name="libmysqlclient-devel" arch="i586" version="5.0.51a" release="27.2">
          <filename>libmysqlclient-devel-5.0.51a-27.2.i586.rpm</filename>
        </package>
        <package name="libmysqlclient-devel" arch="ppc" version="5.0.51a" release="27.2">
          <filename>libmysqlclient-devel-5.0.51a-27.2.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient-devel" arch="x86_64" version="5.0.51a" release="27.2">
          <filename>libmysqlclient-devel-5.0.51a-27.2.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="i586" version="5.0.51a" release="27.2">
          <filename>libmysqlclient15-5.0.51a-27.2.i586.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="ppc" version="5.0.51a" release="27.2">
          <filename>libmysqlclient15-5.0.51a-27.2.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="x86_64" version="5.0.51a" release="27.2">
          <filename>libmysqlclient15-5.0.51a-27.2.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15-32bit" arch="x86_64" version="5.0.51a" release="27.2">
          <filename>libmysqlclient15-32bit-5.0.51a-27.2.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15-64bit" arch="ppc" version="5.0.51a" release="27.2">
          <filename>libmysqlclient15-64bit-5.0.51a-27.2.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="i586" version="5.0.51a" release="27.2">
          <filename>libmysqlclient_r15-5.0.51a-27.2.i586.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="ppc" version="5.0.51a" release="27.2">
          <filename>libmysqlclient_r15-5.0.51a-27.2.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="x86_64" version="5.0.51a" release="27.2">
          <filename>libmysqlclient_r15-5.0.51a-27.2.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient_r15-32bit" arch="x86_64" version="5.0.51a" release="27.2">
          <filename>libmysqlclient_r15-32bit-5.0.51a-27.2.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient_r15-64bit" arch="ppc" version="5.0.51a" release="27.2">
          <filename>libmysqlclient_r15-64bit-5.0.51a-27.2.ppc.rpm</filename>
        </package>
        <package name="mysql" arch="i586" version="5.0.51a" release="27.2">
          <filename>mysql-5.0.51a-27.2.i586.rpm</filename>
        </package>
        <package name="mysql" arch="ppc" version="5.0.51a" release="27.2">
          <filename>mysql-5.0.51a-27.2.ppc.rpm</filename>
        </package>
        <package name="mysql" arch="ppc64" version="5.0.51a" release="27.2">
          <filename>mysql-5.0.51a-27.2.ppc64.rpm</filename>
        </package>
        <package name="mysql" arch="x86_64" version="5.0.51a" release="27.2">
          <filename>mysql-5.0.51a-27.2.x86_64.rpm</filename>
        </package>
        <package name="mysql-Max" arch="i586" version="5.0.51a" release="27.2">
          <filename>mysql-Max-5.0.51a-27.2.i586.rpm</filename>
        </package>
        <package name="mysql-Max" arch="ppc" version="5.0.51a" release="27.2">
          <filename>mysql-Max-5.0.51a-27.2.ppc.rpm</filename>
        </package>
        <package name="mysql-Max" arch="x86_64" version="5.0.51a" release="27.2">
          <filename>mysql-Max-5.0.51a-27.2.x86_64.rpm</filename>
        </package>
        <package name="mysql-bench" arch="i586" version="5.0.51a" release="27.2">
          <filename>mysql-bench-5.0.51a-27.2.i586.rpm</filename>
        </package>
        <package name="mysql-bench" arch="ppc" version="5.0.51a" release="27.2">
          <filename>mysql-bench-5.0.51a-27.2.ppc.rpm</filename>
        </package>
        <package name="mysql-bench" arch="x86_64" version="5.0.51a" release="27.2">
          <filename>mysql-bench-5.0.51a-27.2.x86_64.rpm</filename>
        </package>
        <package name="mysql-client" arch="i586" version="5.0.51a" release="27.2">
          <filename>mysql-client-5.0.51a-27.2.i586.rpm</filename>
        </package>
        <package name="mysql-client" arch="ppc" version="5.0.51a" release="27.2">
          <filename>mysql-client-5.0.51a-27.2.ppc.rpm</filename>
        </package>
        <package name="mysql-client" arch="x86_64" version="5.0.51a" release="27.2">
          <filename>mysql-client-5.0.51a-27.2.x86_64.rpm</filename>
        </package>
        <package name="mysql-debug" arch="i586" version="5.0.51a" release="27.2">
          <filename>mysql-debug-5.0.51a-27.2.i586.rpm</filename>
        </package>
        <package name="mysql-debug" arch="ppc" version="5.0.51a" release="27.2">
          <filename>mysql-debug-5.0.51a-27.2.ppc.rpm</filename>
        </package>
        <package name="mysql-debug" arch="x86_64" version="5.0.51a" release="27.2">
          <filename>mysql-debug-5.0.51a-27.2.x86_64.rpm</filename>
        </package>
        <package name="mysql-tools" arch="i586" version="5.0.51a" release="27.2">
          <filename>mysql-tools-5.0.51a-27.2.i586.rpm</filename>
        </package>
        <package name="mysql-tools" arch="ppc" version="5.0.51a" release="27.2">
          <filename>mysql-tools-5.0.51a-27.2.ppc.rpm</filename>
        </package>
        <package name="mysql-tools" arch="x86_64" version="5.0.51a" release="27.2">
          <filename>mysql-tools-5.0.51a-27.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e2377105f5b568fc97c36d1bfcee9bef"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="370">
  <id>courier-authlib</id>
  <title>courier-authlib security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229569057"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457238" id="457238" title="bug number 457238" type="bugzilla"/>
  </references>
  <description>Insufficient quoting allowed attackers to inject SQL
statements when using the pgsql backend (CVE-2008-2380).
</description>
  <pkglist>
    <collection>
        <package name="courier-authlib" arch="i586" version="0.60.2" release="40.4">
          <filename>courier-authlib-0.60.2-40.4.i586.rpm</filename>
        </package>
        <package name="courier-authlib" arch="ppc" version="0.60.2" release="40.4">
          <filename>courier-authlib-0.60.2-40.4.ppc.rpm</filename>
        </package>
        <package name="courier-authlib" arch="x86_64" version="0.60.2" release="40.4">
          <filename>courier-authlib-0.60.2-40.4.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-devel" arch="i586" version="0.60.2" release="40.4">
          <filename>courier-authlib-devel-0.60.2-40.4.i586.rpm</filename>
        </package>
        <package name="courier-authlib-devel" arch="ppc" version="0.60.2" release="40.4">
          <filename>courier-authlib-devel-0.60.2-40.4.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-devel" arch="x86_64" version="0.60.2" release="40.4">
          <filename>courier-authlib-devel-0.60.2-40.4.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-ldap" arch="i586" version="0.60.2" release="40.4">
          <filename>courier-authlib-ldap-0.60.2-40.4.i586.rpm</filename>
        </package>
        <package name="courier-authlib-ldap" arch="ppc" version="0.60.2" release="40.4">
          <filename>courier-authlib-ldap-0.60.2-40.4.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-ldap" arch="x86_64" version="0.60.2" release="40.4">
          <filename>courier-authlib-ldap-0.60.2-40.4.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-mysql" arch="i586" version="0.60.2" release="40.4">
          <filename>courier-authlib-mysql-0.60.2-40.4.i586.rpm</filename>
        </package>
        <package name="courier-authlib-mysql" arch="ppc" version="0.60.2" release="40.4">
          <filename>courier-authlib-mysql-0.60.2-40.4.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-mysql" arch="x86_64" version="0.60.2" release="40.4">
          <filename>courier-authlib-mysql-0.60.2-40.4.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-pgsql" arch="i586" version="0.60.2" release="40.4">
          <filename>courier-authlib-pgsql-0.60.2-40.4.i586.rpm</filename>
        </package>
        <package name="courier-authlib-pgsql" arch="ppc" version="0.60.2" release="40.4">
          <filename>courier-authlib-pgsql-0.60.2-40.4.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-pgsql" arch="x86_64" version="0.60.2" release="40.4">
          <filename>courier-authlib-pgsql-0.60.2-40.4.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-pipe" arch="i586" version="0.60.2" release="40.4">
          <filename>courier-authlib-pipe-0.60.2-40.4.i586.rpm</filename>
        </package>
        <package name="courier-authlib-pipe" arch="ppc" version="0.60.2" release="40.4">
          <filename>courier-authlib-pipe-0.60.2-40.4.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-pipe" arch="x86_64" version="0.60.2" release="40.4">
          <filename>courier-authlib-pipe-0.60.2-40.4.x86_64.rpm</filename>
        </package>
        <package name="courier-authlib-userdb" arch="i586" version="0.60.2" release="40.4">
          <filename>courier-authlib-userdb-0.60.2-40.4.i586.rpm</filename>
        </package>
        <package name="courier-authlib-userdb" arch="ppc" version="0.60.2" release="40.4">
          <filename>courier-authlib-userdb-0.60.2-40.4.ppc.rpm</filename>
        </package>
        <package name="courier-authlib-userdb" arch="x86_64" version="0.60.2" release="40.4">
          <filename>courier-authlib-userdb-0.60.2-40.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="251d2e1eab81470e9bea3698d1f7ed50"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="382">
  <id>mozilla-xulrunner190</id>
  <title>mozilla-xulrunner190: Security Update to 1.9.0.5</title>
  <release>openSUSE 11.0</release>
  <issued date="1229612908"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=455804" id="455804" title="bug number 455804" type="bugzilla"/>
  </references>
  <description>The Mozilla XULRunner engine was updated to version 1.9.0.5.

The following security issues were fixed:

MFSA 2008-68 / CVE-2008-5512 / CVE-2008-5511: Mozilla
security researcher moz_bug_r_a4 reported that an XBL
binding, when attached to an unloaded document, can be used
to violate the same-origin policy and execute arbitrary
JavaScript within the context of a different website.
moz_bug_r_a4 also reported two vulnerabilities by which
page content can pollute XPCNativeWrappers and run arbitary
JavaScript with chrome priviliges. Thunderbird shares the
browser engine with Firefox and could be vulnerable if
JavaScript were to be enabled in mail. This is not the
default setting and we strongly discourage users from
running JavaScript in mail. Workaround Disable JavaScript
until a version containing these fixes can be installed.

MFSA 2008-67 / CVE-2008-5510: Kojima Hajime reported that
unlike literal null characters which were handled
correctly, the escaped form '\0' was ignored by the CSS
parser and treated as if it was not present in the CSS
input string. This issue could potentially be used to
bypass script sanitization routines in web applications.
The severity of this issue was determined to be low.


MFSA 2008-66 / CVE-2008-5508: Perl developer Chip
Salzenberg reported that certain control characters, when
placed at the beginning of a URL, would lead to incorrect
parsing resulting in a malformed URL being output by the
parser. IBM researchers Justin Schuh, Tom Cross, and Peter
William also reported a related symptom as part of their
research that resulted in MFSA 2008-37.  There was no
direct security impact from this issue and its effect was
limited to the improper rendering of hyperlinks containing
specific characters. The severity of this issue was
determined to be low.


MFSA 2008-65 / CVE-2008-5507: Google security researcher
Chris Evans reported that a website could access a limited
amount of data from a different domain by loading a
same-domain JavaScript URL which redirects to an off-domain
target resource containing data which is not parsable as
JavaScript. Upon attempting to load the data as JavaScript
a syntax error is generated that can reveal some of the
file context via the window.onerror DOM API. This issue
could be used by a malicious website to steal private data
from users who are authenticated on the redirected website.
How much data could be at risk would depend on the format
of the data and how the JavaScript parser attempts to
interpret it. For most files the amount of data that can be
recovered would be limited to the first word or two. Some
data files might allow deeper probing with repeated loads.
Thunderbird shares the browser engine with Firefox and
could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail.
Workaround Disable JavaScript until a version containing
these fixes can be installed.

MFSA 2008-64 / CVE-2008-5506: Marius Schilder of Google
Security reported that when a XMLHttpRequest is made to a
same-origin resource which 302 redirects to a resource in a
different domain, the response from the cross-domain
resource is readable by the site issuing the XHR. Cookies
marked HttpOnly were not readable, but other potentially
sensitive data could be revealed in the XHR response
including URL parameters and content in the response body.
Thunderbird shares the browser engine with Firefox and
could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail.
Workaround Disable JavaScript until a version containing
these fixes can be installed.

MFSA 2008-61 / CVE-2008-5503: Mozilla developer Boris
Zbarsky reported that XBL bindings could be used to read
data from other domains, a violation of the same-origin
policy. The severity of this issue was determined to be
moderate due to several mitigating factors: The target
document requires a &lt;bindingsi&gt; element in the XBL
namespace in order to be read. The reader of the data needs
to know the id attribute of the binding being read in
advance. It is unlikely that web services will expose
private data in the manner described above. Firefox 3 is
not affected by this issue. Thunderbird shares the browser
engine with Firefox and could be vulnerable if JavaScript
were to be enabled in mail. This is not the default setting
and we strongly discourage users from running JavaScript in
mail. Workaround Products built from the Mozilla 1.9.0
branch and later, Firefox 3 for example, are not affected
by this issue. Upgrading to one of these products is a
reliable workaround for this particular issue and it is
also Mozilla's recommendation that the most current version
of any Mozilla product be used. Alternatively, you can
disable JavaScript until a version containing these fixes
can be installed.

MFSA 2008-60 / CVE-2008-5500: Mozilla developers identified
and fixed several stability bugs in the browser engine used
in Firefox and other Mozilla-based products. Some of these
crashes showed evidence of memory corruption under certain
circumstances and we presume that with enough effort at
least some of these could be exploited to run arbitrary
code. Thunderbird shares the browser engine with Firefox
and could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail. Without
further investigation we cannot rule out the possibility
that for some of these an attacker might be able to prepare
memory for exploitation through some means other than
JavaScript such as large images. Workaround Disable
JavaScript until a version containing these fixes can be
installed.
</description>
  <pkglist>
    <collection>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.5-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.5-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.5-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.5-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.5-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.5-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.5-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.5-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.5-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.5-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.5" release="0.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.5-0.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ec37f2af0c4ffbbed6f804ca2a311447"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="381">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Security Update to 3.0.5</title>
  <release>openSUSE 11.0</release>
  <issued date="1229614461"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=455804" id="455804" title="bug number 455804" type="bugzilla"/>
  </references>
  <description>The Mozilla Firefox browser was updated to version 3.0.5,
fixing various security issues and stability problems.

The following security issues were fixed:

MFSA 2008-69 / CVE-2008-5513: Mozilla security researcher
moz_bug_r_a4 reported vulnerabilities in the
session-restore feature by which content could be injected
into an incorrect document storage location, including
storage locations for other domains. An attacker could
utilize these issues to violate the browser's same-origin
policy and perform an XSS attack while SessionStore data is
being restored. moz_bug_r_a4 also reported that one variant
could be used by an attacker to run arbitrary JavaScript
with chrome privileges.

MFSA 2008-68 / CVE-2008-5512 / CVE-2008-5511: Mozilla
security researcher moz_bug_r_a4 reported that an XBL
binding, when attached to an unloaded document, can be used
to violate the same-origin policy and execute arbitrary
JavaScript within the context of a different website.
moz_bug_r_a4 also reported two vulnerabilities by which
page content can pollute XPCNativeWrappers and run arbitary
JavaScript with chrome priviliges. Thunderbird shares the
browser engine with Firefox and could be vulnerable if
JavaScript were to be enabled in mail. This is not the
default setting and we strongly discourage users from
running JavaScript in mail. Workaround Disable JavaScript
until a version containing these fixes can be installed.

MFSA 2008-67 / CVE-2008-5510: Kojima Hajime reported that
unlike literal null characters which were handled
correctly, the escaped form '\0' was ignored by the CSS
parser and treated as if it was not present in the CSS
input string. This issue could potentially be used to
bypass script sanitization routines in web applications.
The severity of this issue was determined to be low.


MFSA 2008-66 / CVE-2008-5508: Perl developer Chip
Salzenberg reported that certain control characters, when
placed at the beginning of a URL, would lead to incorrect
parsing resulting in a malformed URL being output by the
parser. IBM researchers Justin Schuh, Tom Cross, and Peter
William also reported a related symptom as part of their
research that resulted in MFSA 2008-37.  There was no
direct security impact from this issue and its effect was
limited to the improper rendering of hyperlinks containing
specific characters. The severity of this issue was
determined to be low.


MFSA 2008-65 / CVE-2008-5507: Google security researcher
Chris Evans reported that a website could access a limited
amount of data from a different domain by loading a
same-domain JavaScript URL which redirects to an off-domain
target resource containing data which is not parsable as
JavaScript. Upon attempting to load the data as JavaScript
a syntax error is generated that can reveal some of the
file context via the window.onerror DOM API. This issue
could be used by a malicious website to steal private data
from users who are authenticated on the redirected website.
How much data could be at risk would depend on the format
of the data and how the JavaScript parser attempts to
interpret it. For most files the amount of data that can be
recovered would be limited to the first word or two. Some
data files might allow deeper probing with repeated loads.
Thunderbird shares the browser engine with Firefox and
could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail.
Workaround Disable JavaScript until a version containing
these fixes can be installed.

MFSA 2008-64 / CVE-2008-5506: Marius Schilder of Google
Security reported that when a XMLHttpRequest is made to a
same-origin resource which 302 redirects to a resource in a
different domain, the response from the cross-domain
resource is readable by the site issuing the XHR. Cookies
marked HttpOnly were not readable, but other potentially
sensitive data could be revealed in the XHR response
including URL parameters and content in the response body.
Thunderbird shares the browser engine with Firefox and
could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail.
Workaround Disable JavaScript until a version containing
these fixes can be installed.


MFSA 2008-63 / CVE-2008-5505: Security researcher Hish
reported that the persist attribute in XUL elements can be
used to store cookie-like information on a user's computer
which could later be read by a website. This creates a
privacy issue for users who have a non-standard cookie
preference and wish to prevent sites from setting cookies
on their machine. Even with cookies turned off, this issue
could be used by a website to write persistent data in a
user's browser and track the user across browsing sessions.
Additionally, this issue could allow a website to bypass
the limits normally placed on cookie size and number.

MFSA 2008-60 / CVE-2008-5502 / CVE-2008-5501 /
CVE-2008-5500: Mozilla developers identified and fixed
several stability bugs in the browser engine used in
Firefox and other Mozilla-based products. Some of these
crashes showed evidence of memory corruption under certain
circumstances and we presume that with enough effort at
least some of these could be exploited to run arbitrary
code. Thunderbird shares the browser engine with Firefox
and could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail. Without
further investigation we cannot rule out the possibility
that for some of these an attacker might be able to prepare
memory for exploitation through some means other than
JavaScript such as large images. Workaround Disable
JavaScript until a version containing these fixes can be
installed.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.5" release="0.1">
          <filename>MozillaFirefox-3.0.5-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.5" release="0.1">
          <filename>MozillaFirefox-3.0.5-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.5" release="0.1">
          <filename>MozillaFirefox-3.0.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.5" release="0.1">
          <filename>MozillaFirefox-translations-3.0.5-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.5" release="0.1">
          <filename>MozillaFirefox-translations-3.0.5-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.5" release="0.1">
          <filename>MozillaFirefox-translations-3.0.5-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e513cc13d418a50ca20e1a1ad9f257f7"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="387">
  <id>wireshark</id>
  <title>wireshark security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229806572"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=422948" id="422948" title="bug number 422948" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457525" id="457525" title="bug number 457525" type="bugzilla"/>
  </references>
  <description>This update fixes problems that could crash wireshark when
processing compressed data and when processing rf5 files
(CVE-2008-3933, CVE-2008-3934) as well as CVE-2008-4680
(USB dissector crash), CVE-2008-4681 (Bluetooth RFCOMM
dissector crash), CVE-2008-4682 (Tamos CommView dissector
crash), CVE-2008-4683 (Bluetooth ACL dissector crash),
CVE-2008-4684 (PRP and MATE dissector crash) and
CVE-2008-4685 (Q.931 dissector crash). CVE-2008-5285 (SMTP
dissector infinite loop) and an infinite loop problem in
the WLCCP dissector
</description>
  <pkglist>
    <collection>
        <package name="wireshark" arch="i586" version="1.0.0" release="17.7">
          <filename>wireshark-1.0.0-17.7.i586.rpm</filename>
        </package>
        <package name="wireshark" arch="ppc" version="1.0.0" release="17.7">
          <filename>wireshark-1.0.0-17.7.ppc.rpm</filename>
        </package>
        <package name="wireshark" arch="x86_64" version="1.0.0" release="17.7">
          <filename>wireshark-1.0.0-17.7.x86_64.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="i586" version="1.0.0" release="17.7">
          <filename>wireshark-devel-1.0.0-17.7.i586.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="ppc" version="1.0.0" release="17.7">
          <filename>wireshark-devel-1.0.0-17.7.ppc.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="x86_64" version="1.0.0" release="17.7">
          <filename>wireshark-devel-1.0.0-17.7.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="589a42379c0f586f0efd1b79196a6d50"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="245">
  <id>microcode_ctl</id>
  <title>microctl_ctl:  Update Intel Microcode to 20080910</title>
  <release>openSUSE 11.0</release>
  <issued date="1223986558"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=426623" id="426623" title="bug number 426623" type="bugzilla"/>
  </references>
  <description>This update installs the lates microcode data files from
Intel. The microcode is loaded at system start (since the
CPU doesn't keep the microcode if the system is powered
down).
</description>
  <pkglist>
    <collection>
        <package name="microcode_ctl" arch="i586" version="1.17" release="78.2">
          <filename>microcode_ctl-1.17-78.2.i586.rpm</filename>
        </package>
        <package name="microcode_ctl" arch="x86_64" version="1.17" release="78.2">
          <filename>microcode_ctl-1.17-78.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="da88061442b99993c40288eccee1a3b2"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="369">
  <id>glibc</id>
  <title>glibc/nscd: stability fixes and better backtraces support</title>
  <release>openSUSE 11.0</release>
  <issued date="1229531983"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=387202" id="387202" title="bug number 387202" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=446233" id="446233" title="bug number 446233" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=403464" id="403464" title="bug number 403464" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=355887" id="355887" title="bug number 355887" type="bugzilla"/>
  </references>
  <description>- nscd: Major improvement in nscd stability - two race
  conditions fixed.
- glibc: Fix %EY strptime() specifier.
- Fix backtracing through clone().
- Fix constraints for ppc atomic operations.
</description>
  <pkglist>
    <collection>
        <package name="glibc" arch="i586" version="2.8" release="14.2">
          <filename>glibc-2.8-14.2.i586.rpm</filename>
        </package>
        <package name="glibc" arch="i686" version="2.8" release="14.2">
          <filename>glibc-2.8-14.2.i686.rpm</filename>
        </package>
        <package name="glibc" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="glibc" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-32bit" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-32bit-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-64bit" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-64bit-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="glibc-devel" arch="i586" version="2.8" release="14.2">
          <filename>glibc-devel-2.8-14.2.i586.rpm</filename>
        </package>
        <package name="glibc-devel" arch="i686" version="2.8" release="14.2">
          <filename>glibc-devel-2.8-14.2.i686.rpm</filename>
        </package>
        <package name="glibc-devel" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-devel-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="glibc-devel" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-devel-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-devel-32bit" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-devel-32bit-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-devel-64bit" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-devel-64bit-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="glibc-html" arch="i586" version="2.8" release="14.2">
          <filename>glibc-html-2.8-14.2.i586.rpm</filename>
        </package>
        <package name="glibc-html" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-html-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="glibc-html" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-html-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-i18ndata" arch="i586" version="2.8" release="14.2">
          <filename>glibc-i18ndata-2.8-14.2.i586.rpm</filename>
        </package>
        <package name="glibc-i18ndata" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-i18ndata-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="glibc-i18ndata" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-i18ndata-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-info" arch="i586" version="2.8" release="14.2">
          <filename>glibc-info-2.8-14.2.i586.rpm</filename>
        </package>
        <package name="glibc-info" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-info-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="glibc-info" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-info-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-locale" arch="i586" version="2.8" release="14.2">
          <filename>glibc-locale-2.8-14.2.i586.rpm</filename>
        </package>
        <package name="glibc-locale" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-locale-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="glibc-locale" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-locale-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-locale-32bit" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-locale-32bit-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-locale-64bit" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-locale-64bit-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="glibc-obsolete" arch="i586" version="2.8" release="14.2">
          <filename>glibc-obsolete-2.8-14.2.i586.rpm</filename>
        </package>
        <package name="glibc-obsolete" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-obsolete-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="glibc-obsolete" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-obsolete-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-profile" arch="i586" version="2.8" release="14.2">
          <filename>glibc-profile-2.8-14.2.i586.rpm</filename>
        </package>
        <package name="glibc-profile" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-profile-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="glibc-profile" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-profile-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-profile-32bit" arch="x86_64" version="2.8" release="14.2">
          <filename>glibc-profile-32bit-2.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="glibc-profile-64bit" arch="ppc" version="2.8" release="14.2">
          <filename>glibc-profile-64bit-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="nscd" arch="i586" version="2.8" release="14.2">
          <filename>nscd-2.8-14.2.i586.rpm</filename>
        </package>
        <package name="nscd" arch="ppc" version="2.8" release="14.2">
          <filename>nscd-2.8-14.2.ppc.rpm</filename>
        </package>
        <package name="nscd" arch="x86_64" version="2.8" release="14.2">
          <filename>nscd-2.8-14.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="853e45729409d6cbf18fa9b96fa1844b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="383">
  <id>mozilla-xulrunner181</id>
  <title>mozilla-xulrunner181: Security Update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229621526"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=455804" id="455804" title="bug number 455804" type="bugzilla"/>
  </references>
  <description>The Mozilla XULRunner 1.8.1 engine received backports for
security problems in 1.9.0.5.

The following security issues were fixed:

MFSA 2008-68 / CVE-2008-5512 / CVE-2008-5511: Mozilla
security researcher moz_bug_r_a4 reported that an XBL
binding, when attached to an unloaded document, can be used
to violate the same-origin policy and execute arbitrary
JavaScript within the context of a different website.
moz_bug_r_a4 also reported two vulnerabilities by which
page content can pollute XPCNativeWrappers and run arbitary
JavaScript with chrome priviliges. Thunderbird shares the
browser engine with Firefox and could be vulnerable if
JavaScript were to be enabled in mail. This is not the
default setting and we strongly discourage users from
running JavaScript in mail. Workaround Disable JavaScript
until a version containing these fixes can be installed.

MFSA 2008-67 / CVE-2008-5510: Kojima Hajime reported that
unlike literal null characters which were handled
correctly, the escaped form '\0' was ignored by the CSS
parser and treated as if it was not present in the CSS
input string. This issue could potentially be used to
bypass script sanitization routines in web applications.
The severity of this issue was determined to be low.


MFSA 2008-66 / CVE-2008-5508: Perl developer Chip
Salzenberg reported that certain control characters, when
placed at the beginning of a URL, would lead to incorrect
parsing resulting in a malformed URL being output by the
parser. IBM researchers Justin Schuh, Tom Cross, and Peter
William also reported a related symptom as part of their
research that resulted in MFSA 2008-37.  There was no
direct security impact from this issue and its effect was
limited to the improper rendering of hyperlinks containing
specific characters. The severity of this issue was
determined to be low.


MFSA 2008-65 / CVE-2008-5507: Google security researcher
Chris Evans reported that a website could access a limited
amount of data from a different domain by loading a
same-domain JavaScript URL which redirects to an off-domain
target resource containing data which is not parsable as
JavaScript. Upon attempting to load the data as JavaScript
a syntax error is generated that can reveal some of the
file context via the window.onerror DOM API. This issue
could be used by a malicious website to steal private data
from users who are authenticated on the redirected website.
How much data could be at risk would depend on the format
of the data and how the JavaScript parser attempts to
interpret it. For most files the amount of data that can be
recovered would be limited to the first word or two. Some
data files might allow deeper probing with repeated loads.
Thunderbird shares the browser engine with Firefox and
could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail.
Workaround Disable JavaScript until a version containing
these fixes can be installed.

MFSA 2008-64 / CVE-2008-5506: Marius Schilder of Google
Security reported that when a XMLHttpRequest is made to a
same-origin resource which 302 redirects to a resource in a
different domain, the response from the cross-domain
resource is readable by the site issuing the XHR. Cookies
marked HttpOnly were not readable, but other potentially
sensitive data could be revealed in the XHR response
including URL parameters and content in the response body.
Thunderbird shares the browser engine with Firefox and
could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail.
Workaround Disable JavaScript until a version containing
these fixes can be installed.

MFSA 2008-61 / CVE-2008-5503: Mozilla developer Boris
Zbarsky reported that XBL bindings could be used to read
data from other domains, a violation of the same-origin
policy. The severity of this issue was determined to be
moderate due to several mitigating factors: The target
document requires a &lt;bindingsi&gt; element in the XBL
namespace in order to be read. The reader of the data needs
to know the id attribute of the binding being read in
advance. It is unlikely that web services will expose
private data in the manner described above. Firefox 3 is
not affected by this issue. Thunderbird shares the browser
engine with Firefox and could be vulnerable if JavaScript
were to be enabled in mail. This is not the default setting
and we strongly discourage users from running JavaScript in
mail. Workaround Products built from the Mozilla 1.9.0
branch and later, Firefox 3 for example, are not affected
by this issue. Upgrading to one of these products is a
reliable workaround for this particular issue and it is
also Mozilla's recommendation that the most current version
of any Mozilla product be used. Alternatively, you can
disable JavaScript until a version containing these fixes
can be installed.

MFSA 2008-60 / CVE-2008-5500: Mozilla developers identified
and fixed several stability bugs in the browser engine used
in Firefox and other Mozilla-based products. Some of these
crashes showed evidence of memory corruption under certain
circumstances and we presume that with enough effort at
least some of these could be exploited to run arbitrary
code. Thunderbird shares the browser engine with Firefox
and could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail. Without
further investigation we cannot rule out the possibility
that for some of these an attacker might be able to prepare
memory for exploitation through some means other than
JavaScript such as large images. Workaround Disable
JavaScript until a version containing these fixes can be
installed.
</description>
  <pkglist>
    <collection>
        <package name="mozilla-xulrunner181" arch="i586" version="1.8.1.19" release="0.1">
          <filename>mozilla-xulrunner181-1.8.1.19-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181" arch="ppc" version="1.8.1.19" release="0.1">
          <filename>mozilla-xulrunner181-1.8.1.19-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181" arch="x86_64" version="1.8.1.19" release="0.1">
          <filename>mozilla-xulrunner181-1.8.1.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-32bit" arch="x86_64" version="1.8.1.19" release="0.1">
          <filename>mozilla-xulrunner181-32bit-1.8.1.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-64bit" arch="ppc" version="1.8.1.19" release="0.1">
          <filename>mozilla-xulrunner181-64bit-1.8.1.19-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-devel" arch="i586" version="1.8.1.19" release="0.1">
          <filename>mozilla-xulrunner181-devel-1.8.1.19-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-devel" arch="ppc" version="1.8.1.19" release="0.1">
          <filename>mozilla-xulrunner181-devel-1.8.1.19-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-devel" arch="x86_64" version="1.8.1.19" release="0.1">
          <filename>mozilla-xulrunner181-devel-1.8.1.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-l10n" arch="i586" version="1.8.1.19" release="0.1">
          <filename>mozilla-xulrunner181-l10n-1.8.1.19-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-l10n" arch="ppc" version="1.8.1.19" release="0.1">
          <filename>mozilla-xulrunner181-l10n-1.8.1.19-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner181-l10n" arch="x86_64" version="1.8.1.19" release="0.1">
          <filename>mozilla-xulrunner181-l10n-1.8.1.19-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c59115b687e465230c2c8a34451acb64"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="390">
  <id>epiphany</id>
  <title>epiphany: Update to match mozilla-xulrunner181 update.</title>
  <release>openSUSE 11.0</release>
  <issued date="1229624429"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=455804" id="455804" title="bug number 455804" type="bugzilla"/>
  </references>
  <description>The epiphany packages explicitly require
mozilla-xulrunner181 versions so they need to be supplied
together with the mozilla-xulrunner181 update.
</description>
  <pkglist>
    <collection>
        <package name="epiphany" arch="i586" version="2.22.1.1" release="25.3">
          <filename>epiphany-2.22.1.1-25.3.i586.rpm</filename>
        </package>
        <package name="epiphany" arch="ppc" version="2.22.1.1" release="25.3">
          <filename>epiphany-2.22.1.1-25.3.ppc.rpm</filename>
        </package>
        <package name="epiphany" arch="x86_64" version="2.22.1.1" release="25.3">
          <filename>epiphany-2.22.1.1-25.3.x86_64.rpm</filename>
        </package>
        <package name="epiphany-devel" arch="i586" version="2.22.1.1" release="25.3">
          <filename>epiphany-devel-2.22.1.1-25.3.i586.rpm</filename>
        </package>
        <package name="epiphany-devel" arch="ppc" version="2.22.1.1" release="25.3">
          <filename>epiphany-devel-2.22.1.1-25.3.ppc.rpm</filename>
        </package>
        <package name="epiphany-devel" arch="x86_64" version="2.22.1.1" release="25.3">
          <filename>epiphany-devel-2.22.1.1-25.3.x86_64.rpm</filename>
        </package>
        <package name="epiphany-doc" arch="i586" version="2.22.1.1" release="25.3">
          <filename>epiphany-doc-2.22.1.1-25.3.i586.rpm</filename>
        </package>
        <package name="epiphany-doc" arch="ppc" version="2.22.1.1" release="25.3">
          <filename>epiphany-doc-2.22.1.1-25.3.ppc.rpm</filename>
        </package>
        <package name="epiphany-doc" arch="x86_64" version="2.22.1.1" release="25.3">
          <filename>epiphany-doc-2.22.1.1-25.3.x86_64.rpm</filename>
        </package>
        <package name="epiphany-extensions" arch="i586" version="2.22.0" release="37.3">
          <filename>epiphany-extensions-2.22.0-37.3.i586.rpm</filename>
        </package>
        <package name="epiphany-extensions" arch="ppc" version="2.22.0" release="37.3">
          <filename>epiphany-extensions-2.22.0-37.3.ppc.rpm</filename>
        </package>
        <package name="epiphany-extensions" arch="x86_64" version="2.22.0" release="37.3">
          <filename>epiphany-extensions-2.22.0-37.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a386252b767e80060cf0d3550d4efb97"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="376">
  <id>java-1_6_0-sun</id>
  <title>java-1_6_0-sun security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229545908"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=456770" id="456770" title="bug number 456770" type="bugzilla"/>
  </references>
  <description>The version update to SUN Java 1.6.0_11-b03 fixes numerous
security issues such as privilege escalations.
(CVE-2008-5360, CVE-2008-5359, CVE-2008-5358,
CVE-2008-5357, CVE-2008-5356, CVE-2008-5344, CVE-2008-5343,
CVE-2008-5342, CVE-2008-5341, CVE-2008-5340, CVE-2008-5339,
CVE-2008-2086, CVE-2008-5355, CVE-2008-5354, CVE-2008-5353,
CVE-2008-5352, CVE-2008-5351, CVE-2008-5350, CVE-2008-5349,
CVE-2008-5348, CVE-2008-5347, CVE-2008-5345, CVE-2008-5346)
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u11" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u11-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u11" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u11-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u11" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u11-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u11" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u11-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u11" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u11-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u11" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u11-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u11" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u11-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u11" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u11-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u11" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u11-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u11" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u11-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u11" release="0.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u11-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9bd44f0706e6118eb9ff78c0f46be26e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="375">
  <id>java-1_5_0-sun</id>
  <title>java-1_5_0-sun security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229545646"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=456770" id="456770" title="bug number 456770" type="bugzilla"/>
  </references>
  <description>The version update to SUN Java 1.5.0u17 fixes numerous
security issues such as privilege escalations.
(CVE-2008-5360, CVE-2008-5359, CVE-2008-5358,
CVE-2008-5357, CVE-2008-5356, CVE-2008-5344, CVE-2008-5343,
CVE-2008-5342, CVE-2008-5341, CVE-2008-5340, CVE-2008-5339,
CVE-2008-2086, CVE-2008-5355, CVE-2008-5354, CVE-2008-5353,
CVE-2008-5352, CVE-2008-5351, CVE-2008-5350, CVE-2008-5349,
CVE-2008-5348, CVE-2008-5347, CVE-2008-5345, CVE-2008-5346)
</description>
  <pkglist>
    <collection>
        <package name="java-1_5_0-sun" arch="i586" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-1.5.0_update17-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun" arch="x86_64" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-1.5.0_update17-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="i586" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update17-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="x86_64" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update17-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="i586" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update17-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="x86_64" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update17-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="i586" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update17-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="x86_64" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update17-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="i586" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update17-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="x86_64" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update17-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-plugin" arch="i586" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-plugin-1.5.0_update17-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="i586" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-src-1.5.0_update17-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="x86_64" version="1.5.0_update17" release="0.1">
          <filename>java-1_5_0-sun-src-1.5.0_update17-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="565e3cc3f2466445941427dbd062511e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="401">
  <id>MozillaThunderbird</id>
  <title>MozillaThunderbird: Security Update to 2.0.0.19</title>
  <release>openSUSE 11.0</release>
  <issued date="1231392450"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=455804" id="455804" title="bug number 455804" type="bugzilla"/>
  </references>
  <description>The Mozilla Thunderbird E-Mail client was updated to
version 2.0.0.19.

The following security issues were fixed:

MFSA 2008-68 / CVE-2008-5512 / CVE-2008-5511: Mozilla
security researcher moz_bug_r_a4 reported that an XBL
binding, when attached to an unloaded document, can be used
to violate the same-origin policy and execute arbitrary
JavaScript within the context of a different website.
moz_bug_r_a4 also reported two vulnerabilities by which
page content can pollute XPCNativeWrappers and run arbitary
JavaScript with chrome priviliges. Thunderbird shares the
browser engine with Firefox and could be vulnerable if
JavaScript were to be enabled in mail. This is not the
default setting and we strongly discourage users from
running JavaScript in mail. Workaround Disable JavaScript
until a version containing these fixes can be installed.

MFSA 2008-67 / CVE-2008-5510: Kojima Hajime reported that
unlike literal null characters which were handled
correctly, the escaped form '\0' was ignored by the CSS
parser and treated as if it was not present in the CSS
input string. This issue could potentially be used to
bypass script sanitization routines in web applications.
The severity of this issue was determined to be low.


MFSA 2008-66 / CVE-2008-5508: Perl developer Chip
Salzenberg reported that certain control characters, when
placed at the beginning of a URL, would lead to incorrect
parsing resulting in a malformed URL being output by the
parser. IBM researchers Justin Schuh, Tom Cross, and Peter
William also reported a related symptom as part of their
research that resulted in MFSA 2008-37.  There was no
direct security impact from this issue and its effect was
limited to the improper rendering of hyperlinks containing
specific characters. The severity of this issue was
determined to be low.


MFSA 2008-65 / CVE-2008-5507: Google security researcher
Chris Evans reported that a website could access a limited
amount of data from a different domain by loading a
same-domain JavaScript URL which redirects to an off-domain
target resource containing data which is not parsable as
JavaScript. Upon attempting to load the data as JavaScript
a syntax error is generated that can reveal some of the
file context via the window.onerror DOM API. This issue
could be used by a malicious website to steal private data
from users who are authenticated on the redirected website.
How much data could be at risk would depend on the format
of the data and how the JavaScript parser attempts to
interpret it. For most files the amount of data that can be
recovered would be limited to the first word or two. Some
data files might allow deeper probing with repeated loads.
Thunderbird shares the browser engine with Firefox and
could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail.
Workaround Disable JavaScript until a version containing
these fixes can be installed.

MFSA 2008-64 / CVE-2008-5506: Marius Schilder of Google
Security reported that when a XMLHttpRequest is made to a
same-origin resource which 302 redirects to a resource in a
different domain, the response from the cross-domain
resource is readable by the site issuing the XHR. Cookies
marked HttpOnly were not readable, but other potentially
sensitive data could be revealed in the XHR response
including URL parameters and content in the response body.
Thunderbird shares the browser engine with Firefox and
could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail.
Workaround Disable JavaScript until a version containing
these fixes can be installed.

MFSA 2008-61 / CVE-2008-5503: Mozilla developer Boris
Zbarsky reported that XBL bindings could be used to read
data from other domains, a violation of the same-origin
policy. The severity of this issue was determined to be
moderate due to several mitigating factors: The target
document requires a &lt;bindingsi&gt; element in the XBL
namespace in order to be read. The reader of the data needs
to know the id attribute of the binding being read in
advance. It is unlikely that web services will expose
private data in the manner described above. Firefox 3 is
not affected by this issue. Thunderbird shares the browser
engine with Firefox and could be vulnerable if JavaScript
were to be enabled in mail. This is not the default setting
and we strongly discourage users from running JavaScript in
mail. Workaround Products built from the Mozilla 1.9.0
branch and later, Firefox 3 for example, are not affected
by this issue. Upgrading to one of these products is a
reliable workaround for this particular issue and it is
also Mozilla's recommendation that the most current version
of any Mozilla product be used. Alternatively, you can
disable JavaScript until a version containing these fixes
can be installed.

MFSA 2008-60 / CVE-2008-5500: Mozilla developers identified
and fixed several stability bugs in the browser engine used
in Firefox and other Mozilla-based products. Some of these
crashes showed evidence of memory corruption under certain
circumstances and we presume that with enough effort at
least some of these could be exploited to run arbitrary
code. Thunderbird shares the browser engine with Firefox
and could be vulnerable if JavaScript were to be enabled in
mail. This is not the default setting and we strongly
discourage users from running JavaScript in mail. Without
further investigation we cannot rule out the possibility
that for some of these an attacker might be able to prepare
memory for exploitation through some means other than
JavaScript such as large images. Workaround Disable
JavaScript until a version containing these fixes can be
installed.
</description>
  <pkglist>
    <collection>
        <package name="MozillaThunderbird" arch="i586" version="2.0.0.19" release="0.1">
          <filename>MozillaThunderbird-2.0.0.19-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="ppc" version="2.0.0.19" release="0.1">
          <filename>MozillaThunderbird-2.0.0.19-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="x86_64" version="2.0.0.19" release="0.1">
          <filename>MozillaThunderbird-2.0.0.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="i586" version="2.0.0.19" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.19-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="ppc" version="2.0.0.19" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.19-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="x86_64" version="2.0.0.19" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="i586" version="2.0.0.19" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.19-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="ppc" version="2.0.0.19" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.19-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="x86_64" version="2.0.0.19" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.19-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="587871960037d31833c3a2d6bf986309"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="360">
  <id>python</id>
  <title>python security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1228154183"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=444989" id="444989" title="bug number 444989" type="bugzilla"/>
  </references>
  <description>Integer Overflows in the python imageop module potentially
allowed attackers to execute arbitrary code (CVE-2008-4864).
</description>
  <pkglist>
    <collection>
        <package name="python" arch="i586" version="2.5.2" release="26.4">
          <filename>python-2.5.2-26.4.i586.rpm</filename>
        </package>
        <package name="python" arch="ppc" version="2.5.2" release="26.4">
          <filename>python-2.5.2-26.4.ppc.rpm</filename>
        </package>
        <package name="python" arch="x86_64" version="2.5.2" release="26.4">
          <filename>python-2.5.2-26.4.x86_64.rpm</filename>
        </package>
        <package name="python-32bit" arch="x86_64" version="2.5.2" release="26.4">
          <filename>python-32bit-2.5.2-26.4.x86_64.rpm</filename>
        </package>
        <package name="python-64bit" arch="ppc" version="2.5.2" release="26.4">
          <filename>python-64bit-2.5.2-26.4.ppc.rpm</filename>
        </package>
        <package name="python-curses" arch="i586" version="2.5.2" release="26.4">
          <filename>python-curses-2.5.2-26.4.i586.rpm</filename>
        </package>
        <package name="python-curses" arch="ppc" version="2.5.2" release="26.4">
          <filename>python-curses-2.5.2-26.4.ppc.rpm</filename>
        </package>
        <package name="python-curses" arch="x86_64" version="2.5.2" release="26.4">
          <filename>python-curses-2.5.2-26.4.x86_64.rpm</filename>
        </package>
        <package name="python-demo" arch="i586" version="2.5.2" release="26.4">
          <filename>python-demo-2.5.2-26.4.i586.rpm</filename>
        </package>
        <package name="python-demo" arch="ppc" version="2.5.2" release="26.4">
          <filename>python-demo-2.5.2-26.4.ppc.rpm</filename>
        </package>
        <package name="python-demo" arch="x86_64" version="2.5.2" release="26.4">
          <filename>python-demo-2.5.2-26.4.x86_64.rpm</filename>
        </package>
        <package name="python-devel" arch="i586" version="2.5.2" release="26.4">
          <filename>python-devel-2.5.2-26.4.i586.rpm</filename>
        </package>
        <package name="python-devel" arch="ppc" version="2.5.2" release="26.4">
          <filename>python-devel-2.5.2-26.4.ppc.rpm</filename>
        </package>
        <package name="python-devel" arch="x86_64" version="2.5.2" release="26.4">
          <filename>python-devel-2.5.2-26.4.x86_64.rpm</filename>
        </package>
        <package name="python-gdbm" arch="i586" version="2.5.2" release="26.4">
          <filename>python-gdbm-2.5.2-26.4.i586.rpm</filename>
        </package>
        <package name="python-gdbm" arch="ppc" version="2.5.2" release="26.4">
          <filename>python-gdbm-2.5.2-26.4.ppc.rpm</filename>
        </package>
        <package name="python-gdbm" arch="x86_64" version="2.5.2" release="26.4">
          <filename>python-gdbm-2.5.2-26.4.x86_64.rpm</filename>
        </package>
        <package name="python-idle" arch="i586" version="2.5.2" release="26.4">
          <filename>python-idle-2.5.2-26.4.i586.rpm</filename>
        </package>
        <package name="python-idle" arch="ppc" version="2.5.2" release="26.4">
          <filename>python-idle-2.5.2-26.4.ppc.rpm</filename>
        </package>
        <package name="python-idle" arch="x86_64" version="2.5.2" release="26.4">
          <filename>python-idle-2.5.2-26.4.x86_64.rpm</filename>
        </package>
        <package name="python-tk" arch="i586" version="2.5.2" release="26.4">
          <filename>python-tk-2.5.2-26.4.i586.rpm</filename>
        </package>
        <package name="python-tk" arch="ppc" version="2.5.2" release="26.4">
          <filename>python-tk-2.5.2-26.4.ppc.rpm</filename>
        </package>
        <package name="python-tk" arch="x86_64" version="2.5.2" release="26.4">
          <filename>python-tk-2.5.2-26.4.x86_64.rpm</filename>
        </package>
        <package name="python-xml" arch="i586" version="2.5.2" release="26.4">
          <filename>python-xml-2.5.2-26.4.i586.rpm</filename>
        </package>
        <package name="python-xml" arch="ppc" version="2.5.2" release="26.4">
          <filename>python-xml-2.5.2-26.4.ppc.rpm</filename>
        </package>
        <package name="python-xml" arch="x86_64" version="2.5.2" release="26.4">
          <filename>python-xml-2.5.2-26.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e14be41886864b475a975327ebd187c2"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="402">
  <id>vinagre</id>
  <title>vinagre security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1231385303"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457895" id="457895" title="bug number 457895" type="bugzilla"/>
  </references>
  <description>A format string problem in vinagre potentially allowed
malicious VNC servers to have a vinagre client that
connects to the server execute arbitrary code.
(CVE-2008-5660)
</description>
  <pkglist>
    <collection>
        <package name="vinagre" arch="i586" version="0.5.1" release="20.2">
          <filename>vinagre-0.5.1-20.2.i586.rpm</filename>
        </package>
        <package name="vinagre" arch="ppc" version="0.5.1" release="20.2">
          <filename>vinagre-0.5.1-20.2.ppc.rpm</filename>
        </package>
        <package name="vinagre" arch="x86_64" version="0.5.1" release="20.2">
          <filename>vinagre-0.5.1-20.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="60a7eebd98be5aca456464d144eb5065"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="399">
  <id>jhead</id>
  <title>jhead: various security problems were fixed</title>
  <release>openSUSE 11.0</release>
  <issued date="1231378334"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=435979" id="435979" title="bug number 435979" type="bugzilla"/>
  </references>
  <description>This update of jhead fixes several security problems:
- CVE-2008-4575: buffer overflow in DoCommand()
- CVE-2008-4639: local symlink attack
- CVE-2008-4640: DoCommand() allowed deletion of arbitrary
  files
- CVE-2008-4641: execution of arbitrary shell commands in
  DoCommand()
</description>
  <pkglist>
    <collection>
        <package name="jhead" arch="i586" version="2.82" release="11.3">
          <filename>jhead-2.82-11.3.i586.rpm</filename>
        </package>
        <package name="jhead" arch="ppc" version="2.82" release="11.3">
          <filename>jhead-2.82-11.3.ppc.rpm</filename>
        </package>
        <package name="jhead" arch="x86_64" version="2.82" release="11.3">
          <filename>jhead-2.82-11.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="55c67c71a78c68fcec721d88b80c1923"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="398">
  <id>git</id>
  <title>git-web security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1231378903"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=456444" id="456444" title="bug number 456444" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459664" id="459664" title="bug number 459664" type="bugzilla"/>
  </references>
  <description>A malicious repository owner could specify a custom git
diff command and therefore could execute arbitrary commands.
</description>
  <pkglist>
    <collection>
        <package name="git" arch="i586" version="1.5.6" release="43.3">
          <filename>git-1.5.6-43.3.i586.rpm</filename>
        </package>
        <package name="git" arch="ppc" version="1.5.6" release="43.3">
          <filename>git-1.5.6-43.3.ppc.rpm</filename>
        </package>
        <package name="git" arch="x86_64" version="1.5.6" release="43.3">
          <filename>git-1.5.6-43.3.x86_64.rpm</filename>
        </package>
        <package name="git-arch" arch="i586" version="1.5.6" release="43.3">
          <filename>git-arch-1.5.6-43.3.i586.rpm</filename>
        </package>
        <package name="git-arch" arch="ppc" version="1.5.6" release="43.3">
          <filename>git-arch-1.5.6-43.3.ppc.rpm</filename>
        </package>
        <package name="git-arch" arch="x86_64" version="1.5.6" release="43.3">
          <filename>git-arch-1.5.6-43.3.x86_64.rpm</filename>
        </package>
        <package name="git-core" arch="i586" version="1.5.6" release="43.3">
          <filename>git-core-1.5.6-43.3.i586.rpm</filename>
        </package>
        <package name="git-core" arch="ppc" version="1.5.6" release="43.3">
          <filename>git-core-1.5.6-43.3.ppc.rpm</filename>
        </package>
        <package name="git-core" arch="x86_64" version="1.5.6" release="43.3">
          <filename>git-core-1.5.6-43.3.x86_64.rpm</filename>
        </package>
        <package name="git-cvs" arch="i586" version="1.5.6" release="43.3">
          <filename>git-cvs-1.5.6-43.3.i586.rpm</filename>
        </package>
        <package name="git-cvs" arch="ppc" version="1.5.6" release="43.3">
          <filename>git-cvs-1.5.6-43.3.ppc.rpm</filename>
        </package>
        <package name="git-cvs" arch="x86_64" version="1.5.6" release="43.3">
          <filename>git-cvs-1.5.6-43.3.x86_64.rpm</filename>
        </package>
        <package name="git-email" arch="i586" version="1.5.6" release="43.3">
          <filename>git-email-1.5.6-43.3.i586.rpm</filename>
        </package>
        <package name="git-email" arch="ppc" version="1.5.6" release="43.3">
          <filename>git-email-1.5.6-43.3.ppc.rpm</filename>
        </package>
        <package name="git-email" arch="x86_64" version="1.5.6" release="43.3">
          <filename>git-email-1.5.6-43.3.x86_64.rpm</filename>
        </package>
        <package name="git-svn" arch="i586" version="1.5.6" release="43.3">
          <filename>git-svn-1.5.6-43.3.i586.rpm</filename>
        </package>
        <package name="git-svn" arch="ppc" version="1.5.6" release="43.3">
          <filename>git-svn-1.5.6-43.3.ppc.rpm</filename>
        </package>
        <package name="git-svn" arch="x86_64" version="1.5.6" release="43.3">
          <filename>git-svn-1.5.6-43.3.x86_64.rpm</filename>
        </package>
        <package name="gitk" arch="i586" version="1.5.6" release="43.3">
          <filename>gitk-1.5.6-43.3.i586.rpm</filename>
        </package>
        <package name="gitk" arch="ppc" version="1.5.6" release="43.3">
          <filename>gitk-1.5.6-43.3.ppc.rpm</filename>
        </package>
        <package name="gitk" arch="x86_64" version="1.5.6" release="43.3">
          <filename>gitk-1.5.6-43.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7abb948acb0b1ce068cda139837121ec"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="412">
  <id>kvm</id>
  <title>kvm security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1231734133"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=448551" id="448551" title="bug number 448551" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=464142" id="464142" title="bug number 464142" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=464141" id="464141" title="bug number 464141" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=252519" id="252519" title="bug number 252519" type="bugzilla"/>
  </references>
  <description>Rogue VNC clients could make the built in VNC server of kvm
run into an infinite loop (CVE-2008-2382)

An off-by-one bug limited the length of VNC passwords to
seven instead of eight (CVE-2008-5714)

Virtualized guests could potentially execute code on the
host by triggering a buffer overflow in the network
emulation code via large ethernet frames (CVE-2007-5729)

Virtualized guests could potentially execute code on the
host by triggering a heap based buffer overflow in the
Cirrus Graphics card emulation (CVE-2007-1320).
</description>
  <pkglist>
    <collection>
        <package name="kvm" arch="i586" version="63" release="31.2">
          <filename>kvm-63-31.2.i586.rpm</filename>
        </package>
        <package name="kvm" arch="x86_64" version="63" release="31.2">
          <filename>kvm-63-31.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2ac1152d754a6b9466f4d5d3e06d1575"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="400">
  <id>kismet</id>
  <title>Kismet: gpsmap and gpsmap-helper-earthamaps missing</title>
  <release>openSUSE 11.0</release>
  <issued date="1231378555"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=462695" id="462695" title="bug number 462695" type="bugzilla"/>
  </references>
  <description>due to a build setup error the binaries gpsmap and
gpsmap-helper-earthamaps were missing in the package
(bnc#462695)
</description>
  <pkglist>
    <collection>
        <package name="kismet" arch="i586" version="2007_10_R1" release="60.2">
          <filename>kismet-2007_10_R1-60.2.i586.rpm</filename>
        </package>
        <package name="kismet" arch="ppc" version="2007_10_R1" release="60.2">
          <filename>kismet-2007_10_R1-60.2.ppc.rpm</filename>
        </package>
        <package name="kismet" arch="x86_64" version="2007_10_R1" release="60.2">
          <filename>kismet-2007_10_R1-60.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8afc868e710da562541aa3e8ae475577"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="405">
  <id>xterm</id>
  <title>xterm: Fixed ANSI Escape sequence based command injection</title>
  <release>openSUSE 11.0</release>
  <issued date="1231378370"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=462917" id="462917" title="bug number 462917" type="bugzilla"/>
  </references>
  <description>XTerm evaluated various ANSI Escape sequences so that
command execution was possible if an attacker could pipe
raw data to an xterm. (CVE-2008-2383)

(It is usually not recommended to display raw data on an
xterm.)
</description>
  <pkglist>
    <collection>
        <package name="xterm" arch="i586" version="235" release="12.2">
          <filename>xterm-235-12.2.i586.rpm</filename>
        </package>
        <package name="xterm" arch="ppc" version="235" release="12.2">
          <filename>xterm-235-12.2.ppc.rpm</filename>
        </package>
        <package name="xterm" arch="x86_64" version="235" release="12.2">
          <filename>xterm-235-12.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ee601ec48b848aa1a33c0df2426cbbb3"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="356">
  <id>cups</id>
  <title>cups security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1228270370"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=448631" id="448631" title="bug number 448631" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=430543" id="430543" title="bug number 430543" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=446975" id="446975" title="bug number 446975" type="bugzilla"/>
  </references>
  <description>Previous updates for the PNG and HPGL filters were
incomplete and are corrected now. Also cups used a guest
user account for RSS subscriptions which made it eeasier
for attackers to conduct CSRF attacks. (CVE-2008-3641,
CVE-2008-5184, CVE-2008-5286)
</description>
  <pkglist>
    <collection>
        <package name="cups" arch="i586" version="1.3.7" release="25.6">
          <filename>cups-1.3.7-25.6.i586.rpm</filename>
        </package>
        <package name="cups" arch="ppc" version="1.3.7" release="25.6">
          <filename>cups-1.3.7-25.6.ppc.rpm</filename>
        </package>
        <package name="cups" arch="x86_64" version="1.3.7" release="25.6">
          <filename>cups-1.3.7-25.6.x86_64.rpm</filename>
        </package>
        <package name="cups-client" arch="i586" version="1.3.7" release="25.6">
          <filename>cups-client-1.3.7-25.6.i586.rpm</filename>
        </package>
        <package name="cups-client" arch="ppc" version="1.3.7" release="25.6">
          <filename>cups-client-1.3.7-25.6.ppc.rpm</filename>
        </package>
        <package name="cups-client" arch="x86_64" version="1.3.7" release="25.6">
          <filename>cups-client-1.3.7-25.6.x86_64.rpm</filename>
        </package>
        <package name="cups-devel" arch="i586" version="1.3.7" release="25.6">
          <filename>cups-devel-1.3.7-25.6.i586.rpm</filename>
        </package>
        <package name="cups-devel" arch="ppc" version="1.3.7" release="25.6">
          <filename>cups-devel-1.3.7-25.6.ppc.rpm</filename>
        </package>
        <package name="cups-devel" arch="x86_64" version="1.3.7" release="25.6">
          <filename>cups-devel-1.3.7-25.6.x86_64.rpm</filename>
        </package>
        <package name="cups-libs" arch="i586" version="1.3.7" release="25.6">
          <filename>cups-libs-1.3.7-25.6.i586.rpm</filename>
        </package>
        <package name="cups-libs" arch="ppc" version="1.3.7" release="25.6">
          <filename>cups-libs-1.3.7-25.6.ppc.rpm</filename>
        </package>
        <package name="cups-libs" arch="x86_64" version="1.3.7" release="25.6">
          <filename>cups-libs-1.3.7-25.6.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-32bit" arch="x86_64" version="1.3.7" release="25.6">
          <filename>cups-libs-32bit-1.3.7-25.6.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-64bit" arch="ppc" version="1.3.7" release="25.6">
          <filename>cups-libs-64bit-1.3.7-25.6.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="87c9967974abe07fe7ba97cdd4ccd909"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="425">
  <id>seccheck</id>
  <title>seccheck: no annoying emails anymore</title>
  <release>openSUSE 11.0</release>
  <issued date="1231951301"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465939" id="465939" title="bug number 465939" type="bugzilla"/>
  </references>
  <description>This update of seccheck does not sent annoying cron mails
anymore.
</description>
  <pkglist>
    <collection>
        <package name="seccheck" arch="noarch" version="2.0" release="631.2">
          <filename>seccheck-2.0-631.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2aef5ba7b78b5dba6403f1594fc34d13"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="423">
  <id>kernel</id>
  <title>Linux Kernel update</title>
  <release>openSUSE 11.0</release>
  <issued date="1231901528"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=447406" id="447406" title="bug number 447406" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=399966" id="399966" title="bug number 399966" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457898" id="457898" title="bug number 457898" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457897" id="457897" title="bug number 457897" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457896" id="457896" title="bug number 457896" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=419250" id="419250" title="bug number 419250" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405546" id="405546" title="bug number 405546" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=450417" id="450417" title="bug number 450417" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=442364" id="442364" title="bug number 442364" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=447241" id="447241" title="bug number 447241" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439461" id="439461" title="bug number 439461" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=442594" id="442594" title="bug number 442594" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443640" id="443640" title="bug number 443640" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=446973" id="446973" title="bug number 446973" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=445569" id="445569" title="bug number 445569" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443661" id="443661" title="bug number 443661" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=362850" id="362850" title="bug number 362850" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439461" id="439461" title="bug number 439461" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=371657" id="371657" title="bug number 371657" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429919" id="429919" title="bug number 429919" type="bugzilla"/>
  </references>
  <description>This update fixes various security issues and several bugs
in the openSUSE 11.0 kernel. It was also updated to the
stable version 2.6.25.20.

CVE-2008-5702: Buffer underflow in the ibwdt_ioctl function
in drivers/watchdog/ib700wdt.c might allow local users to
have an unknown impact via a certain /dev/watchdog
WDIOC_SETTIMEOUT IOCTL call.

CVE-2008-5700: libata did not set minimum timeouts for
SG_IO requests, which allows local users to cause a denial
of service (Programmed I/O mode on drives) via multiple
simultaneous invocations of an unspecified test program.

CVE-2008-5079: net/atm/svc.c in the ATM subsystem allowed
local users to cause a denial of service (kernel infinite
loop) by making two calls to svc_listen for the same
socket, and then reading a /proc/net/atm/*vc file, related
to corruption of the vcc table.

CVE-2008-5300: Linux kernel 2.6.28 allows local users to
cause a denial of service (&quot;soft lockup&quot; and process loss)
via a large number of sendmsg function calls, which does
not block during AF_UNIX garbage collection and triggers an
OOM condition, a different vulnerability than CVE-2008-5029.

CVE-2008-5029: The __scm_destroy function in net/core/scm.c
makes indirect recursive calls to itself through calls to
the fput function, which allows local users to cause a
denial of service (panic) via vectors related to sending an
SCM_RIGHTS message through a UNIX domain socket and closing
file descriptors.

CVE-2008-4933: Buffer overflow in the hfsplus_find_cat
function in fs/hfsplus/catalog.c allowed attackers to cause
a denial of service (memory corruption or system crash) via
an hfsplus filesystem image with an invalid catalog
namelength field, related to the hfsplus_cat_build_key_uni
function.

CVE-2008-5025: Stack-based buffer overflow in the
hfs_cat_find_brec function in fs/hfs/catalog.c allowed
attackers to cause a denial of service (memory corruption
or system crash) via an hfs filesystem image with an
invalid catalog namelength field, a related issue to
CVE-2008-4933.

CVE-2008-5182: The inotify functionality might allow local
users to gain privileges via unknown vectors related to
race conditions in inotify watch removal and umount.

CVE-2008-3831: The i915 driver in
drivers/char/drm/i915_dma.c does not restrict the
DRM_I915_HWS_ADDR ioctl to the Direct Rendering Manager
(DRM) master, which allows local users to cause a denial of
service (memory corruption) via a crafted ioctl call,
related to absence of the DRM_MASTER and DRM_ROOT_ONLY
flags in the ioctl's configuration.

CVE-2008-4554: The do_splice_from function in fs/splice.c
did not reject file descriptors that have the O_APPEND flag
set, which allows local users to bypass append mode and
make arbitrary changes to other locations in the file.
</description>
  <pkglist>
    <collection>
        <package name="kernel-debug" arch="i586" version="2.6.25.20" release="0.1">
          <filename>kernel-debug-2.6.25.20-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="x86_64" version="2.6.25.20" release="0.1">
          <filename>kernel-debug-2.6.25.20-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="i586" version="2.6.25.20" release="0.1">
          <filename>kernel-default-2.6.25.20-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="ppc" version="2.6.25.20" release="0.1">
          <filename>kernel-default-2.6.25.20-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="x86_64" version="2.6.25.20" release="0.1">
          <filename>kernel-default-2.6.25.20-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-docs" arch="noarch" version="2.6.25.20" release="0.1">
          <filename>kernel-docs-2.6.25.20-0.1.noarch.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-kdump" arch="ppc" version="2.6.25.20" release="0.1">
          <filename>kernel-kdump-2.6.25.20-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-pae" arch="i586" version="2.6.25.20" release="0.1">
          <filename>kernel-pae-2.6.25.20-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ppc64" arch="ppc" version="2.6.25.20" release="0.1">
          <filename>kernel-ppc64-2.6.25.20-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ps3" arch="ppc" version="2.6.25.20" release="0.1">
          <filename>kernel-ps3-2.6.25.20-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt" arch="i586" version="2.6.25.20" release="0.1">
          <filename>kernel-rt-2.6.25.20-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt" arch="x86_64" version="2.6.25.20" release="0.1">
          <filename>kernel-rt-2.6.25.20-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt_debug" arch="i586" version="2.6.25.20" release="0.1">
          <filename>kernel-rt_debug-2.6.25.20-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-rt_debug" arch="x86_64" version="2.6.25.20" release="0.1">
          <filename>kernel-rt_debug-2.6.25.20-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="i586" version="2.6.25.20" release="0.1">
          <filename>kernel-source-2.6.25.20-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="ppc" version="2.6.25.20" release="0.1">
          <filename>kernel-source-2.6.25.20-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="x86_64" version="2.6.25.20" release="0.1">
          <filename>kernel-source-2.6.25.20-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="i586" version="2.6.25.20" release="0.1">
          <filename>kernel-syms-2.6.25.20-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="ppc" version="2.6.25.20" release="0.1">
          <filename>kernel-syms-2.6.25.20-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="x86_64" version="2.6.25.20" release="0.1">
          <filename>kernel-syms-2.6.25.20-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="i586" version="2.6.25.20" release="0.1">
          <filename>kernel-vanilla-2.6.25.20-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="ppc" version="2.6.25.20" release="0.1">
          <filename>kernel-vanilla-2.6.25.20-0.1.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="x86_64" version="2.6.25.20" release="0.1">
          <filename>kernel-vanilla-2.6.25.20-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="i586" version="2.6.25.20" release="0.1">
          <filename>kernel-xen-2.6.25.20-0.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="x86_64" version="2.6.25.20" release="0.1">
          <filename>kernel-xen-2.6.25.20-0.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f46fbbaea4702df28d6f59f8690f766b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="445">
  <id>moodle</id>
  <title>moodle security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1232390856"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457599" id="457599" title="bug number 457599" type="bugzilla"/>
  </references>
  <description>Insufficient quoting of wiki page titles allowed attackers
to conduct cross site scripting (XSS) attacks
(CVE-2008-5432 ).
</description>
  <pkglist>
    <collection>
        <package name="moodle" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-af" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-af-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-ar" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-ar-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-be" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-be-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-bg" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-bg-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-bs" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-bs-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-ca" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-ca-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-cs" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-cs-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-da" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-da-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-de" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-de-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-de_du" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-de_du-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-el" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-el-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-es" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-es-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-et" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-et-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-eu" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-eu-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-fa" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-fa-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-fi" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-fi-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-fr" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-fr-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-ga" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-ga-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-gl" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-gl-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-he" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-he-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-hi" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-hi-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-hr" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-hr-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-hu" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-hu-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-id" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-id-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-is" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-is-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-it" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-it-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-ja" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-ja-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-ka" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-ka-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-km" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-km-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-kn" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-kn-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-ko" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-ko-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-lt" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-lt-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-lv" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-lv-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-mi_tn" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-mi_tn-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-ms" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-ms-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-nl" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-nl-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-nn" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-nn-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-no" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-no-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-pl" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-pl-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-pt" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-pt-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-ro" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-ro-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-ru" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-ru-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-sk" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-sk-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-sl" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-sl-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-so" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-so-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-sq" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-sq-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-sr" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-sr-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-sv" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-sv-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-th" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-th-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-tl" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-tl-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-tr" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-tr-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-uk" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-uk-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-vi" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-vi-1.9.0-24.4.noarch.rpm</filename>
        </package>
        <package name="moodle-zh_cn" arch="noarch" version="1.9.0" release="24.4">
          <filename>moodle-zh_cn-1.9.0-24.4.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c2ff5137c7732be49805e487459a8110"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="451">
  <id>libnasl</id>
  <title>libnasl: missing return value checks for openssl function calls</title>
  <release>openSUSE 11.0</release>
  <issued date="1232466517"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465675" id="465675" title="bug number 465675" type="bugzilla"/>
  </references>
  <description>This update of libnasl adds missing return value checks for
openssl function calls. (CVE-2009-0125)
</description>
  <pkglist>
    <collection>
        <package name="libnasl" arch="i586" version="2.2.10" release="59.2">
          <filename>libnasl-2.2.10-59.2.i586.rpm</filename>
        </package>
        <package name="libnasl" arch="ppc" version="2.2.10" release="59.2">
          <filename>libnasl-2.2.10-59.2.ppc.rpm</filename>
        </package>
        <package name="libnasl" arch="x86_64" version="2.2.10" release="59.2">
          <filename>libnasl-2.2.10-59.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1297a482a7160ae9a4d459d657512149"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="455">
  <id>libpng-devel</id>
  <title>libpng: fix for png_check_keyword function</title>
  <release>openSUSE 11.0</release>
  <issued date="1232498210"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=467308" id="467308" title="bug number 467308" type="bugzilla"/>
  </references>
  <description>This update of libpng fixes the function
png_check_keyword() that allowed setting arbitrary bytes in
the process memory to 0. (CVE-2008-5907)
</description>
  <pkglist>
    <collection>
        <package name="libpng-devel" arch="i586" version="1.2.26" release="14.4">
          <filename>libpng-devel-1.2.26-14.4.i586.rpm</filename>
        </package>
        <package name="libpng-devel" arch="ppc" version="1.2.26" release="14.4">
          <filename>libpng-devel-1.2.26-14.4.ppc.rpm</filename>
        </package>
        <package name="libpng-devel" arch="x86_64" version="1.2.26" release="14.4">
          <filename>libpng-devel-1.2.26-14.4.x86_64.rpm</filename>
        </package>
        <package name="libpng-devel-32bit" arch="x86_64" version="1.2.26" release="14.4">
          <filename>libpng-devel-32bit-1.2.26-14.4.x86_64.rpm</filename>
        </package>
        <package name="libpng-devel-64bit" arch="ppc" version="1.2.26" release="14.4">
          <filename>libpng-devel-64bit-1.2.26-14.4.ppc.rpm</filename>
        </package>
        <package name="libpng12-0" arch="i586" version="1.2.26" release="14.4">
          <filename>libpng12-0-1.2.26-14.4.i586.rpm</filename>
        </package>
        <package name="libpng12-0" arch="ppc" version="1.2.26" release="14.4">
          <filename>libpng12-0-1.2.26-14.4.ppc.rpm</filename>
        </package>
        <package name="libpng12-0" arch="x86_64" version="1.2.26" release="14.4">
          <filename>libpng12-0-1.2.26-14.4.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-32bit" arch="x86_64" version="1.2.26" release="14.4">
          <filename>libpng12-0-32bit-1.2.26-14.4.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-64bit" arch="ppc" version="1.2.26" release="14.4">
          <filename>libpng12-0-64bit-1.2.26-14.4.ppc.rpm</filename>
        </package>
        <package name="libpng3" arch="i586" version="1.2.26" release="14.4">
          <filename>libpng3-1.2.26-14.4.i586.rpm</filename>
        </package>
        <package name="libpng3" arch="ppc" version="1.2.26" release="14.4">
          <filename>libpng3-1.2.26-14.4.ppc.rpm</filename>
        </package>
        <package name="libpng3" arch="x86_64" version="1.2.26" release="14.4">
          <filename>libpng3-1.2.26-14.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5c696f1a00acd08086f59287bdbfb6fb"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="426">
  <id>bind</id>
  <title>bind: spoofing signed mesages</title>
  <release>openSUSE 11.0</release>
  <issued date="1231726936"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=464462" id="464462" title="bug number 464462" type="bugzilla"/>
  </references>
  <description>This update improves the verification of return values of
openssl functions.  Prior this update it was possible to
spoof answers signed with DSA and NSEC3DSA. (CVE-2009-0025)
</description>
  <pkglist>
    <collection>
        <package name="bind" arch="i586" version="9.4.2" release="39.4">
          <filename>bind-9.4.2-39.4.i586.rpm</filename>
        </package>
        <package name="bind" arch="ppc" version="9.4.2" release="39.4">
          <filename>bind-9.4.2-39.4.ppc.rpm</filename>
        </package>
        <package name="bind" arch="x86_64" version="9.4.2" release="39.4">
          <filename>bind-9.4.2-39.4.x86_64.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="i586" version="9.4.2" release="39.4">
          <filename>bind-chrootenv-9.4.2-39.4.i586.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="ppc" version="9.4.2" release="39.4">
          <filename>bind-chrootenv-9.4.2-39.4.ppc.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="x86_64" version="9.4.2" release="39.4">
          <filename>bind-chrootenv-9.4.2-39.4.x86_64.rpm</filename>
        </package>
        <package name="bind-devel" arch="i586" version="9.4.2" release="39.4">
          <filename>bind-devel-9.4.2-39.4.i586.rpm</filename>
        </package>
        <package name="bind-devel" arch="ppc" version="9.4.2" release="39.4">
          <filename>bind-devel-9.4.2-39.4.ppc.rpm</filename>
        </package>
        <package name="bind-devel" arch="x86_64" version="9.4.2" release="39.4">
          <filename>bind-devel-9.4.2-39.4.x86_64.rpm</filename>
        </package>
        <package name="bind-devel-64bit" arch="ppc" version="9.4.2" release="39.4">
          <filename>bind-devel-64bit-9.4.2-39.4.ppc.rpm</filename>
        </package>
        <package name="bind-doc" arch="i586" version="9.4.2" release="39.4">
          <filename>bind-doc-9.4.2-39.4.i586.rpm</filename>
        </package>
        <package name="bind-doc" arch="ppc" version="9.4.2" release="39.4">
          <filename>bind-doc-9.4.2-39.4.ppc.rpm</filename>
        </package>
        <package name="bind-doc" arch="x86_64" version="9.4.2" release="39.4">
          <filename>bind-doc-9.4.2-39.4.x86_64.rpm</filename>
        </package>
        <package name="bind-libs" arch="i586" version="9.4.2" release="39.4">
          <filename>bind-libs-9.4.2-39.4.i586.rpm</filename>
        </package>
        <package name="bind-libs" arch="ppc" version="9.4.2" release="39.4">
          <filename>bind-libs-9.4.2-39.4.ppc.rpm</filename>
        </package>
        <package name="bind-libs" arch="x86_64" version="9.4.2" release="39.4">
          <filename>bind-libs-9.4.2-39.4.x86_64.rpm</filename>
        </package>
        <package name="bind-libs-32bit" arch="x86_64" version="9.4.2" release="39.4">
          <filename>bind-libs-32bit-9.4.2-39.4.x86_64.rpm</filename>
        </package>
        <package name="bind-libs-64bit" arch="ppc" version="9.4.2" release="39.4">
          <filename>bind-libs-64bit-9.4.2-39.4.ppc.rpm</filename>
        </package>
        <package name="bind-utils" arch="i586" version="9.4.2" release="39.4">
          <filename>bind-utils-9.4.2-39.4.i586.rpm</filename>
        </package>
        <package name="bind-utils" arch="ppc" version="9.4.2" release="39.4">
          <filename>bind-utils-9.4.2-39.4.ppc.rpm</filename>
        </package>
        <package name="bind-utils" arch="x86_64" version="9.4.2" release="39.4">
          <filename>bind-utils-9.4.2-39.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6f0f30300fa8acfbc064563288d8dad7"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="431">
  <id>attr</id>
  <title>attr: REGRESSION: getfattr -P broken in SLES11 due to bug in the walk-attr.diff patch</title>
  <release>openSUSE 11.0</release>
  <issued date="1232022182"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457660" id="457660" title="bug number 457660" type="bugzilla"/>
  </references>
  <description>- #457660: REGRESSION: getfattr -P broken in SLES11 due to
  bug in the walk-attr.diff patch

setfattr and getfattr with the -P flag recurse directory
structures incorrectly.

Expected behavior ============== trusted.9 trusted.a

trusted.9 trusted.a

trusted.9 trusted.a

Current Behavior ============= trusted.9 trusted.a

trusted.9 trusted.a
</description>
  <pkglist>
    <collection>
        <package name="attr" arch="i586" version="2.4.43" release="2.2">
          <filename>attr-2.4.43-2.2.i586.rpm</filename>
        </package>
        <package name="attr" arch="ppc" version="2.4.43" release="2.2">
          <filename>attr-2.4.43-2.2.ppc.rpm</filename>
        </package>
        <package name="attr" arch="x86_64" version="2.4.43" release="2.2">
          <filename>attr-2.4.43-2.2.x86_64.rpm</filename>
        </package>
        <package name="libattr" arch="i586" version="2.4.43" release="2.2">
          <filename>libattr-2.4.43-2.2.i586.rpm</filename>
        </package>
        <package name="libattr" arch="ppc" version="2.4.43" release="2.2">
          <filename>libattr-2.4.43-2.2.ppc.rpm</filename>
        </package>
        <package name="libattr" arch="x86_64" version="2.4.43" release="2.2">
          <filename>libattr-2.4.43-2.2.x86_64.rpm</filename>
        </package>
        <package name="libattr-32bit" arch="x86_64" version="2.4.43" release="2.2">
          <filename>libattr-32bit-2.4.43-2.2.x86_64.rpm</filename>
        </package>
        <package name="libattr-64bit" arch="ppc" version="2.4.43" release="2.2">
          <filename>libattr-64bit-2.4.43-2.2.ppc.rpm</filename>
        </package>
        <package name="libattr-devel" arch="i586" version="2.4.43" release="2.2">
          <filename>libattr-devel-2.4.43-2.2.i586.rpm</filename>
        </package>
        <package name="libattr-devel" arch="ppc" version="2.4.43" release="2.2">
          <filename>libattr-devel-2.4.43-2.2.ppc.rpm</filename>
        </package>
        <package name="libattr-devel" arch="x86_64" version="2.4.43" release="2.2">
          <filename>libattr-devel-2.4.43-2.2.x86_64.rpm</filename>
        </package>
        <package name="libattr-devel-64bit" arch="ppc" version="2.4.43" release="2.2">
          <filename>libattr-devel-64bit-2.4.43-2.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7cc020b24990406f52b364aad965f3be"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="461">
  <id>libopenssl-devel</id>
  <title>OpenSSL incorrect checks for malformed signatures</title>
  <release>openSUSE 11.0</release>
  <issued date="1232548287"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459468" id="459468" title="bug number 459468" type="bugzilla"/>
  </references>
  <description>This update improves the verification of return values.
Prior to this udpate it was possible to bypass the
certification chain checks of openssl. (CVE-2008-5077)
</description>
  <pkglist>
    <collection>
        <package name="libopenssl-devel" arch="i586" version="0.9.8g" release="47.2">
          <filename>libopenssl-devel-0.9.8g-47.2.i586.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="ppc" version="0.9.8g" release="47.2">
          <filename>libopenssl-devel-0.9.8g-47.2.ppc.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="x86_64" version="0.9.8g" release="47.2">
          <filename>libopenssl-devel-0.9.8g-47.2.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="i586" version="0.9.8g" release="47.2">
          <filename>libopenssl0_9_8-0.9.8g-47.2.i586.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="ppc" version="0.9.8g" release="47.2">
          <filename>libopenssl0_9_8-0.9.8g-47.2.ppc.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="x86_64" version="0.9.8g" release="47.2">
          <filename>libopenssl0_9_8-0.9.8g-47.2.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-32bit" arch="x86_64" version="0.9.8g" release="47.2">
          <filename>libopenssl0_9_8-32bit-0.9.8g-47.2.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-64bit" arch="ppc" version="0.9.8g" release="47.2">
          <filename>libopenssl0_9_8-64bit-0.9.8g-47.2.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="i586" version="0.9.8g" release="47.2">
          <filename>openssl-0.9.8g-47.2.i586.rpm</filename>
        </package>
        <package name="openssl" arch="ppc" version="0.9.8g" release="47.2">
          <filename>openssl-0.9.8g-47.2.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="x86_64" version="0.9.8g" release="47.2">
          <filename>openssl-0.9.8g-47.2.x86_64.rpm</filename>
        </package>
        <package name="openssl-certs" arch="i586" version="0.9.8g" release="47.2">
          <filename>openssl-certs-0.9.8g-47.2.i586.rpm</filename>
        </package>
        <package name="openssl-certs" arch="ppc" version="0.9.8g" release="47.2">
          <filename>openssl-certs-0.9.8g-47.2.ppc.rpm</filename>
        </package>
        <package name="openssl-certs" arch="x86_64" version="0.9.8g" release="47.2">
          <filename>openssl-certs-0.9.8g-47.2.x86_64.rpm</filename>
        </package>
        <package name="openssl-doc" arch="i586" version="0.9.8g" release="47.2">
          <filename>openssl-doc-0.9.8g-47.2.i586.rpm</filename>
        </package>
        <package name="openssl-doc" arch="ppc" version="0.9.8g" release="47.2">
          <filename>openssl-doc-0.9.8g-47.2.ppc.rpm</filename>
        </package>
        <package name="openssl-doc" arch="x86_64" version="0.9.8g" release="47.2">
          <filename>openssl-doc-0.9.8g-47.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="134d3efc0039308886af9c33d3b11110"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="444">
  <id>syslog-ng</id>
  <title>syslog-ng: bugfix update</title>
  <release>openSUSE 11.0</release>
  <issued date="1231939389"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=414955" id="414955" title="bug number 414955" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=423470" id="423470" title="bug number 423470" type="bugzilla"/>
  </references>
  <description>This update provides two fixes for following issues:
- Bug #414955: Fix to avoid getpwnam/getgrnam calls with
  negative values (special meaning), that are causing an
  ldap request on system using nss_ldap and during a syslog
  reload a deadlock with a locally running ldap server
  trying to log (the request).
- Bug #423470: Fix by Karsten Kuenne for a SEGV in host
  macro expansion in case when the host variable in the
  message structure isn't set.
</description>
  <pkglist>
    <collection>
        <package name="syslog-ng" arch="i586" version="1.6.12" release="76.2">
          <filename>syslog-ng-1.6.12-76.2.i586.rpm</filename>
        </package>
        <package name="syslog-ng" arch="ppc" version="1.6.12" release="76.2">
          <filename>syslog-ng-1.6.12-76.2.ppc.rpm</filename>
        </package>
        <package name="syslog-ng" arch="x86_64" version="1.6.12" release="76.2">
          <filename>syslog-ng-1.6.12-76.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a8f3c364afbdcae1420bf6c13dab2c7b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="472">
  <id>sudo</id>
  <title>sudo: some rules allow privilege escalation</title>
  <release>openSUSE 11.0</release>
  <issued date="1233014195"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=468923" id="468923" title="bug number 468923" type="bugzilla"/>
  </references>
  <description>This update of sudo fixes a bug that allowed - depending on
the sudoers rules - a sudo-user to execute arbitrary shell
commands as root.
</description>
  <pkglist>
    <collection>
        <package name="sudo" arch="i586" version="1.6.9p15" release="13.4">
          <filename>sudo-1.6.9p15-13.4.i586.rpm</filename>
        </package>
        <package name="sudo" arch="ppc" version="1.6.9p15" release="13.4">
          <filename>sudo-1.6.9p15-13.4.ppc.rpm</filename>
        </package>
        <package name="sudo" arch="x86_64" version="1.6.9p15" release="13.4">
          <filename>sudo-1.6.9p15-13.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d1ed1f287c63ae173d13387a3f4f226e"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="403">
  <id>nouveau-kmp-debug</id>
  <title>nouveau-kmp was not compatible to 11.0 update kernel</title>
  <release>openSUSE 11.0</release>
  <issued date="1231379051"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=418056" id="418056" title="bug number 418056" type="bugzilla"/>
  </references>
  <description>The updated kernel in the update repository caused the
nouveau-kmp to no longer work due to a kernel version
mismatch and the KMP being in the wrong directory under
/lib/modules.
</description>
  <pkglist>
    <collection>
        <package name="nouveau-kmp-debug" arch="i586" version="0.10.1.20081112_2.6.25.18_0.2" release="0.3">
          <filename>nouveau-kmp-debug-0.10.1.20081112_2.6.25.18_0.2-0.3.i586.rpm</filename>
        </package>
        <package name="nouveau-kmp-debug" arch="x86_64" version="0.10.1.20081112_2.6.25.18_0.2" release="0.3">
          <filename>nouveau-kmp-debug-0.10.1.20081112_2.6.25.18_0.2-0.3.x86_64.rpm</filename>
        </package>
        <package name="nouveau-kmp-default" arch="i586" version="0.10.1.20081112_2.6.25.18_0.2" release="0.3">
          <filename>nouveau-kmp-default-0.10.1.20081112_2.6.25.18_0.2-0.3.i586.rpm</filename>
        </package>
        <package name="nouveau-kmp-default" arch="ppc" version="0.10.1.20081112_2.6.25.18_0.2" release="0.3">
          <filename>nouveau-kmp-default-0.10.1.20081112_2.6.25.18_0.2-0.3.ppc.rpm</filename>
        </package>
        <package name="nouveau-kmp-default" arch="x86_64" version="0.10.1.20081112_2.6.25.18_0.2" release="0.3">
          <filename>nouveau-kmp-default-0.10.1.20081112_2.6.25.18_0.2-0.3.x86_64.rpm</filename>
        </package>
        <package name="nouveau-kmp-pae" arch="i586" version="0.10.1.20081112_2.6.25.18_0.2" release="0.3">
          <filename>nouveau-kmp-pae-0.10.1.20081112_2.6.25.18_0.2-0.3.i586.rpm</filename>
        </package>
        <package name="nouveau-kmp-xen" arch="i586" version="0.10.1.20081112_2.6.25.18_0.2" release="0.3">
          <filename>nouveau-kmp-xen-0.10.1.20081112_2.6.25.18_0.2-0.3.i586.rpm</filename>
        </package>
        <package name="nouveau-kmp-xen" arch="x86_64" version="0.10.1.20081112_2.6.25.18_0.2" release="0.3">
          <filename>nouveau-kmp-xen-0.10.1.20081112_2.6.25.18_0.2-0.3.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video-nouveau" arch="i586" version="0.10.1.20081112" release="0.3">
          <filename>xorg-x11-driver-video-nouveau-0.10.1.20081112-0.3.i586.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video-nouveau" arch="ppc" version="0.10.1.20081112" release="0.3">
          <filename>xorg-x11-driver-video-nouveau-0.10.1.20081112-0.3.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video-nouveau" arch="x86_64" version="0.10.1.20081112" release="0.3">
          <filename>xorg-x11-driver-video-nouveau-0.10.1.20081112-0.3.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video-nouveau-3d" arch="i586" version="0.10.1.20081112" release="0.3">
          <filename>xorg-x11-driver-video-nouveau-3d-0.10.1.20081112-0.3.i586.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video-nouveau-3d" arch="ppc" version="0.10.1.20081112" release="0.3">
          <filename>xorg-x11-driver-video-nouveau-3d-0.10.1.20081112-0.3.ppc.rpm</filename>
        </package>
        <package name="xorg-x11-driver-video-nouveau-3d" arch="x86_64" version="0.10.1.20081112" release="0.3">
          <filename>xorg-x11-driver-video-nouveau-3d-0.10.1.20081112-0.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2992a8c985944148b6def71a35d49505"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="457">
  <id>audiofile</id>
  <title>audiofile: heap-overflow in libaudiofile</title>
  <release>openSUSE 11.0</release>
  <issued date="1232546199"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=463220" id="463220" title="bug number 463220" type="bugzilla"/>
  </references>
  <description>A heap-overflow in libaudiofile was fixed. The overflow
existsed in the WAV processing code and can be exploited to
execute arbitrary code. (CVE-2008-5824)
</description>
  <pkglist>
    <collection>
        <package name="audiofile" arch="i586" version="0.2.6" release="115.2">
          <filename>audiofile-0.2.6-115.2.i586.rpm</filename>
        </package>
        <package name="audiofile" arch="ppc" version="0.2.6" release="115.2">
          <filename>audiofile-0.2.6-115.2.ppc.rpm</filename>
        </package>
        <package name="audiofile" arch="x86_64" version="0.2.6" release="115.2">
          <filename>audiofile-0.2.6-115.2.x86_64.rpm</filename>
        </package>
        <package name="audiofile-32bit" arch="x86_64" version="0.2.6" release="115.2">
          <filename>audiofile-32bit-0.2.6-115.2.x86_64.rpm</filename>
        </package>
        <package name="audiofile-64bit" arch="ppc" version="0.2.6" release="115.2">
          <filename>audiofile-64bit-0.2.6-115.2.ppc.rpm</filename>
        </package>
        <package name="audiofile-devel" arch="i586" version="0.2.6" release="115.2">
          <filename>audiofile-devel-0.2.6-115.2.i586.rpm</filename>
        </package>
        <package name="audiofile-devel" arch="ppc" version="0.2.6" release="115.2">
          <filename>audiofile-devel-0.2.6-115.2.ppc.rpm</filename>
        </package>
        <package name="audiofile-devel" arch="x86_64" version="0.2.6" release="115.2">
          <filename>audiofile-devel-0.2.6-115.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1bfc9a62cfbfc6b3e0fd173c8b222e1b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="540">
  <id>gstreamer-0_10-plugins-good</id>
  <title>gstreamer-0_10: fixed several heap overflows (CVE-2009-0386,CVE-2009-0387,CVE-2009-0397)</title>
  <release>openSUSE 11.0</release>
  <issued date="1234978392"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=469336" id="469336" title="bug number 469336" type="bugzilla"/>
  </references>
  <description>gstreamer-0_10: several heap overflows (CVE-2009-0386,
CVE-2009-0387,CVE-2009-0397) have been fixed. Remote
attackers could exploit these to execute arbitrary code via
QuickTime media files.
</description>
  <pkglist>
    <collection>
        <package name="gstreamer-0_10-plugins-good" arch="i586" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-0.10.7-38.2.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good" arch="ppc" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-0.10.7-38.2.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good" arch="x86_64" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-0.10.7-38.2.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-doc" arch="i586" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-doc-0.10.7-38.2.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-doc" arch="ppc" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-doc-0.10.7-38.2.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-doc" arch="x86_64" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-doc-0.10.7-38.2.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-extra" arch="i586" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-extra-0.10.7-38.2.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-extra" arch="ppc" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-extra-0.10.7-38.2.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-extra" arch="x86_64" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-extra-0.10.7-38.2.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-lang" arch="i586" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-lang-0.10.7-38.2.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-lang" arch="ppc" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-lang-0.10.7-38.2.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-lang" arch="x86_64" version="0.10.7" release="38.2">
          <filename>gstreamer-0_10-plugins-good-lang-0.10.7-38.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="87fa06ce6c77615d48e5d5ced99a033e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="480">
  <id>compat-openssl097g</id>
  <title>OpenSSL incorrect checks for malformed signatures</title>
  <release>openSUSE 11.0</release>
  <issued date="1233073826"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459468" id="459468" title="bug number 459468" type="bugzilla"/>
  </references>
  <description>This update improves the verification of return values.
Prior to this udpate it was possible to bypass the
certification chain checks of openssl. (CVE-2008-5077)
</description>
  <pkglist>
    <collection>
        <package name="compat-openssl097g" arch="i586" version="0.9.7g" release="119.3">
          <filename>compat-openssl097g-0.9.7g-119.3.i586.rpm</filename>
        </package>
        <package name="compat-openssl097g" arch="ppc" version="0.9.7g" release="119.3">
          <filename>compat-openssl097g-0.9.7g-119.3.ppc.rpm</filename>
        </package>
        <package name="compat-openssl097g" arch="x86_64" version="0.9.7g" release="119.3">
          <filename>compat-openssl097g-0.9.7g-119.3.x86_64.rpm</filename>
        </package>
        <package name="compat-openssl097g-32bit" arch="x86_64" version="0.9.7g" release="119.3">
          <filename>compat-openssl097g-32bit-0.9.7g-119.3.x86_64.rpm</filename>
        </package>
        <package name="compat-openssl097g-64bit" arch="ppc" version="0.9.7g" release="119.3">
          <filename>compat-openssl097g-64bit-0.9.7g-119.3.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0806404c60fc84726fc594d21e6de419"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="436">
  <id>amarok</id>
  <title>amarok: fixed remote code execution bug</title>
  <release>openSUSE 11.0</release>
  <issued date="1232376951"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465098" id="465098" title="bug number 465098" type="bugzilla"/>
  </references>
  <description>This update of amarok fixes several integer overflows and
unchecked memory allocations that can be exploited by
malformed Audible digital audio files. These bugs could be
used in a user-assisted attack scenario to execute
arbitrary code remotely. (CVE-2009-0135, CVE-2009-0136)
</description>
  <pkglist>
    <collection>
        <package name="amarok" arch="i586" version="1.4.9.1" release="27.2">
          <filename>amarok-1.4.9.1-27.2.i586.rpm</filename>
        </package>
        <package name="amarok" arch="ppc" version="1.4.9.1" release="27.2">
          <filename>amarok-1.4.9.1-27.2.ppc.rpm</filename>
        </package>
        <package name="amarok" arch="x86_64" version="1.4.9.1" release="27.2">
          <filename>amarok-1.4.9.1-27.2.x86_64.rpm</filename>
        </package>
        <package name="amarok-lang" arch="i586" version="1.4.9.1" release="27.2">
          <filename>amarok-lang-1.4.9.1-27.2.i586.rpm</filename>
        </package>
        <package name="amarok-lang" arch="ppc" version="1.4.9.1" release="27.2">
          <filename>amarok-lang-1.4.9.1-27.2.ppc.rpm</filename>
        </package>
        <package name="amarok-lang" arch="x86_64" version="1.4.9.1" release="27.2">
          <filename>amarok-lang-1.4.9.1-27.2.x86_64.rpm</filename>
        </package>
        <package name="amarok-libvisual" arch="i586" version="1.4.9.1" release="27.2">
          <filename>amarok-libvisual-1.4.9.1-27.2.i586.rpm</filename>
        </package>
        <package name="amarok-libvisual" arch="ppc" version="1.4.9.1" release="27.2">
          <filename>amarok-libvisual-1.4.9.1-27.2.ppc.rpm</filename>
        </package>
        <package name="amarok-libvisual" arch="x86_64" version="1.4.9.1" release="27.2">
          <filename>amarok-libvisual-1.4.9.1-27.2.x86_64.rpm</filename>
        </package>
        <package name="amarok-xine" arch="i586" version="1.4.9.1" release="27.2">
          <filename>amarok-xine-1.4.9.1-27.2.i586.rpm</filename>
        </package>
        <package name="amarok-xine" arch="ppc" version="1.4.9.1" release="27.2">
          <filename>amarok-xine-1.4.9.1-27.2.ppc.rpm</filename>
        </package>
        <package name="amarok-xine" arch="x86_64" version="1.4.9.1" release="27.2">
          <filename>amarok-xine-1.4.9.1-27.2.x86_64.rpm</filename>
        </package>
        <package name="amarok-yauap" arch="i586" version="1.4.9.1" release="27.2">
          <filename>amarok-yauap-1.4.9.1-27.2.i586.rpm</filename>
        </package>
        <package name="amarok-yauap" arch="ppc" version="1.4.9.1" release="27.2">
          <filename>amarok-yauap-1.4.9.1-27.2.ppc.rpm</filename>
        </package>
        <package name="amarok-yauap" arch="x86_64" version="1.4.9.1" release="27.2">
          <filename>amarok-yauap-1.4.9.1-27.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b314913be23c588a2e6ca4da67095855"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="384">
  <id>avahi</id>
  <title>avahi security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229574165"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459007" id="459007" title="bug number 459007" type="bugzilla"/>
  </references>
  <description>Specially crafted mDNS packets could crash the Avahi daemon
(CVE-2008-5081).
</description>
  <pkglist>
    <collection>
        <package name="avahi" arch="i586" version="0.6.22" release="68.2">
          <filename>avahi-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="avahi" arch="ppc" version="0.6.22" release="68.2">
          <filename>avahi-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="avahi" arch="x86_64" version="0.6.22" release="68.2">
          <filename>avahi-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="avahi-compat-howl-devel" arch="i586" version="0.6.22" release="68.2">
          <filename>avahi-compat-howl-devel-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="avahi-compat-howl-devel" arch="ppc" version="0.6.22" release="68.2">
          <filename>avahi-compat-howl-devel-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="avahi-compat-howl-devel" arch="x86_64" version="0.6.22" release="68.2">
          <filename>avahi-compat-howl-devel-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="avahi-compat-mDNSResponder-devel" arch="i586" version="0.6.22" release="68.2">
          <filename>avahi-compat-mDNSResponder-devel-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="avahi-compat-mDNSResponder-devel" arch="ppc" version="0.6.22" release="68.2">
          <filename>avahi-compat-mDNSResponder-devel-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="avahi-compat-mDNSResponder-devel" arch="x86_64" version="0.6.22" release="68.2">
          <filename>avahi-compat-mDNSResponder-devel-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="avahi-utils" arch="i586" version="0.6.22" release="68.2">
          <filename>avahi-utils-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="avahi-utils" arch="ppc" version="0.6.22" release="68.2">
          <filename>avahi-utils-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="avahi-utils" arch="x86_64" version="0.6.22" release="68.2">
          <filename>avahi-utils-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="avahi-utils-gtk" arch="i586" version="0.6.22" release="68.2">
          <filename>avahi-utils-gtk-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="avahi-utils-gtk" arch="ppc" version="0.6.22" release="68.2">
          <filename>avahi-utils-gtk-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="avahi-utils-gtk" arch="x86_64" version="0.6.22" release="68.2">
          <filename>avahi-utils-gtk-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-client3" arch="i586" version="0.6.22" release="68.2">
          <filename>libavahi-client3-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="libavahi-client3" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-client3-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-client3" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-client3-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-client3-32bit" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-client3-32bit-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-client3-64bit" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-client3-64bit-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-common3" arch="i586" version="0.6.22" release="68.2">
          <filename>libavahi-common3-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="libavahi-common3" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-common3-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-common3" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-common3-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-common3-32bit" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-common3-32bit-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-common3-64bit" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-common3-64bit-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-core5" arch="i586" version="0.6.22" release="68.2">
          <filename>libavahi-core5-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="libavahi-core5" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-core5-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-core5" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-core5-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-devel" arch="i586" version="0.6.22" release="68.2">
          <filename>libavahi-devel-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="libavahi-devel" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-devel-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-devel" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-devel-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-glib-devel" arch="i586" version="0.6.22" release="68.2">
          <filename>libavahi-glib-devel-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="libavahi-glib-devel" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-glib-devel-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-glib-devel" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-glib-devel-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-glib1" arch="i586" version="0.6.22" release="68.2">
          <filename>libavahi-glib1-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="libavahi-glib1" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-glib1-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-glib1" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-glib1-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-glib1-32bit" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-glib1-32bit-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-glib1-64bit" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-glib1-64bit-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-gobject-devel" arch="i586" version="0.6.22" release="68.2">
          <filename>libavahi-gobject-devel-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="libavahi-gobject-devel" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-gobject-devel-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-gobject-devel" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-gobject-devel-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-gobject0" arch="i586" version="0.6.22" release="68.2">
          <filename>libavahi-gobject0-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="libavahi-gobject0" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-gobject0-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-gobject0" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-gobject0-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libavahi-ui0" arch="i586" version="0.6.22" release="68.2">
          <filename>libavahi-ui0-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="libavahi-ui0" arch="ppc" version="0.6.22" release="68.2">
          <filename>libavahi-ui0-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libavahi-ui0" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libavahi-ui0-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libdns_sd" arch="i586" version="0.6.22" release="68.2">
          <filename>libdns_sd-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="libdns_sd" arch="ppc" version="0.6.22" release="68.2">
          <filename>libdns_sd-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libdns_sd" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libdns_sd-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libdns_sd-32bit" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libdns_sd-32bit-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="libdns_sd-64bit" arch="ppc" version="0.6.22" release="68.2">
          <filename>libdns_sd-64bit-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libhowl0" arch="i586" version="0.6.22" release="68.2">
          <filename>libhowl0-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="libhowl0" arch="ppc" version="0.6.22" release="68.2">
          <filename>libhowl0-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="libhowl0" arch="x86_64" version="0.6.22" release="68.2">
          <filename>libhowl0-0.6.22-68.2.x86_64.rpm</filename>
        </package>
        <package name="python-avahi" arch="i586" version="0.6.22" release="68.2">
          <filename>python-avahi-0.6.22-68.2.i586.rpm</filename>
        </package>
        <package name="python-avahi" arch="ppc" version="0.6.22" release="68.2">
          <filename>python-avahi-0.6.22-68.2.ppc.rpm</filename>
        </package>
        <package name="python-avahi" arch="x86_64" version="0.6.22" release="68.2">
          <filename>python-avahi-0.6.22-68.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f35a97325e2401452c83e4d7458eea8c"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="467">
  <id>nscd</id>
  <title>nscd stability improvements</title>
  <release>openSUSE 11.0</release>
  <issued date="1232917587"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=387202" id="387202" title="bug number 387202" type="bugzilla"/>
  </references>
  <description>Fix instability during cache pruning and garbage collection
phases that might lead to random segfaults and assertion
failures - overflow in he_data setup and too risky alloca()
usage.
</description>
  <pkglist>
    <collection>
        <package name="nscd" arch="i586" version="2.8" release="14.4">
          <filename>nscd-2.8-14.4.i586.rpm</filename>
        </package>
        <package name="nscd" arch="ppc" version="2.8" release="14.4">
          <filename>nscd-2.8-14.4.ppc.rpm</filename>
        </package>
        <package name="nscd" arch="x86_64" version="2.8" release="14.4">
          <filename>nscd-2.8-14.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f9dab72d10024af73e3d7372dc769624"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="484">
  <id>wine</id>
  <title>wine: Fixed symlink tmp race problem in winetricks</title>
  <release>openSUSE 11.0</release>
  <issued date="1233208527"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=467620" id="467620" title="bug number 467620" type="bugzilla"/>
  </references>
  <description>A symlink vulnerability in handling tmp files in the
winetricks helper scripts was fixed. (CVE-2009-0313)
</description>
  <pkglist>
    <collection>
        <package name="wine" arch="i586" version="0.9.64_aka_1.0.rc3" release="2.2">
          <filename>wine-0.9.64_aka_1.0.rc3-2.2.i586.rpm</filename>
        </package>
        <package name="wine-devel" arch="i586" version="0.9.64_aka_1.0.rc3" release="2.2">
          <filename>wine-devel-0.9.64_aka_1.0.rc3-2.2.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9e1a1d630bb1286b77d0fc2d6b00aa8c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="483">
  <id>xine-devel</id>
  <title>xine: fixed multiple overflows</title>
  <release>openSUSE 11.0</release>
  <issued date="1233188751"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=417929" id="417929" title="bug number 417929" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=419541" id="419541" title="bug number 419541" type="bugzilla"/>
  </references>
  <description>This update of xine fixes multiple buffer overflows while
parsing files:
- CVE-2008-3231
- CVE-2008-5233
- CVE-2008-5234
- CVE-2008-5235
- CVE-2008-5236
- CVE-2008-5237
- CVE-2008-5238
- CVE-2008-5239
- CVE-2008-5240
- CVE-2008-5241
- CVE-2008-5242
- CVE-2008-5243
- CVE-2008-5244
- CVE-2008-5245
- CVE-2008-5246
- CVE-2008-5247
- CVE-2008-5248 These bugs can lead to remote code
  execution.
</description>
  <pkglist>
    <collection>
        <package name="xine-devel" arch="i586" version="1.1.12" release="8.2">
          <filename>xine-devel-1.1.12-8.2.i586.rpm</filename>
        </package>
        <package name="xine-devel" arch="ppc" version="1.1.12" release="8.2">
          <filename>xine-devel-1.1.12-8.2.ppc.rpm</filename>
        </package>
        <package name="xine-devel" arch="x86_64" version="1.1.12" release="8.2">
          <filename>xine-devel-1.1.12-8.2.x86_64.rpm</filename>
        </package>
        <package name="xine-extra" arch="i586" version="1.1.12" release="8.2">
          <filename>xine-extra-1.1.12-8.2.i586.rpm</filename>
        </package>
        <package name="xine-extra" arch="ppc" version="1.1.12" release="8.2">
          <filename>xine-extra-1.1.12-8.2.ppc.rpm</filename>
        </package>
        <package name="xine-extra" arch="x86_64" version="1.1.12" release="8.2">
          <filename>xine-extra-1.1.12-8.2.x86_64.rpm</filename>
        </package>
        <package name="xine-lib" arch="i586" version="1.1.12" release="8.2">
          <filename>xine-lib-1.1.12-8.2.i586.rpm</filename>
        </package>
        <package name="xine-lib" arch="ppc" version="1.1.12" release="8.2">
          <filename>xine-lib-1.1.12-8.2.ppc.rpm</filename>
        </package>
        <package name="xine-lib" arch="x86_64" version="1.1.12" release="8.2">
          <filename>xine-lib-1.1.12-8.2.x86_64.rpm</filename>
        </package>
        <package name="xine-lib-32bit" arch="x86_64" version="1.1.12" release="8.2">
          <filename>xine-lib-32bit-1.1.12-8.2.x86_64.rpm</filename>
        </package>
        <package name="xine-lib-64bit" arch="ppc" version="1.1.12" release="8.2">
          <filename>xine-lib-64bit-1.1.12-8.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b65a417490e98fb4af7653921928f7f9"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="482">
  <id>perl</id>
  <title>perl: rmtree vulnerability</title>
  <release>openSUSE 11.0</release>
  <issued date="1233157473"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=450385" id="450385" title="bug number 450385" type="bugzilla"/>
  </references>
  <description>This perl update fixes a race condition in rmtree.
(CVE-2008-5302)
</description>
  <pkglist>
    <collection>
        <package name="perl" arch="i586" version="5.10.0" release="37.6">
          <filename>perl-5.10.0-37.6.i586.rpm</filename>
        </package>
        <package name="perl" arch="ppc" version="5.10.0" release="37.6">
          <filename>perl-5.10.0-37.6.ppc.rpm</filename>
        </package>
        <package name="perl" arch="x86_64" version="5.10.0" release="37.6">
          <filename>perl-5.10.0-37.6.x86_64.rpm</filename>
        </package>
        <package name="perl-32bit" arch="x86_64" version="5.10.0" release="37.6">
          <filename>perl-32bit-5.10.0-37.6.x86_64.rpm</filename>
        </package>
        <package name="perl-64bit" arch="ppc" version="5.10.0" release="37.6">
          <filename>perl-64bit-5.10.0-37.6.ppc.rpm</filename>
        </package>
        <package name="perl-base" arch="i586" version="5.10.0" release="37.6">
          <filename>perl-base-5.10.0-37.6.i586.rpm</filename>
        </package>
        <package name="perl-base" arch="ppc" version="5.10.0" release="37.6">
          <filename>perl-base-5.10.0-37.6.ppc.rpm</filename>
        </package>
        <package name="perl-base" arch="x86_64" version="5.10.0" release="37.6">
          <filename>perl-base-5.10.0-37.6.x86_64.rpm</filename>
        </package>
        <package name="perl-doc" arch="i586" version="5.10.0" release="37.6">
          <filename>perl-doc-5.10.0-37.6.i586.rpm</filename>
        </package>
        <package name="perl-doc" arch="ppc" version="5.10.0" release="37.6">
          <filename>perl-doc-5.10.0-37.6.ppc.rpm</filename>
        </package>
        <package name="perl-doc" arch="x86_64" version="5.10.0" release="37.6">
          <filename>perl-doc-5.10.0-37.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d718fa3ceb5f911ad0a86d193b651d89"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="462">
  <id>softwaremgmt</id>
  <title>Various fixes for the software management stack</title>
  <release>openSUSE 11.0</release>
  <issued date="1229097335"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=447986" id="447986" title="bug number 447986" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459675" id="459675" title="bug number 459675" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=449306" id="449306" title="bug number 449306" type="bugzilla"/>
  </references>
  <description>This patch fixes a bug where the solver wants to install
incompatible updates and downgrade kde from 4.1.3 to 4.0.4.

Additionally, libzypp is compiled with -fPIC and a Gtk
package selector crash on the conflict dialog is fixed.
</description>
  <pkglist>
    <collection>
        <package name="PackageKit" arch="i586" version="0.2.1" release="15.8">
          <filename>PackageKit-0.2.1-15.8.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="PackageKit" arch="ppc" version="0.2.1" release="15.8">
          <filename>PackageKit-0.2.1-15.8.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="PackageKit" arch="x86_64" version="0.2.1" release="15.8">
          <filename>PackageKit-0.2.1-15.8.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="PackageKit-devel" arch="i586" version="0.2.1" release="15.8">
          <filename>PackageKit-devel-0.2.1-15.8.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="PackageKit-devel" arch="ppc" version="0.2.1" release="15.8">
          <filename>PackageKit-devel-0.2.1-15.8.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="PackageKit-devel" arch="x86_64" version="0.2.1" release="15.8">
          <filename>PackageKit-devel-0.2.1-15.8.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="gnome-packagekit" arch="i586" version="0.2.1" release="15.7">
          <filename>gnome-packagekit-0.2.1-15.7.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="gnome-packagekit" arch="ppc" version="0.2.1" release="15.7">
          <filename>gnome-packagekit-0.2.1-15.7.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="gnome-packagekit" arch="x86_64" version="0.2.1" release="15.7">
          <filename>gnome-packagekit-0.2.1-15.7.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libsatsolver-devel" arch="i586" version="0.9.6" release="0.2">
          <filename>libsatsolver-devel-0.9.6-0.2.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libsatsolver-devel" arch="ppc" version="0.9.6" release="0.2">
          <filename>libsatsolver-devel-0.9.6-0.2.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libsatsolver-devel" arch="x86_64" version="0.9.6" release="0.2">
          <filename>libsatsolver-devel-0.9.6-0.2.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libsatsolver-perl" arch="i586" version="0.9.6" release="0.2">
          <filename>libsatsolver-perl-0.9.6-0.2.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libsatsolver-perl" arch="ppc" version="0.9.6" release="0.2">
          <filename>libsatsolver-perl-0.9.6-0.2.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libsatsolver-perl" arch="x86_64" version="0.9.6" release="0.2">
          <filename>libsatsolver-perl-0.9.6-0.2.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libsatsolver-ruby" arch="i586" version="0.9.6" release="0.2">
          <filename>libsatsolver-ruby-0.9.6-0.2.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libsatsolver-ruby" arch="ppc" version="0.9.6" release="0.2">
          <filename>libsatsolver-ruby-0.9.6-0.2.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libsatsolver-ruby" arch="x86_64" version="0.9.6" release="0.2">
          <filename>libsatsolver-ruby-0.9.6-0.2.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libzypp" arch="i586" version="4.28.1" release="0.1">
          <filename>libzypp-4.28.1-0.1.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libzypp" arch="ppc" version="4.28.1" release="0.1">
          <filename>libzypp-4.28.1-0.1.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libzypp" arch="x86_64" version="4.28.1" release="0.1">
          <filename>libzypp-4.28.1-0.1.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libzypp-devel" arch="i586" version="4.28.1" release="0.1">
          <filename>libzypp-devel-4.28.1-0.1.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libzypp-devel" arch="ppc" version="4.28.1" release="0.1">
          <filename>libzypp-devel-4.28.1-0.1.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="libzypp-devel" arch="x86_64" version="4.28.1" release="0.1">
          <filename>libzypp-devel-4.28.1-0.1.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="satsolver-tools" arch="i586" version="0.9.6" release="0.2">
          <filename>satsolver-tools-0.9.6-0.2.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="satsolver-tools" arch="ppc" version="0.9.6" release="0.2">
          <filename>satsolver-tools-0.9.6-0.2.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="satsolver-tools" arch="x86_64" version="0.9.6" release="0.2">
          <filename>satsolver-tools-0.9.6-0.2.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-gtk" arch="i586" version="2.16.15" release="0.1">
          <filename>yast2-gtk-2.16.15-0.1.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-gtk" arch="ppc" version="2.16.15" release="0.1">
          <filename>yast2-gtk-2.16.15-0.1.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-gtk" arch="x86_64" version="2.16.15" release="0.1">
          <filename>yast2-gtk-2.16.15-0.1.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-ncurses-pkg" arch="i586" version="2.16.14" release="0.4">
          <filename>yast2-ncurses-pkg-2.16.14-0.4.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-ncurses-pkg" arch="ppc" version="2.16.14" release="0.4">
          <filename>yast2-ncurses-pkg-2.16.14-0.4.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-ncurses-pkg" arch="x86_64" version="2.16.14" release="0.4">
          <filename>yast2-ncurses-pkg-2.16.14-0.4.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-online-update" arch="noarch" version="2.16.15" release="6.1">
          <filename>yast2-online-update-2.16.15-6.1.noarch.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-online-update-frontend" arch="noarch" version="2.16.15" release="6.1">
          <filename>yast2-online-update-frontend-2.16.15-6.1.noarch.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-packager" arch="i586" version="2.16.53" release="3.1">
          <filename>yast2-packager-2.16.53-3.1.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-packager" arch="ppc" version="2.16.53" release="3.1">
          <filename>yast2-packager-2.16.53-3.1.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-packager" arch="x86_64" version="2.16.53" release="3.1">
          <filename>yast2-packager-2.16.53-3.1.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-pkg-bindings" arch="i586" version="2.16.42" release="0.2">
          <filename>yast2-pkg-bindings-2.16.42-0.2.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-pkg-bindings" arch="ppc" version="2.16.42" release="0.2">
          <filename>yast2-pkg-bindings-2.16.42-0.2.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-pkg-bindings" arch="x86_64" version="2.16.42" release="0.2">
          <filename>yast2-pkg-bindings-2.16.42-0.2.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-pkg-bindings-devel-doc" arch="noarch" version="2.16.42" release="0.2">
          <filename>yast2-pkg-bindings-devel-doc-2.16.42-0.2.noarch.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-qt-pkg" arch="i586" version="2.16.48" release="0.2">
          <filename>yast2-qt-pkg-2.16.48-0.2.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-qt-pkg" arch="ppc" version="2.16.48" release="0.2">
          <filename>yast2-qt-pkg-2.16.48-0.2.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="yast2-qt-pkg" arch="x86_64" version="2.16.48" release="0.2">
          <filename>yast2-qt-pkg-2.16.48-0.2.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="zypper" arch="i586" version="0.11.10" release="0.3">
          <filename>zypper-0.11.10-0.3.i586.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="zypper" arch="ppc" version="0.11.10" release="0.3">
          <filename>zypper-0.11.10-0.3.ppc.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
        <package name="zypper" arch="x86_64" version="0.11.10" release="0.3">
          <filename>zypper-0.11.10-0.3.x86_64.rpm</filename>
          <restart_suggested>1</restart_suggested>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="119a5e76286999a9037a4721e0b5e5cf"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="441">
  <id>apache2-mod_php5</id>
  <title>php5: fixed two security issues ext/mbstring/libmbfl/filters/mbfilter_htmlent.c</title>
  <release>openSUSE 11.0</release>
  <issued date="1231899902"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=462499" id="462499" title="bug number 462499" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=464048" id="464048" title="bug number 464048" type="bugzilla"/>
  </references>
  <description>This update of php5 fixes a directory traversal bug in
ZipArchive (CVE-2008-5658) and a buffer overflow in the
mstring extension (CVE-2008-5557).
</description>
  <pkglist>
    <collection>
        <package name="apache2-mod_php5" arch="i586" version="5.2.6" release="0.8">
          <filename>apache2-mod_php5-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="ppc" version="5.2.6" release="0.8">
          <filename>apache2-mod_php5-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="x86_64" version="5.2.6" release="0.8">
          <filename>apache2-mod_php5-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-bcmath-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-bcmath-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-bcmath-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-bz2" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-bz2-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-bz2" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-bz2-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-bz2" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-bz2-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-calendar" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-calendar-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-calendar" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-calendar-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-calendar" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-calendar-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-ctype" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-ctype-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-ctype" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-ctype-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-ctype" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-ctype-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-curl" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-curl-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-curl" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-curl-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-curl" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-curl-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-dba" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-dba-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-dba" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-dba-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-dba" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-dba-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-dbase" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-dbase-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-dbase" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-dbase-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-dbase" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-dbase-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-devel" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-devel-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-devel" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-devel-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-devel" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-devel-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-dom" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-dom-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-dom" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-dom-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-dom" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-dom-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-exif" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-exif-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-exif" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-exif-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-exif" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-exif-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-fastcgi-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-fastcgi-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-fastcgi-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-ftp" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-ftp-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-ftp" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-ftp-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-ftp" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-ftp-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-gd" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-gd-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-gd" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-gd-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-gd" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-gd-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-gettext" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-gettext-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-gettext" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-gettext-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-gettext" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-gettext-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-gmp" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-gmp-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-gmp" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-gmp-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-gmp" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-gmp-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-hash" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-hash-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-hash" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-hash-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-hash" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-hash-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-iconv" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-iconv-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-iconv" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-iconv-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-iconv" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-iconv-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-imap" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-imap-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-imap" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-imap-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-imap" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-imap-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-json" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-json-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-json" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-json-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-json" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-json-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-ldap" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-ldap-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-ldap" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-ldap-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-ldap" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-ldap-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-mbstring-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-mbstring-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-mbstring-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-mcrypt-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-mcrypt-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-mcrypt-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-mysql" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-mysql-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-mysql" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-mysql-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-mysql" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-mysql-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-ncurses-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-ncurses-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-ncurses-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-odbc" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-odbc-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-odbc" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-odbc-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-odbc" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-odbc-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-openssl" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-openssl-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-openssl" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-openssl-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-openssl" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-openssl-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-pcntl-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-pcntl-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-pcntl-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-pdo" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-pdo-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-pdo" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-pdo-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-pdo" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-pdo-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-pear" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-pear-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-pear" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-pear-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-pear" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-pear-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-pgsql-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-pgsql-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-pgsql-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-posix" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-posix-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-posix" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-posix-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-posix" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-posix-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-pspell" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-pspell-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-pspell" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-pspell-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-pspell" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-pspell-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-readline" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-readline-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-readline" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-readline-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-readline" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-readline-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-shmop" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-shmop-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-shmop" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-shmop-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-shmop" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-shmop-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-snmp" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-snmp-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-snmp" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-snmp-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-snmp" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-snmp-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-soap" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-soap-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-soap" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-soap-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-soap" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-soap-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-sockets" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-sockets-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-sockets" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-sockets-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-sockets" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-sockets-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-sqlite-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-sqlite-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-sqlite-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-suhosin-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-suhosin-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-suhosin-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-sysvmsg-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-sysvmsg-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-sysvmsg-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-sysvsem-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-sysvsem-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-sysvsem-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-sysvshm-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-sysvshm-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-sysvshm-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-tidy" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-tidy-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-tidy" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-tidy-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-tidy" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-tidy-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-tokenizer-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-tokenizer-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-tokenizer-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-wddx" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-wddx-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-wddx" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-wddx-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-wddx" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-wddx-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-xmlreader-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-xmlreader-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-xmlreader-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-xmlrpc-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-xmlrpc-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-xmlrpc-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-xmlwriter-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-xmlwriter-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-xmlwriter-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-xsl" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-xsl-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-xsl" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-xsl-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-xsl" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-xsl-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-zip" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-zip-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-zip" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-zip-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-zip" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-zip-5.2.6-0.8.x86_64.rpm</filename>
        </package>
        <package name="php5-zlib" arch="i586" version="5.2.6" release="0.8">
          <filename>php5-zlib-5.2.6-0.8.i586.rpm</filename>
        </package>
        <package name="php5-zlib" arch="ppc" version="5.2.6" release="0.8">
          <filename>php5-zlib-5.2.6-0.8.ppc.rpm</filename>
        </package>
        <package name="php5-zlib" arch="x86_64" version="5.2.6" release="0.8">
          <filename>php5-zlib-5.2.6-0.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c08769770b29c96fb099387f28e32809"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="373">
  <id>libvirt</id>
  <title>libvirt security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229590381"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459009" id="459009" title="bug number 459009" type="bugzilla"/>
  </references>
  <description>libvirt misses some read-only connection checks for certain
methods. This flaw enables local unprivileged users for
example to migrate virtual machines without authentication
(CVE-2008-5086).
</description>
  <pkglist>
    <collection>
        <package name="libvirt" arch="i586" version="0.4.0" release="59.4">
          <filename>libvirt-0.4.0-59.4.i586.rpm</filename>
        </package>
        <package name="libvirt" arch="x86_64" version="0.4.0" release="59.4">
          <filename>libvirt-0.4.0-59.4.x86_64.rpm</filename>
        </package>
        <package name="libvirt-devel" arch="i586" version="0.4.0" release="59.4">
          <filename>libvirt-devel-0.4.0-59.4.i586.rpm</filename>
        </package>
        <package name="libvirt-devel" arch="x86_64" version="0.4.0" release="59.4">
          <filename>libvirt-devel-0.4.0-59.4.x86_64.rpm</filename>
        </package>
        <package name="libvirt-doc" arch="i586" version="0.4.0" release="59.4">
          <filename>libvirt-doc-0.4.0-59.4.i586.rpm</filename>
        </package>
        <package name="libvirt-doc" arch="x86_64" version="0.4.0" release="59.4">
          <filename>libvirt-doc-0.4.0-59.4.x86_64.rpm</filename>
        </package>
        <package name="libvirt-python" arch="i586" version="0.4.0" release="59.4">
          <filename>libvirt-python-0.4.0-59.4.i586.rpm</filename>
        </package>
        <package name="libvirt-python" arch="x86_64" version="0.4.0" release="59.4">
          <filename>libvirt-python-0.4.0-59.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f21e1b891b93d617f47b4af0c9d2d3c9"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="476">
  <id>java-1_6_0-sun</id>
  <title>java-1_6-0-sun: Wrong java-plugin used in Firefox</title>
  <release>openSUSE 11.0</release>
  <issued date="1232466501"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465790" id="465790" title="bug number 465790" type="bugzilla"/>
  </references>
  <description>Switch from old Java plugin (libjavaplugin_oji.so), which
may causes a Firefox freeze to new one (libnpjp2.so) -
bnc#465790.
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-1.6.0.u11-0.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-1.6.0.u11-0.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-alsa-1.6.0.u11-0.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-alsa-1.6.0.u11-0.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-demo-1.6.0.u11-0.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-demo-1.6.0.u11-0.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-devel-1.6.0.u11-0.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-devel-1.6.0.u11-0.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u11-0.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u11-0.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-plugin-1.6.0.u11-0.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="i586" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-src-1.6.0.u11-0.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="x86_64" version="1.6.0.u11" release="0.3">
          <filename>java-1_6_0-sun-src-1.6.0.u11-0.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="930fe302e3c0b3f41065ecae160ac1ee"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="509">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Security update to version 3.0.6</title>
  <release>openSUSE 11.0</release>
  <issued date="1233888754"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=470074" id="470074" title="bug number 470074" type="bugzilla"/>
  </references>
  <description>The Mozilla Firefox browser is updated to version 3.0.6
fixing various security and stability issues.

MFSA 2009-01 / CVE-2009-0352 / CVE-2009-0353: Mozilla
developers identified and fixed several stability bugs in
the browser engine used in Firefox and other Mozilla-based
products. Some of these crashes showed evidence of memory
corruption under certain circumstances and we presume that
with enough effort at least some of these could be
exploited to run arbitrary code.

MFSA 2009-02 / CVE-2009-0354: Mozilla security researcher
moz_bug_r_a4 reported that a chrome XBL method can be used
in conjuction with window.eval to execute arbitrary
JavaScript within the context of another website, violating
the same origin policy. Firefox 2 releases are not affected.

MFSA 2009-03 / CVE-2009-0355: Mozilla security researcher
moz_bug_r_a4 reported that a form input control's type
could be changed during the restoration of a closed tab. An
attacker could set an input control's text value to the
path of a local file whose location was known to the
attacker. If the tab was then closed and the victim
persuaded to re-open it, upon restoring the tab the
attacker could use this vulnerability to change the input
type to file. Scripts in the page could then automatically
submit the form and steal the contents of the user's local
file.

MFSA 2009-04 / CVE-2009-0356: Mozilla security researcher
Georgi Guninski reported that the fix for an earlier
vulnerability reported by Liu Die Yu using local internet
shortcut files to access other sites (MFSA 2008-47) could
be bypassed by redirecting to a privileged about: URI such
as about:plugins. If an attacker could get a victim to
download two files, a malicious HTML file and a .desktop
shortcut file, they could have the HTML document load a
privileged chrome document via the shortcut and both
documents would be treated as same origin. This
vulnerability could potentially be used by an attacker to
inject arbitrary code into the chrome document and execute
with chrome privileges. Because this attack has relatively
high complexity, the severity of this issue was determined
to be moderate.

MFSA 2009-05 / CVE-2009-0357: Developer and Mozilla
community member Wladimir Palant reported that cookies
marked HTTPOnly were readable by JavaScript via the
XMLHttpRequest.getResponseHeader and
XMLHttpRequest.getAllResponseHeaders APIs. This
vulnerability bypasses the security mechanism provided by
the HTTPOnly flag which intends to restrict JavaScript
access to document.cookie. The fix prevents the
XMLHttpRequest feature from accessing the Set-Cookie and
Set-Cookie2 headers of any response whether or not the
HTTPOnly flag was set for those cookies.

MFSA 2009-06 / CVE-2009-0358: Paul Nel reported that
certain HTTP directives to not cache web pages,
Cache-Control: no-store and Cache-Control: no-cache for
HTTPS pages, were being ignored by Firefox 3. On a shared
system, applications relying upon these HTTP directives
could potentially expose private data. Another user on the
system could use this vulnerability to view improperly
cached pages containing private data by navigating the
browser back.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.6" release="0.1">
          <filename>MozillaFirefox-3.0.6-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.6" release="0.1">
          <filename>MozillaFirefox-3.0.6-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.6" release="0.1">
          <filename>MozillaFirefox-3.0.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.6" release="0.1">
          <filename>MozillaFirefox-translations-3.0.6-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.6" release="0.1">
          <filename>MozillaFirefox-translations-3.0.6-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.6" release="0.1">
          <filename>MozillaFirefox-translations-3.0.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.6-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.6-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.6-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.6-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.6-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.6-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.6-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.6-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.6-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.6-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.6" release="0.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.6-0.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="33e8b3a372a563cdd33c79fa926310d4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="510">
  <id>netatalk</id>
  <title>netatalk: papd daemon allowed arbitrary shell command execution</title>
  <release>openSUSE 11.0</release>
  <issued date="1233886867"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=463575" id="463575" title="bug number 463575" type="bugzilla"/>
  </references>
  <description>This update of netatalk adds a filter for characters of
user-supplied data to papd. Prior to this update it was
possible to execute arbitrary shell commands remotely.
(CVE-2008-5718)
</description>
  <pkglist>
    <collection>
        <package name="netatalk" arch="i586" version="2.0.3" release="218.3">
          <filename>netatalk-2.0.3-218.3.i586.rpm</filename>
        </package>
        <package name="netatalk" arch="ppc" version="2.0.3" release="218.3">
          <filename>netatalk-2.0.3-218.3.ppc.rpm</filename>
        </package>
        <package name="netatalk" arch="x86_64" version="2.0.3" release="218.3">
          <filename>netatalk-2.0.3-218.3.x86_64.rpm</filename>
        </package>
        <package name="netatalk-devel" arch="i586" version="2.0.3" release="218.3">
          <filename>netatalk-devel-2.0.3-218.3.i586.rpm</filename>
        </package>
        <package name="netatalk-devel" arch="ppc" version="2.0.3" release="218.3">
          <filename>netatalk-devel-2.0.3-218.3.ppc.rpm</filename>
        </package>
        <package name="netatalk-devel" arch="x86_64" version="2.0.3" release="218.3">
          <filename>netatalk-devel-2.0.3-218.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3c5132461d81ae14351600c00889cb11"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="515">
  <id>sbl</id>
  <title>sbl: fixed buffer overflow (CVE-2009-0310)</title>
  <release>openSUSE 11.0</release>
  <issued date="1234202142"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=436841" id="436841" title="bug number 436841" type="bugzilla"/>
  </references>
  <description>A buffer overflow in the sbl package has been fixed.
Incoming data and authentication-strings have not been
checked properly. CVE-2009-0310 has been assigned to this
issue.
</description>
  <pkglist>
    <collection>
        <package name="sbl" arch="i586" version="3.2.2" release="16.2">
          <filename>sbl-3.2.2-16.2.i586.rpm</filename>
        </package>
        <package name="sbl" arch="ppc" version="3.2.2" release="16.2">
          <filename>sbl-3.2.2-16.2.ppc.rpm</filename>
        </package>
        <package name="sbl" arch="x86_64" version="3.2.2" release="16.2">
          <filename>sbl-3.2.2-16.2.x86_64.rpm</filename>
        </package>
        <package name="sbl-orca" arch="i586" version="3.2.2" release="16.2">
          <filename>sbl-orca-3.2.2-16.2.i586.rpm</filename>
        </package>
        <package name="sbl-orca" arch="ppc" version="3.2.2" release="16.2">
          <filename>sbl-orca-3.2.2-16.2.ppc.rpm</filename>
        </package>
        <package name="sbl-orca" arch="x86_64" version="3.2.2" release="16.2">
          <filename>sbl-orca-3.2.2-16.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2fca0e23149c47d5207ae32a9efe699e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="504">
  <id>dovecot</id>
  <title>dovecot security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1233874963"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=435978" id="435978" title="bug number 435978" type="bugzilla"/>
  </references>
  <description>Dovecot didn't properly treat negative access rights
therefore allowing attackers to bypass intended access
restrictions (CVE-2008-4577)
</description>
  <pkglist>
    <collection>
        <package name="dovecot" arch="i586" version="1.0.13" release="24.2">
          <filename>dovecot-1.0.13-24.2.i586.rpm</filename>
        </package>
        <package name="dovecot" arch="ppc" version="1.0.13" release="24.2">
          <filename>dovecot-1.0.13-24.2.ppc.rpm</filename>
        </package>
        <package name="dovecot" arch="x86_64" version="1.0.13" release="24.2">
          <filename>dovecot-1.0.13-24.2.x86_64.rpm</filename>
        </package>
        <package name="dovecot-devel" arch="i586" version="1.0.13" release="24.2">
          <filename>dovecot-devel-1.0.13-24.2.i586.rpm</filename>
        </package>
        <package name="dovecot-devel" arch="ppc" version="1.0.13" release="24.2">
          <filename>dovecot-devel-1.0.13-24.2.ppc.rpm</filename>
        </package>
        <package name="dovecot-devel" arch="x86_64" version="1.0.13" release="24.2">
          <filename>dovecot-devel-1.0.13-24.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b9472610e9807bc5daba05dd9149d1ce"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="503">
  <id>phpPgAdmin</id>
  <title>phpPgAdmin security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1233875594"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=462762" id="462762" title="bug number 462762" type="bugzilla"/>
  </references>
  <description>Attackers could read arbitrary files due to a directory
traversal vulnerability in phpPgAdmin (CVE-2008-5587).
</description>
  <pkglist>
    <collection>
        <package name="phpPgAdmin" arch="noarch" version="4.2" release="16.2">
          <filename>phpPgAdmin-4.2-16.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e8cbda4f863a874c425082a3856244ba"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="505">
  <id>sblim-sfcb</id>
  <title>sblim-sfcb: Fixed tmprace in genSslCerts.sh script</title>
  <release>openSUSE 11.0</release>
  <issued date="1233852363"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=470203" id="470203" title="bug number 470203" type="bugzilla"/>
  </references>
  <description>A tmp file race condition in the genSslCerts.sh helper
script could be used by local attackers to gain root
privileges. (CVE-2009-0416)
</description>
  <pkglist>
    <collection>
        <package name="sblim-sfcb" arch="i586" version="1.3.0" release="6.2">
          <filename>sblim-sfcb-1.3.0-6.2.i586.rpm</filename>
        </package>
        <package name="sblim-sfcb" arch="ppc" version="1.3.0" release="6.2">
          <filename>sblim-sfcb-1.3.0-6.2.ppc.rpm</filename>
        </package>
        <package name="sblim-sfcb" arch="x86_64" version="1.3.0" release="6.2">
          <filename>sblim-sfcb-1.3.0-6.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ad2fa1a4b6c3da61734395db283f8700"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="506">
  <id>mediawiki</id>
  <title>MediaWiki security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1233880489"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459058" id="459058" title="bug number 459058" type="bugzilla"/>
  </references>
  <description>Missing checks allowed remote attackers to conduct
cross-site scripting (XSS) or cross-site request forgery
(CSRF) attacks against MediaWiki (CVE-2008-5250,
CVE-2008-5252).
</description>
  <pkglist>
    <collection>
        <package name="mediawiki" arch="i586" version="1.11.2" release="36.2">
          <filename>mediawiki-1.11.2-36.2.i586.rpm</filename>
        </package>
        <package name="mediawiki" arch="ppc" version="1.11.2" release="36.2">
          <filename>mediawiki-1.11.2-36.2.ppc.rpm</filename>
        </package>
        <package name="mediawiki" arch="x86_64" version="1.11.2" release="36.2">
          <filename>mediawiki-1.11.2-36.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="807c562d64291ea6387ab78f9092711f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="513">
  <id>virtualbox</id>
  <title>virtualbox security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1234143216"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=448240" id="448240" title="bug number 448240" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=412658" id="412658" title="bug number 412658" type="bugzilla"/>
  </references>
  <description>Insufficient checks on temporary files could allow users to
trick others into overwriting arbitrary files
(CVE-2008-5256).
</description>
  <pkglist>
    <collection>
        <package name="virtualbox-ose" arch="i586" version="1.5.6" release="33.2">
          <filename>virtualbox-ose-1.5.6-33.2.i586.rpm</filename>
        </package>
        <package name="virtualbox-ose" arch="x86_64" version="1.5.6" release="33.2">
          <filename>virtualbox-ose-1.5.6-33.2.x86_64.rpm</filename>
        </package>
        <package name="virtualbox-ose-guest-tools" arch="i586" version="1.5.6" release="33.2">
          <filename>virtualbox-ose-guest-tools-1.5.6-33.2.i586.rpm</filename>
        </package>
        <package name="virtualbox-ose-guest-tools" arch="x86_64" version="1.5.6" release="33.2">
          <filename>virtualbox-ose-guest-tools-1.5.6-33.2.x86_64.rpm</filename>
        </package>
        <package name="xorg-x11-driver-virtualbox-ose" arch="i586" version="1.5.6" release="33.2">
          <filename>xorg-x11-driver-virtualbox-ose-1.5.6-33.2.i586.rpm</filename>
        </package>
        <package name="xorg-x11-driver-virtualbox-ose" arch="x86_64" version="1.5.6" release="33.2">
          <filename>xorg-x11-driver-virtualbox-ose-1.5.6-33.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fd6a7b1f51e96a87a0d34df3c4f6f410"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="507">
  <id>libtiff-devel</id>
  <title>tiff security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1233852061"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=444079" id="444079" title="bug number 444079" type="bugzilla"/>
  </references>
  <description>specially crafted tiff images could lead to allocating
large amounts of memory therefore crashing applications
that process such files (CVE-2008-1586).
</description>
  <pkglist>
    <collection>
        <package name="libtiff-devel" arch="i586" version="3.8.2" release="108.4">
          <filename>libtiff-devel-3.8.2-108.4.i586.rpm</filename>
        </package>
        <package name="libtiff-devel" arch="ppc" version="3.8.2" release="108.4">
          <filename>libtiff-devel-3.8.2-108.4.ppc.rpm</filename>
        </package>
        <package name="libtiff-devel" arch="x86_64" version="3.8.2" release="108.4">
          <filename>libtiff-devel-3.8.2-108.4.x86_64.rpm</filename>
        </package>
        <package name="libtiff-devel-32bit" arch="x86_64" version="3.8.2" release="108.4">
          <filename>libtiff-devel-32bit-3.8.2-108.4.x86_64.rpm</filename>
        </package>
        <package name="libtiff-devel-64bit" arch="ppc" version="3.8.2" release="108.4">
          <filename>libtiff-devel-64bit-3.8.2-108.4.ppc.rpm</filename>
        </package>
        <package name="libtiff3" arch="i586" version="3.8.2" release="108.4">
          <filename>libtiff3-3.8.2-108.4.i586.rpm</filename>
        </package>
        <package name="libtiff3" arch="ppc" version="3.8.2" release="108.4">
          <filename>libtiff3-3.8.2-108.4.ppc.rpm</filename>
        </package>
        <package name="libtiff3" arch="x86_64" version="3.8.2" release="108.4">
          <filename>libtiff3-3.8.2-108.4.x86_64.rpm</filename>
        </package>
        <package name="libtiff3-32bit" arch="x86_64" version="3.8.2" release="108.4">
          <filename>libtiff3-32bit-3.8.2-108.4.x86_64.rpm</filename>
        </package>
        <package name="libtiff3-64bit" arch="ppc" version="3.8.2" release="108.4">
          <filename>libtiff3-64bit-3.8.2-108.4.ppc.rpm</filename>
        </package>
        <package name="tiff" arch="i586" version="3.8.2" release="108.4">
          <filename>tiff-3.8.2-108.4.i586.rpm</filename>
        </package>
        <package name="tiff" arch="ppc" version="3.8.2" release="108.4">
          <filename>tiff-3.8.2-108.4.ppc.rpm</filename>
        </package>
        <package name="tiff" arch="x86_64" version="3.8.2" release="108.4">
          <filename>tiff-3.8.2-108.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="072d138024e34743f78d1cac3ef2407d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="389">
  <id>novell-ipsec-tools</id>
  <title>novell-ipsec-tools security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229805597"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=434748" id="434748" title="bug number 434748" type="bugzilla"/>
  </references>
  <description>Remote attackers could exploit memory leaks in the 'racoon'
daemon to crash it (CVE-2008-3651, CVE-2008-3652)
</description>
  <pkglist>
    <collection>
        <package name="novell-ipsec-tools" arch="i586" version="0.6.3" release="183.2">
          <filename>novell-ipsec-tools-0.6.3-183.2.i586.rpm</filename>
        </package>
        <package name="novell-ipsec-tools" arch="ppc" version="0.6.3" release="183.2">
          <filename>novell-ipsec-tools-0.6.3-183.2.ppc.rpm</filename>
        </package>
        <package name="novell-ipsec-tools" arch="x86_64" version="0.6.3" release="183.2">
          <filename>novell-ipsec-tools-0.6.3-183.2.x86_64.rpm</filename>
        </package>
        <package name="novell-ipsec-tools-devel" arch="i586" version="0.6.3" release="183.2">
          <filename>novell-ipsec-tools-devel-0.6.3-183.2.i586.rpm</filename>
        </package>
        <package name="novell-ipsec-tools-devel" arch="ppc" version="0.6.3" release="183.2">
          <filename>novell-ipsec-tools-devel-0.6.3-183.2.ppc.rpm</filename>
        </package>
        <package name="novell-ipsec-tools-devel" arch="x86_64" version="0.6.3" release="183.2">
          <filename>novell-ipsec-tools-devel-0.6.3-183.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a303752fc89aa145b9540d0af5b9d333"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="492">
  <id>openslp</id>
  <title>openslp: Fix for incorrect DSA signature verification checks OpenSLP</title>
  <release>openSUSE 11.0</release>
  <issued date="1233695228"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465270" id="465270" title="bug number 465270" type="bugzilla"/>
  </references>
  <description>OpenSLP prior this update does not correctly check the
return values of OpenSSL functions.
</description>
  <pkglist>
    <collection>
        <package name="openslp" arch="i586" version="1.2.0" release="143.2">
          <filename>openslp-1.2.0-143.2.i586.rpm</filename>
        </package>
        <package name="openslp" arch="ppc" version="1.2.0" release="143.2">
          <filename>openslp-1.2.0-143.2.ppc.rpm</filename>
        </package>
        <package name="openslp" arch="x86_64" version="1.2.0" release="143.2">
          <filename>openslp-1.2.0-143.2.x86_64.rpm</filename>
        </package>
        <package name="openslp-32bit" arch="x86_64" version="1.2.0" release="143.2">
          <filename>openslp-32bit-1.2.0-143.2.x86_64.rpm</filename>
        </package>
        <package name="openslp-64bit" arch="ppc" version="1.2.0" release="143.2">
          <filename>openslp-64bit-1.2.0-143.2.ppc.rpm</filename>
        </package>
        <package name="openslp-devel" arch="i586" version="1.2.0" release="143.2">
          <filename>openslp-devel-1.2.0-143.2.i586.rpm</filename>
        </package>
        <package name="openslp-devel" arch="ppc" version="1.2.0" release="143.2">
          <filename>openslp-devel-1.2.0-143.2.ppc.rpm</filename>
        </package>
        <package name="openslp-devel" arch="x86_64" version="1.2.0" release="143.2">
          <filename>openslp-devel-1.2.0-143.2.x86_64.rpm</filename>
        </package>
        <package name="openslp-server" arch="i586" version="1.2.0" release="143.2">
          <filename>openslp-server-1.2.0-143.2.i586.rpm</filename>
        </package>
        <package name="openslp-server" arch="ppc" version="1.2.0" release="143.2">
          <filename>openslp-server-1.2.0-143.2.ppc.rpm</filename>
        </package>
        <package name="openslp-server" arch="x86_64" version="1.2.0" release="143.2">
          <filename>openslp-server-1.2.0-143.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5e6bfb2679e73bfd9657cb99a5a8f26d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="524">
  <id>swfdec</id>
  <title>swfdec: Update to 0.6.8 stable bugfix / security release</title>
  <release>openSUSE 11.0</release>
  <issued date="1234459476"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=421004" id="421004" title="bug number 421004" type="bugzilla"/>
  </references>
  <description>The free Flash decoder engine &quot;swfdec&quot; was updated to
version 0.6.8 to fix lots of crashers which are likely
security relevant and could be exploited to remotely
execute code. (CVE-2008-3796)
</description>
  <pkglist>
    <collection>
        <package name="swfdec" arch="i586" version="0.6.8" release="0.1">
          <filename>swfdec-0.6.8-0.1.i586.rpm</filename>
        </package>
        <package name="swfdec" arch="ppc" version="0.6.8" release="0.1">
          <filename>swfdec-0.6.8-0.1.ppc.rpm</filename>
        </package>
        <package name="swfdec" arch="x86_64" version="0.6.8" release="0.1">
          <filename>swfdec-0.6.8-0.1.x86_64.rpm</filename>
        </package>
        <package name="swfdec-devel" arch="i586" version="0.6.8" release="0.1">
          <filename>swfdec-devel-0.6.8-0.1.i586.rpm</filename>
        </package>
        <package name="swfdec-devel" arch="ppc" version="0.6.8" release="0.1">
          <filename>swfdec-devel-0.6.8-0.1.ppc.rpm</filename>
        </package>
        <package name="swfdec-devel" arch="x86_64" version="0.6.8" release="0.1">
          <filename>swfdec-devel-0.6.8-0.1.x86_64.rpm</filename>
        </package>
        <package name="swfdec-doc" arch="i586" version="0.6.8" release="0.1">
          <filename>swfdec-doc-0.6.8-0.1.i586.rpm</filename>
        </package>
        <package name="swfdec-doc" arch="ppc" version="0.6.8" release="0.1">
          <filename>swfdec-doc-0.6.8-0.1.ppc.rpm</filename>
        </package>
        <package name="swfdec-doc" arch="x86_64" version="0.6.8" release="0.1">
          <filename>swfdec-doc-0.6.8-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8a3451a8f32b07b65df2d88b6630d90a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="523">
  <id>audacity</id>
  <title>audacity security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1234450427"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=474258" id="474258" title="bug number 474258" type="bugzilla"/>
  </references>
  <description>Specially crafted GRO files could cause a stack based
buffer in audacity (CVE-2009-0490).
</description>
  <pkglist>
    <collection>
        <package name="audacity" arch="i586" version="1.3.4" release="56.2">
          <filename>audacity-1.3.4-56.2.i586.rpm</filename>
        </package>
        <package name="audacity" arch="ppc" version="1.3.4" release="56.2">
          <filename>audacity-1.3.4-56.2.ppc.rpm</filename>
        </package>
        <package name="audacity" arch="x86_64" version="1.3.4" release="56.2">
          <filename>audacity-1.3.4-56.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d652a310f8366b8af9da6ea7006e9888"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="502">
  <id>libxml2</id>
  <title>libxml2 handling of large documents</title>
  <release>openSUSE 11.0</release>
  <issued date="1233851099"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465528" id="465528" title="bug number 465528" type="bugzilla"/>
  </references>
  <description>A previous security fix for libxml2 caused problems when
processing large xml files. The patch has been reworked so
processing of large files works again.
</description>
  <pkglist>
    <collection>
        <package name="libxml2" arch="i586" version="2.6.32" release="11.8">
          <filename>libxml2-2.6.32-11.8.i586.rpm</filename>
        </package>
        <package name="libxml2" arch="ppc" version="2.6.32" release="11.8">
          <filename>libxml2-2.6.32-11.8.ppc.rpm</filename>
        </package>
        <package name="libxml2" arch="x86_64" version="2.6.32" release="11.8">
          <filename>libxml2-2.6.32-11.8.x86_64.rpm</filename>
        </package>
        <package name="libxml2-32bit" arch="x86_64" version="2.6.32" release="11.8">
          <filename>libxml2-32bit-2.6.32-11.8.x86_64.rpm</filename>
        </package>
        <package name="libxml2-64bit" arch="ppc" version="2.6.32" release="11.8">
          <filename>libxml2-64bit-2.6.32-11.8.ppc.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="i586" version="2.6.32" release="11.8">
          <filename>libxml2-devel-2.6.32-11.8.i586.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="ppc" version="2.6.32" release="11.8">
          <filename>libxml2-devel-2.6.32-11.8.ppc.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="x86_64" version="2.6.32" release="11.8">
          <filename>libxml2-devel-2.6.32-11.8.x86_64.rpm</filename>
        </package>
        <package name="libxml2-devel-32bit" arch="x86_64" version="2.6.32" release="11.8">
          <filename>libxml2-devel-32bit-2.6.32-11.8.x86_64.rpm</filename>
        </package>
        <package name="libxml2-devel-64bit" arch="ppc" version="2.6.32" release="11.8">
          <filename>libxml2-devel-64bit-2.6.32-11.8.ppc.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="i586" version="2.6.32" release="11.8">
          <filename>libxml2-doc-2.6.32-11.8.i586.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="ppc" version="2.6.32" release="11.8">
          <filename>libxml2-doc-2.6.32-11.8.ppc.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="x86_64" version="2.6.32" release="11.8">
          <filename>libxml2-doc-2.6.32-11.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="67a06acd7c58efaef0462b12f9853ce6"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="514">
  <id>java-1_6_0-sun</id>
  <title>Sun Java 1.6: Updated to update 12</title>
  <release>openSUSE 11.0</release>
  <issued date="1234315630"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=472412" id="472412" title="bug number 472412" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465790" id="465790" title="bug number 465790" type="bugzilla"/>
  </references>
  <description>Sun Java 6 u12. This update brings a native 64bit Java
Plugin and a Java Webstart support.

Please install the  java-1_6_0-sun-plugin package for
x86_64.

Warning: As the new Java plugin is not compatible with
Firefox 2, there's no java-1_6_0-sun-plugin package
available for x86_64 version of openSUSE 10.3. Read
http://en.opensuse.org/Java/How_To_use_Java_with_Firefox_on_
64-bit_openSuSE_10.3 for details.
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-1.6.0.u12-1.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-1.6.0.u12-1.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-alsa-1.6.0.u12-1.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-alsa-1.6.0.u12-1.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-demo-1.6.0.u12-1.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-demo-1.6.0.u12-1.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-devel-1.6.0.u12-1.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-devel-1.6.0.u12-1.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u12-1.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u12-1.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-plugin-1.6.0.u12-1.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="x86_64" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-plugin-1.6.0.u12-1.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="i586" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-src-1.6.0.u12-1.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="x86_64" version="1.6.0.u12" release="1.2">
          <filename>java-1_6_0-sun-src-1.6.0.u12-1.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="232b24579dd66457e303b25caadea647"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="508">
  <id>libQtWebKit-devel</id>
  <title>libqt4: collective bug fix update</title>
  <release>openSUSE 11.0</release>
  <issued date="1233865919"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=466421" id="466421" title="bug number 466421" type="bugzilla"/>
  </references>
  <description>- fix threaded mysql issues
- fix qtabbar sizing
- fix path seperators in qmake
- fix crash on QGraphicsProxyWidget deletion
- fix recursive backing store crash
- add QUrl revalidate speedup
- fix crash on clear Focus in QGraphicsProxyWidget
- fix fontconfig handling
- fix zero height pixmaps not being considered null
- fix crash in form layouting code
- add display key support
- fix select() handling in QNativeSocketEngine
</description>
  <pkglist>
    <collection>
        <package name="libQtWebKit-devel" arch="i586" version="4.4.0" release="12.5">
          <filename>libQtWebKit-devel-4.4.0-12.5.i586.rpm</filename>
        </package>
        <package name="libQtWebKit-devel" arch="ppc" version="4.4.0" release="12.5">
          <filename>libQtWebKit-devel-4.4.0-12.5.ppc.rpm</filename>
        </package>
        <package name="libQtWebKit-devel" arch="x86_64" version="4.4.0" release="12.5">
          <filename>libQtWebKit-devel-4.4.0-12.5.x86_64.rpm</filename>
        </package>
        <package name="libQtWebKit4" arch="i586" version="4.4.0" release="12.5">
          <filename>libQtWebKit4-4.4.0-12.5.i586.rpm</filename>
        </package>
        <package name="libQtWebKit4" arch="ppc" version="4.4.0" release="12.5">
          <filename>libQtWebKit4-4.4.0-12.5.ppc.rpm</filename>
        </package>
        <package name="libQtWebKit4" arch="x86_64" version="4.4.0" release="12.5">
          <filename>libQtWebKit4-4.4.0-12.5.x86_64.rpm</filename>
        </package>
        <package name="libqt4" arch="i586" version="4.4.0" release="12.6">
          <filename>libqt4-4.4.0-12.6.i586.rpm</filename>
        </package>
        <package name="libqt4" arch="ppc" version="4.4.0" release="12.6">
          <filename>libqt4-4.4.0-12.6.ppc.rpm</filename>
        </package>
        <package name="libqt4" arch="x86_64" version="4.4.0" release="12.6">
          <filename>libqt4-4.4.0-12.6.x86_64.rpm</filename>
        </package>
        <package name="libqt4-32bit" arch="x86_64" version="4.4.0" release="12.6">
          <filename>libqt4-32bit-4.4.0-12.6.x86_64.rpm</filename>
        </package>
        <package name="libqt4-64bit" arch="ppc" version="4.4.0" release="12.6">
          <filename>libqt4-64bit-4.4.0-12.6.ppc.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="i586" version="4.4.0" release="12.6">
          <filename>libqt4-devel-4.4.0-12.6.i586.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="ppc" version="4.4.0" release="12.6">
          <filename>libqt4-devel-4.4.0-12.6.ppc.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="x86_64" version="4.4.0" release="12.6">
          <filename>libqt4-devel-4.4.0-12.6.x86_64.rpm</filename>
        </package>
        <package name="libqt4-devel-doc" arch="i586" version="4.4.0" release="12.5">
          <filename>libqt4-devel-doc-4.4.0-12.5.i586.rpm</filename>
        </package>
        <package name="libqt4-devel-doc" arch="ppc" version="4.4.0" release="12.5">
          <filename>libqt4-devel-doc-4.4.0-12.5.ppc.rpm</filename>
        </package>
        <package name="libqt4-devel-doc" arch="x86_64" version="4.4.0" release="12.5">
          <filename>libqt4-devel-doc-4.4.0-12.5.x86_64.rpm</filename>
        </package>
        <package name="libqt4-devel-doc-data" arch="noarch" version="4.4.0" release="12.4">
          <filename>libqt4-devel-doc-data-4.4.0-12.4.noarch.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="i586" version="4.4.0" release="12.6">
          <filename>libqt4-qt3support-4.4.0-12.6.i586.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="ppc" version="4.4.0" release="12.6">
          <filename>libqt4-qt3support-4.4.0-12.6.ppc.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="x86_64" version="4.4.0" release="12.6">
          <filename>libqt4-qt3support-4.4.0-12.6.x86_64.rpm</filename>
        </package>
        <package name="libqt4-qt3support-32bit" arch="x86_64" version="4.4.0" release="12.6">
          <filename>libqt4-qt3support-32bit-4.4.0-12.6.x86_64.rpm</filename>
        </package>
        <package name="libqt4-qt3support-64bit" arch="ppc" version="4.4.0" release="12.6">
          <filename>libqt4-qt3support-64bit-4.4.0-12.6.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="i586" version="4.4.0" release="12.6">
          <filename>libqt4-sql-4.4.0-12.6.i586.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="ppc" version="4.4.0" release="12.6">
          <filename>libqt4-sql-4.4.0-12.6.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="x86_64" version="4.4.0" release="12.6">
          <filename>libqt4-sql-4.4.0-12.6.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-32bit" arch="x86_64" version="4.4.0" release="12.6">
          <filename>libqt4-sql-32bit-4.4.0-12.6.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-64bit" arch="ppc" version="4.4.0" release="12.6">
          <filename>libqt4-sql-64bit-4.4.0-12.6.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-mysql" arch="i586" version="4.4.0" release="5.4">
          <filename>libqt4-sql-mysql-4.4.0-5.4.i586.rpm</filename>
        </package>
        <package name="libqt4-sql-mysql" arch="ppc" version="4.4.0" release="5.4">
          <filename>libqt4-sql-mysql-4.4.0-5.4.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-mysql" arch="x86_64" version="4.4.0" release="5.4">
          <filename>libqt4-sql-mysql-4.4.0-5.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-postgresql" arch="i586" version="4.4.0" release="5.4">
          <filename>libqt4-sql-postgresql-4.4.0-5.4.i586.rpm</filename>
        </package>
        <package name="libqt4-sql-postgresql" arch="ppc" version="4.4.0" release="5.4">
          <filename>libqt4-sql-postgresql-4.4.0-5.4.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-postgresql" arch="x86_64" version="4.4.0" release="5.4">
          <filename>libqt4-sql-postgresql-4.4.0-5.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="i586" version="4.4.0" release="12.6">
          <filename>libqt4-sql-sqlite-4.4.0-12.6.i586.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="ppc" version="4.4.0" release="12.6">
          <filename>libqt4-sql-sqlite-4.4.0-12.6.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="x86_64" version="4.4.0" release="12.6">
          <filename>libqt4-sql-sqlite-4.4.0-12.6.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-unixODBC" arch="i586" version="4.4.0" release="5.4">
          <filename>libqt4-sql-unixODBC-4.4.0-5.4.i586.rpm</filename>
        </package>
        <package name="libqt4-sql-unixODBC" arch="ppc" version="4.4.0" release="5.4">
          <filename>libqt4-sql-unixODBC-4.4.0-5.4.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-unixODBC" arch="x86_64" version="4.4.0" release="5.4">
          <filename>libqt4-sql-unixODBC-4.4.0-5.4.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="i586" version="4.4.0" release="12.6">
          <filename>libqt4-x11-4.4.0-12.6.i586.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="ppc" version="4.4.0" release="12.6">
          <filename>libqt4-x11-4.4.0-12.6.ppc.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="x86_64" version="4.4.0" release="12.6">
          <filename>libqt4-x11-4.4.0-12.6.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11-32bit" arch="x86_64" version="4.4.0" release="12.6">
          <filename>libqt4-x11-32bit-4.4.0-12.6.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11-64bit" arch="ppc" version="4.4.0" release="12.6">
          <filename>libqt4-x11-64bit-4.4.0-12.6.ppc.rpm</filename>
        </package>
        <package name="qt4-x11-tools" arch="i586" version="4.4.0" release="12.5">
          <filename>qt4-x11-tools-4.4.0-12.5.i586.rpm</filename>
        </package>
        <package name="qt4-x11-tools" arch="ppc" version="4.4.0" release="12.5">
          <filename>qt4-x11-tools-4.4.0-12.5.ppc.rpm</filename>
        </package>
        <package name="qt4-x11-tools" arch="x86_64" version="4.4.0" release="12.5">
          <filename>qt4-x11-tools-4.4.0-12.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fa96b6c916a13a1427360b1a31dbfc42"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="520">
  <id>libipulog</id>
  <title>ulogd: make logrotation work</title>
  <release>openSUSE 11.0</release>
  <issued date="1234356769"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=468419" id="468419" title="bug number 468419" type="bugzilla"/>
  </references>
  <description>This update provides a correction of the user and groupname
in the /etc/logrotate.d/ulogd file (bnc#468419).
</description>
  <pkglist>
    <collection>
        <package name="libipulog" arch="i586" version="1.24" release="101.2">
          <filename>libipulog-1.24-101.2.i586.rpm</filename>
        </package>
        <package name="libipulog" arch="ppc" version="1.24" release="101.2">
          <filename>libipulog-1.24-101.2.ppc.rpm</filename>
        </package>
        <package name="libipulog" arch="x86_64" version="1.24" release="101.2">
          <filename>libipulog-1.24-101.2.x86_64.rpm</filename>
        </package>
        <package name="ulogd" arch="i586" version="1.24" release="101.2">
          <filename>ulogd-1.24-101.2.i586.rpm</filename>
        </package>
        <package name="ulogd" arch="ppc" version="1.24" release="101.2">
          <filename>ulogd-1.24-101.2.ppc.rpm</filename>
        </package>
        <package name="ulogd" arch="x86_64" version="1.24" release="101.2">
          <filename>ulogd-1.24-101.2.x86_64.rpm</filename>
        </package>
        <package name="ulogd-mysql" arch="i586" version="1.24" release="101.2">
          <filename>ulogd-mysql-1.24-101.2.i586.rpm</filename>
        </package>
        <package name="ulogd-mysql" arch="ppc" version="1.24" release="101.2">
          <filename>ulogd-mysql-1.24-101.2.ppc.rpm</filename>
        </package>
        <package name="ulogd-mysql" arch="x86_64" version="1.24" release="101.2">
          <filename>ulogd-mysql-1.24-101.2.x86_64.rpm</filename>
        </package>
        <package name="ulogd-pcap" arch="i586" version="1.24" release="101.2">
          <filename>ulogd-pcap-1.24-101.2.i586.rpm</filename>
        </package>
        <package name="ulogd-pcap" arch="ppc" version="1.24" release="101.2">
          <filename>ulogd-pcap-1.24-101.2.ppc.rpm</filename>
        </package>
        <package name="ulogd-pcap" arch="x86_64" version="1.24" release="101.2">
          <filename>ulogd-pcap-1.24-101.2.x86_64.rpm</filename>
        </package>
        <package name="ulogd-pgsql" arch="i586" version="1.24" release="101.2">
          <filename>ulogd-pgsql-1.24-101.2.i586.rpm</filename>
        </package>
        <package name="ulogd-pgsql" arch="ppc" version="1.24" release="101.2">
          <filename>ulogd-pgsql-1.24-101.2.ppc.rpm</filename>
        </package>
        <package name="ulogd-pgsql" arch="x86_64" version="1.24" release="101.2">
          <filename>ulogd-pgsql-1.24-101.2.x86_64.rpm</filename>
        </package>
        <package name="ulogd-sqlite" arch="i586" version="1.24" release="101.2">
          <filename>ulogd-sqlite-1.24-101.2.i586.rpm</filename>
        </package>
        <package name="ulogd-sqlite" arch="ppc" version="1.24" release="101.2">
          <filename>ulogd-sqlite-1.24-101.2.ppc.rpm</filename>
        </package>
        <package name="ulogd-sqlite" arch="x86_64" version="1.24" release="101.2">
          <filename>ulogd-sqlite-1.24-101.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="edccb6f74b7805eeb37eaeb2b261a565"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="465">
  <id>dhcp</id>
  <title>dhcp: denial of service</title>
  <release>openSUSE 11.0</release>
  <issued date="1232932492"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415346" id="415346" title="bug number 415346" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=410905" id="410905" title="bug number 410905" type="bugzilla"/>
  </references>
  <description>This update contains a backported patch from dhcp-3.0.7 to
fix a buffer overflow which could lead to a
denial-of-service condition in cases when the dhcp server
is configured to send many DHCP options to clients.
(CVE-2007-0062)
</description>
  <pkglist>
    <collection>
        <package name="dhcp" arch="i586" version="3.0.6" release="86.2">
          <filename>dhcp-3.0.6-86.2.i586.rpm</filename>
        </package>
        <package name="dhcp" arch="ppc" version="3.0.6" release="86.2">
          <filename>dhcp-3.0.6-86.2.ppc.rpm</filename>
        </package>
        <package name="dhcp" arch="x86_64" version="3.0.6" release="86.2">
          <filename>dhcp-3.0.6-86.2.x86_64.rpm</filename>
        </package>
        <package name="dhcp-client" arch="i586" version="3.0.6" release="86.2">
          <filename>dhcp-client-3.0.6-86.2.i586.rpm</filename>
        </package>
        <package name="dhcp-client" arch="ppc" version="3.0.6" release="86.2">
          <filename>dhcp-client-3.0.6-86.2.ppc.rpm</filename>
        </package>
        <package name="dhcp-client" arch="x86_64" version="3.0.6" release="86.2">
          <filename>dhcp-client-3.0.6-86.2.x86_64.rpm</filename>
        </package>
        <package name="dhcp-devel" arch="i586" version="3.0.6" release="86.2">
          <filename>dhcp-devel-3.0.6-86.2.i586.rpm</filename>
        </package>
        <package name="dhcp-devel" arch="ppc" version="3.0.6" release="86.2">
          <filename>dhcp-devel-3.0.6-86.2.ppc.rpm</filename>
        </package>
        <package name="dhcp-devel" arch="x86_64" version="3.0.6" release="86.2">
          <filename>dhcp-devel-3.0.6-86.2.x86_64.rpm</filename>
        </package>
        <package name="dhcp-relay" arch="i586" version="3.0.6" release="86.2">
          <filename>dhcp-relay-3.0.6-86.2.i586.rpm</filename>
        </package>
        <package name="dhcp-relay" arch="ppc" version="3.0.6" release="86.2">
          <filename>dhcp-relay-3.0.6-86.2.ppc.rpm</filename>
        </package>
        <package name="dhcp-relay" arch="x86_64" version="3.0.6" release="86.2">
          <filename>dhcp-relay-3.0.6-86.2.x86_64.rpm</filename>
        </package>
        <package name="dhcp-server" arch="i586" version="3.0.6" release="86.2">
          <filename>dhcp-server-3.0.6-86.2.i586.rpm</filename>
        </package>
        <package name="dhcp-server" arch="ppc" version="3.0.6" release="86.2">
          <filename>dhcp-server-3.0.6-86.2.ppc.rpm</filename>
        </package>
        <package name="dhcp-server" arch="x86_64" version="3.0.6" release="86.2">
          <filename>dhcp-server-3.0.6-86.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c12520ca529dbde2351ff541d4852044"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="439">
  <id>ntp</id>
  <title>ntp does not check return value of EVP_VerifyFinal</title>
  <release>openSUSE 11.0</release>
  <issued date="1232376315"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459662" id="459662" title="bug number 459662" type="bugzilla"/>
  </references>
  <description>This update of ntp improves a check for the return value of
openssl's function EVP_VerifyFinal(). (CVE-2009-0021)
</description>
  <pkglist>
    <collection>
        <package name="ntp" arch="i586" version="4.2.4p4" release="44.2">
          <filename>ntp-4.2.4p4-44.2.i586.rpm</filename>
        </package>
        <package name="ntp" arch="ppc" version="4.2.4p4" release="44.2">
          <filename>ntp-4.2.4p4-44.2.ppc.rpm</filename>
        </package>
        <package name="ntp" arch="x86_64" version="4.2.4p4" release="44.2">
          <filename>ntp-4.2.4p4-44.2.x86_64.rpm</filename>
        </package>
        <package name="ntp-doc" arch="i586" version="4.2.4p4" release="44.2">
          <filename>ntp-doc-4.2.4p4-44.2.i586.rpm</filename>
        </package>
        <package name="ntp-doc" arch="ppc" version="4.2.4p4" release="44.2">
          <filename>ntp-doc-4.2.4p4-44.2.ppc.rpm</filename>
        </package>
        <package name="ntp-doc" arch="x86_64" version="4.2.4p4" release="44.2">
          <filename>ntp-doc-4.2.4p4-44.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1ab0b94032a4fc59c1c2c4e35fc01d57"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="539">
  <id>wireshark</id>
  <title>wireshark: fixed capture file crashes (CVE-2009-0599, CVE-2009-0600) and a format string vulnerability (CVE-2009-0601)</title>
  <release>openSUSE 11.0</release>
  <issued date="1234978753"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=473828" id="473828" title="bug number 473828" type="bugzilla"/>
  </references>
  <description>wireshark: fixed crashes while reading capture files
containing NetScreen data (CVE-2009-0599), Tektronix K12
capture files (CVE-2009-0600) and and a format string
vulnerability (CVE-2009-0601).
</description>
  <pkglist>
    <collection>
        <package name="wireshark" arch="i586" version="1.0.0" release="17.9">
          <filename>wireshark-1.0.0-17.9.i586.rpm</filename>
        </package>
        <package name="wireshark" arch="ppc" version="1.0.0" release="17.9">
          <filename>wireshark-1.0.0-17.9.ppc.rpm</filename>
        </package>
        <package name="wireshark" arch="x86_64" version="1.0.0" release="17.9">
          <filename>wireshark-1.0.0-17.9.x86_64.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="i586" version="1.0.0" release="17.9">
          <filename>wireshark-devel-1.0.0-17.9.i586.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="ppc" version="1.0.0" release="17.9">
          <filename>wireshark-devel-1.0.0-17.9.ppc.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="x86_64" version="1.0.0" release="17.9">
          <filename>wireshark-devel-1.0.0-17.9.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b19b2e1ea42ada5a9dadfc729517ae69"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="528">
  <id>libpng-devel</id>
  <title>libpng: fixed allocation mistake (CVE-2009-0040)</title>
  <release>openSUSE 11.0</release>
  <issued date="1234868735"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=472745" id="472745" title="bug number 472745" type="bugzilla"/>
  </references>
  <description>A allocation mistake in libpng's  pngread.c has been fixed.
CVE-2009-0040 has been assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="libpng-devel" arch="i586" version="1.2.26" release="14.6">
          <filename>libpng-devel-1.2.26-14.6.i586.rpm</filename>
        </package>
        <package name="libpng-devel" arch="ppc" version="1.2.26" release="14.6">
          <filename>libpng-devel-1.2.26-14.6.ppc.rpm</filename>
        </package>
        <package name="libpng-devel" arch="x86_64" version="1.2.26" release="14.6">
          <filename>libpng-devel-1.2.26-14.6.x86_64.rpm</filename>
        </package>
        <package name="libpng-devel-32bit" arch="x86_64" version="1.2.26" release="14.6">
          <filename>libpng-devel-32bit-1.2.26-14.6.x86_64.rpm</filename>
        </package>
        <package name="libpng-devel-64bit" arch="ppc" version="1.2.26" release="14.6">
          <filename>libpng-devel-64bit-1.2.26-14.6.ppc.rpm</filename>
        </package>
        <package name="libpng12-0" arch="i586" version="1.2.26" release="14.6">
          <filename>libpng12-0-1.2.26-14.6.i586.rpm</filename>
        </package>
        <package name="libpng12-0" arch="ppc" version="1.2.26" release="14.6">
          <filename>libpng12-0-1.2.26-14.6.ppc.rpm</filename>
        </package>
        <package name="libpng12-0" arch="x86_64" version="1.2.26" release="14.6">
          <filename>libpng12-0-1.2.26-14.6.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-32bit" arch="x86_64" version="1.2.26" release="14.6">
          <filename>libpng12-0-32bit-1.2.26-14.6.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-64bit" arch="ppc" version="1.2.26" release="14.6">
          <filename>libpng12-0-64bit-1.2.26-14.6.ppc.rpm</filename>
        </package>
        <package name="libpng3" arch="i586" version="1.2.26" release="14.6">
          <filename>libpng3-1.2.26-14.6.i586.rpm</filename>
        </package>
        <package name="libpng3" arch="ppc" version="1.2.26" release="14.6">
          <filename>libpng3-1.2.26-14.6.ppc.rpm</filename>
        </package>
        <package name="libpng3" arch="x86_64" version="1.2.26" release="14.6">
          <filename>libpng3-1.2.26-14.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a812820c670eafc24704125a7cb48a19"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="531">
  <id>nagios</id>
  <title>nagios: fixed a CSRF bug (CVE-2008-5028) and an authentication bypass (CVE-2008-5027)</title>
  <release>openSUSE 11.0</release>
  <issued date="1234908340"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=442275" id="442275" title="bug number 442275" type="bugzilla"/>
  </references>
  <description>A CSRF bug in nagios' cmd.cgi (CVE-2008-5028) has been
fixed as well as an authentication bypass (CVE-2008-5027).
</description>
  <pkglist>
    <collection>
        <package name="nagios" arch="i586" version="3.0.6" release="1.1">
          <filename>nagios-3.0.6-1.1.i586.rpm</filename>
        </package>
        <package name="nagios" arch="ppc" version="3.0.6" release="1.1">
          <filename>nagios-3.0.6-1.1.ppc.rpm</filename>
        </package>
        <package name="nagios" arch="x86_64" version="3.0.6" release="1.1">
          <filename>nagios-3.0.6-1.1.x86_64.rpm</filename>
        </package>
        <package name="nagios-devel" arch="i586" version="3.0.6" release="1.1">
          <filename>nagios-devel-3.0.6-1.1.i586.rpm</filename>
        </package>
        <package name="nagios-devel" arch="ppc" version="3.0.6" release="1.1">
          <filename>nagios-devel-3.0.6-1.1.ppc.rpm</filename>
        </package>
        <package name="nagios-devel" arch="x86_64" version="3.0.6" release="1.1">
          <filename>nagios-devel-3.0.6-1.1.x86_64.rpm</filename>
        </package>
        <package name="nagios-www" arch="i586" version="3.0.6" release="1.1">
          <filename>nagios-www-3.0.6-1.1.i586.rpm</filename>
        </package>
        <package name="nagios-www" arch="ppc" version="3.0.6" release="1.1">
          <filename>nagios-www-3.0.6-1.1.ppc.rpm</filename>
        </package>
        <package name="nagios-www" arch="x86_64" version="3.0.6" release="1.1">
          <filename>nagios-www-3.0.6-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="19eded2f1b85d76a42034869fdd319b4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="427">
  <id>pam_mount</id>
  <title>pam_mount: fixes passwdehd script symlink attack</title>
  <release>openSUSE 11.0</release>
  <issued date="1231898511"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465303" id="465303" title="bug number 465303" type="bugzilla"/>
  </references>
  <description>This update fixes the temp-flle handling in the passwdehd
script that allowed a symlink attack. (CVE-2008-5138)
(script was disabled for 11.0 and 11.1)
</description>
  <pkglist>
    <collection>
        <package name="pam_mount" arch="i586" version="0.35" release="15.8">
          <filename>pam_mount-0.35-15.8.i586.rpm</filename>
        </package>
        <package name="pam_mount" arch="ppc" version="0.35" release="15.8">
          <filename>pam_mount-0.35-15.8.ppc.rpm</filename>
        </package>
        <package name="pam_mount" arch="x86_64" version="0.35" release="15.8">
          <filename>pam_mount-0.35-15.8.x86_64.rpm</filename>
        </package>
        <package name="pam_mount-32bit" arch="x86_64" version="0.35" release="15.8">
          <filename>pam_mount-32bit-0.35-15.8.x86_64.rpm</filename>
        </package>
        <package name="pam_mount-64bit" arch="ppc" version="0.35" release="15.8">
          <filename>pam_mount-64bit-0.35-15.8.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9c06794ea5745d7138bf5a0d2b02cef6"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="547">
  <id>keyutils</id>
  <title>keyutils: Missing package for previous samba update</title>
  <release>openSUSE 11.0</release>
  <issued date="1212781203"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=464995" id="464995" title="bug number 464995" type="bugzilla"/>
  </references>
  <description>keyutils and keyutils-libs are now required by the
&quot;cifs-mount&quot; package of the last samba update.

This update just provides them via the update channel, they
are unchanged compared to the DVD/FTP media.
</description>
  <pkglist>
    <collection>
        <package name="keyutils" arch="i586" version="1.2" release="80.1">
          <filename>keyutils-1.2-80.1.i586.rpm</filename>
        </package>
        <package name="keyutils" arch="ppc" version="1.2" release="80.1">
          <filename>keyutils-1.2-80.1.ppc.rpm</filename>
        </package>
        <package name="keyutils" arch="x86_64" version="1.2" release="80.1">
          <filename>keyutils-1.2-80.1.x86_64.rpm</filename>
        </package>
        <package name="keyutils-devel" arch="i586" version="1.2" release="80.1">
          <filename>keyutils-devel-1.2-80.1.i586.rpm</filename>
        </package>
        <package name="keyutils-devel" arch="ppc" version="1.2" release="80.1">
          <filename>keyutils-devel-1.2-80.1.ppc.rpm</filename>
        </package>
        <package name="keyutils-devel" arch="x86_64" version="1.2" release="80.1">
          <filename>keyutils-devel-1.2-80.1.x86_64.rpm</filename>
        </package>
        <package name="keyutils-libs" arch="i586" version="1.2" release="80.1">
          <filename>keyutils-libs-1.2-80.1.i586.rpm</filename>
        </package>
        <package name="keyutils-libs" arch="ppc" version="1.2" release="80.1">
          <filename>keyutils-libs-1.2-80.1.ppc.rpm</filename>
        </package>
        <package name="keyutils-libs" arch="x86_64" version="1.2" release="80.1">
          <filename>keyutils-libs-1.2-80.1.x86_64.rpm</filename>
        </package>
        <package name="keyutils-libs-32bit" arch="x86_64" version="1.2" release="80.1">
          <filename>keyutils-libs-32bit-1.2-80.1.x86_64.rpm</filename>
        </package>
        <package name="keyutils-libs-64bit" arch="ppc" version="1.2" release="80.1">
          <filename>keyutils-libs-64bit-1.2-80.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="05c24508b48c6d37bc55ef2ebd8caf3b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="541">
  <id>eID-belgium</id>
  <title>eID-belgium uses EVP_VerifyFinal() incorrectly (CVE-2009-0049)</title>
  <release>openSUSE 11.0</release>
  <issued date="1234978333"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=468866" id="468866" title="bug number 468866" type="bugzilla"/>
  </references>
  <description>eID-belgium uses EVP_VerifyFinal() incorrectly
(CVE-2009-0049) which allowed bypassing the validation of
the certificate chain.
</description>
  <pkglist>
    <collection>
        <package name="eID-belgium" arch="i586" version="2.6.0" release="73.2">
          <filename>eID-belgium-2.6.0-73.2.i586.rpm</filename>
        </package>
        <package name="eID-belgium" arch="ppc" version="2.6.0" release="73.2">
          <filename>eID-belgium-2.6.0-73.2.ppc.rpm</filename>
        </package>
        <package name="eID-belgium" arch="x86_64" version="2.6.0" release="73.2">
          <filename>eID-belgium-2.6.0-73.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="31b49f5e5d89220061c13b7ea115b027"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="560">
  <id>flash-player</id>
  <title>flash-player security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1235608989"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=476907" id="476907" title="bug number 476907" type="bugzilla"/>
  </references>
  <description>Specially crafted swf files could cause a buffer overflow
in flash-player. Attackers could potentially exploit that
to execute code on the victim's machine (CVE-2009-0519,
CVE-2009-0520, CVE-2009-0114, CVE-2009-0521).
</description>
  <pkglist>
    <collection>
        <package name="flash-player" arch="i586" version="9.0.159.0" release="0.1">
          <filename>flash-player-9.0.159.0-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a0ace5bcb5c64459ee40daf739ec42e0"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="558">
  <id>libpng-devel</id>
  <title>libpng: fixed allocation mistake (CVE-2009-0040)</title>
  <release>openSUSE 11.0</release>
  <issued date="1235585610"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=472745" id="472745" title="bug number 472745" type="bugzilla"/>
  </references>
  <description>A allocation mistake in libpng's pngread.c has been fixed
(CVE-2009-0040). The previous update was using an
incomplete patch so it needed to be reissued.
</description>
  <pkglist>
    <collection>
        <package name="libpng-devel" arch="i586" version="1.2.26" release="14.8">
          <filename>libpng-devel-1.2.26-14.8.i586.rpm</filename>
        </package>
        <package name="libpng-devel" arch="ppc" version="1.2.26" release="14.8">
          <filename>libpng-devel-1.2.26-14.8.ppc.rpm</filename>
        </package>
        <package name="libpng-devel" arch="x86_64" version="1.2.26" release="14.8">
          <filename>libpng-devel-1.2.26-14.8.x86_64.rpm</filename>
        </package>
        <package name="libpng-devel-32bit" arch="x86_64" version="1.2.26" release="14.8">
          <filename>libpng-devel-32bit-1.2.26-14.8.x86_64.rpm</filename>
        </package>
        <package name="libpng-devel-64bit" arch="ppc" version="1.2.26" release="14.8">
          <filename>libpng-devel-64bit-1.2.26-14.8.ppc.rpm</filename>
        </package>
        <package name="libpng12-0" arch="i586" version="1.2.26" release="14.8">
          <filename>libpng12-0-1.2.26-14.8.i586.rpm</filename>
        </package>
        <package name="libpng12-0" arch="ppc" version="1.2.26" release="14.8">
          <filename>libpng12-0-1.2.26-14.8.ppc.rpm</filename>
        </package>
        <package name="libpng12-0" arch="x86_64" version="1.2.26" release="14.8">
          <filename>libpng12-0-1.2.26-14.8.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-32bit" arch="x86_64" version="1.2.26" release="14.8">
          <filename>libpng12-0-32bit-1.2.26-14.8.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-64bit" arch="ppc" version="1.2.26" release="14.8">
          <filename>libpng12-0-64bit-1.2.26-14.8.ppc.rpm</filename>
        </package>
        <package name="libpng3" arch="i586" version="1.2.26" release="14.8">
          <filename>libpng3-1.2.26-14.8.i586.rpm</filename>
        </package>
        <package name="libpng3" arch="ppc" version="1.2.26" release="14.8">
          <filename>libpng3-1.2.26-14.8.ppc.rpm</filename>
        </package>
        <package name="libpng3" arch="x86_64" version="1.2.26" release="14.8">
          <filename>libpng3-1.2.26-14.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2321d30d371b0fa595359e20f7ce3f3c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="530">
  <id>curl</id>
  <title>curl: Arbitrary file access (CVE-2009-0037) has been fixed.</title>
  <release>openSUSE 11.0</release>
  <issued date="1234890220"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=475103" id="475103" title="bug number 475103" type="bugzilla"/>
  </references>
  <description>Arbitrary file access via HTTP-redirect has been fixed in
curl. CVE-2009-0037 has been assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="curl" arch="i586" version="7.18.1" release="18.2">
          <filename>curl-7.18.1-18.2.i586.rpm</filename>
        </package>
        <package name="curl" arch="ppc" version="7.18.1" release="18.2">
          <filename>curl-7.18.1-18.2.ppc.rpm</filename>
        </package>
        <package name="curl" arch="x86_64" version="7.18.1" release="18.2">
          <filename>curl-7.18.1-18.2.x86_64.rpm</filename>
        </package>
        <package name="libcurl-devel" arch="i586" version="7.18.1" release="18.2">
          <filename>libcurl-devel-7.18.1-18.2.i586.rpm</filename>
        </package>
        <package name="libcurl-devel" arch="ppc" version="7.18.1" release="18.2">
          <filename>libcurl-devel-7.18.1-18.2.ppc.rpm</filename>
        </package>
        <package name="libcurl-devel" arch="x86_64" version="7.18.1" release="18.2">
          <filename>libcurl-devel-7.18.1-18.2.x86_64.rpm</filename>
        </package>
        <package name="libcurl4" arch="i586" version="7.18.1" release="18.2">
          <filename>libcurl4-7.18.1-18.2.i586.rpm</filename>
        </package>
        <package name="libcurl4" arch="ppc" version="7.18.1" release="18.2">
          <filename>libcurl4-7.18.1-18.2.ppc.rpm</filename>
        </package>
        <package name="libcurl4" arch="x86_64" version="7.18.1" release="18.2">
          <filename>libcurl4-7.18.1-18.2.x86_64.rpm</filename>
        </package>
        <package name="libcurl4-32bit" arch="x86_64" version="7.18.1" release="18.2">
          <filename>libcurl4-32bit-7.18.1-18.2.x86_64.rpm</filename>
        </package>
        <package name="libcurl4-64bit" arch="ppc" version="7.18.1" release="18.2">
          <filename>libcurl4-64bit-7.18.1-18.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="483cd936b357a16ed8cf98eb89cf66bb"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="570">
  <id>libmikmod</id>
  <title>libmikmod security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1235752153"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=468760" id="468760" title="bug number 468760" type="bugzilla"/>
  </references>
  <description>Specially crafted XM files or playing mod files with
varying number of channels could crash applications using
libmikmod (CVE-2009-0179, CVE-2007-6720).
</description>
  <pkglist>
    <collection>
        <package name="libmikmod" arch="i586" version="3.1.11a" release="84.3">
          <filename>libmikmod-3.1.11a-84.3.i586.rpm</filename>
        </package>
        <package name="libmikmod" arch="ppc" version="3.1.11a" release="84.3">
          <filename>libmikmod-3.1.11a-84.3.ppc.rpm</filename>
        </package>
        <package name="libmikmod" arch="x86_64" version="3.1.11a" release="84.3">
          <filename>libmikmod-3.1.11a-84.3.x86_64.rpm</filename>
        </package>
        <package name="libmikmod-32bit" arch="x86_64" version="3.1.11a" release="84.3">
          <filename>libmikmod-32bit-3.1.11a-84.3.x86_64.rpm</filename>
        </package>
        <package name="libmikmod-64bit" arch="ppc" version="3.1.11a" release="84.3">
          <filename>libmikmod-64bit-3.1.11a-84.3.ppc.rpm</filename>
        </package>
        <package name="libmikmod-devel" arch="i586" version="3.1.11a" release="84.3">
          <filename>libmikmod-devel-3.1.11a-84.3.i586.rpm</filename>
        </package>
        <package name="libmikmod-devel" arch="ppc" version="3.1.11a" release="84.3">
          <filename>libmikmod-devel-3.1.11a-84.3.ppc.rpm</filename>
        </package>
        <package name="libmikmod-devel" arch="x86_64" version="3.1.11a" release="84.3">
          <filename>libmikmod-devel-3.1.11a-84.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b4f0fdeff4de0c2f5d70187fa57f487f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="574">
  <id>psi</id>
  <title>psi security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1236273641"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=479815" id="479815" title="bug number 479815" type="bugzilla"/>
  </references>
  <description>Remote attackers could crash the Psi instant messaging
client via the file transfer port (CVE-2008-6393).
</description>
  <pkglist>
    <collection>
        <package name="psi" arch="i586" version="0.11.99.1" release="22.2">
          <filename>psi-0.11.99.1-22.2.i586.rpm</filename>
        </package>
        <package name="psi" arch="ppc" version="0.11.99.1" release="22.2">
          <filename>psi-0.11.99.1-22.2.ppc.rpm</filename>
        </package>
        <package name="psi" arch="x86_64" version="0.11.99.1" release="22.2">
          <filename>psi-0.11.99.1-22.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a5c0a2df14cab64172e080cf34313719"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="572">
  <id>optipng</id>
  <title>optipng security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1236166808"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=447453" id="447453" title="bug number 447453" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=479067" id="479067" title="bug number 479067" type="bugzilla"/>
  </references>
  <description>Specially crafted BMP files could overflow a buffer in
optipng (CVE-2008-5101), specially crafted GIF files could
crash optipng (CVE-2009-0749).
</description>
  <pkglist>
    <collection>
        <package name="optipng" arch="i586" version="0.6.2" release="2.2">
          <filename>optipng-0.6.2-2.2.i586.rpm</filename>
        </package>
        <package name="optipng" arch="ppc" version="0.6.2" release="2.2">
          <filename>optipng-0.6.2-2.2.ppc.rpm</filename>
        </package>
        <package name="optipng" arch="x86_64" version="0.6.2" release="2.2">
          <filename>optipng-0.6.2-2.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="af3b4d9fa7bc176fdabe13c7e21a5c64"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="591">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Security update to version 3.0.7</title>
  <release>openSUSE 11.0</release>
  <issued date="1236885148"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478625" id="478625" title="bug number 478625" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465284" id="465284" title="bug number 465284" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=479610" id="479610" title="bug number 479610" type="bugzilla"/>
  </references>
  <description>The Mozilla Firefox browser is updated to version 3.0.7
fixing various security and stability issues.

MFSA 2009-07 / CVE-2009-0771 / CVE-2009-0772 /
CVE-2009-0773 / CVE-2009-0774: Mozilla developers
identified and fixed several stability bugs in the browser
engine used in Firefox and other Mozilla-based products.
Some of these crashes showed evidence of memory corruption
under certain circumstances and we presume that with enough
effort at least some of these could be exploited to run
arbitrary code.

MFSA 2009-08 / CVE-2009-0775: An anonymous researcher, via
TippingPoint's Zero Day Initiative program, reported a
vulnerability in Mozilla's garbage collection process. The
vulnerability was caused by improper memory management of a
set of cloned XUL DOM elements which were linked as a
parent and child. After reloading the browser on a page
with such linked elements, the browser would crash when
attempting to access an object which was already destroyed.
An attacker could use this crash to run arbitrary code on
the victim's computer.

MFSA 2009-09 / CVE-2009-0776: Mozilla security researcher
Georgi Guninski reported that a website could use
nsIRDFService and a cross-domain redirect to steal
arbitrary XML data from another domain, a violation of the
same-origin policy. This vulnerability could be used by a
malicious website to steal private data from users
authenticated to the redirected website.

MFSA 2009-10 / CVE-2009-0040: libpng maintainer Glenn
Randers-Pehrson reported several memory safety hazards in
PNG libraries used by Mozilla. These vulnerabilities could
be used by a malicious website to crash a victim's browser
and potentially execute arbitrary code on their computer.
libpng was upgraded to a version which contained fixes for
these flaws.

MFSA 2009-11 / CVE-2009-0777: Mozilla contributor Masahiro
Yamada reported that certain invisible control characters
were being decoded when displayed in the location bar,
resulting in fewer visible characters than were present in
the actual location. An attacker could use this
vulnerability to spoof the location bar and display a
misleading URL for their malicious web page.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.7" release="1.1">
          <filename>MozillaFirefox-3.0.7-1.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.7" release="1.1">
          <filename>MozillaFirefox-3.0.7-1.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.7" release="1.1">
          <filename>MozillaFirefox-3.0.7-1.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.7" release="1.1">
          <filename>MozillaFirefox-translations-3.0.7-1.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.7" release="1.1">
          <filename>MozillaFirefox-translations-3.0.7-1.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.7" release="1.1">
          <filename>MozillaFirefox-translations-3.0.7-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.7-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.7-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.7-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.7-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.7-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.7-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.7-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.7-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.7-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.7-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.7-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.7-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.7-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.7-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.7-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.7-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.7-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.7" release="1.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.7-1.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="454127860b00f239c71cdfb33869cde2"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="583">
  <id>gtk2</id>
  <title>gtk2 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1235592015"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=479076" id="479076" title="bug number 479076" type="bugzilla"/>
  </references>
  <description>A SUSE specific patch to GTK2 accidentally added a relative
search path for gtk modules therefore allowed local
attackers have gtk programs load modules from untrusted
places (CVE-2009-0848).
</description>
  <pkglist>
    <collection>
        <package name="gtk2" arch="i586" version="2.12.9" release="37.3">
          <filename>gtk2-2.12.9-37.3.i586.rpm</filename>
        </package>
        <package name="gtk2" arch="ppc" version="2.12.9" release="37.3">
          <filename>gtk2-2.12.9-37.3.ppc.rpm</filename>
        </package>
        <package name="gtk2" arch="x86_64" version="2.12.9" release="37.3">
          <filename>gtk2-2.12.9-37.3.x86_64.rpm</filename>
        </package>
        <package name="gtk2-32bit" arch="x86_64" version="2.12.9" release="37.3">
          <filename>gtk2-32bit-2.12.9-37.3.x86_64.rpm</filename>
        </package>
        <package name="gtk2-64bit" arch="ppc" version="2.12.9" release="37.3">
          <filename>gtk2-64bit-2.12.9-37.3.ppc.rpm</filename>
        </package>
        <package name="gtk2-branding-upstream" arch="i586" version="2.12.9" release="37.3">
          <filename>gtk2-branding-upstream-2.12.9-37.3.i586.rpm</filename>
        </package>
        <package name="gtk2-branding-upstream" arch="ppc" version="2.12.9" release="37.3">
          <filename>gtk2-branding-upstream-2.12.9-37.3.ppc.rpm</filename>
        </package>
        <package name="gtk2-branding-upstream" arch="x86_64" version="2.12.9" release="37.3">
          <filename>gtk2-branding-upstream-2.12.9-37.3.x86_64.rpm</filename>
        </package>
        <package name="gtk2-devel" arch="i586" version="2.12.9" release="37.3">
          <filename>gtk2-devel-2.12.9-37.3.i586.rpm</filename>
        </package>
        <package name="gtk2-devel" arch="ppc" version="2.12.9" release="37.3">
          <filename>gtk2-devel-2.12.9-37.3.ppc.rpm</filename>
        </package>
        <package name="gtk2-devel" arch="x86_64" version="2.12.9" release="37.3">
          <filename>gtk2-devel-2.12.9-37.3.x86_64.rpm</filename>
        </package>
        <package name="gtk2-devel-64bit" arch="ppc" version="2.12.9" release="37.3">
          <filename>gtk2-devel-64bit-2.12.9-37.3.ppc.rpm</filename>
        </package>
        <package name="gtk2-doc" arch="i586" version="2.12.9" release="37.3">
          <filename>gtk2-doc-2.12.9-37.3.i586.rpm</filename>
        </package>
        <package name="gtk2-doc" arch="ppc" version="2.12.9" release="37.3">
          <filename>gtk2-doc-2.12.9-37.3.ppc.rpm</filename>
        </package>
        <package name="gtk2-doc" arch="x86_64" version="2.12.9" release="37.3">
          <filename>gtk2-doc-2.12.9-37.3.x86_64.rpm</filename>
        </package>
        <package name="gtk2-lang" arch="i586" version="2.12.9" release="37.3">
          <filename>gtk2-lang-2.12.9-37.3.i586.rpm</filename>
        </package>
        <package name="gtk2-lang" arch="ppc" version="2.12.9" release="37.3">
          <filename>gtk2-lang-2.12.9-37.3.ppc.rpm</filename>
        </package>
        <package name="gtk2-lang" arch="x86_64" version="2.12.9" release="37.3">
          <filename>gtk2-lang-2.12.9-37.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d637089c2c430dc9222bf429c2e6993e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="494">
  <id>PolicyKit</id>
  <title>PolicyKit new dbus configuration</title>
  <release>openSUSE 11.0</release>
  <issued date="1233695254"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443307" id="443307" title="bug number 443307" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=469760" id="469760" title="bug number 469760" type="bugzilla"/>
  </references>
  <description>The dbus package used a too permissive configuration.
Therefore intended access control for some services was not
applied (CVE-2008-4311).

The new configuration denies access by default. Some dbus
services may break due to this setting and need an updated
configuration as well.
</description>
  <pkglist>
    <collection>
        <package name="PolicyKit" arch="i586" version="0.8" release="14.2">
          <filename>PolicyKit-0.8-14.2.i586.rpm</filename>
        </package>
        <package name="PolicyKit" arch="ppc" version="0.8" release="14.2">
          <filename>PolicyKit-0.8-14.2.ppc.rpm</filename>
        </package>
        <package name="PolicyKit" arch="x86_64" version="0.8" release="14.2">
          <filename>PolicyKit-0.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="PolicyKit-32bit" arch="x86_64" version="0.8" release="14.2">
          <filename>PolicyKit-32bit-0.8-14.2.x86_64.rpm</filename>
        </package>
        <package name="PolicyKit-64bit" arch="ppc" version="0.8" release="14.2">
          <filename>PolicyKit-64bit-0.8-14.2.ppc.rpm</filename>
        </package>
        <package name="PolicyKit-devel" arch="i586" version="0.8" release="14.2">
          <filename>PolicyKit-devel-0.8-14.2.i586.rpm</filename>
        </package>
        <package name="PolicyKit-devel" arch="ppc" version="0.8" release="14.2">
          <filename>PolicyKit-devel-0.8-14.2.ppc.rpm</filename>
        </package>
        <package name="PolicyKit-devel" arch="x86_64" version="0.8" release="14.2">
          <filename>PolicyKit-devel-0.8-14.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ce8d49091feba05d135b748932f79e78"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="495">
  <id>PackageKit</id>
  <title>PackageKit new dbus configuration</title>
  <release>openSUSE 11.0</release>
  <issued date="1233720468"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443307" id="443307" title="bug number 443307" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=470070" id="470070" title="bug number 470070" type="bugzilla"/>
  </references>
  <description>The dbus package used a too permissive configuration.
Therefore intended access control for some services was not
applied (CVE-2008-4311).

The new configuration denies access by default. Some dbus
services may break due to this setting and need an updated
configuration as well.
</description>
  <pkglist>
    <collection>
        <package name="PackageKit" arch="i586" version="0.2.1" release="15.10">
          <filename>PackageKit-0.2.1-15.10.i586.rpm</filename>
        </package>
        <package name="PackageKit" arch="ppc" version="0.2.1" release="15.10">
          <filename>PackageKit-0.2.1-15.10.ppc.rpm</filename>
        </package>
        <package name="PackageKit" arch="x86_64" version="0.2.1" release="15.10">
          <filename>PackageKit-0.2.1-15.10.x86_64.rpm</filename>
        </package>
        <package name="PackageKit-devel" arch="i586" version="0.2.1" release="15.10">
          <filename>PackageKit-devel-0.2.1-15.10.i586.rpm</filename>
        </package>
        <package name="PackageKit-devel" arch="ppc" version="0.2.1" release="15.10">
          <filename>PackageKit-devel-0.2.1-15.10.ppc.rpm</filename>
        </package>
        <package name="PackageKit-devel" arch="x86_64" version="0.2.1" release="15.10">
          <filename>PackageKit-devel-0.2.1-15.10.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fde3bffdd280f45c50f7cdae1de6af23"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="486">
  <id>pommed</id>
  <title>pommed new dbus configuration</title>
  <release>openSUSE 11.0</release>
  <issued date="1233253877"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443307" id="443307" title="bug number 443307" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=469771" id="469771" title="bug number 469771" type="bugzilla"/>
  </references>
  <description>A dbus security update changed the default access
permissios for services on the bus from allow to deny.
Pommed relied on the old behavior and therefore needs a new
configuration.
</description>
  <pkglist>
    <collection>
        <package name="gpomme" arch="i586" version="1.15" release="38.2">
          <filename>gpomme-1.15-38.2.i586.rpm</filename>
        </package>
        <package name="gpomme" arch="x86_64" version="1.15" release="38.2">
          <filename>gpomme-1.15-38.2.x86_64.rpm</filename>
        </package>
        <package name="pommed" arch="i586" version="1.15" release="38.2">
          <filename>pommed-1.15-38.2.i586.rpm</filename>
        </package>
        <package name="pommed" arch="x86_64" version="1.15" release="38.2">
          <filename>pommed-1.15-38.2.x86_64.rpm</filename>
        </package>
        <package name="wmpomme" arch="i586" version="1.15" release="38.2">
          <filename>wmpomme-1.15-38.2.i586.rpm</filename>
        </package>
        <package name="wmpomme" arch="x86_64" version="1.15" release="38.2">
          <filename>wmpomme-1.15-38.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="460e57f8a54866847c868f70d9b2b866"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="501">
  <id>hal</id>
  <title>hal new dbus configuration</title>
  <release>openSUSE 11.0</release>
  <issued date="1233861816"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443307" id="443307" title="bug number 443307" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=469775" id="469775" title="bug number 469775" type="bugzilla"/>
  </references>
  <description>The dbus package used a too permissive configuration.
Therefore intended access control for some services was not
applied (CVE-2008-4311).

The new configuration denies access by default. Some dbus
services may break due to this setting and need an updated
configuration as well.
</description>
  <pkglist>
    <collection>
        <package name="hal" arch="i586" version="0.5.11" release="8.4">
          <filename>hal-0.5.11-8.4.i586.rpm</filename>
        </package>
        <package name="hal" arch="ppc" version="0.5.11" release="8.4">
          <filename>hal-0.5.11-8.4.ppc.rpm</filename>
        </package>
        <package name="hal" arch="x86_64" version="0.5.11" release="8.4">
          <filename>hal-0.5.11-8.4.x86_64.rpm</filename>
        </package>
        <package name="hal-32bit" arch="x86_64" version="0.5.11" release="8.4">
          <filename>hal-32bit-0.5.11-8.4.x86_64.rpm</filename>
        </package>
        <package name="hal-64bit" arch="ppc" version="0.5.11" release="8.4">
          <filename>hal-64bit-0.5.11-8.4.ppc.rpm</filename>
        </package>
        <package name="hal-devel" arch="i586" version="0.5.11" release="8.4">
          <filename>hal-devel-0.5.11-8.4.i586.rpm</filename>
        </package>
        <package name="hal-devel" arch="ppc" version="0.5.11" release="8.4">
          <filename>hal-devel-0.5.11-8.4.ppc.rpm</filename>
        </package>
        <package name="hal-devel" arch="x86_64" version="0.5.11" release="8.4">
          <filename>hal-devel-0.5.11-8.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4811f82775ba2e73f4c7806cd79ad5c0"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="561">
  <id>gvim</id>
  <title>vim: Security update to 7.2.108</title>
  <release>openSUSE 11.0</release>
  <issued date="1235601844"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=439148" id="439148" title="bug number 439148" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=470100" id="470100" title="bug number 470100" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465255" id="465255" title="bug number 465255" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457098" id="457098" title="bug number 457098" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=436755" id="436755" title="bug number 436755" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406693" id="406693" title="bug number 406693" type="bugzilla"/>
  </references>
  <description>The VI Improved editor (vim) was updated to version 7.2.108
to fix various security problems and other bugs.

CVE-2008-4677: The netrw plugin sent credentials to all
servers. CVE-2009-0316: The python support used a search
path including the current directory, allowing code
injection when python code was used. CVE-2008-2712:
Arbitrary code execution in vim helper plugins
filetype.vim,  zipplugin, xpm.vim, gzip_vim, and netrw were
fixed. CVE-2008-3074: tarplugin code injection
CVE-2008-3075: zipplugin code injection CVE-2008-3076:
several netrw bugs, code injection CVE-2008-6235: code
injection in the netrw plugin CVE-2008-4677: credential
disclosure by netrw plugin
</description>
  <pkglist>
    <collection>
        <package name="gvim" arch="i586" version="7.2" release="9.1">
          <filename>gvim-7.2-9.1.i586.rpm</filename>
        </package>
        <package name="gvim" arch="ppc" version="7.2" release="9.1">
          <filename>gvim-7.2-9.1.ppc.rpm</filename>
        </package>
        <package name="gvim" arch="x86_64" version="7.2" release="9.1">
          <filename>gvim-7.2-9.1.x86_64.rpm</filename>
        </package>
        <package name="vim" arch="i586" version="7.2" release="9.1">
          <filename>vim-7.2-9.1.i586.rpm</filename>
        </package>
        <package name="vim" arch="ppc" version="7.2" release="9.1">
          <filename>vim-7.2-9.1.ppc.rpm</filename>
        </package>
        <package name="vim" arch="x86_64" version="7.2" release="9.1">
          <filename>vim-7.2-9.1.x86_64.rpm</filename>
        </package>
        <package name="vim-base" arch="i586" version="7.2" release="9.1">
          <filename>vim-base-7.2-9.1.i586.rpm</filename>
        </package>
        <package name="vim-base" arch="ppc" version="7.2" release="9.1">
          <filename>vim-base-7.2-9.1.ppc.rpm</filename>
        </package>
        <package name="vim-base" arch="x86_64" version="7.2" release="9.1">
          <filename>vim-base-7.2-9.1.x86_64.rpm</filename>
        </package>
        <package name="vim-data" arch="i586" version="7.2" release="9.1">
          <filename>vim-data-7.2-9.1.i586.rpm</filename>
        </package>
        <package name="vim-data" arch="ppc" version="7.2" release="9.1">
          <filename>vim-data-7.2-9.1.ppc.rpm</filename>
        </package>
        <package name="vim-data" arch="x86_64" version="7.2" release="9.1">
          <filename>vim-data-7.2-9.1.x86_64.rpm</filename>
        </package>
        <package name="vim-enhanced" arch="i586" version="7.2" release="9.1">
          <filename>vim-enhanced-7.2-9.1.i586.rpm</filename>
        </package>
        <package name="vim-enhanced" arch="ppc" version="7.2" release="9.1">
          <filename>vim-enhanced-7.2-9.1.ppc.rpm</filename>
        </package>
        <package name="vim-enhanced" arch="x86_64" version="7.2" release="9.1">
          <filename>vim-enhanced-7.2-9.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b77cf846fca06c4a28c1948aca8c12dd"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="579">
  <id>xpdf</id>
  <title>xpdf: Fix crash when switching to full screen</title>
  <release>openSUSE 11.0</release>
  <issued date="1236303316"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=476382" id="476382" title="bug number 476382" type="bugzilla"/>
  </references>
  <description>When selecting Full screen mode, xpdf immediately crashes
if a pdf file loaded.
</description>
  <pkglist>
    <collection>
        <package name="xpdf" arch="i586" version="3.02" release="95.2">
          <filename>xpdf-3.02-95.2.i586.rpm</filename>
        </package>
        <package name="xpdf" arch="ppc" version="3.02" release="95.2">
          <filename>xpdf-3.02-95.2.ppc.rpm</filename>
        </package>
        <package name="xpdf" arch="x86_64" version="3.02" release="95.2">
          <filename>xpdf-3.02-95.2.x86_64.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="i586" version="3.02" release="95.2">
          <filename>xpdf-tools-3.02-95.2.i586.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="ppc" version="3.02" release="95.2">
          <filename>xpdf-tools-3.02-95.2.ppc.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="x86_64" version="3.02" release="95.2">
          <filename>xpdf-tools-3.02-95.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="899de54362214cb9b1496d406d58542c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="564">
  <id>ModemManager</id>
  <title>NetworkManager security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1235659440"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478080" id="478080" title="bug number 478080" type="bugzilla"/>
  </references>
  <description>The NetworkManager configuration was too permissive and
allowed any user to read secrets (CVE-2009-0365) or
manipulate the configuration of other users (CVE-2009-0578).
</description>
  <pkglist>
    <collection>
        <package name="NetworkManager" arch="i586" version="0.7.0.r3685" release="7.4">
          <filename>NetworkManager-0.7.0.r3685-7.4.i586.rpm</filename>
        </package>
        <package name="NetworkManager" arch="ppc" version="0.7.0.r3685" release="7.4">
          <filename>NetworkManager-0.7.0.r3685-7.4.ppc.rpm</filename>
        </package>
        <package name="NetworkManager" arch="x86_64" version="0.7.0.r3685" release="7.4">
          <filename>NetworkManager-0.7.0.r3685-7.4.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-devel" arch="i586" version="0.7.0.r3685" release="7.4">
          <filename>NetworkManager-devel-0.7.0.r3685-7.4.i586.rpm</filename>
        </package>
        <package name="NetworkManager-devel" arch="ppc" version="0.7.0.r3685" release="7.4">
          <filename>NetworkManager-devel-0.7.0.r3685-7.4.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-devel" arch="x86_64" version="0.7.0.r3685" release="7.4">
          <filename>NetworkManager-devel-0.7.0.r3685-7.4.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-glib" arch="i586" version="0.7.0.r3685" release="7.4">
          <filename>NetworkManager-glib-0.7.0.r3685-7.4.i586.rpm</filename>
        </package>
        <package name="NetworkManager-glib" arch="ppc" version="0.7.0.r3685" release="7.4">
          <filename>NetworkManager-glib-0.7.0.r3685-7.4.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-glib" arch="x86_64" version="0.7.0.r3685" release="7.4">
          <filename>NetworkManager-glib-0.7.0.r3685-7.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ac1fdff60a91fb052e3b3ae8d3df183d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="565">
  <id>NetworkManager-kde</id>
  <title>knetworkmanager security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1235660110"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=479563" id="479563" title="bug number 479563" type="bugzilla"/>
  </references>
  <description>The knetworkmanager configuration was too permissive and
allowed any user to read secrets (CVE-2009-0365).
</description>
  <pkglist>
    <collection>
        <package name="NetworkManager-kde" arch="i586" version="0.7r821737" release="0.5">
          <filename>NetworkManager-kde-0.7r821737-0.5.i586.rpm</filename>
        </package>
        <package name="NetworkManager-kde" arch="ppc" version="0.7r821737" release="0.5">
          <filename>NetworkManager-kde-0.7r821737-0.5.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-kde" arch="x86_64" version="0.7r821737" release="0.5">
          <filename>NetworkManager-kde-0.7r821737-0.5.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-kde-devel" arch="i586" version="0.7r821737" release="0.5">
          <filename>NetworkManager-kde-devel-0.7r821737-0.5.i586.rpm</filename>
        </package>
        <package name="NetworkManager-kde-devel" arch="ppc" version="0.7r821737" release="0.5">
          <filename>NetworkManager-kde-devel-0.7r821737-0.5.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-kde-devel" arch="x86_64" version="0.7r821737" release="0.5">
          <filename>NetworkManager-kde-devel-0.7r821737-0.5.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-openvpn-kde" arch="i586" version="0.7r821737" release="0.5">
          <filename>NetworkManager-openvpn-kde-0.7r821737-0.5.i586.rpm</filename>
        </package>
        <package name="NetworkManager-openvpn-kde" arch="ppc" version="0.7r821737" release="0.5">
          <filename>NetworkManager-openvpn-kde-0.7r821737-0.5.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-openvpn-kde" arch="x86_64" version="0.7r821737" release="0.5">
          <filename>NetworkManager-openvpn-kde-0.7r821737-0.5.x86_64.rpm</filename>
        </package>
        <package name="NetworkManager-vpnc-kde" arch="i586" version="0.7r821737" release="0.5">
          <filename>NetworkManager-vpnc-kde-0.7r821737-0.5.i586.rpm</filename>
        </package>
        <package name="NetworkManager-vpnc-kde" arch="ppc" version="0.7r821737" release="0.5">
          <filename>NetworkManager-vpnc-kde-0.7r821737-0.5.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-vpnc-kde" arch="x86_64" version="0.7r821737" release="0.5">
          <filename>NetworkManager-vpnc-kde-0.7r821737-0.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="53f9a3590be806fad802661b9d72d773"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="563">
  <id>NetworkManager-gnome</id>
  <title>NetworkManager security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1235660036"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478080" id="478080" title="bug number 478080" type="bugzilla"/>
  </references>
  <description>The NetworkManager configuration was too permissive and
allowed any user to read secrets (CVE-2009-0365) or
manipulate the configuration of other users (CVE-2009-0578).
</description>
  <pkglist>
    <collection>
        <package name="NetworkManager-gnome" arch="i586" version="0.7.0.r729" release="7.4">
          <filename>NetworkManager-gnome-0.7.0.r729-7.4.i586.rpm</filename>
        </package>
        <package name="NetworkManager-gnome" arch="ppc" version="0.7.0.r729" release="7.4">
          <filename>NetworkManager-gnome-0.7.0.r729-7.4.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-gnome" arch="x86_64" version="0.7.0.r729" release="7.4">
          <filename>NetworkManager-gnome-0.7.0.r729-7.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7bc896f47f0856cdf861ddf563be8325"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="607">
  <id>libpurple</id>
  <title>libpurple: Fix connecting to ICQ of pidgin and finch</title>
  <release>openSUSE 11.0</release>
  <issued date="1236884982"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=483744" id="483744" title="bug number 483744" type="bugzilla"/>
  </references>
  <description>Fixes connecting of pidgin and finch to ICQ.
</description>
  <pkglist>
    <collection>
        <package name="libpurple" arch="i586" version="2.4.1" release="28.6">
          <filename>libpurple-2.4.1-28.6.i586.rpm</filename>
        </package>
        <package name="libpurple" arch="ppc" version="2.4.1" release="28.6">
          <filename>libpurple-2.4.1-28.6.ppc.rpm</filename>
        </package>
        <package name="libpurple" arch="x86_64" version="2.4.1" release="28.6">
          <filename>libpurple-2.4.1-28.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8ea81c8defa53ca2e4c48fd8ccc062b8"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="488">
  <id>dbus-1</id>
  <title>dbus security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1233248096"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443307" id="443307" title="bug number 443307" type="bugzilla"/>
  </references>
  <description>The dbus package used a too permissive configuration.
Therefore intended access control for some services was not
applied (CVE-2008-4311).

The new configuration denies access by default. Some dbus
services may break due to this setting and need an updated
configuration as well.
</description>
  <pkglist>
    <collection>
        <package name="dbus-1" arch="i586" version="1.2.1" release="15.4">
          <filename>dbus-1-1.2.1-15.4.i586.rpm</filename>
        </package>
        <package name="dbus-1" arch="ppc" version="1.2.1" release="15.4">
          <filename>dbus-1-1.2.1-15.4.ppc.rpm</filename>
        </package>
        <package name="dbus-1" arch="x86_64" version="1.2.1" release="15.4">
          <filename>dbus-1-1.2.1-15.4.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-32bit" arch="x86_64" version="1.2.1" release="15.4">
          <filename>dbus-1-32bit-1.2.1-15.4.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-64bit" arch="ppc" version="1.2.1" release="15.4">
          <filename>dbus-1-64bit-1.2.1-15.4.ppc.rpm</filename>
        </package>
        <package name="dbus-1-devel" arch="i586" version="1.2.1" release="15.4">
          <filename>dbus-1-devel-1.2.1-15.4.i586.rpm</filename>
        </package>
        <package name="dbus-1-devel" arch="ppc" version="1.2.1" release="15.4">
          <filename>dbus-1-devel-1.2.1-15.4.ppc.rpm</filename>
        </package>
        <package name="dbus-1-devel" arch="x86_64" version="1.2.1" release="15.4">
          <filename>dbus-1-devel-1.2.1-15.4.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-devel-doc" arch="i586" version="1.2.1" release="15.4">
          <filename>dbus-1-devel-doc-1.2.1-15.4.i586.rpm</filename>
        </package>
        <package name="dbus-1-devel-doc" arch="ppc" version="1.2.1" release="15.4">
          <filename>dbus-1-devel-doc-1.2.1-15.4.ppc.rpm</filename>
        </package>
        <package name="dbus-1-devel-doc" arch="x86_64" version="1.2.1" release="15.4">
          <filename>dbus-1-devel-doc-1.2.1-15.4.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-glib" arch="i586" version="0.74" release="88.1">
          <filename>dbus-1-glib-0.74-88.1.i586.rpm</filename>
        </package>
        <package name="dbus-1-glib" arch="ppc" version="0.74" release="88.1">
          <filename>dbus-1-glib-0.74-88.1.ppc.rpm</filename>
        </package>
        <package name="dbus-1-glib" arch="x86_64" version="0.74" release="88.1">
          <filename>dbus-1-glib-0.74-88.1.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-glib-32bit" arch="x86_64" version="0.74" release="88.1">
          <filename>dbus-1-glib-32bit-0.74-88.1.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-glib-64bit" arch="ppc" version="0.74" release="88.1">
          <filename>dbus-1-glib-64bit-0.74-88.1.ppc.rpm</filename>
        </package>
        <package name="dbus-1-glib-devel" arch="i586" version="0.74" release="88.1">
          <filename>dbus-1-glib-devel-0.74-88.1.i586.rpm</filename>
        </package>
        <package name="dbus-1-glib-devel" arch="ppc" version="0.74" release="88.1">
          <filename>dbus-1-glib-devel-0.74-88.1.ppc.rpm</filename>
        </package>
        <package name="dbus-1-glib-devel" arch="x86_64" version="0.74" release="88.1">
          <filename>dbus-1-glib-devel-0.74-88.1.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-glib-doc" arch="i586" version="0.74" release="88.1">
          <filename>dbus-1-glib-doc-0.74-88.1.i586.rpm</filename>
        </package>
        <package name="dbus-1-glib-doc" arch="ppc" version="0.74" release="88.1">
          <filename>dbus-1-glib-doc-0.74-88.1.ppc.rpm</filename>
        </package>
        <package name="dbus-1-glib-doc" arch="x86_64" version="0.74" release="88.1">
          <filename>dbus-1-glib-doc-0.74-88.1.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-mono" arch="i586" version="0.63" release="154.1">
          <filename>dbus-1-mono-0.63-154.1.i586.rpm</filename>
        </package>
        <package name="dbus-1-mono" arch="ppc" version="0.63" release="154.1">
          <filename>dbus-1-mono-0.63-154.1.ppc.rpm</filename>
        </package>
        <package name="dbus-1-mono" arch="x86_64" version="0.63" release="154.1">
          <filename>dbus-1-mono-0.63-154.1.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-python" arch="i586" version="0.82.4" release="49.1">
          <filename>dbus-1-python-0.82.4-49.1.i586.rpm</filename>
        </package>
        <package name="dbus-1-python" arch="ppc" version="0.82.4" release="49.1">
          <filename>dbus-1-python-0.82.4-49.1.ppc.rpm</filename>
        </package>
        <package name="dbus-1-python" arch="x86_64" version="0.82.4" release="49.1">
          <filename>dbus-1-python-0.82.4-49.1.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-python-devel" arch="i586" version="0.82.4" release="49.1">
          <filename>dbus-1-python-devel-0.82.4-49.1.i586.rpm</filename>
        </package>
        <package name="dbus-1-python-devel" arch="ppc" version="0.82.4" release="49.1">
          <filename>dbus-1-python-devel-0.82.4-49.1.ppc.rpm</filename>
        </package>
        <package name="dbus-1-python-devel" arch="x86_64" version="0.82.4" release="49.1">
          <filename>dbus-1-python-devel-0.82.4-49.1.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-qt3" arch="i586" version="0.62" release="179.1">
          <filename>dbus-1-qt3-0.62-179.1.i586.rpm</filename>
        </package>
        <package name="dbus-1-qt3" arch="ppc" version="0.62" release="179.1">
          <filename>dbus-1-qt3-0.62-179.1.ppc.rpm</filename>
        </package>
        <package name="dbus-1-qt3" arch="x86_64" version="0.62" release="179.1">
          <filename>dbus-1-qt3-0.62-179.1.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-qt3-32bit" arch="x86_64" version="0.62" release="179.1">
          <filename>dbus-1-qt3-32bit-0.62-179.1.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-qt3-64bit" arch="ppc" version="0.62" release="179.1">
          <filename>dbus-1-qt3-64bit-0.62-179.1.ppc.rpm</filename>
        </package>
        <package name="dbus-1-qt3-devel" arch="i586" version="0.62" release="179.1">
          <filename>dbus-1-qt3-devel-0.62-179.1.i586.rpm</filename>
        </package>
        <package name="dbus-1-qt3-devel" arch="ppc" version="0.62" release="179.1">
          <filename>dbus-1-qt3-devel-0.62-179.1.ppc.rpm</filename>
        </package>
        <package name="dbus-1-qt3-devel" arch="x86_64" version="0.62" release="179.1">
          <filename>dbus-1-qt3-devel-0.62-179.1.x86_64.rpm</filename>
        </package>
        <package name="dbus-1-x11" arch="i586" version="1.2.1" release="18.4">
          <filename>dbus-1-x11-1.2.1-18.4.i586.rpm</filename>
        </package>
        <package name="dbus-1-x11" arch="ppc" version="1.2.1" release="18.4">
          <filename>dbus-1-x11-1.2.1-18.4.ppc.rpm</filename>
        </package>
        <package name="dbus-1-x11" arch="x86_64" version="1.2.1" release="18.4">
          <filename>dbus-1-x11-1.2.1-18.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f6ababff0ac1f84c0494cc435c55da99"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="596">
  <id>ConsoleKit</id>
  <title>ConsoleKit new dbus configuration</title>
  <release>openSUSE 11.0</release>
  <issued date="1236874022"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443307" id="443307" title="bug number 443307" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=469775" id="469775" title="bug number 469775" type="bugzilla"/>
  </references>
  <description>The dbus package used a too permissive configuration.
Therefore intended access control for some services was not
applied (CVE-2008-4311).

The new configuration denies access by default. Some dbus
services may break due to this setting and need an updated
configuration as well.
</description>
  <pkglist>
    <collection>
        <package name="ConsoleKit" arch="i586" version="0.2.10" release="14.4">
          <filename>ConsoleKit-0.2.10-14.4.i586.rpm</filename>
        </package>
        <package name="ConsoleKit" arch="ppc" version="0.2.10" release="14.4">
          <filename>ConsoleKit-0.2.10-14.4.ppc.rpm</filename>
        </package>
        <package name="ConsoleKit" arch="x86_64" version="0.2.10" release="14.4">
          <filename>ConsoleKit-0.2.10-14.4.x86_64.rpm</filename>
        </package>
        <package name="ConsoleKit-32bit" arch="x86_64" version="0.2.10" release="14.4">
          <filename>ConsoleKit-32bit-0.2.10-14.4.x86_64.rpm</filename>
        </package>
        <package name="ConsoleKit-64bit" arch="ppc" version="0.2.10" release="14.4">
          <filename>ConsoleKit-64bit-0.2.10-14.4.ppc.rpm</filename>
        </package>
        <package name="ConsoleKit-devel" arch="i586" version="0.2.10" release="14.4">
          <filename>ConsoleKit-devel-0.2.10-14.4.i586.rpm</filename>
        </package>
        <package name="ConsoleKit-devel" arch="ppc" version="0.2.10" release="14.4">
          <filename>ConsoleKit-devel-0.2.10-14.4.ppc.rpm</filename>
        </package>
        <package name="ConsoleKit-devel" arch="x86_64" version="0.2.10" release="14.4">
          <filename>ConsoleKit-devel-0.2.10-14.4.x86_64.rpm</filename>
        </package>
        <package name="ConsoleKit-x11" arch="i586" version="0.2.10" release="14.4">
          <filename>ConsoleKit-x11-0.2.10-14.4.i586.rpm</filename>
        </package>
        <package name="ConsoleKit-x11" arch="ppc" version="0.2.10" release="14.4">
          <filename>ConsoleKit-x11-0.2.10-14.4.ppc.rpm</filename>
        </package>
        <package name="ConsoleKit-x11" arch="x86_64" version="0.2.10" release="14.4">
          <filename>ConsoleKit-x11-0.2.10-14.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e60dc4cbf096c3d038921a26d1ced5da"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="620">
  <id>hal</id>
  <title>powersave new dbus configuration</title>
  <release>openSUSE 11.0</release>
  <issued date="1236974725"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443307" id="443307" title="bug number 443307" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=469775" id="469775" title="bug number 469775" type="bugzilla"/>
  </references>
  <description>The dbus package used a too permissive configuration.
Therefore intended access control for some services was not
applied (CVE-2008-4311).

The new configuration denies access by default. Some dbus
services may break due to this setting and need an updated
configuration as well.
</description>
  <pkglist>
    <collection>
        <package name="powersave" arch="i586" version="0.15.20" release="38.2">
          <filename>powersave-0.15.20-38.2.i586.rpm</filename>
        </package>
        <package name="powersave" arch="ppc" version="0.15.20" release="38.2">
          <filename>powersave-0.15.20-38.2.ppc.rpm</filename>
        </package>
        <package name="powersave" arch="x86_64" version="0.15.20" release="38.2">
          <filename>powersave-0.15.20-38.2.x86_64.rpm</filename>
        </package>
        <package name="powersave-devel" arch="i586" version="0.15.20" release="38.2">
          <filename>powersave-devel-0.15.20-38.2.i586.rpm</filename>
        </package>
        <package name="powersave-devel" arch="ppc" version="0.15.20" release="38.2">
          <filename>powersave-devel-0.15.20-38.2.ppc.rpm</filename>
        </package>
        <package name="powersave-devel" arch="x86_64" version="0.15.20" release="38.2">
          <filename>powersave-devel-0.15.20-38.2.x86_64.rpm</filename>
        </package>
        <package name="powersave-libs" arch="i586" version="0.15.20" release="38.2">
          <filename>powersave-libs-0.15.20-38.2.i586.rpm</filename>
        </package>
        <package name="powersave-libs" arch="ppc" version="0.15.20" release="38.2">
          <filename>powersave-libs-0.15.20-38.2.ppc.rpm</filename>
        </package>
        <package name="powersave-libs" arch="x86_64" version="0.15.20" release="38.2">
          <filename>powersave-libs-0.15.20-38.2.x86_64.rpm</filename>
        </package>
        <package name="powersave-libs-32bit" arch="x86_64" version="0.15.20" release="38.2">
          <filename>powersave-libs-32bit-0.15.20-38.2.x86_64.rpm</filename>
        </package>
        <package name="powersave-libs-64bit" arch="ppc" version="0.15.20" release="38.2">
          <filename>powersave-libs-64bit-0.15.20-38.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2cfd6322b172b34f75ad0338475356b1"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="629">
  <id>opera</id>
  <title>opera security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1237306801"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=481892" id="481892" title="bug number 481892" type="bugzilla"/>
  </references>
  <description>Opera 9.64 is a recommended security and stability upgrade,
incorporating the Opera Presto 2.1.1 user agent engine.
Opera highly recommends all users to upgrade to Opera 9.64
to take advantage of these improvements (CVE-2009-0914,
CVE-2009-0915, CVE-2009-0916).

A detailed changelog can be found at
http://www.opera.com/docs/changelogs/linux/964/
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="9.64" release="1.1">
          <filename>opera-9.64-1.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="9.64" release="1.1">
          <filename>opera-9.64-1.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="9.64" release="1.1">
          <filename>opera-9.64-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="344735b1ca01ea6066d6b27a2e3e3a39"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="603">
  <id>java-1_6_0-openjdk</id>
  <title>java-1_6_0-openjdk: security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1236894056"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=479608" id="479608" title="bug number 479608" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=483916" id="483916" title="bug number 483916" type="bugzilla"/>
  </references>
  <description>Specially crafted image files could cause an integer
overflow in the lcms library contained in openjdk.
Attackers could potentially exploit that to crash
applications using lcms or even execute arbitrary code
(CVE-2009-0723, CVE-2009-0581, CVE-2009-0733). 

This update also fixes problems with package dependencies
that prevented installation of the package.
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-openjdk" arch="i586" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-1.4_b14-24.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="ppc" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-1.4_b14-24.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="x86_64" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-1.4_b14-24.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="i586" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-demo-1.4_b14-24.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="ppc" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-demo-1.4_b14-24.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="x86_64" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-demo-1.4_b14-24.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="i586" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-devel-1.4_b14-24.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="ppc" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-devel-1.4_b14-24.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="x86_64" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-devel-1.4_b14-24.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="i586" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-javadoc-1.4_b14-24.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="ppc" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-javadoc-1.4_b14-24.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="x86_64" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-javadoc-1.4_b14-24.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="i586" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-plugin-1.4_b14-24.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="ppc" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-plugin-1.4_b14-24.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="x86_64" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-plugin-1.4_b14-24.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="i586" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-src-1.4_b14-24.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="ppc" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-src-1.4_b14-24.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="x86_64" version="1.4_b14" release="24.3">
          <filename>java-1_6_0-openjdk-src-1.4_b14-24.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0277f35acff854e5557194f4ce501d5e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="613">
  <id>kpartx</id>
  <title>multipath-tools: fix /var/run/multipathd.sock socket permissions</title>
  <release>openSUSE 11.0</release>
  <issued date="1237250246"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=458598" id="458598" title="bug number 458598" type="bugzilla"/>
  </references>
  <description>This update improves the file permissions on the socket
file. (CVE-2009-0115)
</description>
  <pkglist>
    <collection>
        <package name="kpartx" arch="i586" version="0.4.7" release="127.2">
          <filename>kpartx-0.4.7-127.2.i586.rpm</filename>
        </package>
        <package name="kpartx" arch="ppc" version="0.4.7" release="127.2">
          <filename>kpartx-0.4.7-127.2.ppc.rpm</filename>
        </package>
        <package name="kpartx" arch="x86_64" version="0.4.7" release="127.2">
          <filename>kpartx-0.4.7-127.2.x86_64.rpm</filename>
        </package>
        <package name="multipath-tools" arch="i586" version="0.4.7" release="127.2">
          <filename>multipath-tools-0.4.7-127.2.i586.rpm</filename>
        </package>
        <package name="multipath-tools" arch="ppc" version="0.4.7" release="127.2">
          <filename>multipath-tools-0.4.7-127.2.ppc.rpm</filename>
        </package>
        <package name="multipath-tools" arch="x86_64" version="0.4.7" release="127.2">
          <filename>multipath-tools-0.4.7-127.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="16c6fc18813ebd69bfe39cd8c4a3e301"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="581">
  <id>lcms</id>
  <title>lcms security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1236601745"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=479606" id="479606" title="bug number 479606" type="bugzilla"/>
  </references>
  <description>Specially crafted image files could cause an integer
overflow in lcms. Attackers could potentially exploit that
to crash applications using lcms or even execute arbitrary
code (CVE-2009-0723, CVE-2009-0581, CVE-2009-0733).
</description>
  <pkglist>
    <collection>
        <package name="lcms" arch="i586" version="1.17" release="40.2">
          <filename>lcms-1.17-40.2.i586.rpm</filename>
        </package>
        <package name="lcms" arch="ppc" version="1.17" release="40.2">
          <filename>lcms-1.17-40.2.ppc.rpm</filename>
        </package>
        <package name="lcms" arch="x86_64" version="1.17" release="40.2">
          <filename>lcms-1.17-40.2.x86_64.rpm</filename>
        </package>
        <package name="liblcms-devel" arch="i586" version="1.17" release="40.2">
          <filename>liblcms-devel-1.17-40.2.i586.rpm</filename>
        </package>
        <package name="liblcms-devel" arch="ppc" version="1.17" release="40.2">
          <filename>liblcms-devel-1.17-40.2.ppc.rpm</filename>
        </package>
        <package name="liblcms-devel" arch="x86_64" version="1.17" release="40.2">
          <filename>liblcms-devel-1.17-40.2.x86_64.rpm</filename>
        </package>
        <package name="liblcms-devel-32bit" arch="x86_64" version="1.17" release="40.2">
          <filename>liblcms-devel-32bit-1.17-40.2.x86_64.rpm</filename>
        </package>
        <package name="liblcms-devel-64bit" arch="ppc" version="1.17" release="40.2">
          <filename>liblcms-devel-64bit-1.17-40.2.ppc.rpm</filename>
        </package>
        <package name="liblcms1" arch="i586" version="1.17" release="40.2">
          <filename>liblcms1-1.17-40.2.i586.rpm</filename>
        </package>
        <package name="liblcms1" arch="ppc" version="1.17" release="40.2">
          <filename>liblcms1-1.17-40.2.ppc.rpm</filename>
        </package>
        <package name="liblcms1" arch="x86_64" version="1.17" release="40.2">
          <filename>liblcms1-1.17-40.2.x86_64.rpm</filename>
        </package>
        <package name="liblcms1-32bit" arch="x86_64" version="1.17" release="40.2">
          <filename>liblcms1-32bit-1.17-40.2.x86_64.rpm</filename>
        </package>
        <package name="liblcms1-64bit" arch="ppc" version="1.17" release="40.2">
          <filename>liblcms1-64bit-1.17-40.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4fd493f7705e77f572e843bea0269e78"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="657">
  <id>horde</id>
  <title>horde security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1237503871"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=467887" id="467887" title="bug number 467887" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=348297" id="348297" title="bug number 348297" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=470086" id="470086" title="bug number 470086" type="bugzilla"/>
  </references>
  <description>Version update to horde 3.1.9 fixes a cross-site-scripting
(XSS) issue (CVE-2008-5917) and an include file problem
(CVE-2009-0932).
</description>
  <pkglist>
    <collection>
        <package name="horde" arch="noarch" version="3.1.9" release="0.1">
          <filename>horde-3.1.9-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="19fab159e700065821eee8a4856b8565"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="659">
  <id>imp</id>
  <title>imp security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1237373057"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=348297" id="348297" title="bug number 348297" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=470086" id="470086" title="bug number 470086" type="bugzilla"/>
  </references>
  <description>Version update to IMP 4.1.6 fixes a problem with validating
HTTP requests that allowed attackers to delete emails
(CVE-2007-6018) and some cross-site-scripting issues
(CVE-2009-0930).
</description>
  <pkglist>
    <collection>
        <package name="imp" arch="noarch" version="4.1.6" release="0.1">
          <filename>imp-4.1.6-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="83038b9d6bfcfe510e0e1bc9a216f666"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="671">
  <id>bluez-audio</id>
  <title>bluez new dbus configuration</title>
  <release>openSUSE 11.0</release>
  <issued date="1237563065"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443307" id="443307" title="bug number 443307" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=470640" id="470640" title="bug number 470640" type="bugzilla"/>
  </references>
  <description>The dbus package used a too permissive configuration.
Therefore intended access control for some services was not
applied (CVE-2008-4311).

The new configuration denies access by default. Some dbus
services may break due to this setting and need an updated
configuration as well.
</description>
  <pkglist>
    <collection>
        <package name="bluez-audio" arch="i586" version="3.32" release="8.4">
          <filename>bluez-audio-3.32-8.4.i586.rpm</filename>
        </package>
        <package name="bluez-audio" arch="ppc" version="3.32" release="8.4">
          <filename>bluez-audio-3.32-8.4.ppc.rpm</filename>
        </package>
        <package name="bluez-audio" arch="x86_64" version="3.32" release="8.4">
          <filename>bluez-audio-3.32-8.4.x86_64.rpm</filename>
        </package>
        <package name="bluez-cups" arch="i586" version="3.32" release="8.4">
          <filename>bluez-cups-3.32-8.4.i586.rpm</filename>
        </package>
        <package name="bluez-cups" arch="ppc" version="3.32" release="8.4">
          <filename>bluez-cups-3.32-8.4.ppc.rpm</filename>
        </package>
        <package name="bluez-cups" arch="x86_64" version="3.32" release="8.4">
          <filename>bluez-cups-3.32-8.4.x86_64.rpm</filename>
        </package>
        <package name="bluez-test" arch="i586" version="3.32" release="8.4">
          <filename>bluez-test-3.32-8.4.i586.rpm</filename>
        </package>
        <package name="bluez-test" arch="ppc" version="3.32" release="8.4">
          <filename>bluez-test-3.32-8.4.ppc.rpm</filename>
        </package>
        <package name="bluez-test" arch="x86_64" version="3.32" release="8.4">
          <filename>bluez-test-3.32-8.4.x86_64.rpm</filename>
        </package>
        <package name="bluez-utils" arch="i586" version="3.32" release="8.4">
          <filename>bluez-utils-3.32-8.4.i586.rpm</filename>
        </package>
        <package name="bluez-utils" arch="ppc" version="3.32" release="8.4">
          <filename>bluez-utils-3.32-8.4.ppc.rpm</filename>
        </package>
        <package name="bluez-utils" arch="x86_64" version="3.32" release="8.4">
          <filename>bluez-utils-3.32-8.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b9ec1816ecb787b4492642cd5084c7a0"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="672">
  <id>moodle</id>
  <title>moodle security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1237563080"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=475111" id="475111" title="bug number 475111" type="bugzilla"/>
  </references>
  <description>moodle was prone to several cross-site-scripting (XSS) and
cross-site-request-forgery (CSRF) problems (CVE-2009-0499,
CVE-2009-0500, CVE-2009-0501, CVE-2009-0502).
</description>
  <pkglist>
    <collection>
        <package name="moodle" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-af" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-af-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-ar" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-ar-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-be" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-be-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-bg" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-bg-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-bs" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-bs-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-ca" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-ca-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-cs" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-cs-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-da" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-da-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-de" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-de-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-de_du" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-de_du-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-el" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-el-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-es" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-es-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-et" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-et-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-eu" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-eu-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-fa" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-fa-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-fi" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-fi-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-fr" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-fr-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-ga" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-ga-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-gl" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-gl-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-he" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-he-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-hi" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-hi-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-hr" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-hr-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-hu" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-hu-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-id" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-id-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-is" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-is-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-it" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-it-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-ja" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-ja-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-ka" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-ka-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-km" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-km-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-kn" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-kn-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-ko" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-ko-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-lt" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-lt-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-lv" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-lv-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-mi_tn" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-mi_tn-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-ms" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-ms-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-nl" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-nl-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-nn" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-nn-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-no" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-no-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-pl" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-pl-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-pt" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-pt-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-ro" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-ro-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-ru" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-ru-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-sk" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-sk-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-sl" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-sl-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-so" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-so-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-sq" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-sq-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-sr" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-sr-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-sv" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-sv-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-th" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-th-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-tl" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-tl-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-tr" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-tr-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-uk" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-uk-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-vi" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-vi-1.9.0-24.6.noarch.rpm</filename>
        </package>
        <package name="moodle-zh_cn" arch="noarch" version="1.9.0" release="24.6">
          <filename>moodle-zh_cn-1.9.0-24.6.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ca5ee32c7a833af59d9df328e6cee100"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="592">
  <id>ghostscript-devel</id>
  <title>ghostscript security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1236876080"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=483303" id="483303" title="bug number 483303" type="bugzilla"/>
  </references>
  <description>Integer overflows and missing upper bounds checks in
Ghostscript's ICC library potentially allowed attackers to
crash Ghostscript or even cause execution of arbitrary code
via specially crafted PS or PDF files (CVE-2009-0583,
CVE-2009-0584).
</description>
  <pkglist>
    <collection>
        <package name="ghostscript-devel" arch="i586" version="8.62" release="17.2">
          <filename>ghostscript-devel-8.62-17.2.i586.rpm</filename>
        </package>
        <package name="ghostscript-devel" arch="ppc" version="8.62" release="17.2">
          <filename>ghostscript-devel-8.62-17.2.ppc.rpm</filename>
        </package>
        <package name="ghostscript-devel" arch="x86_64" version="8.62" release="17.2">
          <filename>ghostscript-devel-8.62-17.2.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-fonts-other" arch="i586" version="8.62" release="17.2">
          <filename>ghostscript-fonts-other-8.62-17.2.i586.rpm</filename>
        </package>
        <package name="ghostscript-fonts-other" arch="ppc" version="8.62" release="17.2">
          <filename>ghostscript-fonts-other-8.62-17.2.ppc.rpm</filename>
        </package>
        <package name="ghostscript-fonts-other" arch="x86_64" version="8.62" release="17.2">
          <filename>ghostscript-fonts-other-8.62-17.2.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-fonts-rus" arch="i586" version="8.62" release="17.2">
          <filename>ghostscript-fonts-rus-8.62-17.2.i586.rpm</filename>
        </package>
        <package name="ghostscript-fonts-rus" arch="ppc" version="8.62" release="17.2">
          <filename>ghostscript-fonts-rus-8.62-17.2.ppc.rpm</filename>
        </package>
        <package name="ghostscript-fonts-rus" arch="x86_64" version="8.62" release="17.2">
          <filename>ghostscript-fonts-rus-8.62-17.2.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-fonts-std" arch="i586" version="8.62" release="17.2">
          <filename>ghostscript-fonts-std-8.62-17.2.i586.rpm</filename>
        </package>
        <package name="ghostscript-fonts-std" arch="ppc" version="8.62" release="17.2">
          <filename>ghostscript-fonts-std-8.62-17.2.ppc.rpm</filename>
        </package>
        <package name="ghostscript-fonts-std" arch="x86_64" version="8.62" release="17.2">
          <filename>ghostscript-fonts-std-8.62-17.2.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-ijs-devel" arch="i586" version="8.62" release="17.2">
          <filename>ghostscript-ijs-devel-8.62-17.2.i586.rpm</filename>
        </package>
        <package name="ghostscript-ijs-devel" arch="ppc" version="8.62" release="17.2">
          <filename>ghostscript-ijs-devel-8.62-17.2.ppc.rpm</filename>
        </package>
        <package name="ghostscript-ijs-devel" arch="x86_64" version="8.62" release="17.2">
          <filename>ghostscript-ijs-devel-8.62-17.2.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-library" arch="i586" version="8.62" release="17.2">
          <filename>ghostscript-library-8.62-17.2.i586.rpm</filename>
        </package>
        <package name="ghostscript-library" arch="ppc" version="8.62" release="17.2">
          <filename>ghostscript-library-8.62-17.2.ppc.rpm</filename>
        </package>
        <package name="ghostscript-library" arch="x86_64" version="8.62" release="17.2">
          <filename>ghostscript-library-8.62-17.2.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-omni" arch="i586" version="8.62" release="17.2">
          <filename>ghostscript-omni-8.62-17.2.i586.rpm</filename>
        </package>
        <package name="ghostscript-omni" arch="ppc" version="8.62" release="17.2">
          <filename>ghostscript-omni-8.62-17.2.ppc.rpm</filename>
        </package>
        <package name="ghostscript-omni" arch="x86_64" version="8.62" release="17.2">
          <filename>ghostscript-omni-8.62-17.2.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-x11" arch="i586" version="8.62" release="17.2">
          <filename>ghostscript-x11-8.62-17.2.i586.rpm</filename>
        </package>
        <package name="ghostscript-x11" arch="ppc" version="8.62" release="17.2">
          <filename>ghostscript-x11-8.62-17.2.ppc.rpm</filename>
        </package>
        <package name="ghostscript-x11" arch="x86_64" version="8.62" release="17.2">
          <filename>ghostscript-x11-8.62-17.2.x86_64.rpm</filename>
        </package>
        <package name="libgimpprint" arch="i586" version="4.2.7" release="258.2">
          <filename>libgimpprint-4.2.7-258.2.i586.rpm</filename>
        </package>
        <package name="libgimpprint" arch="ppc" version="4.2.7" release="258.2">
          <filename>libgimpprint-4.2.7-258.2.ppc.rpm</filename>
        </package>
        <package name="libgimpprint" arch="x86_64" version="4.2.7" release="258.2">
          <filename>libgimpprint-4.2.7-258.2.x86_64.rpm</filename>
        </package>
        <package name="libgimpprint-devel" arch="i586" version="4.2.7" release="258.2">
          <filename>libgimpprint-devel-4.2.7-258.2.i586.rpm</filename>
        </package>
        <package name="libgimpprint-devel" arch="ppc" version="4.2.7" release="258.2">
          <filename>libgimpprint-devel-4.2.7-258.2.ppc.rpm</filename>
        </package>
        <package name="libgimpprint-devel" arch="x86_64" version="4.2.7" release="258.2">
          <filename>libgimpprint-devel-4.2.7-258.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="03e82aa4432227738e571f5f8f20efc5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="689">
  <id>acroread</id>
  <title>acoread security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1237996147"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=488619" id="488619" title="bug number 488619" type="bugzilla"/>
  </references>
  <description>Multiple flaws in the JBIG2 decoder and the JavaScript
engine of the Adobe Reader allowed attackers to crash
acroread or even execute arbitrary code by tricking users
into opening specially crafted PDF files.

(CVE-2009-0658, CVE-2009-0927, CVE-2009-0193,
CVE-2009-0928, CVE-2009-1061, CVE-2009-1062)
</description>
  <pkglist>
    <collection>
        <package name="acroread" arch="i586" version="8.1.4" release="0.1">
          <filename>acroread-8.1.4-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c682b5327539dc71ac6da407e2a329a6"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="371">
  <id>struts</id>
  <title>struts security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1229588591"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=385273" id="385273" title="bug number 385273" type="bugzilla"/>
  </references>
  <description>Insufficient quoting of parameters allowed attackers to
conduct cross site scripting (XSS) attacks (CVE-2008-2025).
</description>
  <pkglist>
    <collection>
        <package name="struts" arch="noarch" version="1.2.9" release="198.2">
          <filename>struts-1.2.9-198.2.noarch.rpm</filename>
        </package>
        <package name="struts-javadoc" arch="noarch" version="1.2.9" release="198.2">
          <filename>struts-javadoc-1.2.9-198.2.noarch.rpm</filename>
        </package>
        <package name="struts-manual" arch="noarch" version="1.2.9" release="198.2">
          <filename>struts-manual-1.2.9-198.2.noarch.rpm</filename>
        </package>
        <package name="struts-webapps-tomcat6" arch="noarch" version="1.2.9" release="198.2">
          <filename>struts-webapps-tomcat6-1.2.9-198.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="abf4a8ef7c49f75ccdde6556b2c7c23e"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="658">
  <id>logwatch</id>
  <title>logwatch: fix path to sendmail binary</title>
  <release>openSUSE 11.0</release>
  <issued date="1237373061"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465127" id="465127" title="bug number 465127" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=467272" id="467272" title="bug number 467272" type="bugzilla"/>
  </references>
  <description>Starting logwatch from cron didn't work as expected because
sendmail was called without full path.
</description>
  <pkglist>
    <collection>
        <package name="logwatch" arch="noarch" version="7.3.6" release="35.2">
          <filename>logwatch-7.3.6-35.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="271a01c312faa95c39337c065d2bb15b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="698">
  <id>java-1_5_0-sun</id>
  <title>java-1_5_0-sun: Security update to JDK 5 update 18.</title>
  <release>openSUSE 11.0</release>
  <issued date="1238173539"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=488926" id="488926" title="bug number 488926" type="bugzilla"/>
  </references>
  <description>The Sun JDK 5 was updated to Update18 to fix various bugs
and security issues.

CVE-2009-1093: LdapCtx in the LDAP service in Java SE
Development Kit (JDK) and Java Runtime Environment (JRE)
5.0 Update 17 and earlier; 6 Update 12 and earlier; SDK and
JRE 1.3.1_24 and earlier; and 1.4.2_19 and earlier does not
close the connection when initialization fails, which
allows remote attackers to cause a denial of service (LDAP
service hang).

CVE-2009-1094: Unspecified vulnerability in the LDAP
implementation in Java SE Development Kit (JDK) and Java
Runtime Environment (JRE) 5.0 Update 17 and earlier; 6
Update 12 and earlier; SDK and JRE 1.3.1_24 and earlier;
and 1.4.2_19 and earlier allows remote LDAP servers to
execute arbitrary code via unknown vectors related to
serialized data.

CVE-2009-1095: Integer overflow in unpack200 in Java SE
Development Kit (JDK) and Java Runtime Environment (JRE)
5.0 Update 17 and earlier, and 6 Update 12 and earlier,
allows remote attackers to access files or execute
arbitrary code via a JAR file with crafted Pack200 headers.

CVE-2009-1096: Buffer overflow in unpack200 in Java SE
Development Kit (JDK) and Java Runtime Environment (JRE)
5.0 Update 17 and earlier, and 6 Update 12 and earlier,
allows remote attackers to access files or execute
arbitrary code via a JAR file with crafted Pack200 headers.

CVE-2009-1098: Buffer overflow in Java SE Development Kit
(JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and
earlier; 6 Update 12 and earlier; 1.4.2_19 and earlier; and
1.3.1_24 and earlier allows remote attackers to access
files or execute arbitrary code via a crafted GIF image,
aka CR 6804998.

CVE-2009-1099: Integer signedness error in Java SE
Development Kit (JDK) and Java Runtime Environment (JRE)
5.0 Update 17 and earlier, and 6 Update 12 and earlier,
allows remote attackers to access files or execute
arbitrary code via a crafted Type1 font, which triggers a
buffer overflow.

CVE-2009-1100: Multiple unspecified vulnerabilities in Java
SE Development Kit (JDK) and Java Runtime Environment (JRE)
5.0 Update 17 and earlier, and 6 Update 12 and earlier,
allow remote attackers to cause a denial of service (disk
consumption) via vectors related to temporary font files
and (1) &quot;limits on Font creation,&quot; aka CR 6522586, and (2)
another unspecified vector, aka CR 6632886.

CVE-2009-1103: Unspecified vulnerability in the Java
Plug-in in Java SE Development Kit (JDK) and Java Runtime
Environment (JRE) 5.0 Update 17 and earlier; 6 Update 12
and earlier; 1.4.2_19 and earlier; and 1.3.1_24 and earlier
allows remote attackers to access files and execute
arbitrary code via unknown vectors related to
&quot;deserializing applets,&quot; aka CR 6646860.


CVE-2009-1104: The Java Plug-in in Java SE Development Kit
(JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and
earlier; 6 Update 12 and earlier; and 1.4.2_19 and earlier
does not prevent Javascript that is loaded from the
localhost from connecting to other ports on the system,
which allows user-assisted attackers to bypass intended
access restrictions via LiveConnect, aka CR 6724331.  NOTE:
this vulnerability can be leveraged with separate
cross-site scripting (XSS) vulnerabilities for remote
attack vectors.

CVE-2009-1107: The Java Plug-in in Java SE Development Kit
(JDK) and Java Runtime Environment (JRE) 6 Update 12 and
earlier, and 5.0 Update 17 and earlier, allows remote
attackers to trick a user into trusting a signed applet via
unknown vectors that misrepresent the security warning
dialog, related to a &quot;Swing JLabel HTML parsing
vulnerability,&quot; aka CR 6782871.
</description>
  <pkglist>
    <collection>
        <package name="java-1_5_0-sun" arch="i586" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-1.5.0_update18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun" arch="x86_64" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-1.5.0_update18-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="i586" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="x86_64" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update18-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="i586" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="x86_64" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update18-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="i586" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="x86_64" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update18-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="i586" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="x86_64" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update18-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-plugin" arch="i586" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-plugin-1.5.0_update18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="i586" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-src-1.5.0_update18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="x86_64" version="1.5.0_update18" release="0.1">
          <filename>java-1_5_0-sun-src-1.5.0_update18-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b1f7e8b684c510cd82f25b68ed9b4233"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="705">
  <id>java-1_6_0-sun</id>
  <title>java-1_6_0-sun: Security update to JDK 6 update 13.</title>
  <release>openSUSE 11.0</release>
  <issued date="1238173570"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=488926" id="488926" title="bug number 488926" type="bugzilla"/>
  </references>
  <description>The Sun JDK 6 was updated to Update13 to fix various bugs
and security issues.

CVE-2009-1093: LdapCtx in the LDAP service in Java SE
Development Kit (JDK) and Java Runtime Environment (JRE)
5.0 Update 17 and earlier; 6 Update 12 and earlier; SDK and
JRE 1.3.1_24 and earlier; and 1.4.2_19 and earlier does not
close the connection when initialization fails, which
allows remote attackers to cause a denial of service (LDAP
service hang).

CVE-2009-1094: Unspecified vulnerability in the LDAP
implementation in Java SE Development Kit (JDK) and Java
Runtime Environment (JRE) 5.0 Update 17 and earlier; 6
Update 12 and earlier; SDK and JRE 1.3.1_24 and earlier;
and 1.4.2_19 and earlier allows remote LDAP servers to
execute arbitrary code via unknown vectors related to
serialized data.

CVE-2009-1095: Integer overflow in unpack200 in Java SE
Development Kit (JDK) and Java Runtime Environment (JRE)
5.0 Update 17 and earlier, and 6 Update 12 and earlier,
allows remote attackers to access files or execute
arbitrary code via a JAR file with crafted Pack200 headers.

CVE-2009-1096: Buffer overflow in unpack200 in Java SE
Development Kit (JDK) and Java Runtime Environment (JRE)
5.0 Update 17 and earlier, and 6 Update 12 and earlier,
allows remote attackers to access files or execute
arbitrary code via a JAR file with crafted Pack200 headers.

CVE-2009-1097: Multiple buffer overflows in Java SE
Development Kit (JDK) and Java Runtime Environment (JRE) 6
Update 12 and earlier allow remote attackers to access
files or execute arbitrary code via a crafted (1) PNG
image, aka CR 6804996, and (2) GIF image, aka CR 6804997.

CVE-2009-1098: Buffer overflow in Java SE Development Kit
(JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and
earlier; 6 Update 12 and earlier; 1.4.2_19 and earlier; and
1.3.1_24 and earlier allows remote attackers to access
files or execute arbitrary code via a crafted GIF image,
aka CR 6804998.

CVE-2009-1099: Integer signedness error in Java SE
Development Kit (JDK) and Java Runtime Environment (JRE)
5.0 Update 17 and earlier, and 6 Update 12 and earlier,
allows remote attackers to access files or execute
arbitrary code via a crafted Type1 font, which triggers a
buffer overflow.

CVE-2009-1100: Multiple unspecified vulnerabilities in Java
SE Development Kit (JDK) and Java Runtime Environment (JRE)
5.0 Update 17 and earlier, and 6 Update 12 and earlier,
allow remote attackers to cause a denial of service (disk
consumption) via vectors related to temporary font files
and (1) &quot;limits on Font creation,&quot; aka CR 6522586, and (2)
another unspecified vector, aka CR 6632886.

CVE-2009-1101: Unspecified vulnerability in the lightweight
HTTP server implementation in Java SE Development Kit (JDK)
and Java Runtime Environment (JRE) 6 Update 12 and earlier
allows remote attackers to cause a denial of service
(probably resource consumption) for a JAX-WS service
endpoint via a connection without any data, which triggers
a file descriptor &quot;leak.&quot;

CVE-2009-1102: Unspecified vulnerability in the Virtual
Machine in Java SE Development Kit (JDK) and Java Runtime
Environment (JRE) 6 Update 12 and earlier allows remote
attackers to access files and execute arbitrary code via
unknown vectors related to &quot;code generation.&quot;

CVE-2009-1103: Unspecified vulnerability in the Java
Plug-in in Java SE Development Kit (JDK) and Java Runtime
Environment (JRE) 5.0 Update 17 and earlier; 6 Update 12
and earlier; 1.4.2_19 and earlier; and 1.3.1_24 and earlier
allows remote attackers to access files and execute
arbitrary code via unknown vectors related to
&quot;deserializing applets,&quot; aka CR 6646860.

CVE-2009-1104: The Java Plug-in in Java SE Development Kit
(JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and
earlier; 6 Update 12 and earlier; and 1.4.2_19 and earlier
does not prevent Javascript that is loaded from the
localhost from connecting to other ports on the system,
which allows user-assisted attackers to bypass intended
access restrictions via LiveConnect, aka CR 6724331.  NOTE:
this vulnerability can be leveraged with separate
cross-site scripting (XSS) vulnerabilities for remote
attack vectors.

CVE-2009-1105: The Java Plug-in in Java SE Development Kit
(JDK) and Java Runtime Environment (JRE) 6 Update 12, 11,
and 10 allows user-assisted remote attackers to cause a
trusted applet to run in an older JRE version, which can be
used to exploit vulnerabilities in that older version, aka
CR 6706490.

CVE-2009-1106: The Java Plug-in in Java SE Development Kit
(JDK) and Java Runtime Environment (JRE) 6 Update 12, 11,
and 10 does not properly parse crossdomain.xml files, which
allows remote attackers to bypass intended access
restrictions and connect to arbitrary sites via unknown
vectors, aka CR 6798948.

CVE-2009-1107: The Java Plug-in in Java SE Development Kit
(JDK) and Java Runtime Environment (JRE) 6 Update 12 and
earlier, and 5.0 Update 17 and earlier, allows remote
attackers to trick a user into trusting a signed applet via
unknown vectors that misrepresent the security warning
dialog, related to a &quot;Swing JLabel HTML parsing
vulnerability,&quot; aka CR 6782871.
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u13-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u13-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u13-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u13-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u13-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u13-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u13-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u13-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u13-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u13-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u13-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="x86_64" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u13-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="i586" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-src-1.6.0.u13-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="x86_64" version="1.6.0.u13" release="0.1">
          <filename>java-1_6_0-sun-src-1.6.0.u13-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3291c2ef45434af34802ca073998445d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="593">
  <id>apache2-mod_php5</id>
  <title>php5 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1236877315"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=480948" id="480948" title="bug number 480948" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=471419" id="471419" title="bug number 471419" type="bugzilla"/>
  </references>
  <description>php 5.1.9 fixes among other things some security issues:

- Missing bounds checks of an error in the imageRotate
  function of the gd extension potentially allowed
  attackers to read portions of memory (CVE-2008-5498).

- the mbstring.func_overload in .htaccess was applied to
  other virtual hosts on th same machine (CVE-2009-0754).
</description>
  <pkglist>
    <collection>
        <package name="apache2-mod_php5" arch="i586" version="5.2.9" release="0.1">
          <filename>apache2-mod_php5-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="ppc" version="5.2.9" release="0.1">
          <filename>apache2-mod_php5-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="x86_64" version="5.2.9" release="0.1">
          <filename>apache2-mod_php5-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-bcmath-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-bcmath-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-bcmath-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-bz2" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-bz2-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-bz2" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-bz2-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-bz2" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-bz2-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-calendar" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-calendar-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-calendar" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-calendar-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-calendar" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-calendar-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ctype" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-ctype-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ctype" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-ctype-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ctype" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-ctype-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-curl" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-curl-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-curl" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-curl-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-curl" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-curl-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dba" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-dba-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dba" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-dba-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dba" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-dba-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dbase" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-dbase-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dbase" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-dbase-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dbase" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-dbase-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-devel" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-devel-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-devel" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-devel-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-devel" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-devel-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dom" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-dom-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dom" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-dom-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dom" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-dom-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-exif" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-exif-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-exif" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-exif-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-exif" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-exif-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-fastcgi-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-fastcgi-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-fastcgi-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ftp" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-ftp-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ftp" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-ftp-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ftp" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-ftp-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gd" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-gd-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gd" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-gd-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gd" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-gd-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gettext" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-gettext-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gettext" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-gettext-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gettext" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-gettext-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gmp" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-gmp-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gmp" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-gmp-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gmp" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-gmp-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-hash" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-hash-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-hash" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-hash-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-hash" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-hash-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-iconv" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-iconv-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-iconv" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-iconv-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-iconv" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-iconv-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-imap" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-imap-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-imap" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-imap-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-imap" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-imap-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-json" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-json-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-json" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-json-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-json" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-json-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ldap" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-ldap-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ldap" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-ldap-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ldap" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-ldap-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-mbstring-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-mbstring-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-mbstring-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-mcrypt-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-mcrypt-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-mcrypt-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mysql" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-mysql-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mysql" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-mysql-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mysql" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-mysql-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-ncurses-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-ncurses-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-ncurses-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-odbc" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-odbc-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-odbc" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-odbc-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-odbc" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-odbc-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-openssl" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-openssl-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-openssl" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-openssl-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-openssl" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-openssl-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-pcntl-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-pcntl-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-pcntl-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pdo" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-pdo-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pdo" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-pdo-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pdo" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-pdo-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pear" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-pear-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pear" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-pear-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pear" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-pear-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-pgsql-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-pgsql-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-pgsql-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-posix" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-posix-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-posix" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-posix-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-posix" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-posix-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pspell" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-pspell-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pspell" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-pspell-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pspell" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-pspell-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-readline" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-readline-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-readline" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-readline-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-readline" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-readline-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-shmop" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-shmop-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-shmop" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-shmop-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-shmop" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-shmop-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-snmp" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-snmp-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-snmp" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-snmp-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-snmp" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-snmp-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-soap" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-soap-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-soap" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-soap-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-soap" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-soap-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sockets" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-sockets-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sockets" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-sockets-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sockets" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-sockets-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-sqlite-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-sqlite-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-sqlite-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-suhosin-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-suhosin-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-suhosin-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-sysvmsg-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-sysvmsg-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-sysvmsg-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-sysvsem-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-sysvsem-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-sysvsem-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-sysvshm-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-sysvshm-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-sysvshm-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-tidy" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-tidy-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-tidy" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-tidy-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-tidy" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-tidy-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-tokenizer-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-tokenizer-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-tokenizer-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-wddx" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-wddx-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-wddx" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-wddx-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-wddx" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-wddx-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-xmlreader-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-xmlreader-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-xmlreader-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-xmlrpc-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-xmlrpc-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-xmlrpc-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-xmlwriter-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-xmlwriter-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-xmlwriter-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xsl" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-xsl-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xsl" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-xsl-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xsl" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-xsl-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-zip" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-zip-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-zip" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-zip-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-zip" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-zip-5.2.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-zlib" arch="i586" version="5.2.9" release="0.1">
          <filename>php5-zlib-5.2.9-0.1.i586.rpm</filename>
        </package>
        <package name="php5-zlib" arch="ppc" version="5.2.9" release="0.1">
          <filename>php5-zlib-5.2.9-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-zlib" arch="x86_64" version="5.2.9" release="0.1">
          <filename>php5-zlib-5.2.9-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7bfb1591b46511c2c1e1e9bbcc7ff625"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="711">
  <id>phpMyAdmin</id>
  <title>phpMyAdmin: multiple vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1238606918"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=490596" id="490596" title="bug number 490596" type="bugzilla"/>
  </references>
  <description>This update of phpMyAdmin fixes multiple vulnerabilities:
- CVE-2009-1148: directory traversal
- CVE-2009-1149: CRLF injection
- CVE-2009-1150: cross-site scripting
- CVE-2009-1151: static code injection
</description>
  <pkglist>
    <collection>
        <package name="phpMyAdmin" arch="noarch" version="2.11.9.5" release="0.1">
          <filename>phpMyAdmin-2.11.9.5-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0201aad425f51ee855306ce4675664c8"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="577">
  <id>libsndfile</id>
  <title>libsndfile security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1236273406"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=481769" id="481769" title="bug number 481769" type="bugzilla"/>
  </references>
  <description>Specially crafted CAF files could cause an integer overflow
in libsndfile (CVE-2009-0186).
</description>
  <pkglist>
    <collection>
        <package name="libsndfile" arch="i586" version="1.0.17" release="141.2">
          <filename>libsndfile-1.0.17-141.2.i586.rpm</filename>
        </package>
        <package name="libsndfile" arch="ppc" version="1.0.17" release="141.2">
          <filename>libsndfile-1.0.17-141.2.ppc.rpm</filename>
        </package>
        <package name="libsndfile" arch="x86_64" version="1.0.17" release="141.2">
          <filename>libsndfile-1.0.17-141.2.x86_64.rpm</filename>
        </package>
        <package name="libsndfile-32bit" arch="x86_64" version="1.0.17" release="141.2">
          <filename>libsndfile-32bit-1.0.17-141.2.x86_64.rpm</filename>
        </package>
        <package name="libsndfile-64bit" arch="ppc" version="1.0.17" release="141.2">
          <filename>libsndfile-64bit-1.0.17-141.2.ppc.rpm</filename>
        </package>
        <package name="libsndfile-devel" arch="i586" version="1.0.17" release="141.2">
          <filename>libsndfile-devel-1.0.17-141.2.i586.rpm</filename>
        </package>
        <package name="libsndfile-devel" arch="ppc" version="1.0.17" release="141.2">
          <filename>libsndfile-devel-1.0.17-141.2.ppc.rpm</filename>
        </package>
        <package name="libsndfile-devel" arch="x86_64" version="1.0.17" release="141.2">
          <filename>libsndfile-devel-1.0.17-141.2.x86_64.rpm</filename>
        </package>
        <package name="libsndfile-octave" arch="i586" version="1.0.17" release="141.2">
          <filename>libsndfile-octave-1.0.17-141.2.i586.rpm</filename>
        </package>
        <package name="libsndfile-octave" arch="ppc" version="1.0.17" release="141.2">
          <filename>libsndfile-octave-1.0.17-141.2.ppc.rpm</filename>
        </package>
        <package name="libsndfile-octave" arch="x86_64" version="1.0.17" release="141.2">
          <filename>libsndfile-octave-1.0.17-141.2.x86_64.rpm</filename>
        </package>
        <package name="libsndfile-progs" arch="i586" version="1.0.17" release="141.2">
          <filename>libsndfile-progs-1.0.17-141.2.i586.rpm</filename>
        </package>
        <package name="libsndfile-progs" arch="ppc" version="1.0.17" release="141.2">
          <filename>libsndfile-progs-1.0.17-141.2.ppc.rpm</filename>
        </package>
        <package name="libsndfile-progs" arch="x86_64" version="1.0.17" release="141.2">
          <filename>libsndfile-progs-1.0.17-141.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="16c36122c59d358a826ddcb1751e0bad"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="691">
  <id>qemu</id>
  <title>qemu security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1237997084"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=435135" id="435135" title="bug number 435135" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=462502" id="462502" title="bug number 462502" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=461565" id="461565" title="bug number 461565" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=362956" id="362956" title="bug number 362956" type="bugzilla"/>
  </references>
  <description>qemu update to version 0.10.1 fixes the following security
issues:

CVE-2008-0928: problems with range checks of block devices
CVE-2008-1945: problems with removable media handling
CVE-2008-2382: vnc server DoS CVE-2008-4539: fix a heap
overflow in the cirrus VGA implementation CVE-2008-5714:
off by one error in vnc password handling
</description>
  <pkglist>
    <collection>
        <package name="qemu" arch="i586" version="0.10.1" release="0.1">
          <filename>qemu-0.10.1-0.1.i586.rpm</filename>
        </package>
        <package name="qemu" arch="ppc" version="0.10.1" release="0.1">
          <filename>qemu-0.10.1-0.1.ppc.rpm</filename>
        </package>
        <package name="qemu" arch="x86_64" version="0.10.1" release="0.1">
          <filename>qemu-0.10.1-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8c70928a355b5eb7a1c7fc1b23a8a74e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="687">
  <id>openswan</id>
  <title>openswan security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1237916199"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=487762" id="487762" title="bug number 487762" type="bugzilla"/>
  </references>
  <description>By sending a specially crafted Dead Peer Detection (DPD)
packet remote attackers could crash the pluto IKE daemon
(CVE-2009-0790).
</description>
  <pkglist>
    <collection>
        <package name="openswan" arch="i586" version="2.4.7" release="130.2">
          <filename>openswan-2.4.7-130.2.i586.rpm</filename>
        </package>
        <package name="openswan" arch="ppc" version="2.4.7" release="130.2">
          <filename>openswan-2.4.7-130.2.ppc.rpm</filename>
        </package>
        <package name="openswan" arch="x86_64" version="2.4.7" release="130.2">
          <filename>openswan-2.4.7-130.2.x86_64.rpm</filename>
        </package>
        <package name="openswan-doc" arch="i586" version="2.4.7" release="130.2">
          <filename>openswan-doc-2.4.7-130.2.i586.rpm</filename>
        </package>
        <package name="openswan-doc" arch="ppc" version="2.4.7" release="130.2">
          <filename>openswan-doc-2.4.7-130.2.ppc.rpm</filename>
        </package>
        <package name="openswan-doc" arch="x86_64" version="2.4.7" release="130.2">
          <filename>openswan-doc-2.4.7-130.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3dddf5e823b876ce1c3b5bd9784f0837"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="745">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Security update to version 3.0.8</title>
  <release>openSUSE 11.0</release>
  <issued date="1239099095"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=488955" id="488955" title="bug number 488955" type="bugzilla"/>
  </references>
  <description>The Mozilla Firefox Browser was updated to the 3.0.8
release. It fixes several security issues:

MFSA 2009-13 / CVE-2009-1044: Security researcher Nils
reported via TippingPoint's Zero Day Initiative that the
XUL tree method _moveToEdgeShift was in some cases
triggering garbage collection routines on objects which
were still in use. In such cases, the browser would crash
when attempting to access a previously destroyed object and
this crash could be used by an attacker to run arbitrary
code on a victim's computer. This vulnerability was used by
the reporter to win the 2009 CanSecWest Pwn2Own contest.
This vulnerability does not affect Firefox 2, Thunderbird
2, or released versions of SeaMonkey.

MFSA 2009-12 / CVE-2009-1169:Security researcher Guido
Landi discovered that a XSL stylesheet could be used to
crash the browser during a XSL transformation. An attacker
could potentially use this crash to run arbitrary code on a
victim's computer. This vulnerability was also previously
reported as a stability problem by Ubuntu community member,
Andre. Ubuntu community member Michael Rooney reported
Andre's findings to Mozilla, and Mozilla community member
Martin helped reduce Andre's original testcase and
contributed a patch to fix the vulnerability.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.8" release="1.1">
          <filename>MozillaFirefox-3.0.8-1.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.8" release="1.1">
          <filename>MozillaFirefox-3.0.8-1.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.8" release="1.1">
          <filename>MozillaFirefox-3.0.8-1.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.8" release="1.1">
          <filename>MozillaFirefox-translations-3.0.8-1.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.8" release="1.1">
          <filename>MozillaFirefox-translations-3.0.8-1.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.8" release="1.1">
          <filename>MozillaFirefox-translations-3.0.8-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.8-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.8-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.8-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.8-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.8-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.8-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.8-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.8-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.8-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.8-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.8-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.8-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.8-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.8-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.8-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.8-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.8-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.8" release="1.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.8-1.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0801012c98f8f6f5a600aff42a181053"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="740">
  <id>krb5</id>
  <title>krb5: security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1239032557"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=485894" id="485894" title="bug number 485894" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=486722" id="486722" title="bug number 486722" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=486723" id="486723" title="bug number 486723" type="bugzilla"/>
  </references>
  <description>Clients sending negotiation requests with invalid flags
could crash the kerberos server (CVE-2009-0845).

GSS-API clients could crash when reading from an invalid
address space (CVE-2009-0844).

Invalid length checks could crash applications using the
kerberos ASN.1 parser (CVE-2009-0847).

Under certain circumstances the ASN.1 parser could free an
uninitialized pointer which could crash a kerberos server
or even lead to execution of arbitrary code (CVE-2009-0846).
</description>
  <pkglist>
    <collection>
        <package name="krb5" arch="i586" version="1.6.3" release="50.5">
          <filename>krb5-1.6.3-50.5.i586.rpm</filename>
        </package>
        <package name="krb5" arch="ppc" version="1.6.3" release="50.5">
          <filename>krb5-1.6.3-50.5.ppc.rpm</filename>
        </package>
        <package name="krb5" arch="x86_64" version="1.6.3" release="50.5">
          <filename>krb5-1.6.3-50.5.x86_64.rpm</filename>
        </package>
        <package name="krb5-32bit" arch="x86_64" version="1.6.3" release="50.5">
          <filename>krb5-32bit-1.6.3-50.5.x86_64.rpm</filename>
        </package>
        <package name="krb5-64bit" arch="ppc" version="1.6.3" release="50.5">
          <filename>krb5-64bit-1.6.3-50.5.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="i586" version="1.6.3" release="50.5">
          <filename>krb5-apps-clients-1.6.3-50.5.i586.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="ppc" version="1.6.3" release="50.5">
          <filename>krb5-apps-clients-1.6.3-50.5.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="x86_64" version="1.6.3" release="50.5">
          <filename>krb5-apps-clients-1.6.3-50.5.x86_64.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="i586" version="1.6.3" release="50.5">
          <filename>krb5-apps-servers-1.6.3-50.5.i586.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="ppc" version="1.6.3" release="50.5">
          <filename>krb5-apps-servers-1.6.3-50.5.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="x86_64" version="1.6.3" release="50.5">
          <filename>krb5-apps-servers-1.6.3-50.5.x86_64.rpm</filename>
        </package>
        <package name="krb5-client" arch="i586" version="1.6.3" release="50.5">
          <filename>krb5-client-1.6.3-50.5.i586.rpm</filename>
        </package>
        <package name="krb5-client" arch="ppc" version="1.6.3" release="50.5">
          <filename>krb5-client-1.6.3-50.5.ppc.rpm</filename>
        </package>
        <package name="krb5-client" arch="x86_64" version="1.6.3" release="50.5">
          <filename>krb5-client-1.6.3-50.5.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel" arch="i586" version="1.6.3" release="50.5">
          <filename>krb5-devel-1.6.3-50.5.i586.rpm</filename>
        </package>
        <package name="krb5-devel" arch="ppc" version="1.6.3" release="50.5">
          <filename>krb5-devel-1.6.3-50.5.ppc.rpm</filename>
        </package>
        <package name="krb5-devel" arch="x86_64" version="1.6.3" release="50.5">
          <filename>krb5-devel-1.6.3-50.5.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel-32bit" arch="x86_64" version="1.6.3" release="50.5">
          <filename>krb5-devel-32bit-1.6.3-50.5.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel-64bit" arch="ppc" version="1.6.3" release="50.5">
          <filename>krb5-devel-64bit-1.6.3-50.5.ppc.rpm</filename>
        </package>
        <package name="krb5-server" arch="i586" version="1.6.3" release="50.5">
          <filename>krb5-server-1.6.3-50.5.i586.rpm</filename>
        </package>
        <package name="krb5-server" arch="ppc" version="1.6.3" release="50.5">
          <filename>krb5-server-1.6.3-50.5.ppc.rpm</filename>
        </package>
        <package name="krb5-server" arch="x86_64" version="1.6.3" release="50.5">
          <filename>krb5-server-1.6.3-50.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="948121c661973e0f48957c2eceb4541a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="750">
  <id>clamav</id>
  <title>clamav update to 0.95</title>
  <release>openSUSE 11.0</release>
  <issued date="1239155018"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=488336" id="488336" title="bug number 488336" type="bugzilla"/>
  </references>
  <description>ClamAV update to version 0.95. This also fix some potential
security bugs. (CVE-2009-1241)
</description>
  <pkglist>
    <collection>
        <package name="clamav" arch="i586" version="0.95" release="0.2">
          <filename>clamav-0.95-0.2.i586.rpm</filename>
        </package>
        <package name="clamav" arch="ppc" version="0.95" release="0.2">
          <filename>clamav-0.95-0.2.ppc.rpm</filename>
        </package>
        <package name="clamav" arch="x86_64" version="0.95" release="0.2">
          <filename>clamav-0.95-0.2.x86_64.rpm</filename>
        </package>
        <package name="clamav-db" arch="i586" version="0.95" release="0.2">
          <filename>clamav-db-0.95-0.2.i586.rpm</filename>
        </package>
        <package name="clamav-db" arch="ppc" version="0.95" release="0.2">
          <filename>clamav-db-0.95-0.2.ppc.rpm</filename>
        </package>
        <package name="clamav-db" arch="x86_64" version="0.95" release="0.2">
          <filename>clamav-db-0.95-0.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="55656f365dd157c082db4354dd046d44"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="708">
  <id>klamav</id>
  <title>klamav: update klamav to v0.46</title>
  <release>openSUSE 11.0</release>
  <issued date="1238489486"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=488336" id="488336" title="bug number 488336" type="bugzilla"/>
  </references>
  <description>* Compatibility changes for the upcoming ClamAV 0.95.
  * Add new iconset from Maarten van Gent.
  * Ukrainian Translation from Yuri Chornoivan
  * Fix compilation against ClamAV 0.94
  * Fix bug #258424 in ubuntu bug tracker.
  * Install Konqueror Action 'Scan with KlamAV' so that it
    works on all systems .
  * Fix bug 213690 in ubuntu bugtracker. Whitespace fixes.
  * Fix paths when creating crontask. Patch from Marc
    Benstein
</description>
  <pkglist>
    <collection>
        <package name="klamav" arch="i586" version="0.46" release="0.1">
          <filename>klamav-0.46-0.1.i586.rpm</filename>
        </package>
        <package name="klamav" arch="ppc" version="0.46" release="0.1">
          <filename>klamav-0.46-0.1.ppc.rpm</filename>
        </package>
        <package name="klamav" arch="x86_64" version="0.46" release="0.1">
          <filename>klamav-0.46-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="bd1daa7c1e9e026457062433480adb0a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="721">
  <id>hal</id>
  <title>hal new dbus configuration</title>
  <release>openSUSE 11.0</release>
  <issued date="1238695054"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443307" id="443307" title="bug number 443307" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=469775" id="469775" title="bug number 469775" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=491320" id="491320" title="bug number 491320" type="bugzilla"/>
  </references>
  <description>The dbus package used a too permissive configuration.
Therefore intended access control for some services was not
applied (CVE-2008-4311).

The new configuration denies access by default. Some dbus
services like hal break due to this setting and need an
updated configuration as well. The dbus configuration in
the previous hal update was incomplete so this is the
second attempt to fix the problem.
</description>
  <pkglist>
    <collection>
        <package name="hal" arch="i586" version="0.5.11" release="8.6">
          <filename>hal-0.5.11-8.6.i586.rpm</filename>
        </package>
        <package name="hal" arch="ppc" version="0.5.11" release="8.6">
          <filename>hal-0.5.11-8.6.ppc.rpm</filename>
        </package>
        <package name="hal" arch="x86_64" version="0.5.11" release="8.6">
          <filename>hal-0.5.11-8.6.x86_64.rpm</filename>
        </package>
        <package name="hal-32bit" arch="x86_64" version="0.5.11" release="8.6">
          <filename>hal-32bit-0.5.11-8.6.x86_64.rpm</filename>
        </package>
        <package name="hal-64bit" arch="ppc" version="0.5.11" release="8.6">
          <filename>hal-64bit-0.5.11-8.6.ppc.rpm</filename>
        </package>
        <package name="hal-devel" arch="i586" version="0.5.11" release="8.6">
          <filename>hal-devel-0.5.11-8.6.i586.rpm</filename>
        </package>
        <package name="hal-devel" arch="ppc" version="0.5.11" release="8.6">
          <filename>hal-devel-0.5.11-8.6.ppc.rpm</filename>
        </package>
        <package name="hal-devel" arch="x86_64" version="0.5.11" release="8.6">
          <filename>hal-devel-0.5.11-8.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="85730a084b9f1c261a7f6b4f2ad9d421"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="676">
  <id>strongswan</id>
  <title>strongswan security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1237910593"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=487762" id="487762" title="bug number 487762" type="bugzilla"/>
  </references>
  <description>By sending a specially crafted Dead Peer Detection (DPD)
packet remote attackers could crash the pluto IKE daemon
(CVE-2009-0790).
</description>
  <pkglist>
    <collection>
        <package name="strongswan" arch="i586" version="4.2.1" release="11.6">
          <filename>strongswan-4.2.1-11.6.i586.rpm</filename>
        </package>
        <package name="strongswan" arch="ppc" version="4.2.1" release="11.6">
          <filename>strongswan-4.2.1-11.6.ppc.rpm</filename>
        </package>
        <package name="strongswan" arch="x86_64" version="4.2.1" release="11.6">
          <filename>strongswan-4.2.1-11.6.x86_64.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="i586" version="4.2.1" release="11.6">
          <filename>strongswan-doc-4.2.1-11.6.i586.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="ppc" version="4.2.1" release="11.6">
          <filename>strongswan-doc-4.2.1-11.6.ppc.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="x86_64" version="4.2.1" release="11.6">
          <filename>strongswan-doc-4.2.1-11.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cd2940ce23f5305a4521b4da6d0acb92"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="763">
  <id>timezone</id>
  <title>timezone: update to version 2009d</title>
  <release>openSUSE 11.0</release>
  <issued date="1239252069"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=473314" id="473314" title="bug number 473314" type="bugzilla"/>
  </references>
  <description>* DST changes: Africa/Casablanca, Africa/Tunis,
  Asia/Damascus, America/Argentina/..., America/Havana,
  America/Resolute
* Historical correction: Europe/Zurich
* New timezone: America/Argentina/Salta
* zic.c: fix fence-post error (fixes corrupt timezone
  database)
</description>
  <pkglist>
    <collection>
        <package name="timezone" arch="i586" version="2009d" release="0.1">
          <filename>timezone-2009d-0.1.i586.rpm</filename>
        </package>
        <package name="timezone" arch="ppc" version="2009d" release="0.1">
          <filename>timezone-2009d-0.1.ppc.rpm</filename>
        </package>
        <package name="timezone" arch="x86_64" version="2009d" release="0.1">
          <filename>timezone-2009d-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="bb91595b014b5bcfc445a9c2e8828b36"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="675">
  <id>postgresql</id>
  <title>postgresql security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1237910627"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=486347" id="486347" title="bug number 486347" type="bugzilla"/>
  </references>
  <description>Remote authenticated users could crash the postgresql
server by requesting a conversion with an inappropriate
encoding (CVE-2009-0922).
</description>
  <pkglist>
    <collection>
        <package name="postgresql" arch="i586" version="8.3.7" release="0.1">
          <filename>postgresql-8.3.7-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql" arch="ppc" version="8.3.7" release="0.1">
          <filename>postgresql-8.3.7-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql" arch="ppc64" version="8.3.7" release="0.1">
          <filename>postgresql-8.3.7-0.1.ppc64.rpm</filename>
        </package>
        <package name="postgresql" arch="x86_64" version="8.3.7" release="0.1">
          <filename>postgresql-8.3.7-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="i586" version="8.3.7" release="0.1">
          <filename>postgresql-contrib-8.3.7-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="ppc" version="8.3.7" release="0.1">
          <filename>postgresql-contrib-8.3.7-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="x86_64" version="8.3.7" release="0.1">
          <filename>postgresql-contrib-8.3.7-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="i586" version="8.3.7" release="0.1">
          <filename>postgresql-devel-8.3.7-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="ppc" version="8.3.7" release="0.1">
          <filename>postgresql-devel-8.3.7-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="x86_64" version="8.3.7" release="0.1">
          <filename>postgresql-devel-8.3.7-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="i586" version="8.3.7" release="0.1">
          <filename>postgresql-docs-8.3.7-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="ppc" version="8.3.7" release="0.1">
          <filename>postgresql-docs-8.3.7-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="x86_64" version="8.3.7" release="0.1">
          <filename>postgresql-docs-8.3.7-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="i586" version="8.3.7" release="0.1">
          <filename>postgresql-libs-8.3.7-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="ppc" version="8.3.7" release="0.1">
          <filename>postgresql-libs-8.3.7-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="x86_64" version="8.3.7" release="0.1">
          <filename>postgresql-libs-8.3.7-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs-32bit" arch="x86_64" version="8.3.7" release="0.1">
          <filename>postgresql-libs-32bit-8.3.7-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs-64bit" arch="ppc" version="8.3.7" release="0.1">
          <filename>postgresql-libs-64bit-8.3.7-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-server" arch="i586" version="8.3.7" release="0.1">
          <filename>postgresql-server-8.3.7-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-server" arch="ppc" version="8.3.7" release="0.1">
          <filename>postgresql-server-8.3.7-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-server" arch="x86_64" version="8.3.7" release="0.1">
          <filename>postgresql-server-8.3.7-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d740755926641b68adc21863744e2258"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="768">
  <id>libudev-devel</id>
  <title>udev: Fixed local privilege escalation</title>
  <release>openSUSE 11.0</release>
  <issued date="1239705173"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=493158" id="493158" title="bug number 493158" type="bugzilla"/>
  </references>
  <description>This update fixes a local privilege escalation in udev.

CVE-2009-1185: udev did not check the origin of the netlink
messages. A local attacker could fake device create events
and so gain root privileges.
</description>
  <pkglist>
    <collection>
        <package name="libvolume_id" arch="i586" version="120" release="13.2">
          <filename>libvolume_id-120-13.2.i586.rpm</filename>
        </package>
        <package name="libvolume_id" arch="ppc" version="120" release="13.2">
          <filename>libvolume_id-120-13.2.ppc.rpm</filename>
        </package>
        <package name="libvolume_id" arch="x86_64" version="120" release="13.2">
          <filename>libvolume_id-120-13.2.x86_64.rpm</filename>
        </package>
        <package name="libvolume_id-devel" arch="i586" version="120" release="13.2">
          <filename>libvolume_id-devel-120-13.2.i586.rpm</filename>
        </package>
        <package name="libvolume_id-devel" arch="ppc" version="120" release="13.2">
          <filename>libvolume_id-devel-120-13.2.ppc.rpm</filename>
        </package>
        <package name="libvolume_id-devel" arch="x86_64" version="120" release="13.2">
          <filename>libvolume_id-devel-120-13.2.x86_64.rpm</filename>
        </package>
        <package name="udev" arch="i586" version="120" release="13.2">
          <filename>udev-120-13.2.i586.rpm</filename>
        </package>
        <package name="udev" arch="ppc" version="120" release="13.2">
          <filename>udev-120-13.2.ppc.rpm</filename>
        </package>
        <package name="udev" arch="x86_64" version="120" release="13.2">
          <filename>udev-120-13.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c68eed94adbe7bc731266994651fe4f4"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="615">
  <id>sysconfig</id>
  <title>sysconfig: corrections for the network scripts</title>
  <release>openSUSE 11.0</release>
  <issued date="1237250203"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406887" id="406887" title="bug number 406887" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=134692" id="134692" title="bug number 134692" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478513" id="478513" title="bug number 478513" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=402438" id="402438" title="bug number 402438" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=436857" id="436857" title="bug number 436857" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=467165" id="467165" title="bug number 467165" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=463266" id="463266" title="bug number 463266" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=424356" id="424356" title="bug number 424356" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=418168" id="418168" title="bug number 418168" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=405434" id="405434" title="bug number 405434" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=397484" id="397484" title="bug number 397484" type="bugzilla"/>
  </references>
  <description>- Fixed overlapping messages in rcnetwork output
  (bnc#406887).
- Fixes for /etc/named.d/forwarders.conf updates in case
  that the file does not exists or it does not already
  contain a 'forwarders {};' block (bnc#134692).
- Fixed ifup-wireless to not set nick by default that
  breaks several drivers (bnc#478513).
- Fixed ifup-wireless to set ap to 'off' instead to 'any'
  for the madwifi driver that does not support 'any'
  (bnc#402438).
- Fixed network scripts to handle dummy interfaces
  (bnc#436857).
- Fixed ipv6 support in ifup-route script and parsing of
  final lines without EOL in ifroute files (bnc#467165).
- Fixed ifdown-autoip to check if info file exists
  (bnc#463266).
- Fixed ifup-dhcp to retain spaces DHCLIENT_VENDOR_CLASS_ID
  and other dhcpcd option values (bnc#424356).
- Fixed DHCLIENT_SET_HOSTNAME handling for dhcpcd
  (bnc#418168).
- Fixed typo in ethtool retcode check in ifup (bnc#405434).
- Added the -p dhcpcd option in /sbin/ifup-dhcp when
  STARTMODE is nfsroot to avoid an interface
  deconfiguration on dhcpcd startup (bnc#397484).
</description>
  <pkglist>
    <collection>
        <package name="sysconfig" arch="i586" version="0.70.8" release="3.2">
          <filename>sysconfig-0.70.8-3.2.i586.rpm</filename>
        </package>
        <package name="sysconfig" arch="ppc" version="0.70.8" release="3.2">
          <filename>sysconfig-0.70.8-3.2.ppc.rpm</filename>
        </package>
        <package name="sysconfig" arch="x86_64" version="0.70.8" release="3.2">
          <filename>sysconfig-0.70.8-3.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4a0eddf0b27bf627bb916187feb6dc77"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="582">
  <id>libxine-devel</id>
  <title>xine security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1236610870"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=473825" id="473825" title="bug number 473825" type="bugzilla"/>
  </references>
  <description>Specially crafted 4x movie files could cause an integer
overflow in xine-lib (CVE-2009-0698).
</description>
  <pkglist>
    <collection>
        <package name="xine-devel" arch="i586" version="1.1.12" release="8.5">
          <filename>xine-devel-1.1.12-8.5.i586.rpm</filename>
        </package>
        <package name="xine-devel" arch="ppc" version="1.1.12" release="8.5">
          <filename>xine-devel-1.1.12-8.5.ppc.rpm</filename>
        </package>
        <package name="xine-devel" arch="x86_64" version="1.1.12" release="8.5">
          <filename>xine-devel-1.1.12-8.5.x86_64.rpm</filename>
        </package>
        <package name="xine-extra" arch="i586" version="1.1.12" release="8.5">
          <filename>xine-extra-1.1.12-8.5.i586.rpm</filename>
        </package>
        <package name="xine-extra" arch="ppc" version="1.1.12" release="8.5">
          <filename>xine-extra-1.1.12-8.5.ppc.rpm</filename>
        </package>
        <package name="xine-extra" arch="x86_64" version="1.1.12" release="8.5">
          <filename>xine-extra-1.1.12-8.5.x86_64.rpm</filename>
        </package>
        <package name="xine-lib" arch="i586" version="1.1.12" release="8.5">
          <filename>xine-lib-1.1.12-8.5.i586.rpm</filename>
        </package>
        <package name="xine-lib" arch="ppc" version="1.1.12" release="8.5">
          <filename>xine-lib-1.1.12-8.5.ppc.rpm</filename>
        </package>
        <package name="xine-lib" arch="x86_64" version="1.1.12" release="8.5">
          <filename>xine-lib-1.1.12-8.5.x86_64.rpm</filename>
        </package>
        <package name="xine-lib-32bit" arch="x86_64" version="1.1.12" release="8.5">
          <filename>xine-lib-32bit-1.1.12-8.5.x86_64.rpm</filename>
        </package>
        <package name="xine-lib-64bit" arch="ppc" version="1.1.12" release="8.5">
          <filename>xine-lib-64bit-1.1.12-8.5.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4448ba0610a42bfa66aa701e40e695ef"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="803">
  <id>moodle</id>
  <title>moodle security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1240003153"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=490087" id="490087" title="bug number 490087" type="bugzilla"/>
  </references>
  <description>Special command sequences in TeX files allowed users to
read arbitrary files (CVE-2009-1171).
</description>
  <pkglist>
    <collection>
        <package name="moodle" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-af" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-af-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-ar" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-ar-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-be" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-be-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-bg" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-bg-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-bs" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-bs-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-ca" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-ca-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-cs" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-cs-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-da" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-da-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-de" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-de-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-de_du" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-de_du-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-el" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-el-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-es" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-es-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-et" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-et-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-eu" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-eu-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-fa" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-fa-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-fi" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-fi-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-fr" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-fr-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-ga" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-ga-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-gl" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-gl-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-he" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-he-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-hi" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-hi-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-hr" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-hr-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-hu" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-hu-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-id" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-id-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-is" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-is-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-it" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-it-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-ja" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-ja-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-ka" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-ka-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-km" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-km-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-kn" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-kn-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-ko" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-ko-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-lt" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-lt-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-lv" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-lv-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-mi_tn" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-mi_tn-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-ms" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-ms-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-nl" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-nl-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-nn" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-nn-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-no" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-no-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-pl" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-pl-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-pt" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-pt-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-ro" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-ro-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-ru" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-ru-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-sk" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-sk-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-sl" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-sl-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-so" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-so-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-sq" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-sq-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-sr" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-sr-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-sv" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-sv-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-th" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-th-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-tl" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-tl-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-tr" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-tr-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-uk" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-uk-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-vi" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-vi-1.9.0-24.8.noarch.rpm</filename>
        </package>
        <package name="moodle-zh_cn" arch="noarch" version="1.9.0" release="24.8">
          <filename>moodle-zh_cn-1.9.0-24.8.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5f95a74de8e64cd8d5bf89745a122d73"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="801">
  <id>koffice</id>
  <title>koffice security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1239847481"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=487097" id="487097" title="bug number 487097" type="bugzilla"/>
  </references>
  <description>The pdf filter of koffice is prone to several buffer
overflows. Due to the large number of problems and the huge
backporting effort that would be needed the filter has been
disabled.
</description>
  <pkglist>
    <collection>
        <package name="koffice" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-database" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-database-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-database" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-database-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-database" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-database-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-database-mysql" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-database-mysql-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-database-mysql" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-database-mysql-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-database-mysql" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-database-mysql-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-database-psql" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-database-psql-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-database-psql" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-database-psql-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-database-psql" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-database-psql-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-devel" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-devel-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-devel" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-devel-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-devel" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-devel-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-extra" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-extra-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-extra" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-extra-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-extra" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-extra-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-illustration" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-illustration-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-illustration" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-illustration-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-illustration" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-illustration-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-planning" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-planning-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-planning" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-planning-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-planning" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-planning-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-presentation" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-presentation-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-presentation" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-presentation-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-presentation" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-presentation-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-python" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-python-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-python" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-python-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-python" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-python-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-ruby" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-ruby-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-ruby" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-ruby-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-ruby" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-ruby-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-spreadsheet" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-spreadsheet-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-spreadsheet" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-spreadsheet-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-spreadsheet" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-spreadsheet-1.6.3-157.2.x86_64.rpm</filename>
        </package>
        <package name="koffice-wordprocessing" arch="i586" version="1.6.3" release="157.2">
          <filename>koffice-wordprocessing-1.6.3-157.2.i586.rpm</filename>
        </package>
        <package name="koffice-wordprocessing" arch="ppc" version="1.6.3" release="157.2">
          <filename>koffice-wordprocessing-1.6.3-157.2.ppc.rpm</filename>
        </package>
        <package name="koffice-wordprocessing" arch="x86_64" version="1.6.3" release="157.2">
          <filename>koffice-wordprocessing-1.6.3-157.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="31a699b72502d6dd8b61c8a78d22e6b4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="802">
  <id>bluez-audio</id>
  <title>bluez new dbus configuration</title>
  <release>openSUSE 11.0</release>
  <issued date="1239992342"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=443307" id="443307" title="bug number 443307" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=470640" id="470640" title="bug number 470640" type="bugzilla"/>
  </references>
  <description>The dbus package used a too permissive configuration.
Therefore intended access control for some services was not
applied (CVE-2008-4311).

The new configuration denies access by default. Some dbus
services may break due to this setting and need an updated
configuration as well.

The previous bluez update caused problems with the bluez
passkey agent. This second update fixes this.
</description>
  <pkglist>
    <collection>
        <package name="bluez-audio" arch="i586" version="3.32" release="8.7">
          <filename>bluez-audio-3.32-8.7.i586.rpm</filename>
        </package>
        <package name="bluez-audio" arch="ppc" version="3.32" release="8.7">
          <filename>bluez-audio-3.32-8.7.ppc.rpm</filename>
        </package>
        <package name="bluez-audio" arch="x86_64" version="3.32" release="8.7">
          <filename>bluez-audio-3.32-8.7.x86_64.rpm</filename>
        </package>
        <package name="bluez-cups" arch="i586" version="3.32" release="8.7">
          <filename>bluez-cups-3.32-8.7.i586.rpm</filename>
        </package>
        <package name="bluez-cups" arch="ppc" version="3.32" release="8.7">
          <filename>bluez-cups-3.32-8.7.ppc.rpm</filename>
        </package>
        <package name="bluez-cups" arch="x86_64" version="3.32" release="8.7">
          <filename>bluez-cups-3.32-8.7.x86_64.rpm</filename>
        </package>
        <package name="bluez-test" arch="i586" version="3.32" release="8.7">
          <filename>bluez-test-3.32-8.7.i586.rpm</filename>
        </package>
        <package name="bluez-test" arch="ppc" version="3.32" release="8.7">
          <filename>bluez-test-3.32-8.7.ppc.rpm</filename>
        </package>
        <package name="bluez-test" arch="x86_64" version="3.32" release="8.7">
          <filename>bluez-test-3.32-8.7.x86_64.rpm</filename>
        </package>
        <package name="bluez-utils" arch="i586" version="3.32" release="8.7">
          <filename>bluez-utils-3.32-8.7.i586.rpm</filename>
        </package>
        <package name="bluez-utils" arch="ppc" version="3.32" release="8.7">
          <filename>bluez-utils-3.32-8.7.ppc.rpm</filename>
        </package>
        <package name="bluez-utils" arch="x86_64" version="3.32" release="8.7">
          <filename>bluez-utils-3.32-8.7.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="92f7ada346fab894a17174ed22b46b03"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="605">
  <id>gnutls</id>
  <title>gnutls: Fix regression with self signed certificates</title>
  <release>openSUSE 11.0</release>
  <issued date="1236958608"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457938" id="457938" title="bug number 457938" type="bugzilla"/>
  </references>
  <description>The previous security fix for gnutls (CVE-2008-4989)
introduced a regression in the X.509 validation code for
self-signed certificates. 

This update fixes this problem.
</description>
  <pkglist>
    <collection>
        <package name="gnutls" arch="i586" version="2.2.2" release="17.4">
          <filename>gnutls-2.2.2-17.4.i586.rpm</filename>
        </package>
        <package name="gnutls" arch="ppc" version="2.2.2" release="17.4">
          <filename>gnutls-2.2.2-17.4.ppc.rpm</filename>
        </package>
        <package name="gnutls" arch="x86_64" version="2.2.2" release="17.4">
          <filename>gnutls-2.2.2-17.4.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="i586" version="2.2.2" release="17.4">
          <filename>libgnutls-devel-2.2.2-17.4.i586.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="ppc" version="2.2.2" release="17.4">
          <filename>libgnutls-devel-2.2.2-17.4.ppc.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="x86_64" version="2.2.2" release="17.4">
          <filename>libgnutls-devel-2.2.2-17.4.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="i586" version="2.2.2" release="17.4">
          <filename>libgnutls-extra-devel-2.2.2-17.4.i586.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="ppc" version="2.2.2" release="17.4">
          <filename>libgnutls-extra-devel-2.2.2-17.4.ppc.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="x86_64" version="2.2.2" release="17.4">
          <filename>libgnutls-extra-devel-2.2.2-17.4.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="i586" version="2.2.2" release="17.4">
          <filename>libgnutls-extra26-2.2.2-17.4.i586.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="ppc" version="2.2.2" release="17.4">
          <filename>libgnutls-extra26-2.2.2-17.4.ppc.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="x86_64" version="2.2.2" release="17.4">
          <filename>libgnutls-extra26-2.2.2-17.4.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26" arch="i586" version="2.2.2" release="17.4">
          <filename>libgnutls26-2.2.2-17.4.i586.rpm</filename>
        </package>
        <package name="libgnutls26" arch="ppc" version="2.2.2" release="17.4">
          <filename>libgnutls26-2.2.2-17.4.ppc.rpm</filename>
        </package>
        <package name="libgnutls26" arch="x86_64" version="2.2.2" release="17.4">
          <filename>libgnutls26-2.2.2-17.4.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26-32bit" arch="x86_64" version="2.2.2" release="17.4">
          <filename>libgnutls26-32bit-2.2.2-17.4.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26-64bit" arch="ppc" version="2.2.2" release="17.4">
          <filename>libgnutls26-64bit-2.2.2-17.4.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e9d637224d37fd8e42b13a26aa111b24"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="783">
  <id>zypper</id>
  <title>zypper: add missing logrotate for zypp-refresh</title>
  <release>openSUSE 11.0</release>
  <issued date="1239849797"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=487613" id="487613" title="bug number 487613" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=433679" id="433679" title="bug number 433679" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=436688" id="436688" title="bug number 436688" type="bugzilla"/>
  </references>
  <description>This update fixes indefinitely growing zypp-refresh.log by
installing a logrotate file zypp-refresh.lr (bnc #487613).

Other fixes included:
- bnc #433679: requesting of perl symbols in 'install'
  command. (e.g. zypper install 'perl(MIME::Lite)')
- bnc #436688: zypper lr -P correctly shows repository
  priorities and sorts the repositories by them.
</description>
  <pkglist>
    <collection>
        <package name="zypper" arch="i586" version="0.11.11" release="0.1">
          <filename>zypper-0.11.11-0.1.i586.rpm</filename>
        </package>
        <package name="zypper" arch="ppc" version="0.11.11" release="0.1">
          <filename>zypper-0.11.11-0.1.ppc.rpm</filename>
        </package>
        <package name="zypper" arch="x86_64" version="0.11.11" release="0.1">
          <filename>zypper-0.11.11-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="04a336424d7208ee8d374a60106a3c70"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="784">
  <id>cups</id>
  <title>cups security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1239895384"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=485895" id="485895" title="bug number 485895" type="bugzilla"/>
  </references>
  <description>Specially crafted tiff files could cause an integer
overflow in the 'imagetops' filter (CVE-2009-0163).
</description>
  <pkglist>
    <collection>
        <package name="cups" arch="i586" version="1.3.7" release="25.8">
          <filename>cups-1.3.7-25.8.i586.rpm</filename>
        </package>
        <package name="cups" arch="ppc" version="1.3.7" release="25.8">
          <filename>cups-1.3.7-25.8.ppc.rpm</filename>
        </package>
        <package name="cups" arch="x86_64" version="1.3.7" release="25.8">
          <filename>cups-1.3.7-25.8.x86_64.rpm</filename>
        </package>
        <package name="cups-client" arch="i586" version="1.3.7" release="25.8">
          <filename>cups-client-1.3.7-25.8.i586.rpm</filename>
        </package>
        <package name="cups-client" arch="ppc" version="1.3.7" release="25.8">
          <filename>cups-client-1.3.7-25.8.ppc.rpm</filename>
        </package>
        <package name="cups-client" arch="x86_64" version="1.3.7" release="25.8">
          <filename>cups-client-1.3.7-25.8.x86_64.rpm</filename>
        </package>
        <package name="cups-devel" arch="i586" version="1.3.7" release="25.8">
          <filename>cups-devel-1.3.7-25.8.i586.rpm</filename>
        </package>
        <package name="cups-devel" arch="ppc" version="1.3.7" release="25.8">
          <filename>cups-devel-1.3.7-25.8.ppc.rpm</filename>
        </package>
        <package name="cups-devel" arch="x86_64" version="1.3.7" release="25.8">
          <filename>cups-devel-1.3.7-25.8.x86_64.rpm</filename>
        </package>
        <package name="cups-libs" arch="i586" version="1.3.7" release="25.8">
          <filename>cups-libs-1.3.7-25.8.i586.rpm</filename>
        </package>
        <package name="cups-libs" arch="ppc" version="1.3.7" release="25.8">
          <filename>cups-libs-1.3.7-25.8.ppc.rpm</filename>
        </package>
        <package name="cups-libs" arch="x86_64" version="1.3.7" release="25.8">
          <filename>cups-libs-1.3.7-25.8.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-32bit" arch="x86_64" version="1.3.7" release="25.8">
          <filename>cups-libs-32bit-1.3.7-25.8.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-64bit" arch="ppc" version="1.3.7" release="25.8">
          <filename>cups-libs-64bit-1.3.7-25.8.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a5b532bc45013906b28fe0f2dd55e850"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="770">
  <id>kdepim3</id>
  <title>kdepim3: KMail executes links in mail without confirmation</title>
  <release>openSUSE 11.0</release>
  <issued date="1239798653"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=490696" id="490696" title="bug number 490696" type="bugzilla"/>
  </references>
  <description>This updates of KMail does not executes links in mail
without confirmation anymore.
</description>
  <pkglist>
    <collection>
        <package name="kdepim3" arch="i586" version="3.5.9" release="53.2">
          <filename>kdepim3-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="kdepim3" arch="ppc" version="3.5.9" release="53.2">
          <filename>kdepim3-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="kdepim3" arch="x86_64" version="3.5.9" release="53.2">
          <filename>kdepim3-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="kdepim3-devel" arch="i586" version="3.5.9" release="53.2">
          <filename>kdepim3-devel-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="kdepim3-devel" arch="ppc" version="3.5.9" release="53.2">
          <filename>kdepim3-devel-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="kdepim3-devel" arch="x86_64" version="3.5.9" release="53.2">
          <filename>kdepim3-devel-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="kdepim3-kpilot" arch="i586" version="3.5.9" release="53.2">
          <filename>kdepim3-kpilot-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="kdepim3-kpilot" arch="ppc" version="3.5.9" release="53.2">
          <filename>kdepim3-kpilot-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="kdepim3-kpilot" arch="x86_64" version="3.5.9" release="53.2">
          <filename>kdepim3-kpilot-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="kdepim3-mobile" arch="i586" version="3.5.9" release="53.2">
          <filename>kdepim3-mobile-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="kdepim3-mobile" arch="ppc" version="3.5.9" release="53.2">
          <filename>kdepim3-mobile-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="kdepim3-mobile" arch="x86_64" version="3.5.9" release="53.2">
          <filename>kdepim3-mobile-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="kdepim3-notes" arch="i586" version="3.5.9" release="53.2">
          <filename>kdepim3-notes-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="kdepim3-notes" arch="ppc" version="3.5.9" release="53.2">
          <filename>kdepim3-notes-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="kdepim3-notes" arch="x86_64" version="3.5.9" release="53.2">
          <filename>kdepim3-notes-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="kdepim3-time-management" arch="i586" version="3.5.9" release="53.2">
          <filename>kdepim3-time-management-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="kdepim3-time-management" arch="ppc" version="3.5.9" release="53.2">
          <filename>kdepim3-time-management-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="kdepim3-time-management" arch="x86_64" version="3.5.9" release="53.2">
          <filename>kdepim3-time-management-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="kitchensync" arch="i586" version="3.5.9" release="53.2">
          <filename>kitchensync-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="kitchensync" arch="ppc" version="3.5.9" release="53.2">
          <filename>kitchensync-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="kitchensync" arch="x86_64" version="3.5.9" release="53.2">
          <filename>kitchensync-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="libkcal" arch="i586" version="3.5.9" release="53.2">
          <filename>libkcal-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="libkcal" arch="ppc" version="3.5.9" release="53.2">
          <filename>libkcal-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="libkcal" arch="x86_64" version="3.5.9" release="53.2">
          <filename>libkcal-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="libkcal-devel" arch="i586" version="3.5.9" release="53.2">
          <filename>libkcal-devel-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="libkcal-devel" arch="ppc" version="3.5.9" release="53.2">
          <filename>libkcal-devel-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="libkcal-devel" arch="x86_64" version="3.5.9" release="53.2">
          <filename>libkcal-devel-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="libkcal2" arch="i586" version="3.5.9" release="53.2">
          <filename>libkcal2-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="libkcal2" arch="ppc" version="3.5.9" release="53.2">
          <filename>libkcal2-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="libkcal2" arch="x86_64" version="3.5.9" release="53.2">
          <filename>libkcal2-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="libkmime-devel" arch="i586" version="3.5.9" release="53.2">
          <filename>libkmime-devel-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="libkmime-devel" arch="ppc" version="3.5.9" release="53.2">
          <filename>libkmime-devel-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="libkmime-devel" arch="x86_64" version="3.5.9" release="53.2">
          <filename>libkmime-devel-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="libkmime2" arch="i586" version="3.5.9" release="53.2">
          <filename>libkmime2-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="libkmime2" arch="ppc" version="3.5.9" release="53.2">
          <filename>libkmime2-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="libkmime2" arch="x86_64" version="3.5.9" release="53.2">
          <filename>libkmime2-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="libktnef-devel" arch="i586" version="3.5.9" release="53.2">
          <filename>libktnef-devel-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="libktnef-devel" arch="ppc" version="3.5.9" release="53.2">
          <filename>libktnef-devel-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="libktnef-devel" arch="x86_64" version="3.5.9" release="53.2">
          <filename>libktnef-devel-3.5.9-53.2.x86_64.rpm</filename>
        </package>
        <package name="libktnef1" arch="i586" version="3.5.9" release="53.2">
          <filename>libktnef1-3.5.9-53.2.i586.rpm</filename>
        </package>
        <package name="libktnef1" arch="ppc" version="3.5.9" release="53.2">
          <filename>libktnef1-3.5.9-53.2.ppc.rpm</filename>
        </package>
        <package name="libktnef1" arch="x86_64" version="3.5.9" release="53.2">
          <filename>libktnef1-3.5.9-53.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d6aae2a6659ba7f7c8504daf6e33cedc"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="793">
  <id>xpdf</id>
  <title>xpdf security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1239931097"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=485892" id="485892" title="bug number 485892" type="bugzilla"/>
  </references>
  <description>Specially crafted PDF files could lead to crashes, make the
viewer run into an infinite loop or potentially even allow
execution of arbitrary code.

(CVE-2009-0165, CVE-2009-0146, CVE-2009-0147,
CVE-2009-0166, CVE-2009-0799, CVE-2009-0800, CVE-2009-1179,
CVE-2009-1180, CVE-2009-1181, CVE-2009-1182, CVE-2009-1183)
</description>
  <pkglist>
    <collection>
        <package name="xpdf" arch="i586" version="3.02" release="95.4">
          <filename>xpdf-3.02-95.4.i586.rpm</filename>
        </package>
        <package name="xpdf" arch="ppc" version="3.02" release="95.4">
          <filename>xpdf-3.02-95.4.ppc.rpm</filename>
        </package>
        <package name="xpdf" arch="x86_64" version="3.02" release="95.4">
          <filename>xpdf-3.02-95.4.x86_64.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="i586" version="3.02" release="95.4">
          <filename>xpdf-tools-3.02-95.4.i586.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="ppc" version="3.02" release="95.4">
          <filename>xpdf-tools-3.02-95.4.ppc.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="x86_64" version="3.02" release="95.4">
          <filename>xpdf-tools-3.02-95.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e0e3299170caa507a0306e46453bdbe0"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="815">
  <id>glib2</id>
  <title>glib2 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1240399843"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=449927" id="449927" title="bug number 449927" type="bugzilla"/>
  </references>
  <description>Large strings could lead to a heap overflow in the base64
encoding and decoding functions. Attackers could
potentially exploit that to execute arbitrary code
(CVE-2008-4316).
</description>
  <pkglist>
    <collection>
        <package name="glib2" arch="i586" version="2.16.3" release="20.6">
          <filename>glib2-2.16.3-20.6.i586.rpm</filename>
        </package>
        <package name="glib2" arch="ppc" version="2.16.3" release="20.6">
          <filename>glib2-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="glib2" arch="x86_64" version="2.16.3" release="20.6">
          <filename>glib2-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="glib2-branding-upstream" arch="i586" version="2.16.3" release="20.6">
          <filename>glib2-branding-upstream-2.16.3-20.6.i586.rpm</filename>
        </package>
        <package name="glib2-branding-upstream" arch="ppc" version="2.16.3" release="20.6">
          <filename>glib2-branding-upstream-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="glib2-branding-upstream" arch="x86_64" version="2.16.3" release="20.6">
          <filename>glib2-branding-upstream-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="glib2-devel" arch="i586" version="2.16.3" release="20.6">
          <filename>glib2-devel-2.16.3-20.6.i586.rpm</filename>
        </package>
        <package name="glib2-devel" arch="ppc" version="2.16.3" release="20.6">
          <filename>glib2-devel-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="glib2-devel" arch="x86_64" version="2.16.3" release="20.6">
          <filename>glib2-devel-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="glib2-devel-64bit" arch="ppc" version="2.16.3" release="20.6">
          <filename>glib2-devel-64bit-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="glib2-doc" arch="i586" version="2.16.3" release="20.6">
          <filename>glib2-doc-2.16.3-20.6.i586.rpm</filename>
        </package>
        <package name="glib2-doc" arch="ppc" version="2.16.3" release="20.6">
          <filename>glib2-doc-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="glib2-doc" arch="x86_64" version="2.16.3" release="20.6">
          <filename>glib2-doc-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="glib2-lang" arch="i586" version="2.16.3" release="20.6">
          <filename>glib2-lang-2.16.3-20.6.i586.rpm</filename>
        </package>
        <package name="glib2-lang" arch="ppc" version="2.16.3" release="20.6">
          <filename>glib2-lang-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="glib2-lang" arch="x86_64" version="2.16.3" release="20.6">
          <filename>glib2-lang-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="i586" version="2.16.3" release="20.6">
          <filename>libgio-2_0-0-2.16.3-20.6.i586.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="ppc" version="2.16.3" release="20.6">
          <filename>libgio-2_0-0-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="x86_64" version="2.16.3" release="20.6">
          <filename>libgio-2_0-0-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.6">
          <filename>libgio-2_0-0-32bit-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.6">
          <filename>libgio-2_0-0-64bit-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="libgio-fam" arch="i586" version="2.16.3" release="20.6">
          <filename>libgio-fam-2.16.3-20.6.i586.rpm</filename>
        </package>
        <package name="libgio-fam" arch="ppc" version="2.16.3" release="20.6">
          <filename>libgio-fam-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="libgio-fam" arch="x86_64" version="2.16.3" release="20.6">
          <filename>libgio-fam-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="i586" version="2.16.3" release="20.6">
          <filename>libglib-2_0-0-2.16.3-20.6.i586.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="ppc" version="2.16.3" release="20.6">
          <filename>libglib-2_0-0-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="x86_64" version="2.16.3" release="20.6">
          <filename>libglib-2_0-0-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.6">
          <filename>libglib-2_0-0-32bit-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.6">
          <filename>libglib-2_0-0-64bit-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="i586" version="2.16.3" release="20.6">
          <filename>libgmodule-2_0-0-2.16.3-20.6.i586.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="ppc" version="2.16.3" release="20.6">
          <filename>libgmodule-2_0-0-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="x86_64" version="2.16.3" release="20.6">
          <filename>libgmodule-2_0-0-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.6">
          <filename>libgmodule-2_0-0-32bit-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.6">
          <filename>libgmodule-2_0-0-64bit-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="i586" version="2.16.3" release="20.6">
          <filename>libgobject-2_0-0-2.16.3-20.6.i586.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="ppc" version="2.16.3" release="20.6">
          <filename>libgobject-2_0-0-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="x86_64" version="2.16.3" release="20.6">
          <filename>libgobject-2_0-0-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libgobject-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.6">
          <filename>libgobject-2_0-0-32bit-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libgobject-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.6">
          <filename>libgobject-2_0-0-64bit-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="i586" version="2.16.3" release="20.6">
          <filename>libgthread-2_0-0-2.16.3-20.6.i586.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="ppc" version="2.16.3" release="20.6">
          <filename>libgthread-2_0-0-2.16.3-20.6.ppc.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="x86_64" version="2.16.3" release="20.6">
          <filename>libgthread-2_0-0-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libgthread-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.6">
          <filename>libgthread-2_0-0-32bit-2.16.3-20.6.x86_64.rpm</filename>
        </package>
        <package name="libgthread-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.6">
          <filename>libgthread-2_0-0-64bit-2.16.3-20.6.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="97b200c6344514e54644f97928645c7e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="809">
  <id>clamav</id>
  <title>clamav: clamav 0.95.1 fixes two security issues</title>
  <release>openSUSE 11.0</release>
  <issued date="1239995442"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=493562" id="493562" title="bug number 493562" type="bugzilla"/>
  </references>
  <description>This clamav version upgrade to 0.95.1 fixes a buffer
overflow error in the cli_url_canon() function
(CVE-2009-1372) and a denial of service condition occuring
while parsing malformed UPack archives (CVE-2009-1371).
</description>
  <pkglist>
    <collection>
        <package name="clamav" arch="i586" version="0.95.1" release="0.1">
          <filename>clamav-0.95.1-0.1.i586.rpm</filename>
        </package>
        <package name="clamav" arch="ppc" version="0.95.1" release="0.1">
          <filename>clamav-0.95.1-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav" arch="x86_64" version="0.95.1" release="0.1">
          <filename>clamav-0.95.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="clamav-db" arch="i586" version="0.95.1" release="0.1">
          <filename>clamav-db-0.95.1-0.1.i586.rpm</filename>
        </package>
        <package name="clamav-db" arch="ppc" version="0.95.1" release="0.1">
          <filename>clamav-db-0.95.1-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav-db" arch="x86_64" version="0.95.1" release="0.1">
          <filename>clamav-db-0.95.1-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="eff032bd0d09aa27b192a165e2bf1c80"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="664">
  <id>gpg2</id>
  <title>gpg2: fix X-session integration</title>
  <release>openSUSE 11.0</release>
  <issued date="1237486850"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=481463" id="481463" title="bug number 481463" type="bugzilla"/>
  </references>
  <description>gpg-agent modifies SigBlk mask of all processes spawned in
the X session breaking unrelated software
</description>
  <pkglist>
    <collection>
        <package name="gpg2" arch="i586" version="2.0.9" release="22.2">
          <filename>gpg2-2.0.9-22.2.i586.rpm</filename>
        </package>
        <package name="gpg2" arch="ppc" version="2.0.9" release="22.2">
          <filename>gpg2-2.0.9-22.2.ppc.rpm</filename>
        </package>
        <package name="gpg2" arch="x86_64" version="2.0.9" release="22.2">
          <filename>gpg2-2.0.9-22.2.x86_64.rpm</filename>
        </package>
        <package name="gpg2-lang" arch="i586" version="2.0.9" release="22.2">
          <filename>gpg2-lang-2.0.9-22.2.i586.rpm</filename>
        </package>
        <package name="gpg2-lang" arch="ppc" version="2.0.9" release="22.2">
          <filename>gpg2-lang-2.0.9-22.2.ppc.rpm</filename>
        </package>
        <package name="gpg2-lang" arch="x86_64" version="2.0.9" release="22.2">
          <filename>gpg2-lang-2.0.9-22.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="804311da028672eacbbeec641420fa47"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="819">
  <id>kdegraphics3</id>
  <title>kdegraphics3: vulnerability due to incorrect JBIG2 decoding</title>
  <release>openSUSE 11.0</release>
  <issued date="1240493525"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=487098" id="487098" title="bug number 487098" type="bugzilla"/>
  </references>
  <description>This update fixes security problems while decoding JBIG2.
(CVE-2009-0146, CVE-2009-0147, CVE-2009-0165,
CVE-2009-0166, CVE-2009-0799, CVE-2009-0800, CVE-2009-1179,
CVE-2009-1180, CVE-2009-1181, CVE-2009-1182, CVE-2009-1183)
</description>
  <pkglist>
    <collection>
        <package name="kdegraphics3" arch="i586" version="3.5.9" release="53.3">
          <filename>kdegraphics3-3.5.9-53.3.i586.rpm</filename>
        </package>
        <package name="kdegraphics3" arch="ppc" version="3.5.9" release="53.3">
          <filename>kdegraphics3-3.5.9-53.3.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3" arch="x86_64" version="3.5.9" release="53.3">
          <filename>kdegraphics3-3.5.9-53.3.x86_64.rpm</filename>
        </package>
        <package name="kdegraphics3-3D" arch="i586" version="3.5.9" release="53.3">
          <filename>kdegraphics3-3D-3.5.9-53.3.i586.rpm</filename>
        </package>
        <package name="kdegraphics3-3D" arch="ppc" version="3.5.9" release="53.3">
          <filename>kdegraphics3-3D-3.5.9-53.3.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3-3D" arch="x86_64" version="3.5.9" release="53.3">
          <filename>kdegraphics3-3D-3.5.9-53.3.x86_64.rpm</filename>
        </package>
        <package name="kdegraphics3-devel" arch="i586" version="3.5.9" release="53.3">
          <filename>kdegraphics3-devel-3.5.9-53.3.i586.rpm</filename>
        </package>
        <package name="kdegraphics3-devel" arch="ppc" version="3.5.9" release="53.3">
          <filename>kdegraphics3-devel-3.5.9-53.3.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3-devel" arch="x86_64" version="3.5.9" release="53.3">
          <filename>kdegraphics3-devel-3.5.9-53.3.x86_64.rpm</filename>
        </package>
        <package name="kdegraphics3-extra" arch="i586" version="3.5.9" release="53.3">
          <filename>kdegraphics3-extra-3.5.9-53.3.i586.rpm</filename>
        </package>
        <package name="kdegraphics3-extra" arch="ppc" version="3.5.9" release="53.3">
          <filename>kdegraphics3-extra-3.5.9-53.3.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3-extra" arch="x86_64" version="3.5.9" release="53.3">
          <filename>kdegraphics3-extra-3.5.9-53.3.x86_64.rpm</filename>
        </package>
        <package name="kdegraphics3-fax" arch="i586" version="3.5.9" release="53.3">
          <filename>kdegraphics3-fax-3.5.9-53.3.i586.rpm</filename>
        </package>
        <package name="kdegraphics3-fax" arch="ppc" version="3.5.9" release="53.3">
          <filename>kdegraphics3-fax-3.5.9-53.3.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3-fax" arch="x86_64" version="3.5.9" release="53.3">
          <filename>kdegraphics3-fax-3.5.9-53.3.x86_64.rpm</filename>
        </package>
        <package name="kdegraphics3-imaging" arch="i586" version="3.5.9" release="53.3">
          <filename>kdegraphics3-imaging-3.5.9-53.3.i586.rpm</filename>
        </package>
        <package name="kdegraphics3-imaging" arch="ppc" version="3.5.9" release="53.3">
          <filename>kdegraphics3-imaging-3.5.9-53.3.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3-imaging" arch="x86_64" version="3.5.9" release="53.3">
          <filename>kdegraphics3-imaging-3.5.9-53.3.x86_64.rpm</filename>
        </package>
        <package name="kdegraphics3-kamera" arch="i586" version="3.5.9" release="53.3">
          <filename>kdegraphics3-kamera-3.5.9-53.3.i586.rpm</filename>
        </package>
        <package name="kdegraphics3-kamera" arch="ppc" version="3.5.9" release="53.3">
          <filename>kdegraphics3-kamera-3.5.9-53.3.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3-kamera" arch="x86_64" version="3.5.9" release="53.3">
          <filename>kdegraphics3-kamera-3.5.9-53.3.x86_64.rpm</filename>
        </package>
        <package name="kdegraphics3-pdf" arch="i586" version="3.5.9" release="53.3">
          <filename>kdegraphics3-pdf-3.5.9-53.3.i586.rpm</filename>
        </package>
        <package name="kdegraphics3-pdf" arch="ppc" version="3.5.9" release="53.3">
          <filename>kdegraphics3-pdf-3.5.9-53.3.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3-pdf" arch="x86_64" version="3.5.9" release="53.3">
          <filename>kdegraphics3-pdf-3.5.9-53.3.x86_64.rpm</filename>
        </package>
        <package name="kdegraphics3-postscript" arch="i586" version="3.5.9" release="53.3">
          <filename>kdegraphics3-postscript-3.5.9-53.3.i586.rpm</filename>
        </package>
        <package name="kdegraphics3-postscript" arch="ppc" version="3.5.9" release="53.3">
          <filename>kdegraphics3-postscript-3.5.9-53.3.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3-postscript" arch="x86_64" version="3.5.9" release="53.3">
          <filename>kdegraphics3-postscript-3.5.9-53.3.x86_64.rpm</filename>
        </package>
        <package name="kdegraphics3-scan" arch="i586" version="3.5.9" release="53.3">
          <filename>kdegraphics3-scan-3.5.9-53.3.i586.rpm</filename>
        </package>
        <package name="kdegraphics3-scan" arch="ppc" version="3.5.9" release="53.3">
          <filename>kdegraphics3-scan-3.5.9-53.3.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3-scan" arch="x86_64" version="3.5.9" release="53.3">
          <filename>kdegraphics3-scan-3.5.9-53.3.x86_64.rpm</filename>
        </package>
        <package name="kdegraphics3-tex" arch="i586" version="3.5.9" release="53.3">
          <filename>kdegraphics3-tex-3.5.9-53.3.i586.rpm</filename>
        </package>
        <package name="kdegraphics3-tex" arch="ppc" version="3.5.9" release="53.3">
          <filename>kdegraphics3-tex-3.5.9-53.3.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3-tex" arch="x86_64" version="3.5.9" release="53.3">
          <filename>kdegraphics3-tex-3.5.9-53.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2b23a077cfada6a58ffb10e898bcd615"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="785">
  <id>libopenssl-devel</id>
  <title>openssl security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1239812313"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=489641" id="489641" title="bug number 489641" type="bugzilla"/>
  </references>
  <description>This update of openssl fixes the following problems:
- CVE-2009-0590: ASN1_STRING_print_ex() function allows
  remote denial of service
- CVE-2009-0789: denial of service due to malformed ASN.1
  structures
</description>
  <pkglist>
    <collection>
        <package name="libopenssl-devel" arch="i586" version="0.9.8g" release="47.4">
          <filename>libopenssl-devel-0.9.8g-47.4.i586.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="ppc" version="0.9.8g" release="47.4">
          <filename>libopenssl-devel-0.9.8g-47.4.ppc.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="x86_64" version="0.9.8g" release="47.4">
          <filename>libopenssl-devel-0.9.8g-47.4.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="i586" version="0.9.8g" release="47.4">
          <filename>libopenssl0_9_8-0.9.8g-47.4.i586.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="ppc" version="0.9.8g" release="47.4">
          <filename>libopenssl0_9_8-0.9.8g-47.4.ppc.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="x86_64" version="0.9.8g" release="47.4">
          <filename>libopenssl0_9_8-0.9.8g-47.4.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-32bit" arch="x86_64" version="0.9.8g" release="47.4">
          <filename>libopenssl0_9_8-32bit-0.9.8g-47.4.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-64bit" arch="ppc" version="0.9.8g" release="47.4">
          <filename>libopenssl0_9_8-64bit-0.9.8g-47.4.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="i586" version="0.9.8g" release="47.4">
          <filename>openssl-0.9.8g-47.4.i586.rpm</filename>
        </package>
        <package name="openssl" arch="ppc" version="0.9.8g" release="47.4">
          <filename>openssl-0.9.8g-47.4.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="x86_64" version="0.9.8g" release="47.4">
          <filename>openssl-0.9.8g-47.4.x86_64.rpm</filename>
        </package>
        <package name="openssl-certs" arch="i586" version="0.9.8g" release="47.4">
          <filename>openssl-certs-0.9.8g-47.4.i586.rpm</filename>
        </package>
        <package name="openssl-certs" arch="ppc" version="0.9.8g" release="47.4">
          <filename>openssl-certs-0.9.8g-47.4.ppc.rpm</filename>
        </package>
        <package name="openssl-certs" arch="x86_64" version="0.9.8g" release="47.4">
          <filename>openssl-certs-0.9.8g-47.4.x86_64.rpm</filename>
        </package>
        <package name="openssl-doc" arch="i586" version="0.9.8g" release="47.4">
          <filename>openssl-doc-0.9.8g-47.4.i586.rpm</filename>
        </package>
        <package name="openssl-doc" arch="ppc" version="0.9.8g" release="47.4">
          <filename>openssl-doc-0.9.8g-47.4.ppc.rpm</filename>
        </package>
        <package name="openssl-doc" arch="x86_64" version="0.9.8g" release="47.4">
          <filename>openssl-doc-0.9.8g-47.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f29bc510f4ec67fd2f24fbc774fc3f2f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="788">
  <id>compat-openssl097g</id>
  <title>openssl security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1239920711"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=489641" id="489641" title="bug number 489641" type="bugzilla"/>
  </references>
  <description>This update of openssl fixes the following problems:
- CVE-2009-0590: ASN1_STRING_print_ex() function allows
  remote denial of service
- CVE-2009-0789: denial of service due to malformed ASN.1
  structures
</description>
  <pkglist>
    <collection>
        <package name="compat-openssl097g" arch="i586" version="0.9.7g" release="119.5">
          <filename>compat-openssl097g-0.9.7g-119.5.i586.rpm</filename>
        </package>
        <package name="compat-openssl097g" arch="ppc" version="0.9.7g" release="119.5">
          <filename>compat-openssl097g-0.9.7g-119.5.ppc.rpm</filename>
        </package>
        <package name="compat-openssl097g" arch="x86_64" version="0.9.7g" release="119.5">
          <filename>compat-openssl097g-0.9.7g-119.5.x86_64.rpm</filename>
        </package>
        <package name="compat-openssl097g-32bit" arch="x86_64" version="0.9.7g" release="119.5">
          <filename>compat-openssl097g-32bit-0.9.7g-119.5.x86_64.rpm</filename>
        </package>
        <package name="compat-openssl097g-64bit" arch="ppc" version="0.9.7g" release="119.5">
          <filename>compat-openssl097g-64bit-0.9.7g-119.5.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="dabe9365872066bd786ab750609a6a40"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="782">
  <id>evolution-data-server</id>
  <title>evolution-data-server: Fix NTLM SASL authentication memory disclosure flaw</title>
  <release>openSUSE 11.0</release>
  <issued date="1239845199"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=475541" id="475541" title="bug number 475541" type="bugzilla"/>
  </references>
  <description>camel's NTLM SASL authentication mechanism as used by
evolution did not properly validate server's challenge
packets (CVE-2009-0582).
</description>
  <pkglist>
    <collection>
        <package name="evolution-data-server" arch="i586" version="2.22.1.1" release="11.4">
          <filename>evolution-data-server-2.22.1.1-11.4.i586.rpm</filename>
        </package>
        <package name="evolution-data-server" arch="ppc" version="2.22.1.1" release="11.4">
          <filename>evolution-data-server-2.22.1.1-11.4.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server" arch="x86_64" version="2.22.1.1" release="11.4">
          <filename>evolution-data-server-2.22.1.1-11.4.x86_64.rpm</filename>
        </package>
        <package name="evolution-data-server-32bit" arch="x86_64" version="2.22.1.1" release="11.4">
          <filename>evolution-data-server-32bit-2.22.1.1-11.4.x86_64.rpm</filename>
        </package>
        <package name="evolution-data-server-64bit" arch="ppc" version="2.22.1.1" release="11.4">
          <filename>evolution-data-server-64bit-2.22.1.1-11.4.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server-devel" arch="i586" version="2.22.1.1" release="11.4">
          <filename>evolution-data-server-devel-2.22.1.1-11.4.i586.rpm</filename>
        </package>
        <package name="evolution-data-server-devel" arch="ppc" version="2.22.1.1" release="11.4">
          <filename>evolution-data-server-devel-2.22.1.1-11.4.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server-devel" arch="x86_64" version="2.22.1.1" release="11.4">
          <filename>evolution-data-server-devel-2.22.1.1-11.4.x86_64.rpm</filename>
        </package>
        <package name="evolution-data-server-doc" arch="i586" version="2.22.1.1" release="11.4">
          <filename>evolution-data-server-doc-2.22.1.1-11.4.i586.rpm</filename>
        </package>
        <package name="evolution-data-server-doc" arch="ppc" version="2.22.1.1" release="11.4">
          <filename>evolution-data-server-doc-2.22.1.1-11.4.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server-doc" arch="x86_64" version="2.22.1.1" release="11.4">
          <filename>evolution-data-server-doc-2.22.1.1-11.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="659310efe347bfd52e9ef53909ca5dde"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="823">
  <id>java-1_6_0-openjdk</id>
  <title>java-1_6_0-openjdk: java has an empty SSL key store</title>
  <release>openSUSE 11.0</release>
  <issued date="1240425266"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=496378" id="496378" title="bug number 496378" type="bugzilla"/>
  </references>
  <description>Empty keystore disallows the SSL support for Java
application running on openjdk. This update fixes it and
install a keystore (cacerts) generated from openssl-certs.
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-openjdk" arch="i586" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-1.4_b14-24.4.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="ppc" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-1.4_b14-24.4.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="x86_64" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-1.4_b14-24.4.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="i586" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-demo-1.4_b14-24.4.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="ppc" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-demo-1.4_b14-24.4.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="x86_64" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-demo-1.4_b14-24.4.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="i586" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-devel-1.4_b14-24.4.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="ppc" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-devel-1.4_b14-24.4.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="x86_64" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-devel-1.4_b14-24.4.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="i586" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-javadoc-1.4_b14-24.4.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="ppc" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-javadoc-1.4_b14-24.4.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="x86_64" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-javadoc-1.4_b14-24.4.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="i586" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-plugin-1.4_b14-24.4.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="ppc" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-plugin-1.4_b14-24.4.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="x86_64" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-plugin-1.4_b14-24.4.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="i586" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-src-1.4_b14-24.4.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="ppc" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-src-1.4_b14-24.4.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="x86_64" version="1.4_b14" release="24.4">
          <filename>java-1_6_0-openjdk-src-1.4_b14-24.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5e954aaf0fdb73bbb5982b1e447db932"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="586">
  <id>gtk2</id>
  <title>gtk2: Fix crash in Firefox and other apps when running SuSEconfig</title>
  <release>openSUSE 11.0</release>
  <issued date="1236728408"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=355402" id="355402" title="bug number 355402" type="bugzilla"/>
  </references>
  <description>This fixes a crash in Firefox and other applications when
SuSEconfig runs.
</description>
  <pkglist>
    <collection>
        <package name="gtk2" arch="i586" version="2.12.9" release="37.5">
          <filename>gtk2-2.12.9-37.5.i586.rpm</filename>
        </package>
        <package name="gtk2" arch="ppc" version="2.12.9" release="37.5">
          <filename>gtk2-2.12.9-37.5.ppc.rpm</filename>
        </package>
        <package name="gtk2" arch="x86_64" version="2.12.9" release="37.5">
          <filename>gtk2-2.12.9-37.5.x86_64.rpm</filename>
        </package>
        <package name="gtk2-32bit" arch="x86_64" version="2.12.9" release="37.5">
          <filename>gtk2-32bit-2.12.9-37.5.x86_64.rpm</filename>
        </package>
        <package name="gtk2-64bit" arch="ppc" version="2.12.9" release="37.5">
          <filename>gtk2-64bit-2.12.9-37.5.ppc.rpm</filename>
        </package>
        <package name="gtk2-branding-upstream" arch="i586" version="2.12.9" release="37.5">
          <filename>gtk2-branding-upstream-2.12.9-37.5.i586.rpm</filename>
        </package>
        <package name="gtk2-branding-upstream" arch="ppc" version="2.12.9" release="37.5">
          <filename>gtk2-branding-upstream-2.12.9-37.5.ppc.rpm</filename>
        </package>
        <package name="gtk2-branding-upstream" arch="x86_64" version="2.12.9" release="37.5">
          <filename>gtk2-branding-upstream-2.12.9-37.5.x86_64.rpm</filename>
        </package>
        <package name="gtk2-devel" arch="i586" version="2.12.9" release="37.5">
          <filename>gtk2-devel-2.12.9-37.5.i586.rpm</filename>
        </package>
        <package name="gtk2-devel" arch="ppc" version="2.12.9" release="37.5">
          <filename>gtk2-devel-2.12.9-37.5.ppc.rpm</filename>
        </package>
        <package name="gtk2-devel" arch="x86_64" version="2.12.9" release="37.5">
          <filename>gtk2-devel-2.12.9-37.5.x86_64.rpm</filename>
        </package>
        <package name="gtk2-devel-64bit" arch="ppc" version="2.12.9" release="37.5">
          <filename>gtk2-devel-64bit-2.12.9-37.5.ppc.rpm</filename>
        </package>
        <package name="gtk2-doc" arch="i586" version="2.12.9" release="37.5">
          <filename>gtk2-doc-2.12.9-37.5.i586.rpm</filename>
        </package>
        <package name="gtk2-doc" arch="ppc" version="2.12.9" release="37.5">
          <filename>gtk2-doc-2.12.9-37.5.ppc.rpm</filename>
        </package>
        <package name="gtk2-doc" arch="x86_64" version="2.12.9" release="37.5">
          <filename>gtk2-doc-2.12.9-37.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f63cb107640bdca2da33aa6f5eb30267"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="833">
  <id>MozillaFirefox</id>
  <title>Firefox version upgrade to 3.0.9 to fix various security bugs</title>
  <release>openSUSE 11.0</release>
  <issued date="1240844895"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=495473" id="495473" title="bug number 495473" type="bugzilla"/>
  </references>
  <description>Firefox version upgrade to 3.0.9 to fix various security
bugs.
(CVE-2009-1302,CVE-2009-1303,CVE-2009-1304,CVE-2009-1305,CVE
-2009-1306,CVE-2009-1307,CVE-2009-1308,CVE-2009-1309,CVE-200
9-1310,CVE-2009-1311,CVE-2009-1312,CVE-2009-0652)
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.9" release="0.1">
          <filename>MozillaFirefox-3.0.9-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.9" release="0.1">
          <filename>MozillaFirefox-3.0.9-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.9" release="0.1">
          <filename>MozillaFirefox-3.0.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.9" release="0.1">
          <filename>MozillaFirefox-translations-3.0.9-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.9" release="0.1">
          <filename>MozillaFirefox-translations-3.0.9-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.9" release="0.1">
          <filename>MozillaFirefox-translations-3.0.9-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="08a92c44781debfd0a127ac9dedd8ec7"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="832">
  <id>mozilla-xulrunner190</id>
  <title>Firefox version upgrade to 3.0.9 to fix various security bugs</title>
  <release>openSUSE 11.0</release>
  <issued date="1240843557"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=495473" id="495473" title="bug number 495473" type="bugzilla"/>
  </references>
  <description>Firefox version upgrade to 3.0.9 to fix various security
bugs.
(CVE-2009-1302,CVE-2009-1303,CVE-2009-1304,CVE-2009-1305,CVE
-2009-1306,CVE-2009-1307,CVE-2009-1308,CVE-2009-1309,CVE-200
9-1310,CVE-2009-1311,CVE-2009-1312,CVE-2009-0652)
</description>
  <pkglist>
    <collection>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.9-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.9-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.9-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.9-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.9-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.9-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.9-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.9-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.9-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.9-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.9" release="0.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.9-0.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="dc96df9d0b9e018d13e8b307cbd82481"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="598">
  <id>libopensc2</id>
  <title>opensc security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1236617225"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=480262" id="480262" title="bug number 480262" type="bugzilla"/>
  </references>
  <description>Private data objects on smartcards initialized with OpenSC
could be accessed without authentication (CVE-2009-0368).

Only blank cards initialized with OpenSC are affected by
this problem. Affected cards need to be manually fixed,
updating the opensc package alone is not sufficient!

Please carefully read and follow the instructions on the
following web site if you are using PIN protected private
data objects on smart cards other than Oberthur, and you
have initialized those cards using OpenSC:
http://en.opensuse.org/Smart_Cards/Advisories
</description>
  <pkglist>
    <collection>
        <package name="libopensc2" arch="i586" version="0.11.4" release="37.6">
          <filename>libopensc2-0.11.4-37.6.i586.rpm</filename>
        </package>
        <package name="libopensc2" arch="ppc" version="0.11.4" release="37.6">
          <filename>libopensc2-0.11.4-37.6.ppc.rpm</filename>
        </package>
        <package name="libopensc2" arch="x86_64" version="0.11.4" release="37.6">
          <filename>libopensc2-0.11.4-37.6.x86_64.rpm</filename>
        </package>
        <package name="libopensc2-32bit" arch="x86_64" version="0.11.4" release="37.6">
          <filename>libopensc2-32bit-0.11.4-37.6.x86_64.rpm</filename>
        </package>
        <package name="libopensc2-64bit" arch="ppc" version="0.11.4" release="37.6">
          <filename>libopensc2-64bit-0.11.4-37.6.ppc.rpm</filename>
        </package>
        <package name="opensc" arch="i586" version="0.11.4" release="37.6">
          <filename>opensc-0.11.4-37.6.i586.rpm</filename>
        </package>
        <package name="opensc" arch="ppc" version="0.11.4" release="37.6">
          <filename>opensc-0.11.4-37.6.ppc.rpm</filename>
        </package>
        <package name="opensc" arch="x86_64" version="0.11.4" release="37.6">
          <filename>opensc-0.11.4-37.6.x86_64.rpm</filename>
        </package>
        <package name="opensc-32bit" arch="x86_64" version="0.11.4" release="37.6">
          <filename>opensc-32bit-0.11.4-37.6.x86_64.rpm</filename>
        </package>
        <package name="opensc-64bit" arch="ppc" version="0.11.4" release="37.6">
          <filename>opensc-64bit-0.11.4-37.6.ppc.rpm</filename>
        </package>
        <package name="opensc-devel" arch="i586" version="0.11.4" release="37.6">
          <filename>opensc-devel-0.11.4-37.6.i586.rpm</filename>
        </package>
        <package name="opensc-devel" arch="ppc" version="0.11.4" release="37.6">
          <filename>opensc-devel-0.11.4-37.6.ppc.rpm</filename>
        </package>
        <package name="opensc-devel" arch="x86_64" version="0.11.4" release="37.6">
          <filename>opensc-devel-0.11.4-37.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="62fc892a3c02e4cea5408b01ce596eee"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="794">
  <id>freetype2</id>
  <title>freetype security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1239965856"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=485889" id="485889" title="bug number 485889" type="bugzilla"/>
  </references>
  <description>Freetype was updated to fix some integer overflows that can
be exploited remotely in conjunction with programs like a
web-browser. (CVE-2009-0946) Thanks to Tavis Ormandy who
found the bugs.
</description>
  <pkglist>
    <collection>
        <package name="freetype2" arch="i586" version="2.3.5" release="62.5">
          <filename>freetype2-2.3.5-62.5.i586.rpm</filename>
        </package>
        <package name="freetype2" arch="ppc" version="2.3.5" release="62.5">
          <filename>freetype2-2.3.5-62.5.ppc.rpm</filename>
        </package>
        <package name="freetype2" arch="x86_64" version="2.3.5" release="62.5">
          <filename>freetype2-2.3.5-62.5.x86_64.rpm</filename>
        </package>
        <package name="freetype2-32bit" arch="x86_64" version="2.3.5" release="62.5">
          <filename>freetype2-32bit-2.3.5-62.5.x86_64.rpm</filename>
        </package>
        <package name="freetype2-64bit" arch="ppc" version="2.3.5" release="62.5">
          <filename>freetype2-64bit-2.3.5-62.5.ppc.rpm</filename>
        </package>
        <package name="freetype2-devel" arch="i586" version="2.3.5" release="62.5">
          <filename>freetype2-devel-2.3.5-62.5.i586.rpm</filename>
        </package>
        <package name="freetype2-devel" arch="ppc" version="2.3.5" release="62.5">
          <filename>freetype2-devel-2.3.5-62.5.ppc.rpm</filename>
        </package>
        <package name="freetype2-devel" arch="x86_64" version="2.3.5" release="62.5">
          <filename>freetype2-devel-2.3.5-62.5.x86_64.rpm</filename>
        </package>
        <package name="freetype2-devel-32bit" arch="x86_64" version="2.3.5" release="62.5">
          <filename>freetype2-devel-32bit-2.3.5-62.5.x86_64.rpm</filename>
        </package>
        <package name="freetype2-devel-64bit" arch="ppc" version="2.3.5" release="62.5">
          <filename>freetype2-devel-64bit-2.3.5-62.5.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a1237733213a6cd24246d782ef3e5ca1"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="589">
  <id>python-crypto</id>
  <title>python-crypto security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1236854087"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=483345" id="483345" title="bug number 483345" type="bugzilla"/>
  </references>
  <description>Missing checks for the key length in the ARC2 module
potentially allowed attackers to crash applications using
python-crypto or potentially even cause execute arbitrary
code (CVE-2009-0544).
</description>
  <pkglist>
    <collection>
        <package name="python-crypto" arch="i586" version="2.0.1" release="164.2">
          <filename>python-crypto-2.0.1-164.2.i586.rpm</filename>
        </package>
        <package name="python-crypto" arch="ppc" version="2.0.1" release="164.2">
          <filename>python-crypto-2.0.1-164.2.ppc.rpm</filename>
        </package>
        <package name="python-crypto" arch="x86_64" version="2.0.1" release="164.2">
          <filename>python-crypto-2.0.1-164.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5fa2bbb50b45d611155c24226da64cff"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="858">
  <id>gnutls</id>
  <title>gnutls security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1241709969"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=496385" id="496385" title="bug number 496385" type="bugzilla"/>
  </references>
  <description>This update of gnutls immproves the certificate validation
process of gnutls-cli, prior gnutls-cli allowed
man-in-the-middle attacks (only Gnus seems to use this
tool).
</description>
  <pkglist>
    <collection>
        <package name="gnutls" arch="i586" version="2.2.2" release="17.6">
          <filename>gnutls-2.2.2-17.6.i586.rpm</filename>
        </package>
        <package name="gnutls" arch="ppc" version="2.2.2" release="17.6">
          <filename>gnutls-2.2.2-17.6.ppc.rpm</filename>
        </package>
        <package name="gnutls" arch="x86_64" version="2.2.2" release="17.6">
          <filename>gnutls-2.2.2-17.6.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="i586" version="2.2.2" release="17.6">
          <filename>libgnutls-devel-2.2.2-17.6.i586.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="ppc" version="2.2.2" release="17.6">
          <filename>libgnutls-devel-2.2.2-17.6.ppc.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="x86_64" version="2.2.2" release="17.6">
          <filename>libgnutls-devel-2.2.2-17.6.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="i586" version="2.2.2" release="17.6">
          <filename>libgnutls-extra-devel-2.2.2-17.6.i586.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="ppc" version="2.2.2" release="17.6">
          <filename>libgnutls-extra-devel-2.2.2-17.6.ppc.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="x86_64" version="2.2.2" release="17.6">
          <filename>libgnutls-extra-devel-2.2.2-17.6.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="i586" version="2.2.2" release="17.6">
          <filename>libgnutls-extra26-2.2.2-17.6.i586.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="ppc" version="2.2.2" release="17.6">
          <filename>libgnutls-extra26-2.2.2-17.6.ppc.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="x86_64" version="2.2.2" release="17.6">
          <filename>libgnutls-extra26-2.2.2-17.6.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26" arch="i586" version="2.2.2" release="17.6">
          <filename>libgnutls26-2.2.2-17.6.i586.rpm</filename>
        </package>
        <package name="libgnutls26" arch="ppc" version="2.2.2" release="17.6">
          <filename>libgnutls26-2.2.2-17.6.ppc.rpm</filename>
        </package>
        <package name="libgnutls26" arch="x86_64" version="2.2.2" release="17.6">
          <filename>libgnutls26-2.2.2-17.6.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26-32bit" arch="x86_64" version="2.2.2" release="17.6">
          <filename>libgnutls26-32bit-2.2.2-17.6.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26-64bit" arch="ppc" version="2.2.2" release="17.6">
          <filename>libgnutls26-64bit-2.2.2-17.6.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4f5cd2df5cb713442e1d0fb60f99ed76"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="860">
  <id>MozillaFirefox</id>
  <title>Firefox 3.0.10 available</title>
  <release>openSUSE 11.0</release>
  <issued date="1241714211"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=500909" id="500909" title="bug number 500909" type="bugzilla"/>
  </references>
  <description>Firefox version upgrade to 3.0.10 to fix a crash in
nsTextFrame::ClearTextRun() (CVE-2009-1313).
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.10" release="1.1">
          <filename>MozillaFirefox-3.0.10-1.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.10" release="1.1">
          <filename>MozillaFirefox-3.0.10-1.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.10" release="1.1">
          <filename>MozillaFirefox-3.0.10-1.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.10" release="1.1">
          <filename>MozillaFirefox-translations-3.0.10-1.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.10" release="1.1">
          <filename>MozillaFirefox-translations-3.0.10-1.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.10" release="1.1">
          <filename>MozillaFirefox-translations-3.0.10-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.10-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.10-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.10-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.10-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.10-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.10-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.10-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.10-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.10-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.10-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.10-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.10-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.10-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.10-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.10-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.10-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.10-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.10" release="1.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.10-1.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5e643f8e17ec2f8a91e6fe4b345c1bdb"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="821">
  <id>libwmf</id>
  <title>libwmf security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1240507167"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=495842" id="495842" title="bug number 495842" type="bugzilla"/>
  </references>
  <description>A specially crafted WMF files could crash libwmf.
(CVE-2009-1364)
</description>
  <pkglist>
    <collection>
        <package name="libwmf" arch="i586" version="0.2.8.4" release="164.2">
          <filename>libwmf-0.2.8.4-164.2.i586.rpm</filename>
        </package>
        <package name="libwmf" arch="ppc" version="0.2.8.4" release="164.2">
          <filename>libwmf-0.2.8.4-164.2.ppc.rpm</filename>
        </package>
        <package name="libwmf" arch="x86_64" version="0.2.8.4" release="164.2">
          <filename>libwmf-0.2.8.4-164.2.x86_64.rpm</filename>
        </package>
        <package name="libwmf-devel" arch="i586" version="0.2.8.4" release="164.2">
          <filename>libwmf-devel-0.2.8.4-164.2.i586.rpm</filename>
        </package>
        <package name="libwmf-devel" arch="ppc" version="0.2.8.4" release="164.2">
          <filename>libwmf-devel-0.2.8.4-164.2.ppc.rpm</filename>
        </package>
        <package name="libwmf-devel" arch="x86_64" version="0.2.8.4" release="164.2">
          <filename>libwmf-devel-0.2.8.4-164.2.x86_64.rpm</filename>
        </package>
        <package name="libwmf-gnome" arch="i586" version="0.2.8.4" release="164.2">
          <filename>libwmf-gnome-0.2.8.4-164.2.i586.rpm</filename>
        </package>
        <package name="libwmf-gnome" arch="ppc" version="0.2.8.4" release="164.2">
          <filename>libwmf-gnome-0.2.8.4-164.2.ppc.rpm</filename>
        </package>
        <package name="libwmf-gnome" arch="x86_64" version="0.2.8.4" release="164.2">
          <filename>libwmf-gnome-0.2.8.4-164.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fdc70560402b44cb7ce9829765211428"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="877">
  <id>ghostscript-devel</id>
  <title>ghostscript security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1242258281"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=489622" id="489622" title="bug number 489622" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=491897" id="491897" title="bug number 491897" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=492765" id="492765" title="bug number 492765" type="bugzilla"/>
  </references>
  <description>Specially crafted file could cause a heap-overflow in JBIG2
decoder (CVE-2009-0196), an integer overflow in ICC library
(CVE-2009-0792), a buffer overflow in BaseFont writer
module (CVE-2008-6679) or crash the CCITTFax decoder
(CVE-2007-6725).
</description>
  <pkglist>
    <collection>
        <package name="ghostscript-devel" arch="i586" version="8.62" release="17.6">
          <filename>ghostscript-devel-8.62-17.6.i586.rpm</filename>
        </package>
        <package name="ghostscript-devel" arch="ppc" version="8.62" release="17.6">
          <filename>ghostscript-devel-8.62-17.6.ppc.rpm</filename>
        </package>
        <package name="ghostscript-devel" arch="x86_64" version="8.62" release="17.6">
          <filename>ghostscript-devel-8.62-17.6.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-fonts-other" arch="i586" version="8.62" release="17.6">
          <filename>ghostscript-fonts-other-8.62-17.6.i586.rpm</filename>
        </package>
        <package name="ghostscript-fonts-other" arch="ppc" version="8.62" release="17.6">
          <filename>ghostscript-fonts-other-8.62-17.6.ppc.rpm</filename>
        </package>
        <package name="ghostscript-fonts-other" arch="x86_64" version="8.62" release="17.6">
          <filename>ghostscript-fonts-other-8.62-17.6.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-fonts-rus" arch="i586" version="8.62" release="17.6">
          <filename>ghostscript-fonts-rus-8.62-17.6.i586.rpm</filename>
        </package>
        <package name="ghostscript-fonts-rus" arch="ppc" version="8.62" release="17.6">
          <filename>ghostscript-fonts-rus-8.62-17.6.ppc.rpm</filename>
        </package>
        <package name="ghostscript-fonts-rus" arch="x86_64" version="8.62" release="17.6">
          <filename>ghostscript-fonts-rus-8.62-17.6.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-fonts-std" arch="i586" version="8.62" release="17.6">
          <filename>ghostscript-fonts-std-8.62-17.6.i586.rpm</filename>
        </package>
        <package name="ghostscript-fonts-std" arch="ppc" version="8.62" release="17.6">
          <filename>ghostscript-fonts-std-8.62-17.6.ppc.rpm</filename>
        </package>
        <package name="ghostscript-fonts-std" arch="x86_64" version="8.62" release="17.6">
          <filename>ghostscript-fonts-std-8.62-17.6.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-ijs-devel" arch="i586" version="8.62" release="17.6">
          <filename>ghostscript-ijs-devel-8.62-17.6.i586.rpm</filename>
        </package>
        <package name="ghostscript-ijs-devel" arch="ppc" version="8.62" release="17.6">
          <filename>ghostscript-ijs-devel-8.62-17.6.ppc.rpm</filename>
        </package>
        <package name="ghostscript-ijs-devel" arch="x86_64" version="8.62" release="17.6">
          <filename>ghostscript-ijs-devel-8.62-17.6.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-library" arch="i586" version="8.62" release="17.6">
          <filename>ghostscript-library-8.62-17.6.i586.rpm</filename>
        </package>
        <package name="ghostscript-library" arch="ppc" version="8.62" release="17.6">
          <filename>ghostscript-library-8.62-17.6.ppc.rpm</filename>
        </package>
        <package name="ghostscript-library" arch="x86_64" version="8.62" release="17.6">
          <filename>ghostscript-library-8.62-17.6.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-omni" arch="i586" version="8.62" release="17.6">
          <filename>ghostscript-omni-8.62-17.6.i586.rpm</filename>
        </package>
        <package name="ghostscript-omni" arch="ppc" version="8.62" release="17.6">
          <filename>ghostscript-omni-8.62-17.6.ppc.rpm</filename>
        </package>
        <package name="ghostscript-omni" arch="x86_64" version="8.62" release="17.6">
          <filename>ghostscript-omni-8.62-17.6.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-x11" arch="i586" version="8.62" release="17.6">
          <filename>ghostscript-x11-8.62-17.6.i586.rpm</filename>
        </package>
        <package name="ghostscript-x11" arch="ppc" version="8.62" release="17.6">
          <filename>ghostscript-x11-8.62-17.6.ppc.rpm</filename>
        </package>
        <package name="ghostscript-x11" arch="x86_64" version="8.62" release="17.6">
          <filename>ghostscript-x11-8.62-17.6.x86_64.rpm</filename>
        </package>
        <package name="libgimpprint" arch="i586" version="4.2.7" release="258.6">
          <filename>libgimpprint-4.2.7-258.6.i586.rpm</filename>
        </package>
        <package name="libgimpprint" arch="ppc" version="4.2.7" release="258.6">
          <filename>libgimpprint-4.2.7-258.6.ppc.rpm</filename>
        </package>
        <package name="libgimpprint" arch="x86_64" version="4.2.7" release="258.6">
          <filename>libgimpprint-4.2.7-258.6.x86_64.rpm</filename>
        </package>
        <package name="libgimpprint-devel" arch="i586" version="4.2.7" release="258.6">
          <filename>libgimpprint-devel-4.2.7-258.6.i586.rpm</filename>
        </package>
        <package name="libgimpprint-devel" arch="ppc" version="4.2.7" release="258.6">
          <filename>libgimpprint-devel-4.2.7-258.6.ppc.rpm</filename>
        </package>
        <package name="libgimpprint-devel" arch="x86_64" version="4.2.7" release="258.6">
          <filename>libgimpprint-devel-4.2.7-258.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c26700d0cd14acf9657636d8b8c6c0f1"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="861">
  <id>xine-devel</id>
  <title>xine-lib: QuickTime movie integer overflow</title>
  <release>openSUSE 11.0</release>
  <issued date="1241711192"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=492767" id="492767" title="bug number 492767" type="bugzilla"/>
  </references>
  <description>This update of xine-lib fixes an integer overflow in the
qt_error parse_trak_atom() function in that leads to a
heap-based overflow and  allows remote attackers to execute
arbitrary code via a malformed Quicktime movie file.
(CVE-2009-1274)
</description>
  <pkglist>
    <collection>
        <package name="xine-devel" arch="i586" version="1.1.12" release="8.7">
          <filename>xine-devel-1.1.12-8.7.i586.rpm</filename>
        </package>
        <package name="xine-devel" arch="ppc" version="1.1.12" release="8.7">
          <filename>xine-devel-1.1.12-8.7.ppc.rpm</filename>
        </package>
        <package name="xine-devel" arch="x86_64" version="1.1.12" release="8.7">
          <filename>xine-devel-1.1.12-8.7.x86_64.rpm</filename>
        </package>
        <package name="xine-extra" arch="i586" version="1.1.12" release="8.7">
          <filename>xine-extra-1.1.12-8.7.i586.rpm</filename>
        </package>
        <package name="xine-extra" arch="ppc" version="1.1.12" release="8.7">
          <filename>xine-extra-1.1.12-8.7.ppc.rpm</filename>
        </package>
        <package name="xine-extra" arch="x86_64" version="1.1.12" release="8.7">
          <filename>xine-extra-1.1.12-8.7.x86_64.rpm</filename>
        </package>
        <package name="xine-lib" arch="i586" version="1.1.12" release="8.7">
          <filename>xine-lib-1.1.12-8.7.i586.rpm</filename>
        </package>
        <package name="xine-lib" arch="ppc" version="1.1.12" release="8.7">
          <filename>xine-lib-1.1.12-8.7.ppc.rpm</filename>
        </package>
        <package name="xine-lib" arch="x86_64" version="1.1.12" release="8.7">
          <filename>xine-lib-1.1.12-8.7.x86_64.rpm</filename>
        </package>
        <package name="xine-lib-32bit" arch="x86_64" version="1.1.12" release="8.7">
          <filename>xine-lib-32bit-1.1.12-8.7.x86_64.rpm</filename>
        </package>
        <package name="xine-lib-64bit" arch="ppc" version="1.1.12" release="8.7">
          <filename>xine-lib-64bit-1.1.12-8.7.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="bb0b4578b3b2bd90c300579ef5555ae9"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="862">
  <id>ntp</id>
  <title>ntp: buffer overflow if autokey is enabled</title>
  <release>openSUSE 11.0</release>
  <issued date="1241775261"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=501632" id="501632" title="bug number 501632" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=483897" id="483897" title="bug number 483897" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=482349" id="482349" title="bug number 482349" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=484653" id="484653" title="bug number 484653" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=479341" id="479341" title="bug number 479341" type="bugzilla"/>
  </references>
  <description>This update fixes a remote buffer overflow in xntp/ntp
which can be exploited when autokey is enabled to execute
arbitrary code. (CVE-2009-1252) This upfate fixes a buffer
overflow in ntpd that can be triggered by a malicious
server. (CVE-2009-0159)
</description>
  <pkglist>
    <collection>
        <package name="ntp" arch="i586" version="4.2.4p4" release="44.5">
          <filename>ntp-4.2.4p4-44.5.i586.rpm</filename>
        </package>
        <package name="ntp" arch="ppc" version="4.2.4p4" release="44.5">
          <filename>ntp-4.2.4p4-44.5.ppc.rpm</filename>
        </package>
        <package name="ntp" arch="x86_64" version="4.2.4p4" release="44.5">
          <filename>ntp-4.2.4p4-44.5.x86_64.rpm</filename>
        </package>
        <package name="ntp-doc" arch="i586" version="4.2.4p4" release="44.5">
          <filename>ntp-doc-4.2.4p4-44.5.i586.rpm</filename>
        </package>
        <package name="ntp-doc" arch="ppc" version="4.2.4p4" release="44.5">
          <filename>ntp-doc-4.2.4p4-44.5.ppc.rpm</filename>
        </package>
        <package name="ntp-doc" arch="x86_64" version="4.2.4p4" release="44.5">
          <filename>ntp-doc-4.2.4p4-44.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0109083ce9cd97b50189c53d75983c2c"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="804">
  <id>openmotif22-libs</id>
  <title>openmotif22-libs: Motif applications crash on opening pixmaps</title>
  <release>openSUSE 11.0</release>
  <issued date="1239997713"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=486469" id="486469" title="bug number 486469" type="bugzilla"/>
  </references>
  <description>This update fixes an overflow in openmotif library
(bnc#486469)
</description>
  <pkglist>
    <collection>
        <package name="openmotif22-libs" arch="i586" version="2.2.4" release="149.3">
          <filename>openmotif22-libs-2.2.4-149.3.i586.rpm</filename>
        </package>
        <package name="openmotif22-libs-32bit" arch="x86_64" version="2.2.4" release="149.3">
          <filename>openmotif22-libs-32bit-2.2.4-149.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="76b96b9394686be822cb258a0faef047"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="893">
  <id>acroread</id>
  <title>acroread security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1242744943"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=499097" id="499097" title="bug number 499097" type="bugzilla"/>
  </references>
  <description>This update of acroread fixes two vulnerabilities in the
JavaScript API that allow attackers to execute arbitrary
code with a malformed PDF file.
(CVE-2009-1492,CVE-2009-1493)
</description>
  <pkglist>
    <collection>
        <package name="acroread" arch="i586" version="8.1.5" release="0.1">
          <filename>acroread-8.1.5-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8f6baba203b545345b58590ab71c754b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="894">
  <id>ganglia-monitor-core</id>
  <title>fixed stack overflow in ganglia (CVE-2009-0241).</title>
  <release>openSUSE 11.0</release>
  <issued date="1242745075"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=484338" id="484338" title="bug number 484338" type="bugzilla"/>
  </references>
  <description>A stack buffer overflow in ganglia's  buffer process_path
function has been fixed. CVE-2009-0241 has been assigned to
this issue.
</description>
  <pkglist>
    <collection>
        <package name="ganglia-monitor-core" arch="i586" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-2.5.7-162.2.i586.rpm</filename>
        </package>
        <package name="ganglia-monitor-core" arch="ppc" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-2.5.7-162.2.ppc.rpm</filename>
        </package>
        <package name="ganglia-monitor-core" arch="x86_64" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-2.5.7-162.2.x86_64.rpm</filename>
        </package>
        <package name="ganglia-monitor-core-devel" arch="i586" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-devel-2.5.7-162.2.i586.rpm</filename>
        </package>
        <package name="ganglia-monitor-core-devel" arch="ppc" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-devel-2.5.7-162.2.ppc.rpm</filename>
        </package>
        <package name="ganglia-monitor-core-devel" arch="x86_64" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-devel-2.5.7-162.2.x86_64.rpm</filename>
        </package>
        <package name="ganglia-monitor-core-gmetad" arch="i586" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-gmetad-2.5.7-162.2.i586.rpm</filename>
        </package>
        <package name="ganglia-monitor-core-gmetad" arch="ppc" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-gmetad-2.5.7-162.2.ppc.rpm</filename>
        </package>
        <package name="ganglia-monitor-core-gmetad" arch="x86_64" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-gmetad-2.5.7-162.2.x86_64.rpm</filename>
        </package>
        <package name="ganglia-monitor-core-gmond" arch="i586" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-gmond-2.5.7-162.2.i586.rpm</filename>
        </package>
        <package name="ganglia-monitor-core-gmond" arch="ppc" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-gmond-2.5.7-162.2.ppc.rpm</filename>
        </package>
        <package name="ganglia-monitor-core-gmond" arch="x86_64" version="2.5.7" release="162.2">
          <filename>ganglia-monitor-core-gmond-2.5.7-162.2.x86_64.rpm</filename>
        </package>
        <package name="ganglia-webfrontend" arch="i586" version="2.5.7" release="162.2">
          <filename>ganglia-webfrontend-2.5.7-162.2.i586.rpm</filename>
        </package>
        <package name="ganglia-webfrontend" arch="ppc" version="2.5.7" release="162.2">
          <filename>ganglia-webfrontend-2.5.7-162.2.ppc.rpm</filename>
        </package>
        <package name="ganglia-webfrontend" arch="x86_64" version="2.5.7" release="162.2">
          <filename>ganglia-webfrontend-2.5.7-162.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a1e6e391cab2ffaffab6bcb9372f7d3a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="906">
  <id>RealPlayer</id>
  <title>RealPlayer security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1242944266"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=412630" id="412630" title="bug number 412630" type="bugzilla"/>
  </references>
  <description>RealPlayer 10 is vulnerable to a critical security problem
in the flash plugin (CVE-2007-5400). Real does not provide
updated binaries of RealPlayer 10 and SUSE is not allowed
to ship RealPlayer 11. Therefore this update disables the
flash plugin by setting restrictive file system permissions.
</description>
  <pkglist>
    <collection>
        <package name="RealPlayer" arch="i586" version="10.0.9" release="51.3">
          <filename>RealPlayer-10.0.9-51.3.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ef3e619e4955be6ea79c741d39c2e0c1"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="912">
  <id>wireshark</id>
  <title>Wireshark 1.0.7 fixes various vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1243258058"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=493584" id="493584" title="bug number 493584" type="bugzilla"/>
  </references>
  <description>Version upgrade to Wireshark 1.0.7 to fix various
vulnerabilities: CVE-2009-1269: crash while loading a
Tektronix .rf5 file CVE-2009-1268: crash in Check Point
High-Availability Protocol (CPHAP) dissector CVE-2009-1267:
LDAP dissector could crash on Windows CVE-2009-1210:
PROFINET format string bug CVE-2009-1266: additional
PROFINET  format string bugs, a crash in the PCNFSD
dissector
</description>
  <pkglist>
    <collection>
        <package name="wireshark" arch="i586" version="1.0.0" release="17.12">
          <filename>wireshark-1.0.0-17.12.i586.rpm</filename>
        </package>
        <package name="wireshark" arch="ppc" version="1.0.0" release="17.12">
          <filename>wireshark-1.0.0-17.12.ppc.rpm</filename>
        </package>
        <package name="wireshark" arch="x86_64" version="1.0.0" release="17.12">
          <filename>wireshark-1.0.0-17.12.x86_64.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="i586" version="1.0.0" release="17.12">
          <filename>wireshark-devel-1.0.0-17.12.i586.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="ppc" version="1.0.0" release="17.12">
          <filename>wireshark-devel-1.0.0-17.12.ppc.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="x86_64" version="1.0.0" release="17.12">
          <filename>wireshark-devel-1.0.0-17.12.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c41e30e42fd96b19a8dc51a1a5bee76d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="907">
  <id>libopenssl-devel</id>
  <title>openssl: Fixed three remote denial of service problems,</title>
  <release>openSUSE 11.0</release>
  <issued date="1243005399"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=504687" id="504687" title="bug number 504687" type="bugzilla"/>
  </references>
  <description>Three remote DoS vulnerabilities have been fixed in
OpenSSL: a DTLS epoch record buffer memory DoS
(CVE-2009-1377), a DTLS fragment handling memory DoS
(CVE-2009-1378) and  a DTLS fragment read after a free DoS
(CVE-2009-1379).
</description>
  <pkglist>
    <collection>
        <package name="libopenssl-devel" arch="i586" version="0.9.8g" release="47.6">
          <filename>libopenssl-devel-0.9.8g-47.6.i586.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="ppc" version="0.9.8g" release="47.6">
          <filename>libopenssl-devel-0.9.8g-47.6.ppc.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="x86_64" version="0.9.8g" release="47.6">
          <filename>libopenssl-devel-0.9.8g-47.6.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="i586" version="0.9.8g" release="47.6">
          <filename>libopenssl0_9_8-0.9.8g-47.6.i586.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="ppc" version="0.9.8g" release="47.6">
          <filename>libopenssl0_9_8-0.9.8g-47.6.ppc.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="x86_64" version="0.9.8g" release="47.6">
          <filename>libopenssl0_9_8-0.9.8g-47.6.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-32bit" arch="x86_64" version="0.9.8g" release="47.6">
          <filename>libopenssl0_9_8-32bit-0.9.8g-47.6.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-64bit" arch="ppc" version="0.9.8g" release="47.6">
          <filename>libopenssl0_9_8-64bit-0.9.8g-47.6.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="i586" version="0.9.8g" release="47.6">
          <filename>openssl-0.9.8g-47.6.i586.rpm</filename>
        </package>
        <package name="openssl" arch="ppc" version="0.9.8g" release="47.6">
          <filename>openssl-0.9.8g-47.6.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="x86_64" version="0.9.8g" release="47.6">
          <filename>openssl-0.9.8g-47.6.x86_64.rpm</filename>
        </package>
        <package name="openssl-certs" arch="i586" version="0.9.8g" release="47.6">
          <filename>openssl-certs-0.9.8g-47.6.i586.rpm</filename>
        </package>
        <package name="openssl-certs" arch="ppc" version="0.9.8g" release="47.6">
          <filename>openssl-certs-0.9.8g-47.6.ppc.rpm</filename>
        </package>
        <package name="openssl-certs" arch="x86_64" version="0.9.8g" release="47.6">
          <filename>openssl-certs-0.9.8g-47.6.x86_64.rpm</filename>
        </package>
        <package name="openssl-doc" arch="i586" version="0.9.8g" release="47.6">
          <filename>openssl-doc-0.9.8g-47.6.i586.rpm</filename>
        </package>
        <package name="openssl-doc" arch="ppc" version="0.9.8g" release="47.6">
          <filename>openssl-doc-0.9.8g-47.6.ppc.rpm</filename>
        </package>
        <package name="openssl-doc" arch="x86_64" version="0.9.8g" release="47.6">
          <filename>openssl-doc-0.9.8g-47.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c8f7feab7548e931f28523d44f81e05c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="880">
  <id>cyrus-sasl</id>
  <title>cyrus_sasl: improves function sasl_encode64()</title>
  <release>openSUSE 11.0</release>
  <issued date="1242320645"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=499104" id="499104" title="bug number 499104" type="bugzilla"/>
  </references>
  <description>This update of cyrus-sasl improves the output of function
sasl_encode64() by appending a 0 for string termination.
The impact depends on the application that uses
sasl_encode64().  (CVE-2009-0688)
</description>
  <pkglist>
    <collection>
        <package name="cyrus-sasl" arch="i586" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-2.1.22-140.2.i586.rpm</filename>
        </package>
        <package name="cyrus-sasl" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-32bit" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-32bit-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-64bit" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-64bit-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-crammd5" arch="i586" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-crammd5-2.1.22-140.2.i586.rpm</filename>
        </package>
        <package name="cyrus-sasl-crammd5" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-crammd5-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-crammd5" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-crammd5-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-crammd5-32bit" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-crammd5-32bit-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-crammd5-64bit" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-crammd5-64bit-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-devel" arch="i586" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-devel-2.1.22-140.2.i586.rpm</filename>
        </package>
        <package name="cyrus-sasl-devel" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-devel-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-devel" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-devel-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-devel-32bit" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-devel-32bit-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-devel-64bit" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-devel-64bit-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-digestmd5" arch="i586" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-digestmd5-2.1.22-140.2.i586.rpm</filename>
        </package>
        <package name="cyrus-sasl-digestmd5" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-digestmd5-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-digestmd5" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-digestmd5-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-digestmd5-32bit" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-digestmd5-32bit-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-digestmd5-64bit" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-digestmd5-64bit-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-gssapi" arch="i586" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-gssapi-2.1.22-140.2.i586.rpm</filename>
        </package>
        <package name="cyrus-sasl-gssapi" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-gssapi-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-gssapi" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-gssapi-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-gssapi-32bit" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-gssapi-32bit-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-gssapi-64bit" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-gssapi-64bit-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-ntlm" arch="i586" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-ntlm-2.1.22-140.2.i586.rpm</filename>
        </package>
        <package name="cyrus-sasl-ntlm" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-ntlm-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-ntlm" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-ntlm-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-otp" arch="i586" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-otp-2.1.22-140.2.i586.rpm</filename>
        </package>
        <package name="cyrus-sasl-otp" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-otp-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-otp" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-otp-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-otp-32bit" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-otp-32bit-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-otp-64bit" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-otp-64bit-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-plain" arch="i586" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-plain-2.1.22-140.2.i586.rpm</filename>
        </package>
        <package name="cyrus-sasl-plain" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-plain-2.1.22-140.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-sasl-plain" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-plain-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-plain-32bit" arch="x86_64" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-plain-32bit-2.1.22-140.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-sasl-plain-64bit" arch="ppc" version="2.1.22" release="140.2">
          <filename>cyrus-sasl-plain-64bit-2.1.22-140.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0ad0b2d78cf31f47b77f069596392978"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="879">
  <id>libsnmp15</id>
  <title>net-snmp: TCP wrapper rules are not handled correctly</title>
  <release>openSUSE 11.0</release>
  <issued date="1242299383"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=475532" id="475532" title="bug number 475532" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=481490" id="481490" title="bug number 481490" type="bugzilla"/>
  </references>
  <description>With this update of net-snmp the handling of TCP wrappers
rules for client authorization was improved, prior to this
update it was possible for remote attackers to bypass
intended access restrictions and execute SNMP queries.
(CVE-2008-6123)  Additionally binding to multiple
interfaces was improved.
</description>
  <pkglist>
    <collection>
        <package name="libsnmp15" arch="i586" version="5.4.1" release="77.6">
          <filename>libsnmp15-5.4.1-77.6.i586.rpm</filename>
        </package>
        <package name="libsnmp15" arch="ppc" version="5.4.1" release="77.6">
          <filename>libsnmp15-5.4.1-77.6.ppc.rpm</filename>
        </package>
        <package name="libsnmp15" arch="x86_64" version="5.4.1" release="77.6">
          <filename>libsnmp15-5.4.1-77.6.x86_64.rpm</filename>
        </package>
        <package name="net-snmp" arch="i586" version="5.4.1" release="77.6">
          <filename>net-snmp-5.4.1-77.6.i586.rpm</filename>
        </package>
        <package name="net-snmp" arch="ppc" version="5.4.1" release="77.6">
          <filename>net-snmp-5.4.1-77.6.ppc.rpm</filename>
        </package>
        <package name="net-snmp" arch="x86_64" version="5.4.1" release="77.6">
          <filename>net-snmp-5.4.1-77.6.x86_64.rpm</filename>
        </package>
        <package name="net-snmp-32bit" arch="x86_64" version="5.4.1" release="77.6">
          <filename>net-snmp-32bit-5.4.1-77.6.x86_64.rpm</filename>
        </package>
        <package name="net-snmp-64bit" arch="ppc" version="5.4.1" release="77.6">
          <filename>net-snmp-64bit-5.4.1-77.6.ppc.rpm</filename>
        </package>
        <package name="net-snmp-devel" arch="i586" version="5.4.1" release="77.6">
          <filename>net-snmp-devel-5.4.1-77.6.i586.rpm</filename>
        </package>
        <package name="net-snmp-devel" arch="ppc" version="5.4.1" release="77.6">
          <filename>net-snmp-devel-5.4.1-77.6.ppc.rpm</filename>
        </package>
        <package name="net-snmp-devel" arch="x86_64" version="5.4.1" release="77.6">
          <filename>net-snmp-devel-5.4.1-77.6.x86_64.rpm</filename>
        </package>
        <package name="net-snmp-devel-64bit" arch="ppc" version="5.4.1" release="77.6">
          <filename>net-snmp-devel-64bit-5.4.1-77.6.ppc.rpm</filename>
        </package>
        <package name="perl-SNMP" arch="i586" version="5.4.1" release="77.6">
          <filename>perl-SNMP-5.4.1-77.6.i586.rpm</filename>
        </package>
        <package name="perl-SNMP" arch="ppc" version="5.4.1" release="77.6">
          <filename>perl-SNMP-5.4.1-77.6.ppc.rpm</filename>
        </package>
        <package name="perl-SNMP" arch="x86_64" version="5.4.1" release="77.6">
          <filename>perl-SNMP-5.4.1-77.6.x86_64.rpm</filename>
        </package>
        <package name="snmp-mibs" arch="i586" version="5.4.1" release="77.6">
          <filename>snmp-mibs-5.4.1-77.6.i586.rpm</filename>
        </package>
        <package name="snmp-mibs" arch="ppc" version="5.4.1" release="77.6">
          <filename>snmp-mibs-5.4.1-77.6.ppc.rpm</filename>
        </package>
        <package name="snmp-mibs" arch="x86_64" version="5.4.1" release="77.6">
          <filename>snmp-mibs-5.4.1-77.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="eee9ab8708616be9b8de5f0eac589960"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="811">
  <id>dos2unix</id>
  <title>dos2unix: fix a possible data corruption if output file is on another filesystem</title>
  <release>openSUSE 11.0</release>
  <issued date="1240331058"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=488261" id="488261" title="bug number 488261" type="bugzilla"/>
  </references>
  <description>dos2unix will destroy the original file if the output is on
another file system.
</description>
  <pkglist>
    <collection>
        <package name="dos2unix" arch="i586" version="3.1" release="413.2">
          <filename>dos2unix-3.1-413.2.i586.rpm</filename>
        </package>
        <package name="dos2unix" arch="ppc" version="3.1" release="413.2">
          <filename>dos2unix-3.1-413.2.ppc.rpm</filename>
        </package>
        <package name="dos2unix" arch="x86_64" version="3.1" release="413.2">
          <filename>dos2unix-3.1-413.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3a1ef9a03ac7aef6f601f84a2c77fc0c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="951">
  <id>kernel</id>
  <title>Linux Kernel update</title>
  <release>openSUSE 11.0</release>
  <issued date="1243904459"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=495065" id="495065" title="bug number 495065" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465955" id="465955" title="bug number 465955" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=483819" id="483819" title="bug number 483819" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=483819" id="483819" title="bug number 483819" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=497551" id="497551" title="bug number 497551" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=483820" id="483820" title="bug number 483820" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=497597" id="497597" title="bug number 497597" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=498237" id="498237" title="bug number 498237" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=496398" id="496398" title="bug number 496398" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=492768" id="492768" title="bug number 492768" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=487681" id="487681" title="bug number 487681" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=492760" id="492760" title="bug number 492760" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=482720" id="482720" title="bug number 482720" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=487106" id="487106" title="bug number 487106" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=490608" id="490608" title="bug number 490608" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=492282" id="492282" title="bug number 492282" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=407523" id="407523" title="bug number 407523" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=408818" id="408818" title="bug number 408818" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429484" id="429484" title="bug number 429484" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=399966" id="399966" title="bug number 399966" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465963" id="465963" title="bug number 465963" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478003" id="478003" title="bug number 478003" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478002" id="478002" title="bug number 478002" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=472896" id="472896" title="bug number 472896" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=470943" id="470943" title="bug number 470943" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=470942" id="470942" title="bug number 470942" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=463522" id="463522" title="bug number 463522" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=462365" id="462365" title="bug number 462365" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=502675" id="502675" title="bug number 502675" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=503353" id="503353" title="bug number 503353" type="bugzilla"/>
  </references>
  <description>This kernel update for openSUSE 11.0 fixes some bugs and
several security problems.

The following security issues are fixed: A local denial of
service problem in the splice(2) system call.

CVE-2009-1630: The nfs_permission function in fs/nfs/dir.c
in the NFS client implementation in the Linux kernel when
atomic_open is available, does not check execute (aka EXEC
or MAY_EXEC) permission bits, which allows local users to
bypass permissions and execute files, as demonstrated by
files on an NFSv4 fileserver.

CVE-2009-0834: The audit_syscall_entry function in the
Linux kernel on the x86_64 platform did not properly handle
(1) a 32-bit process making a 64-bit syscall or (2) a
64-bit process making a 32-bit syscall, which allows local
users to bypass certain syscall audit configurations via
crafted syscalls.

CVE-2009-1072: nfsd in the Linux kernel did not drop the
CAP_MKNOD capability before handling a user request in a
thread, which allows local users to create device nodes, as
demonstrated on a filesystem that has been exported with
the root_squash option.

CVE-2009-0835  The __secure_computing function in
kernel/seccomp.c in the seccomp subsystem in the Linux
kernel on the x86_64 platform, when CONFIG_SECCOMP is
enabled, does not properly handle (1) a 32-bit process
making a 64-bit syscall or (2) a 64-bit process making a
32-bit syscall, which allows local users to bypass intended
access restrictions via crafted syscalls that are
misinterpreted as (a) stat or (b) chmod.

CVE-2009-1439: Buffer overflow in fs/cifs/connect.c in CIFS
in the Linux kernel 2.6.29 and earlier allows remote
attackers to cause a denial of service (crash) or potential
code execution via a long nativeFileSystem field in a Tree
Connect response to an SMB mount request.

This requires that kernel can be made to mount a &quot;cifs&quot;
filesystem from a malicious CIFS server.

CVE-2009-1337: The exit_notify function in kernel/exit.c in
the Linux kernel did not restrict exit signals when the
CAP_KILL capability is held, which allows local users to
send an arbitrary signal to a process by running a program
that modifies the exit_signal field and then uses an exec
system call to launch a setuid application.

CVE-2009-0859: The shm_get_stat function in ipc/shm.c in
the shm subsystem in the Linux kernel, when CONFIG_SHMEM is
disabled, misinterprets the data type of an inode, which
allows local users to cause a denial of service (system
hang) via an SHM_INFO shmctl call, as demonstrated by
running the ipcs program. (SUSE is enabling CONFIG_SHMEM,
so is by default not affected, the fix is just for
completeness).

CVE-2009-1242: The vmx_set_msr function in
arch/x86/kvm/vmx.c in the VMX implementation in the KVM
subsystem in the Linux kernel on the i386 platform allows
guest OS users to cause a denial of service (OOPS) by
setting the EFER_LME (aka &quot;Long mode enable&quot;) bit in the
Extended Feature Enable Register (EFER) model-specific
register, which is specific to the x86_64 platform.

CVE-2009-1265: Integer overflow in rose_sendmsg
(sys/net/af_rose.c) in the Linux kernel might allow
attackers to obtain sensitive information via a large
length value, which causes &quot;garbage&quot; memory to be sent.

CVE-2009-0028: The clone system call in the Linux kernel
allows local users to send arbitrary signals to a parent
process from an unprivileged child process by launching an
additional child process with the CLONE_PARENT flag, and
then letting this new process exit.

CVE-2009-0675: The skfp_ioctl function in
drivers/net/skfp/skfddi.c in the Linux kernel permits
SKFP_CLR_STATS requests only when the CAP_NET_ADMIN
capability is absent, instead of when this capability is
present, which allows local users to reset the driver
statistics, related to an &quot;inverted logic&quot; issue.

CVE-2009-0676: The sock_getsockopt function in
net/core/sock.c in the Linux kernel does not initialize a
certain structure member, which allows local users to
obtain potentially sensitive information from kernel memory
via an SO_BSDCOMPAT getsockopt request.

CVE-2009-0322: drivers/firmware/dell_rbu.c in the Linux
kernel allows local users to cause a denial of service
(system crash) via a read system call that specifies zero
bytes from the (1) image_type or (2) packet_size file in
/sys/devices/platform/dell_rbu/.

CVE-2009-0269: fs/ecryptfs/inode.c in the eCryptfs
subsystem in the Linux kernel allows local users to cause a
denial of service (fault or memory corruption), or possibly
have unspecified other impact, via a readlink call that
results in an error, leading to use of a -1 return value as
an array index.

CVE-2009-0065: Buffer overflow in net/sctp/sm_statefuns.c
in the Stream Control Transmission Protocol (sctp)
implementation in the Linux kernel allows remote attackers
to have an unknown impact via an FWD-TSN (aka FORWARD-TSN)
chunk with a large stream ID.

Some other non-security bugs were fixed, please see the RPM
changelog.
</description>
  <pkglist>
    <collection>
        <package name="acerhk-kmp-debug" arch="i586" version="0.5.35_2.6.25.20_0.4" release="98.1">
          <filename>acerhk-kmp-debug-0.5.35_2.6.25.20_0.4-98.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="acx-kmp-debug" arch="i586" version="20080210_2.6.25.20_0.4" release="3.1">
          <filename>acx-kmp-debug-20080210_2.6.25.20_0.4-3.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="acx-kmp-debug" arch="x86_64" version="20080210_2.6.25.20_0.4" release="3.1">
          <filename>acx-kmp-debug-20080210_2.6.25.20_0.4-3.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="appleir-kmp-debug" arch="i586" version="1.1_2.6.25.20_0.4" release="108.1">
          <filename>appleir-kmp-debug-1.1_2.6.25.20_0.4-108.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="appleir-kmp-debug" arch="x86_64" version="1.1_2.6.25.20_0.4" release="108.1">
          <filename>appleir-kmp-debug-1.1_2.6.25.20_0.4-108.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="at76_usb-kmp-debug" arch="i586" version="0.17_2.6.25.20_0.4" release="2.1">
          <filename>at76_usb-kmp-debug-0.17_2.6.25.20_0.4-2.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="at76_usb-kmp-debug" arch="x86_64" version="0.17_2.6.25.20_0.4" release="2.1">
          <filename>at76_usb-kmp-debug-0.17_2.6.25.20_0.4-2.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="atl2-kmp-debug" arch="i586" version="2.0.4_2.6.25.20_0.4" release="4.1">
          <filename>atl2-kmp-debug-2.0.4_2.6.25.20_0.4-4.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="atl2-kmp-debug" arch="x86_64" version="2.0.4_2.6.25.20_0.4" release="4.1">
          <filename>atl2-kmp-debug-2.0.4_2.6.25.20_0.4-4.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="aufs-kmp-debug" arch="i586" version="cvs20080429_2.6.25.20_0.4" release="13.3">
          <filename>aufs-kmp-debug-cvs20080429_2.6.25.20_0.4-13.3.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="aufs-kmp-debug" arch="x86_64" version="cvs20080429_2.6.25.20_0.4" release="13.3">
          <filename>aufs-kmp-debug-cvs20080429_2.6.25.20_0.4-13.3.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="dazuko-kmp-debug" arch="i586" version="2.3.4.4_2.6.25.20_0.4" release="42.1">
          <filename>dazuko-kmp-debug-2.3.4.4_2.6.25.20_0.4-42.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="dazuko-kmp-debug" arch="x86_64" version="2.3.4.4_2.6.25.20_0.4" release="42.1">
          <filename>dazuko-kmp-debug-2.3.4.4_2.6.25.20_0.4-42.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="drbd-kmp-debug" arch="i586" version="8.2.6_2.6.25.20_0.4" release="0.2">
          <filename>drbd-kmp-debug-8.2.6_2.6.25.20_0.4-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="drbd-kmp-debug" arch="x86_64" version="8.2.6_2.6.25.20_0.4" release="0.2">
          <filename>drbd-kmp-debug-8.2.6_2.6.25.20_0.4-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="gspcav-kmp-debug" arch="i586" version="01.00.20_2.6.25.20_0.4" release="1.1">
          <filename>gspcav-kmp-debug-01.00.20_2.6.25.20_0.4-1.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="gspcav-kmp-debug" arch="x86_64" version="01.00.20_2.6.25.20_0.4" release="1.1">
          <filename>gspcav-kmp-debug-01.00.20_2.6.25.20_0.4-1.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="iscsitarget-kmp-debug" arch="i586" version="0.4.15_2.6.25.20_0.4" release="63.1">
          <filename>iscsitarget-kmp-debug-0.4.15_2.6.25.20_0.4-63.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="iscsitarget-kmp-debug" arch="x86_64" version="0.4.15_2.6.25.20_0.4" release="63.1">
          <filename>iscsitarget-kmp-debug-0.4.15_2.6.25.20_0.4-63.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="ivtv-kmp-debug" arch="i586" version="1.0.3_2.6.25.20_0.4" release="66.1">
          <filename>ivtv-kmp-debug-1.0.3_2.6.25.20_0.4-66.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="ivtv-kmp-debug" arch="x86_64" version="1.0.3_2.6.25.20_0.4" release="66.1">
          <filename>ivtv-kmp-debug-1.0.3_2.6.25.20_0.4-66.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="i586" version="2.6.25.20" release="0.4">
          <filename>kernel-debug-2.6.25.20-0.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="x86_64" version="2.6.25.20" release="0.4">
          <filename>kernel-debug-2.6.25.20-0.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="i586" version="2.6.25.20" release="0.4">
          <filename>kernel-default-2.6.25.20-0.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="ppc" version="2.6.25.20" release="0.4">
          <filename>kernel-default-2.6.25.20-0.4.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="x86_64" version="2.6.25.20" release="0.4">
          <filename>kernel-default-2.6.25.20-0.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-docs" arch="noarch" version="2.6.25.20" release="0.4">
          <filename>kernel-docs-2.6.25.20-0.4.noarch.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-kdump" arch="ppc" version="2.6.25.20" release="0.4">
          <filename>kernel-kdump-2.6.25.20-0.4.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-pae" arch="i586" version="2.6.25.20" release="0.4">
          <filename>kernel-pae-2.6.25.20-0.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ppc64" arch="ppc" version="2.6.25.20" release="0.4">
          <filename>kernel-ppc64-2.6.25.20-0.4.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ps3" arch="ppc" version="2.6.25.20" release="0.4">
          <filename>kernel-ps3-2.6.25.20-0.4.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="i586" version="2.6.25.20" release="0.4">
          <filename>kernel-source-2.6.25.20-0.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="ppc" version="2.6.25.20" release="0.4">
          <filename>kernel-source-2.6.25.20-0.4.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="x86_64" version="2.6.25.20" release="0.4">
          <filename>kernel-source-2.6.25.20-0.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="i586" version="2.6.25.20" release="0.4">
          <filename>kernel-syms-2.6.25.20-0.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="ppc" version="2.6.25.20" release="0.4">
          <filename>kernel-syms-2.6.25.20-0.4.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="x86_64" version="2.6.25.20" release="0.4">
          <filename>kernel-syms-2.6.25.20-0.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="i586" version="2.6.25.20" release="0.4">
          <filename>kernel-vanilla-2.6.25.20-0.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="ppc" version="2.6.25.20" release="0.4">
          <filename>kernel-vanilla-2.6.25.20-0.4.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="x86_64" version="2.6.25.20" release="0.4">
          <filename>kernel-vanilla-2.6.25.20-0.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="i586" version="2.6.25.20" release="0.4">
          <filename>kernel-xen-2.6.25.20-0.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="x86_64" version="2.6.25.20" release="0.4">
          <filename>kernel-xen-2.6.25.20-0.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kqemu-kmp-debug" arch="i586" version="1.3.0pre11_2.6.25.20_0.4" release="7.1">
          <filename>kqemu-kmp-debug-1.3.0pre11_2.6.25.20_0.4-7.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kqemu-kmp-debug" arch="x86_64" version="1.3.0pre11_2.6.25.20_0.4" release="7.1">
          <filename>kqemu-kmp-debug-1.3.0pre11_2.6.25.20_0.4-7.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="nouveau-kmp-debug" arch="i586" version="0.10.1.20081112_2.6.25.20_0.4" release="0.4">
          <filename>nouveau-kmp-debug-0.10.1.20081112_2.6.25.20_0.4-0.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="nouveau-kmp-debug" arch="x86_64" version="0.10.1.20081112_2.6.25.20_0.4" release="0.4">
          <filename>nouveau-kmp-debug-0.10.1.20081112_2.6.25.20_0.4-0.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="omnibook-kmp-debug" arch="i586" version="20080313_2.6.25.20_0.4" release="1.1">
          <filename>omnibook-kmp-debug-20080313_2.6.25.20_0.4-1.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="omnibook-kmp-debug" arch="x86_64" version="20080313_2.6.25.20_0.4" release="1.1">
          <filename>omnibook-kmp-debug-20080313_2.6.25.20_0.4-1.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcc-acpi-kmp-debug" arch="i586" version="0.9_2.6.25.20_0.4" release="4.1">
          <filename>pcc-acpi-kmp-debug-0.9_2.6.25.20_0.4-4.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcc-acpi-kmp-debug" arch="x86_64" version="0.9_2.6.25.20_0.4" release="4.1">
          <filename>pcc-acpi-kmp-debug-0.9_2.6.25.20_0.4-4.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcfclock-kmp-debug" arch="i586" version="0.44_2.6.25.20_0.4" release="207.1">
          <filename>pcfclock-kmp-debug-0.44_2.6.25.20_0.4-207.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcfclock-kmp-debug" arch="x86_64" version="0.44_2.6.25.20_0.4" release="207.1">
          <filename>pcfclock-kmp-debug-0.44_2.6.25.20_0.4-207.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="tpctl-kmp-debug" arch="i586" version="4.17_2.6.25.20_0.4" release="189.1">
          <filename>tpctl-kmp-debug-4.17_2.6.25.20_0.4-189.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="uvcvideo-kmp-debug" arch="i586" version="r200_2.6.25.20_0.4" release="2.4">
          <filename>uvcvideo-kmp-debug-r200_2.6.25.20_0.4-2.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="uvcvideo-kmp-debug" arch="x86_64" version="r200_2.6.25.20_0.4" release="2.4">
          <filename>uvcvideo-kmp-debug-r200_2.6.25.20_0.4-2.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="virtualbox-ose-kmp-debug" arch="i586" version="1.5.6_2.6.25.20_0.4" release="33.3">
          <filename>virtualbox-ose-kmp-debug-1.5.6_2.6.25.20_0.4-33.3.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="virtualbox-ose-kmp-debug" arch="x86_64" version="1.5.6_2.6.25.20_0.4" release="33.3">
          <filename>virtualbox-ose-kmp-debug-1.5.6_2.6.25.20_0.4-33.3.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="vmware-kmp-debug" arch="i586" version="2008.04.14_2.6.25.20_0.4" release="21.1">
          <filename>vmware-kmp-debug-2008.04.14_2.6.25.20_0.4-21.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="vmware-kmp-debug" arch="x86_64" version="2008.04.14_2.6.25.20_0.4" release="21.1">
          <filename>vmware-kmp-debug-2008.04.14_2.6.25.20_0.4-21.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="wlan-ng-kmp-debug" arch="i586" version="0.2.8_2.6.25.20_0.4" release="107.1">
          <filename>wlan-ng-kmp-debug-0.2.8_2.6.25.20_0.4-107.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="wlan-ng-kmp-debug" arch="x86_64" version="0.2.8_2.6.25.20_0.4" release="107.1">
          <filename>wlan-ng-kmp-debug-0.2.8_2.6.25.20_0.4-107.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="635d66639c1196b74c1f3732a73929e4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="972">
  <id>optipng</id>
  <title>optipng uses pointers after free (CVE-2009-0749)</title>
  <release>openSUSE 11.0</release>
  <issued date="1244508904"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=505103" id="505103" title="bug number 505103" type="bugzilla"/>
  </references>
  <description>OptiPNG contained a bug in the GIF handling code that
allowed to use already freed ressources. CVE-2009-0749 has
been assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="optipng" arch="i586" version="0.6.2" release="2.4">
          <filename>optipng-0.6.2-2.4.i586.rpm</filename>
        </package>
        <package name="optipng" arch="ppc" version="0.6.2" release="2.4">
          <filename>optipng-0.6.2-2.4.ppc.rpm</filename>
        </package>
        <package name="optipng" arch="x86_64" version="0.6.2" release="2.4">
          <filename>optipng-0.6.2-2.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="49e1cf3866b6fbe62620c98d4c7f2588"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="866">
  <id>quagga</id>
  <title>quagga: remote denial of service</title>
  <release>openSUSE 11.0</release>
  <issued date="1241775255"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=500540" id="500540" title="bug number 500540" type="bugzilla"/>
  </references>
  <description>This update fixes a remote denial of service bug in quagga
that can be triggered via an AS path containing ASN
elements whose string representation is longer than
expected. (CVE-2009-1572)
</description>
  <pkglist>
    <collection>
        <package name="quagga" arch="i586" version="0.99.9" release="59.2">
          <filename>quagga-0.99.9-59.2.i586.rpm</filename>
        </package>
        <package name="quagga" arch="ppc" version="0.99.9" release="59.2">
          <filename>quagga-0.99.9-59.2.ppc.rpm</filename>
        </package>
        <package name="quagga" arch="x86_64" version="0.99.9" release="59.2">
          <filename>quagga-0.99.9-59.2.x86_64.rpm</filename>
        </package>
        <package name="quagga-devel" arch="i586" version="0.99.9" release="59.2">
          <filename>quagga-devel-0.99.9-59.2.i586.rpm</filename>
        </package>
        <package name="quagga-devel" arch="ppc" version="0.99.9" release="59.2">
          <filename>quagga-devel-0.99.9-59.2.ppc.rpm</filename>
        </package>
        <package name="quagga-devel" arch="x86_64" version="0.99.9" release="59.2">
          <filename>quagga-devel-0.99.9-59.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9adb40871d8f0d22746336fec20d72dd"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="965">
  <id>strongswan</id>
  <title>strongswan security update (CVE-2009-1957 and CVE-2009-1958)</title>
  <release>openSUSE 11.0</release>
  <issued date="1244453274"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=507742" id="507742" title="bug number 507742" type="bugzilla"/>
  </references>
  <description>This update fixes two denial of service bugs that can lead
to a remote pre-auth crash while processing a IKE_SA_INIT
or a IKE_AUTH request. CVE-2009-1957 and CVE-2009-1958 have
been assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="strongswan" arch="i586" version="4.2.1" release="11.8">
          <filename>strongswan-4.2.1-11.8.i586.rpm</filename>
        </package>
        <package name="strongswan" arch="ppc" version="4.2.1" release="11.8">
          <filename>strongswan-4.2.1-11.8.ppc.rpm</filename>
        </package>
        <package name="strongswan" arch="x86_64" version="4.2.1" release="11.8">
          <filename>strongswan-4.2.1-11.8.x86_64.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="i586" version="4.2.1" release="11.8">
          <filename>strongswan-doc-4.2.1-11.8.i586.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="ppc" version="4.2.1" release="11.8">
          <filename>strongswan-doc-4.2.1-11.8.ppc.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="x86_64" version="4.2.1" release="11.8">
          <filename>strongswan-doc-4.2.1-11.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a9961e4427e0f9d65342e73134d556ab"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="964">
  <id>yast2-qt-pkg</id>
  <title>yast2-qt-pkg: Fix protects YaST of crashes by selecting language filters</title>
  <release>openSUSE 11.0</release>
  <issued date="1244156286"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=468734" id="468734" title="bug number 468734" type="bugzilla"/>
  </references>
  <description></description>
  <pkglist>
    <collection>
        <package name="yast2-qt-pkg" arch="i586" version="2.16.49" release="0.1">
          <filename>yast2-qt-pkg-2.16.49-0.1.i586.rpm</filename>
        </package>
        <package name="yast2-qt-pkg" arch="ppc" version="2.16.49" release="0.1">
          <filename>yast2-qt-pkg-2.16.49-0.1.ppc.rpm</filename>
        </package>
        <package name="yast2-qt-pkg" arch="x86_64" version="2.16.49" release="0.1">
          <filename>yast2-qt-pkg-2.16.49-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="524d075848c24dc90e235db79a017e6c"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="961">
  <id>klamav</id>
  <title>klamav: Add Klammail program</title>
  <release>openSUSE 11.0</release>
  <issued date="1244125099"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415178" id="415178" title="bug number 415178" type="bugzilla"/>
  </references>
  <description>During a previous update, the Klammail program was disabled
by an openSUSE specific patch from the build. This has now
been corrected and it is included again in the package
(bnc#415178)
</description>
  <pkglist>
    <collection>
        <package name="klamav" arch="i586" version="0.46" release="0.3">
          <filename>klamav-0.46-0.3.i586.rpm</filename>
        </package>
        <package name="klamav" arch="ppc" version="0.46" release="0.3">
          <filename>klamav-0.46-0.3.ppc.rpm</filename>
        </package>
        <package name="klamav" arch="x86_64" version="0.46" release="0.3">
          <filename>klamav-0.46-0.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f3604ddb60d424b576ba6c072aa717d6"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1004">
  <id>irssi</id>
  <title>irssi: fixed CVE-2009-1959 (off by one overflow)</title>
  <release>openSUSE 11.0</release>
  <issued date="1245077426"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=510837" id="510837" title="bug number 510837" type="bugzilla"/>
  </references>
  <description>Fixed a irssi off by one overflow in the event_wallops()
function. CVE-2009-1959 has been assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="irssi" arch="i586" version="0.8.12" release="49.2">
          <filename>irssi-0.8.12-49.2.i586.rpm</filename>
        </package>
        <package name="irssi" arch="ppc" version="0.8.12" release="49.2">
          <filename>irssi-0.8.12-49.2.ppc.rpm</filename>
        </package>
        <package name="irssi" arch="x86_64" version="0.8.12" release="49.2">
          <filename>irssi-0.8.12-49.2.x86_64.rpm</filename>
        </package>
        <package name="irssi-devel" arch="i586" version="0.8.12" release="49.2">
          <filename>irssi-devel-0.8.12-49.2.i586.rpm</filename>
        </package>
        <package name="irssi-devel" arch="ppc" version="0.8.12" release="49.2">
          <filename>irssi-devel-0.8.12-49.2.ppc.rpm</filename>
        </package>
        <package name="irssi-devel" arch="x86_64" version="0.8.12" release="49.2">
          <filename>irssi-devel-0.8.12-49.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="43a2f83e7d5242bd659a316c0b83c8f9"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1000">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Security update to version 3.0.11</title>
  <release>openSUSE 11.0</release>
  <issued date="1245065625"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=505563" id="505563" title="bug number 505563" type="bugzilla"/>
  </references>
  <description>The Mozilla Firefox browser was updated to version 3.0.11,
fixing various bugs and security issues:

 * MFSA 2009-24/CVE-2009-1392/CVE-2009-1832/CVE-2009-1833
   Crashes with evidence of memory corruption (rv:1.9.0.11)
  * MFSA 2009-25/CVE-2009-1834 (bmo#479413) URL spoofing
    with invalid unicode characters
  * MFSA 2009-26/CVE-2009-1835 (bmo#491801) Arbitrary
    domain cookie access by local file: resources
  * MFSA 2009-27/CVE-2009-1836 (bmo#479880) SSL tampering
    via non-200 responses to proxy CONNECT requests
  * MFSA 2009-28/CVE-2009-1837 (bmo#486269) Race condition
    while accessing the private data of a NPObject JS
    wrapper class object
  * MFSA 2009-29/CVE-2009-1838 (bmo#489131) Arbitrary code
    execution using event listeners attached to an element
    whose owner document is null
  * MFSA 2009-30/CVE-2009-1839 (bmo#479943) Incorrect
    principal set for file: resources loaded via location
    bar
  * MFSA 2009-31/CVE-2009-1840 (bmo#477979) XUL scripts
    bypass content-policy checks
  * MFSA 2009-32/CVE-2009-1841 (bmo#479560) JavaScript
    chrome privilege escalation
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.11" release="0.1">
          <filename>MozillaFirefox-3.0.11-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.11" release="0.1">
          <filename>MozillaFirefox-3.0.11-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.11" release="0.1">
          <filename>MozillaFirefox-3.0.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.11" release="0.1">
          <filename>MozillaFirefox-translations-3.0.11-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.11" release="0.1">
          <filename>MozillaFirefox-translations-3.0.11-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.11" release="0.1">
          <filename>MozillaFirefox-translations-3.0.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.11-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.11-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.11-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.11-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.11-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.11-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.11-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.11-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.11-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.11-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.11-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.11-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.11-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.11-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.11-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.11-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.11-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.11" release="1.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.11-1.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d61b958f83fd5574bef883709c573315"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="974">
  <id>libopenssl-devel</id>
  <title>OpenSSL DTLS remote DoS fixed (CVE-2009-1386 and CVE-2009-1387).</title>
  <release>openSUSE 11.0</release>
  <issued date="1244552445"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=509031" id="509031" title="bug number 509031" type="bugzilla"/>
  </references>
  <description>OpenSSL DTLS remote DoS in ChangeCipherSpec (CVE-2009-1386)
and in out-of-sequence message handling (CVE-2009-1387)
have been fixed.
</description>
  <pkglist>
    <collection>
        <package name="libopenssl-devel" arch="i586" version="0.9.8g" release="47.8">
          <filename>libopenssl-devel-0.9.8g-47.8.i586.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="ppc" version="0.9.8g" release="47.8">
          <filename>libopenssl-devel-0.9.8g-47.8.ppc.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="x86_64" version="0.9.8g" release="47.8">
          <filename>libopenssl-devel-0.9.8g-47.8.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="i586" version="0.9.8g" release="47.8">
          <filename>libopenssl0_9_8-0.9.8g-47.8.i586.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="ppc" version="0.9.8g" release="47.8">
          <filename>libopenssl0_9_8-0.9.8g-47.8.ppc.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="x86_64" version="0.9.8g" release="47.8">
          <filename>libopenssl0_9_8-0.9.8g-47.8.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-32bit" arch="x86_64" version="0.9.8g" release="47.8">
          <filename>libopenssl0_9_8-32bit-0.9.8g-47.8.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-64bit" arch="ppc" version="0.9.8g" release="47.8">
          <filename>libopenssl0_9_8-64bit-0.9.8g-47.8.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="i586" version="0.9.8g" release="47.8">
          <filename>openssl-0.9.8g-47.8.i586.rpm</filename>
        </package>
        <package name="openssl" arch="ppc" version="0.9.8g" release="47.8">
          <filename>openssl-0.9.8g-47.8.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="x86_64" version="0.9.8g" release="47.8">
          <filename>openssl-0.9.8g-47.8.x86_64.rpm</filename>
        </package>
        <package name="openssl-certs" arch="i586" version="0.9.8g" release="47.8">
          <filename>openssl-certs-0.9.8g-47.8.i586.rpm</filename>
        </package>
        <package name="openssl-certs" arch="ppc" version="0.9.8g" release="47.8">
          <filename>openssl-certs-0.9.8g-47.8.ppc.rpm</filename>
        </package>
        <package name="openssl-certs" arch="x86_64" version="0.9.8g" release="47.8">
          <filename>openssl-certs-0.9.8g-47.8.x86_64.rpm</filename>
        </package>
        <package name="openssl-doc" arch="i586" version="0.9.8g" release="47.8">
          <filename>openssl-doc-0.9.8g-47.8.i586.rpm</filename>
        </package>
        <package name="openssl-doc" arch="ppc" version="0.9.8g" release="47.8">
          <filename>openssl-doc-0.9.8g-47.8.ppc.rpm</filename>
        </package>
        <package name="openssl-doc" arch="x86_64" version="0.9.8g" release="47.8">
          <filename>openssl-doc-0.9.8g-47.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cb58df3a93b69014571b008c271b64f7"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1014">
  <id>seamonkey</id>
  <title>seamonkey: Security update to version 1.1.16</title>
  <release>openSUSE 11.0</release>
  <issued date="1245259118"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=488955" id="488955" title="bug number 488955" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=489411" id="489411" title="bug number 489411" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=492354" id="492354" title="bug number 492354" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478625" id="478625" title="bug number 478625" type="bugzilla"/>
  </references>
  <description>The Mozilla Seamonkey browser suite was updated to version
1.1.16, fixing various bugs and security issues:

- Security update to 1.1.16
  * MFSA 2009-12/CVE-2009-1169 (bmo#460090,485217) Crash
    and remote code execution in XSL transformation
  * MFSA 2009-14/CVE-2009-1303/CVE-2009-1305 Crashes with
    evidence of memory corruption (rv:1.9.0.9)
- Security update  to 1.1.15
  * MFSA 2009-15/CVE-2009-0652 URL spoofing with box
    drawing character
  * MFSA 2009-07/CVE-2009-0771, CVE-2009-0772,
    CVE-2009-0773 CVE-2009-0774: Crashes with evidence of
    memory corruption (rv:1.9.0.7)
  * MFSA 2009-09/CVE-2009-0776: XML data theft via
    RDFXMLDataSource and cross-domain redirect
  * MFSA 2009-10/CVE-2009-0040: Upgrade PNG library to fix
    memory safety hazards
  * MFSA 2009-01/CVE-2009-0352 Crashes with evidence of
    memory corruption (rv:1.9.0.6)
  * MFSA 2009-05/CVE-2009-0357 XMLHttpRequest allows
    reading HTTPOnly cookies

Please note that the java openjdk plugin might not work
after installing this update.
</description>
  <pkglist>
    <collection>
        <package name="seamonkey" arch="i586" version="1.1.16" release="1.1">
          <filename>seamonkey-1.1.16-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey" arch="ppc" version="1.1.16" release="1.1">
          <filename>seamonkey-1.1.16-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey" arch="x86_64" version="1.1.16" release="1.1">
          <filename>seamonkey-1.1.16-1.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="i586" version="1.1.16" release="1.1">
          <filename>seamonkey-dom-inspector-1.1.16-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="ppc" version="1.1.16" release="1.1">
          <filename>seamonkey-dom-inspector-1.1.16-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="x86_64" version="1.1.16" release="1.1">
          <filename>seamonkey-dom-inspector-1.1.16-1.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="i586" version="1.1.16" release="1.1">
          <filename>seamonkey-irc-1.1.16-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="ppc" version="1.1.16" release="1.1">
          <filename>seamonkey-irc-1.1.16-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="x86_64" version="1.1.16" release="1.1">
          <filename>seamonkey-irc-1.1.16-1.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="i586" version="1.1.16" release="1.1">
          <filename>seamonkey-mail-1.1.16-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="ppc" version="1.1.16" release="1.1">
          <filename>seamonkey-mail-1.1.16-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="x86_64" version="1.1.16" release="1.1">
          <filename>seamonkey-mail-1.1.16-1.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="i586" version="1.1.16" release="1.1">
          <filename>seamonkey-spellchecker-1.1.16-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="ppc" version="1.1.16" release="1.1">
          <filename>seamonkey-spellchecker-1.1.16-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="x86_64" version="1.1.16" release="1.1">
          <filename>seamonkey-spellchecker-1.1.16-1.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="i586" version="1.1.16" release="1.1">
          <filename>seamonkey-venkman-1.1.16-1.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="ppc" version="1.1.16" release="1.1">
          <filename>seamonkey-venkman-1.1.16-1.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="x86_64" version="1.1.16" release="1.1">
          <filename>seamonkey-venkman-1.1.16-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1b9aef7a57a3d1767344500715cd2e85"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1023">
  <id>osc</id>
  <title>osc: update to support new Build Service XML Format</title>
  <release>openSUSE 11.0</release>
  <issued date="1245692276"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478054" id="478054" title="bug number 478054" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478052" id="478052" title="bug number 478052" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=477690" id="477690" title="bug number 477690" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=470948" id="470948" title="bug number 470948" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=479156" id="479156" title="bug number 479156" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=469167" id="469167" title="bug number 469167" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=458083" id="458083" title="bug number 458083" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=462869" id="462869" title="bug number 462869" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459292" id="459292" title="bug number 459292" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=459288" id="459288" title="bug number 459288" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=458535" id="458535" title="bug number 458535" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=421390" id="421390" title="bug number 421390" type="bugzilla"/>
  </references>
  <description>Fixed Bugs:
- bnc#478054: osc asks for build.o.o credential even if
  -A&lt;somelocalapi&gt; is always used
- bnc#478052 : osc backtrace on password entry (first
  startup)
- bnc#477690 : osc fetching binaries really slow
- bnc#470948 : osc build - update
- bnc#479156 : osc: osc linkpac fails / backtrace
- bnc#469167 : osc commit &quot;message&quot; (forgot -m) =&gt; this
  code path should never be reached
- bnc#458083 : osc importsrcpkg keep src pkgs, incorrect
  help and set url
- bnc#462869 : osc updatepacmetafromspec fails if
  %description is starting with newline
- bnc#459292 : osc meta prj ... -e  error messages are not
  helpful
- bnc#459288 : osc mkpac fails
- bnc#458535 : osc deletes complete project given wrong
  parameters
- bnc#421390 : osc build&quot; doesn't strip when creating
  debuginfo

Enhancements/Changes:
- &quot;submitreq&quot; command has a new syntax (incompatible !)
- new &quot;deleterequest&quot; command
- new &quot;changedevelrequest&quot; command
- new &quot;request&quot; command for showing/modifing requests
- new support for osc linkpac to specify cicount attribute
- delete commands consolidated:
   * deleteprj and deletepac are obsolete.
   * delete and rdelete take over
- new option for copypac
   * -r to specify source revision
   * -m to specify a comment (and send default comment if
not specified)
- new option to results(r), and rresults:
   * -r|--repo to specify a repository(repositories)
   * -a|--arch to specify a architexure(s)
   * --xml for xml output (makes results_meta obsolete)
- new repairlink command for repairing a broken source link
- new vc command for editing the changes files
- support &quot;setlinkrev&quot; for whole projects
- add &quot;setlinkrev --unset&quot; for removing revision references
- add &quot;osc request list -t &lt;type&gt;&quot; to list only submit,
  delete or develchange requests
- add shell completion scripts
- fix support of listing requests with multiple actions
- &quot;osc maintainer&quot; list maintainer and bugowner roles now
- rename &quot;rebuildpac&quot; to &quot;rebuild&quot;, but keep &quot;rebuildpac&quot;
  as alias

OSC contains many more changes, please see package
changelog via YaST or &quot;rpm -q --changelog osc | less&quot; on a
console.
</description>
  <pkglist>
    <collection>
        <package name="osc" arch="i586" version="0.120" release="1.1">
          <filename>osc-0.120-1.1.i586.rpm</filename>
        </package>
        <package name="osc" arch="ppc" version="0.120" release="1.1">
          <filename>osc-0.120-1.1.ppc.rpm</filename>
        </package>
        <package name="osc" arch="x86_64" version="0.120" release="1.1">
          <filename>osc-0.120-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="245bd1e4d2a226251a8dc461f334806c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="995">
  <id>perl</id>
  <title>perl: Fixed a buffer in Compress::Raw::Zlib</title>
  <release>openSUSE 11.0</release>
  <issued date="1244653789"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=511241" id="511241" title="bug number 511241" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=489114" id="489114" title="bug number 489114" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=498425" id="498425" title="bug number 498425" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=493978" id="493978" title="bug number 493978" type="bugzilla"/>
  </references>
  <description>A Buffer overflow in perl, in the base Compress::Raw::Zlib
perl module has been fixed. (CVE-2009-1391)

Additionaly three non security bugs were fixed.
</description>
  <pkglist>
    <collection>
        <package name="perl" arch="i586" version="5.10.0" release="37.8">
          <filename>perl-5.10.0-37.8.i586.rpm</filename>
        </package>
        <package name="perl" arch="ppc" version="5.10.0" release="37.8">
          <filename>perl-5.10.0-37.8.ppc.rpm</filename>
        </package>
        <package name="perl" arch="x86_64" version="5.10.0" release="37.8">
          <filename>perl-5.10.0-37.8.x86_64.rpm</filename>
        </package>
        <package name="perl-32bit" arch="x86_64" version="5.10.0" release="37.8">
          <filename>perl-32bit-5.10.0-37.8.x86_64.rpm</filename>
        </package>
        <package name="perl-64bit" arch="ppc" version="5.10.0" release="37.8">
          <filename>perl-64bit-5.10.0-37.8.ppc.rpm</filename>
        </package>
        <package name="perl-base" arch="i586" version="5.10.0" release="37.8">
          <filename>perl-base-5.10.0-37.8.i586.rpm</filename>
        </package>
        <package name="perl-base" arch="ppc" version="5.10.0" release="37.8">
          <filename>perl-base-5.10.0-37.8.ppc.rpm</filename>
        </package>
        <package name="perl-base" arch="x86_64" version="5.10.0" release="37.8">
          <filename>perl-base-5.10.0-37.8.x86_64.rpm</filename>
        </package>
        <package name="perl-doc" arch="i586" version="5.10.0" release="37.8">
          <filename>perl-doc-5.10.0-37.8.i586.rpm</filename>
        </package>
        <package name="perl-doc" arch="ppc" version="5.10.0" release="37.8">
          <filename>perl-doc-5.10.0-37.8.ppc.rpm</filename>
        </package>
        <package name="perl-doc" arch="x86_64" version="5.10.0" release="37.8">
          <filename>perl-doc-5.10.0-37.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="333adfbae730f95489647f5c7256dfd1"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="967">
  <id>ImageMagick</id>
  <title>ImageMagick: Integer overflow in XMakeImage()</title>
  <release>openSUSE 11.0</release>
  <issued date="1244134209"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=507728" id="507728" title="bug number 507728" type="bugzilla"/>
  </references>
  <description>This update of ImageMagick fixes an integer overflow in the
XMakeImage() function that allowed remote attackers to
cause a denial-of-service and possibly the execution of
arbitrary code via a crafted TIFF file. (CVE-2009-1882)
</description>
  <pkglist>
    <collection>
        <package name="ImageMagick" arch="i586" version="6.4.0.4" release="20.2">
          <filename>ImageMagick-6.4.0.4-20.2.i586.rpm</filename>
        </package>
        <package name="ImageMagick" arch="ppc" version="6.4.0.4" release="20.2">
          <filename>ImageMagick-6.4.0.4-20.2.ppc.rpm</filename>
        </package>
        <package name="ImageMagick" arch="x86_64" version="6.4.0.4" release="20.2">
          <filename>ImageMagick-6.4.0.4-20.2.x86_64.rpm</filename>
        </package>
        <package name="ImageMagick-devel" arch="i586" version="6.4.0.4" release="20.2">
          <filename>ImageMagick-devel-6.4.0.4-20.2.i586.rpm</filename>
        </package>
        <package name="ImageMagick-devel" arch="ppc" version="6.4.0.4" release="20.2">
          <filename>ImageMagick-devel-6.4.0.4-20.2.ppc.rpm</filename>
        </package>
        <package name="ImageMagick-devel" arch="x86_64" version="6.4.0.4" release="20.2">
          <filename>ImageMagick-devel-6.4.0.4-20.2.x86_64.rpm</filename>
        </package>
        <package name="ImageMagick-extra" arch="i586" version="6.4.0.4" release="20.2">
          <filename>ImageMagick-extra-6.4.0.4-20.2.i586.rpm</filename>
        </package>
        <package name="ImageMagick-extra" arch="ppc" version="6.4.0.4" release="20.2">
          <filename>ImageMagick-extra-6.4.0.4-20.2.ppc.rpm</filename>
        </package>
        <package name="ImageMagick-extra" arch="x86_64" version="6.4.0.4" release="20.2">
          <filename>ImageMagick-extra-6.4.0.4-20.2.x86_64.rpm</filename>
        </package>
        <package name="libMagick++-devel" arch="i586" version="6.4.0.4" release="20.2">
          <filename>libMagick++-devel-6.4.0.4-20.2.i586.rpm</filename>
        </package>
        <package name="libMagick++-devel" arch="ppc" version="6.4.0.4" release="20.2">
          <filename>libMagick++-devel-6.4.0.4-20.2.ppc.rpm</filename>
        </package>
        <package name="libMagick++-devel" arch="x86_64" version="6.4.0.4" release="20.2">
          <filename>libMagick++-devel-6.4.0.4-20.2.x86_64.rpm</filename>
        </package>
        <package name="libMagick++1" arch="i586" version="6.4.0.4" release="20.2">
          <filename>libMagick++1-6.4.0.4-20.2.i586.rpm</filename>
        </package>
        <package name="libMagick++1" arch="ppc" version="6.4.0.4" release="20.2">
          <filename>libMagick++1-6.4.0.4-20.2.ppc.rpm</filename>
        </package>
        <package name="libMagick++1" arch="x86_64" version="6.4.0.4" release="20.2">
          <filename>libMagick++1-6.4.0.4-20.2.x86_64.rpm</filename>
        </package>
        <package name="libMagickCore1" arch="i586" version="6.4.0.4" release="20.2">
          <filename>libMagickCore1-6.4.0.4-20.2.i586.rpm</filename>
        </package>
        <package name="libMagickCore1" arch="ppc" version="6.4.0.4" release="20.2">
          <filename>libMagickCore1-6.4.0.4-20.2.ppc.rpm</filename>
        </package>
        <package name="libMagickCore1" arch="x86_64" version="6.4.0.4" release="20.2">
          <filename>libMagickCore1-6.4.0.4-20.2.x86_64.rpm</filename>
        </package>
        <package name="libMagickWand1" arch="i586" version="6.4.0.4" release="20.2">
          <filename>libMagickWand1-6.4.0.4-20.2.i586.rpm</filename>
        </package>
        <package name="libMagickWand1" arch="ppc" version="6.4.0.4" release="20.2">
          <filename>libMagickWand1-6.4.0.4-20.2.ppc.rpm</filename>
        </package>
        <package name="libMagickWand1" arch="x86_64" version="6.4.0.4" release="20.2">
          <filename>libMagickWand1-6.4.0.4-20.2.x86_64.rpm</filename>
        </package>
        <package name="perl-PerlMagick" arch="i586" version="6.4.0.4" release="20.2">
          <filename>perl-PerlMagick-6.4.0.4-20.2.i586.rpm</filename>
        </package>
        <package name="perl-PerlMagick" arch="ppc" version="6.4.0.4" release="20.2">
          <filename>perl-PerlMagick-6.4.0.4-20.2.ppc.rpm</filename>
        </package>
        <package name="perl-PerlMagick" arch="x86_64" version="6.4.0.4" release="20.2">
          <filename>perl-PerlMagick-6.4.0.4-20.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3fad66d7b016dccb95e514b0780d56c6"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="988">
  <id>GraphicsMagick</id>
  <title>GraphicsMagick: Integer overflow in XMakeImage()</title>
  <release>openSUSE 11.0</release>
  <issued date="1244566881"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=507728" id="507728" title="bug number 507728" type="bugzilla"/>
  </references>
  <description>This update of GraphicsMagick fixes an integer overflow in
the XMakeImage() function that allowed remote attackers to
cause a denial-of-service and possibly the execution of
arbitrary code via a crafted TIFF file. (CVE-2009-1882)
</description>
  <pkglist>
    <collection>
        <package name="GraphicsMagick" arch="i586" version="1.1.11" release="29.5">
          <filename>GraphicsMagick-1.1.11-29.5.i586.rpm</filename>
        </package>
        <package name="GraphicsMagick" arch="ppc" version="1.1.11" release="29.5">
          <filename>GraphicsMagick-1.1.11-29.5.ppc.rpm</filename>
        </package>
        <package name="GraphicsMagick" arch="x86_64" version="1.1.11" release="29.5">
          <filename>GraphicsMagick-1.1.11-29.5.x86_64.rpm</filename>
        </package>
        <package name="GraphicsMagick-devel" arch="i586" version="1.1.11" release="29.5">
          <filename>GraphicsMagick-devel-1.1.11-29.5.i586.rpm</filename>
        </package>
        <package name="GraphicsMagick-devel" arch="ppc" version="1.1.11" release="29.5">
          <filename>GraphicsMagick-devel-1.1.11-29.5.ppc.rpm</filename>
        </package>
        <package name="GraphicsMagick-devel" arch="x86_64" version="1.1.11" release="29.5">
          <filename>GraphicsMagick-devel-1.1.11-29.5.x86_64.rpm</filename>
        </package>
        <package name="libGraphicsMagick++-devel" arch="i586" version="1.1.11" release="29.5">
          <filename>libGraphicsMagick++-devel-1.1.11-29.5.i586.rpm</filename>
        </package>
        <package name="libGraphicsMagick++-devel" arch="ppc" version="1.1.11" release="29.5">
          <filename>libGraphicsMagick++-devel-1.1.11-29.5.ppc.rpm</filename>
        </package>
        <package name="libGraphicsMagick++-devel" arch="x86_64" version="1.1.11" release="29.5">
          <filename>libGraphicsMagick++-devel-1.1.11-29.5.x86_64.rpm</filename>
        </package>
        <package name="libGraphicsMagick++1" arch="i586" version="1.1.11" release="29.5">
          <filename>libGraphicsMagick++1-1.1.11-29.5.i586.rpm</filename>
        </package>
        <package name="libGraphicsMagick++1" arch="ppc" version="1.1.11" release="29.5">
          <filename>libGraphicsMagick++1-1.1.11-29.5.ppc.rpm</filename>
        </package>
        <package name="libGraphicsMagick++1" arch="x86_64" version="1.1.11" release="29.5">
          <filename>libGraphicsMagick++1-1.1.11-29.5.x86_64.rpm</filename>
        </package>
        <package name="libGraphicsMagick1" arch="i586" version="1.1.11" release="29.5">
          <filename>libGraphicsMagick1-1.1.11-29.5.i586.rpm</filename>
        </package>
        <package name="libGraphicsMagick1" arch="ppc" version="1.1.11" release="29.5">
          <filename>libGraphicsMagick1-1.1.11-29.5.ppc.rpm</filename>
        </package>
        <package name="libGraphicsMagick1" arch="x86_64" version="1.1.11" release="29.5">
          <filename>libGraphicsMagick1-1.1.11-29.5.x86_64.rpm</filename>
        </package>
        <package name="libGraphicsMagickWand0" arch="i586" version="1.1.11" release="29.5">
          <filename>libGraphicsMagickWand0-1.1.11-29.5.i586.rpm</filename>
        </package>
        <package name="libGraphicsMagickWand0" arch="ppc" version="1.1.11" release="29.5">
          <filename>libGraphicsMagickWand0-1.1.11-29.5.ppc.rpm</filename>
        </package>
        <package name="libGraphicsMagickWand0" arch="x86_64" version="1.1.11" release="29.5">
          <filename>libGraphicsMagickWand0-1.1.11-29.5.x86_64.rpm</filename>
        </package>
        <package name="perl-GraphicsMagick" arch="i586" version="1.1.11" release="29.5">
          <filename>perl-GraphicsMagick-1.1.11-29.5.i586.rpm</filename>
        </package>
        <package name="perl-GraphicsMagick" arch="ppc" version="1.1.11" release="29.5">
          <filename>perl-GraphicsMagick-1.1.11-29.5.ppc.rpm</filename>
        </package>
        <package name="perl-GraphicsMagick" arch="x86_64" version="1.1.11" release="29.5">
          <filename>perl-GraphicsMagick-1.1.11-29.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a84ed7e216dfb1c7df1a83a7b2871a07"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="996">
  <id>ipsec-tools</id>
  <title>ipsec-tools: remote crash in defragmentation code</title>
  <release>openSUSE 11.0</release>
  <issued date="1244905812"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=498859" id="498859" title="bug number 498859" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=504186" id="504186" title="bug number 504186" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=506710" id="506710" title="bug number 506710" type="bugzilla"/>
  </references>
  <description>This update of ipsec-tools fixes a crash of racoon in
ISAKMP's de-fragmentation code due to a NULL-pointer
dereference. (CVE-2009-1574)  Additionally multiple memory
leaks were fixed that allowed to execute a remote denial of
service attack. (CVE-2009-1632)
</description>
  <pkglist>
    <collection>
        <package name="ipsec-tools" arch="i586" version="0.7" release="61.5">
          <filename>ipsec-tools-0.7-61.5.i586.rpm</filename>
        </package>
        <package name="ipsec-tools" arch="ppc" version="0.7" release="61.5">
          <filename>ipsec-tools-0.7-61.5.ppc.rpm</filename>
        </package>
        <package name="ipsec-tools" arch="x86_64" version="0.7" release="61.5">
          <filename>ipsec-tools-0.7-61.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="05171ff6e851f9323d755195eeaeacb1"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1035">
  <id>libpoppler3</id>
  <title>poppler security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1244680866"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=487100" id="487100" title="bug number 487100" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=387770" id="387770" title="bug number 387770" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=481795" id="481795" title="bug number 481795" type="bugzilla"/>
  </references>
  <description>This update of poppler: fix various security bugs that
occur while decoding JBIG2 (CVE-2009-0146, CVE-2009-0147,
CVE-2009-0165, CVE-2009-0166, CVE-2009-0799, CVE-2009-0800,
CVE-2009-1179, CVE-2009-1180, CVE-2009-1181, CVE-2009-1182,
CVE-2009-1183).

Further a denial of service bug in function
FormWidgetChoice::loadDefaults() (CVE-2009-0755) and
JBIG2Stream::readSymbolDictSeg() (CVE-2009-0756) was closed
that could be triggered via malformed PDF files.
</description>
  <pkglist>
    <collection>
        <package name="libpoppler3" arch="i586" version="0.8.2" release="1.4">
          <filename>libpoppler3-0.8.2-1.4.i586.rpm</filename>
        </package>
        <package name="libpoppler3" arch="ppc" version="0.8.2" release="1.4">
          <filename>libpoppler3-0.8.2-1.4.ppc.rpm</filename>
        </package>
        <package name="libpoppler3" arch="x86_64" version="0.8.2" release="1.4">
          <filename>libpoppler3-0.8.2-1.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6510204a0baf7ccc6457aa45b3a2e7df"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1017">
  <id>java-1_5_0-sun</id>
  <title>java-1_5_0-sun: Updated to Sun JDK 5 Update U19</title>
  <release>openSUSE 11.0</release>
  <issued date="1245456425"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=507056" id="507056" title="bug number 507056" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=494536" id="494536" title="bug number 494536" type="bugzilla"/>
  </references>
  <description>The Sun JDK/JRE 5 was updated to Update 19 fixing various
bugs and security issues.

An exact list of changes published by Sun can be found on
http://java.sun.com/j2se/1.5.0/ReleaseNotes.html
</description>
  <pkglist>
    <collection>
        <package name="java-1_5_0-sun" arch="i586" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-1.5.0_update19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun" arch="x86_64" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-1.5.0_update19-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="i586" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="x86_64" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update19-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="i586" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="x86_64" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update19-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="i586" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="x86_64" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update19-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="i586" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="x86_64" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update19-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-plugin" arch="i586" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-plugin-1.5.0_update19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="i586" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-src-1.5.0_update19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="x86_64" version="1.5.0_update19" release="0.1">
          <filename>java-1_5_0-sun-src-1.5.0_update19-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9682ff3dd09635eb908f81adab044082"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1013">
  <id>clamav</id>
  <title>clamav: fixed multiple broken archive handlings</title>
  <release>openSUSE 11.0</release>
  <issued date="1245257370"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=511963" id="511963" title="bug number 511963" type="bugzilla"/>
  </references>
  <description>Multiple issues in clamav regarding malformed archives and
emails have been fixed.
</description>
  <pkglist>
    <collection>
        <package name="clamav" arch="i586" version="0.95.2" release="1.1">
          <filename>clamav-0.95.2-1.1.i586.rpm</filename>
        </package>
        <package name="clamav" arch="ppc" version="0.95.2" release="1.1">
          <filename>clamav-0.95.2-1.1.ppc.rpm</filename>
        </package>
        <package name="clamav" arch="x86_64" version="0.95.2" release="1.1">
          <filename>clamav-0.95.2-1.1.x86_64.rpm</filename>
        </package>
        <package name="clamav-db" arch="i586" version="0.95.2" release="1.1">
          <filename>clamav-db-0.95.2-1.1.i586.rpm</filename>
        </package>
        <package name="clamav-db" arch="ppc" version="0.95.2" release="1.1">
          <filename>clamav-db-0.95.2-1.1.ppc.rpm</filename>
        </package>
        <package name="clamav-db" arch="x86_64" version="0.95.2" release="1.1">
          <filename>clamav-db-0.95.2-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="654c73dbf6fd8c8fee7aa6bef342dba6"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="999">
  <id>tomcat6</id>
  <title>tomcat: update for several vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1244907442"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=509839" id="509839" title="bug number 509839" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=509840" id="509840" title="bug number 509840" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=484760" id="484760" title="bug number 484760" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=485933" id="485933" title="bug number 485933" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=418664" id="418664" title="bug number 418664" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=424675" id="424675" title="bug number 424675" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=433852" id="433852" title="bug number 433852" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=446598" id="446598" title="bug number 446598" type="bugzilla"/>
  </references>
  <description>This update of tomcat fixes several vulnerabilities:
- CVE-2008-5515: RequestDispatcher usage can lead to
  information leakage
- CVE-2009-0033: denial of service via AJP connection
- CVE-2009-0580: some authentication classes allow user
  enumeration
- CVE-2009-0781: XSS bug in example application cal2.jsp
- CVE-2009-0783: replacing XML parser leads to information
  leakage Additionally, non-security bugs were fixed.
</description>
  <pkglist>
    <collection>
        <package name="tomcat6" arch="noarch" version="6.0.16" release="6.5">
          <filename>tomcat6-6.0.16-6.5.noarch.rpm</filename>
        </package>
        <package name="tomcat6-admin-webapps" arch="noarch" version="6.0.16" release="6.5">
          <filename>tomcat6-admin-webapps-6.0.16-6.5.noarch.rpm</filename>
        </package>
        <package name="tomcat6-docs-webapp" arch="noarch" version="6.0.16" release="6.5">
          <filename>tomcat6-docs-webapp-6.0.16-6.5.noarch.rpm</filename>
        </package>
        <package name="tomcat6-javadoc" arch="noarch" version="6.0.16" release="6.5">
          <filename>tomcat6-javadoc-6.0.16-6.5.noarch.rpm</filename>
        </package>
        <package name="tomcat6-jsp-2_1-api" arch="noarch" version="6.0.16" release="6.5">
          <filename>tomcat6-jsp-2_1-api-6.0.16-6.5.noarch.rpm</filename>
        </package>
        <package name="tomcat6-lib" arch="noarch" version="6.0.16" release="6.5">
          <filename>tomcat6-lib-6.0.16-6.5.noarch.rpm</filename>
        </package>
        <package name="tomcat6-servlet-2_5-api" arch="noarch" version="6.0.16" release="6.5">
          <filename>tomcat6-servlet-2_5-api-6.0.16-6.5.noarch.rpm</filename>
        </package>
        <package name="tomcat6-webapps" arch="noarch" version="6.0.16" release="6.5">
          <filename>tomcat6-webapps-6.0.16-6.5.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5789fc55c6b3a2d97a1266c6ad652bec"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1007">
  <id>novell-ipsec-tools</id>
  <title>novell-ipsec-tools: remote crash in defragmentation code</title>
  <release>openSUSE 11.0</release>
  <issued date="1245164459"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=498859" id="498859" title="bug number 498859" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=504186" id="504186" title="bug number 504186" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=506710" id="506710" title="bug number 506710" type="bugzilla"/>
  </references>
  <description>This update of ipsec-tools fixes a crash of racoon in
ISAKMP's de-fragmentation code due to a NULL-pointer
dereference. (CVE-2009-1574)  Additionally multiple memory
leaks were fixed that allowed to execute a remote denial of
service attack. (CVE-2009-1632)
</description>
  <pkglist>
    <collection>
        <package name="novell-ipsec-tools" arch="i586" version="0.6.3" release="183.4">
          <filename>novell-ipsec-tools-0.6.3-183.4.i586.rpm</filename>
        </package>
        <package name="novell-ipsec-tools" arch="ppc" version="0.6.3" release="183.4">
          <filename>novell-ipsec-tools-0.6.3-183.4.ppc.rpm</filename>
        </package>
        <package name="novell-ipsec-tools" arch="x86_64" version="0.6.3" release="183.4">
          <filename>novell-ipsec-tools-0.6.3-183.4.x86_64.rpm</filename>
        </package>
        <package name="novell-ipsec-tools-devel" arch="i586" version="0.6.3" release="183.4">
          <filename>novell-ipsec-tools-devel-0.6.3-183.4.i586.rpm</filename>
        </package>
        <package name="novell-ipsec-tools-devel" arch="ppc" version="0.6.3" release="183.4">
          <filename>novell-ipsec-tools-devel-0.6.3-183.4.ppc.rpm</filename>
        </package>
        <package name="novell-ipsec-tools-devel" arch="x86_64" version="0.6.3" release="183.4">
          <filename>novell-ipsec-tools-devel-0.6.3-183.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8cb28f685e1443f37a38c6b45f183d74"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1060">
  <id>acroread</id>
  <title>acroread: Fix various security issues</title>
  <release>openSUSE 11.0</release>
  <issued date="1246433995"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=511566" id="511566" title="bug number 511566" type="bugzilla"/>
  </references>
  <description>This update of acroread fixes the following vulnerabilities:
- CVE-2009-1855: stack overflow that could lead to code
  execution
- CVE-2009-1856: integer overflow with potential to lead to
  arbitrary code execution
- CVE-2009-1857: memory corruption with potential to lead
  to arbitrary code execution
- CVE-2009-1858: memory corruption with potential to lead
  to arbitrary code execution
- CVE-2009-1859: memory corruption with potential to lead
  to arbitrary code execution
- CVE-2009-0198: memory corruption with potential to lead
  to arbitrary code execution
- CVE-2009-0509, CVE-2009-0510 CVE-2009-0511,
  CVE-2009-0512:  heap overflow that could lead to code
  execution
- CVE-2009-1861: heap overflow that could lead to code
  execution
</description>
  <pkglist>
    <collection>
        <package name="acroread" arch="i586" version="8.1.6" release="0.1">
          <filename>acroread-8.1.6-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a5ca92102b779ff6c30df05f56d23c51"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="887">
  <id>gstreamer-0_10-plugins-bad</id>
  <title>gstreamer-0_10-plugins-bad: libmodplug 's3m' remote buffer overflow vulnerability</title>
  <release>openSUSE 11.0</release>
  <issued date="1242348717"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=496541" id="496541" title="bug number 496541" type="bugzilla"/>
  </references>
  <description>This update fixes a buffer overflow in libmodplug that can
be exploited remotely to execute arbitrary code with the
privileges of the process using the libaray. (CVE-2009-1438)
</description>
  <pkglist>
    <collection>
        <package name="gstreamer-0_10-plugins-bad" arch="i586" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-0.10.6-36.2.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-bad" arch="ppc" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-0.10.6-36.2.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-bad" arch="x86_64" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-0.10.6-36.2.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-bad-devel" arch="i586" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-devel-0.10.6-36.2.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-bad-devel" arch="ppc" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-devel-0.10.6-36.2.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-bad-devel" arch="x86_64" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-devel-0.10.6-36.2.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-bad-doc" arch="i586" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-doc-0.10.6-36.2.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-bad-doc" arch="ppc" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-doc-0.10.6-36.2.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-bad-doc" arch="x86_64" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-doc-0.10.6-36.2.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-bad-lang" arch="i586" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-lang-0.10.6-36.2.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-bad-lang" arch="ppc" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-lang-0.10.6-36.2.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-bad-lang" arch="x86_64" version="0.10.6" release="36.2">
          <filename>gstreamer-0_10-plugins-bad-lang-0.10.6-36.2.x86_64.rpm</filename>
        </package>
        <package name="libgstapp-0_10-0" arch="i586" version="0.10.6" release="36.2">
          <filename>libgstapp-0_10-0-0.10.6-36.2.i586.rpm</filename>
        </package>
        <package name="libgstapp-0_10-0" arch="ppc" version="0.10.6" release="36.2">
          <filename>libgstapp-0_10-0-0.10.6-36.2.ppc.rpm</filename>
        </package>
        <package name="libgstapp-0_10-0" arch="x86_64" version="0.10.6" release="36.2">
          <filename>libgstapp-0_10-0-0.10.6-36.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ec534b37a14f0e15238d1a252b1e6e0c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="989">
  <id>gstreamer-0_10-plugins-good</id>
  <title>gstreamer security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1244570063"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=510292" id="510292" title="bug number 510292" type="bugzilla"/>
  </references>
  <description>Specially crafted files could cause integer overflows in
the PNG decoding module of GStreamer (CVE-2009-1932).
</description>
  <pkglist>
    <collection>
        <package name="gstreamer-0_10-plugins-good" arch="i586" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-0.10.7-38.4.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good" arch="ppc" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-0.10.7-38.4.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good" arch="x86_64" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-0.10.7-38.4.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-doc" arch="i586" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-doc-0.10.7-38.4.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-doc" arch="ppc" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-doc-0.10.7-38.4.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-doc" arch="x86_64" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-doc-0.10.7-38.4.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-extra" arch="i586" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-extra-0.10.7-38.4.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-extra" arch="ppc" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-extra-0.10.7-38.4.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-extra" arch="x86_64" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-extra-0.10.7-38.4.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-lang" arch="i586" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-lang-0.10.7-38.4.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-lang" arch="ppc" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-lang-0.10.7-38.4.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-plugins-good-lang" arch="x86_64" version="0.10.7" release="38.4">
          <filename>gstreamer-0_10-plugins-good-lang-0.10.7-38.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fa041b7273e56584af03d33f6aa8a519"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1019">
  <id>java-1_6_0-sun</id>
  <title>java-1_6_0-sun: Updated to Sun JDK 6 Update U14</title>
  <release>openSUSE 11.0</release>
  <issued date="1245456470"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=507056" id="507056" title="bug number 507056" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=510016" id="510016" title="bug number 510016" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=494536" id="494536" title="bug number 494536" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=496489" id="496489" title="bug number 496489" type="bugzilla"/>
  </references>
  <description>The Sun JDK/JRE 6 was updated to Update 14 fixing various
bugs. According to Sun no new security issues were fixed.

An exact list of changes published by Sun can be found on
http://java.sun.com/javase/6/webnotes/6u14.html
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-1.6.0.u14-0.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-1.6.0.u14-0.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-alsa-1.6.0.u14-0.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-alsa-1.6.0.u14-0.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-demo-1.6.0.u14-0.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-demo-1.6.0.u14-0.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-devel-1.6.0.u14-0.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-devel-1.6.0.u14-0.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u14-0.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u14-0.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-plugin-1.6.0.u14-0.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="x86_64" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-plugin-1.6.0.u14-0.2.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="i586" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-src-1.6.0.u14-0.2.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="x86_64" version="1.6.0.u14" release="0.2">
          <filename>java-1_6_0-sun-src-1.6.0.u14-0.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c147c81633c8cf23c7022e50919e2209"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1070">
  <id>ruby</id>
  <title>ruby: update for several security issues</title>
  <release>openSUSE 11.0</release>
  <issued date="1246631040"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=499253" id="499253" title="bug number 499253" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478019" id="478019" title="bug number 478019" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=423234" id="423234" title="bug number 423234" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=420084" id="420084" title="bug number 420084" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=415678" id="415678" title="bug number 415678" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=511568" id="511568" title="bug number 511568" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=509914" id="509914" title="bug number 509914" type="bugzilla"/>
  </references>
  <description>This ruby update improves return value checks for openssl
function OCSP_basic_verify() (CVE-2009-0642) which allowed
an attacker to use revoked certificates. The entropy of DNS
identifiers was increased (CVE-2008-3905) to avaid spoofing
attacks. The code for parsing XML data was vulnerable to a
denial of service bug (CVE-2008-3790). An attack on
algorithm complexity was possible in function
WEBrick::HTTP::DefaultFileHandler() while parsing HTTP
requests (CVE-2008-3656) as well as by using the regex
engine (CVE-2008-3443) causing high CPU load. Ruby's access
restriction code (CVE-2008-3655) as well as safe-level
handling using function DL.dlopen() (CVE-2008-3657) and big
decimal handling (CVE-2009-1904) was improved. Bypassing
HTTP basic authentication (authenticate_with_http_digest)
is not possible anymore.
</description>
  <pkglist>
    <collection>
        <package name="ruby" arch="i586" version="1.8.6.p369" release="0.1">
          <filename>ruby-1.8.6.p369-0.1.i586.rpm</filename>
        </package>
        <package name="ruby" arch="ppc" version="1.8.6.p369" release="0.1">
          <filename>ruby-1.8.6.p369-0.1.ppc.rpm</filename>
        </package>
        <package name="ruby" arch="x86_64" version="1.8.6.p369" release="0.1">
          <filename>ruby-1.8.6.p369-0.1.x86_64.rpm</filename>
        </package>
        <package name="ruby-devel" arch="i586" version="1.8.6.p369" release="0.1">
          <filename>ruby-devel-1.8.6.p369-0.1.i586.rpm</filename>
        </package>
        <package name="ruby-devel" arch="ppc" version="1.8.6.p369" release="0.1">
          <filename>ruby-devel-1.8.6.p369-0.1.ppc.rpm</filename>
        </package>
        <package name="ruby-devel" arch="x86_64" version="1.8.6.p369" release="0.1">
          <filename>ruby-devel-1.8.6.p369-0.1.x86_64.rpm</filename>
        </package>
        <package name="ruby-doc-html" arch="i586" version="1.8.6.p369" release="0.1">
          <filename>ruby-doc-html-1.8.6.p369-0.1.i586.rpm</filename>
        </package>
        <package name="ruby-doc-html" arch="ppc" version="1.8.6.p369" release="0.1">
          <filename>ruby-doc-html-1.8.6.p369-0.1.ppc.rpm</filename>
        </package>
        <package name="ruby-doc-html" arch="x86_64" version="1.8.6.p369" release="0.1">
          <filename>ruby-doc-html-1.8.6.p369-0.1.x86_64.rpm</filename>
        </package>
        <package name="ruby-doc-ri" arch="i586" version="1.8.6.p369" release="0.1">
          <filename>ruby-doc-ri-1.8.6.p369-0.1.i586.rpm</filename>
        </package>
        <package name="ruby-doc-ri" arch="ppc" version="1.8.6.p369" release="0.1">
          <filename>ruby-doc-ri-1.8.6.p369-0.1.ppc.rpm</filename>
        </package>
        <package name="ruby-doc-ri" arch="x86_64" version="1.8.6.p369" release="0.1">
          <filename>ruby-doc-ri-1.8.6.p369-0.1.x86_64.rpm</filename>
        </package>
        <package name="ruby-examples" arch="i586" version="1.8.6.p369" release="0.1">
          <filename>ruby-examples-1.8.6.p369-0.1.i586.rpm</filename>
        </package>
        <package name="ruby-examples" arch="ppc" version="1.8.6.p369" release="0.1">
          <filename>ruby-examples-1.8.6.p369-0.1.ppc.rpm</filename>
        </package>
        <package name="ruby-examples" arch="x86_64" version="1.8.6.p369" release="0.1">
          <filename>ruby-examples-1.8.6.p369-0.1.x86_64.rpm</filename>
        </package>
        <package name="ruby-test-suite" arch="i586" version="1.8.6.p369" release="0.1">
          <filename>ruby-test-suite-1.8.6.p369-0.1.i586.rpm</filename>
        </package>
        <package name="ruby-test-suite" arch="ppc" version="1.8.6.p369" release="0.1">
          <filename>ruby-test-suite-1.8.6.p369-0.1.ppc.rpm</filename>
        </package>
        <package name="ruby-test-suite" arch="x86_64" version="1.8.6.p369" release="0.1">
          <filename>ruby-test-suite-1.8.6.p369-0.1.x86_64.rpm</filename>
        </package>
        <package name="ruby-tk" arch="i586" version="1.8.6.p369" release="0.1">
          <filename>ruby-tk-1.8.6.p369-0.1.i586.rpm</filename>
        </package>
        <package name="ruby-tk" arch="ppc" version="1.8.6.p369" release="0.1">
          <filename>ruby-tk-1.8.6.p369-0.1.ppc.rpm</filename>
        </package>
        <package name="ruby-tk" arch="x86_64" version="1.8.6.p369" release="0.1">
          <filename>ruby-tk-1.8.6.p369-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a5a1416fb2b76a9b9e24ae4fe3a70e35"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1036">
  <id>cifs-mount</id>
  <title>samba: fixed CVE-2009-1886 and CVE-2009-1888</title>
  <release>openSUSE 11.0</release>
  <issued date="1245876742"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=515479" id="515479" title="bug number 515479" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=513360" id="513360" title="bug number 513360" type="bugzilla"/>
  </references>
  <description>Fixed a format string vulnerability in smbclient
(CVE-2009-1886) and a ACL bypass vulnerability in samba
(CVE-2009-1888).
</description>
  <pkglist>
    <collection>
        <package name="cifs-mount" arch="i586" version="3.2.4" release="4.5">
          <filename>cifs-mount-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="cifs-mount" arch="ppc" version="3.2.4" release="4.5">
          <filename>cifs-mount-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="cifs-mount" arch="x86_64" version="3.2.4" release="4.5">
          <filename>cifs-mount-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="ldapsmb" arch="i586" version="1.34b" release="195.10">
          <filename>ldapsmb-1.34b-195.10.i586.rpm</filename>
        </package>
        <package name="ldapsmb" arch="ppc" version="1.34b" release="195.10">
          <filename>ldapsmb-1.34b-195.10.ppc.rpm</filename>
        </package>
        <package name="ldapsmb" arch="x86_64" version="1.34b" release="195.10">
          <filename>ldapsmb-1.34b-195.10.x86_64.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="i586" version="3.2.4" release="4.5">
          <filename>libnetapi-devel-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="ppc" version="3.2.4" release="4.5">
          <filename>libnetapi-devel-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libnetapi-devel-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libnetapi0" arch="i586" version="3.2.4" release="4.5">
          <filename>libnetapi0-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libnetapi0" arch="ppc" version="3.2.4" release="4.5">
          <filename>libnetapi0-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libnetapi0" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libnetapi0-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="i586" version="3.2.4" release="4.5">
          <filename>libsmbclient-devel-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="ppc" version="3.2.4" release="4.5">
          <filename>libsmbclient-devel-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libsmbclient-devel-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="i586" version="3.2.4" release="4.5">
          <filename>libsmbclient0-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="ppc" version="3.2.4" release="4.5">
          <filename>libsmbclient0-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libsmbclient0-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-32bit" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libsmbclient0-32bit-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-64bit" arch="ppc" version="3.2.4" release="4.5">
          <filename>libsmbclient0-64bit-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="i586" version="3.2.4" release="4.5">
          <filename>libsmbsharemodes-devel-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="ppc" version="3.2.4" release="4.5">
          <filename>libsmbsharemodes-devel-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libsmbsharemodes-devel-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="i586" version="3.2.4" release="4.5">
          <filename>libsmbsharemodes0-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="ppc" version="3.2.4" release="4.5">
          <filename>libsmbsharemodes0-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libsmbsharemodes0-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="i586" version="3.2.4" release="4.5">
          <filename>libtalloc-devel-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="ppc" version="3.2.4" release="4.5">
          <filename>libtalloc-devel-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libtalloc-devel-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1" arch="i586" version="3.2.4" release="4.5">
          <filename>libtalloc1-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libtalloc1" arch="ppc" version="3.2.4" release="4.5">
          <filename>libtalloc1-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libtalloc1" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libtalloc1-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-32bit" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libtalloc1-32bit-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-64bit" arch="ppc" version="3.2.4" release="4.5">
          <filename>libtalloc1-64bit-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="i586" version="3.2.4" release="4.5">
          <filename>libtdb-devel-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="ppc" version="3.2.4" release="4.5">
          <filename>libtdb-devel-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libtdb-devel-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libtdb1" arch="i586" version="3.2.4" release="4.5">
          <filename>libtdb1-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libtdb1" arch="ppc" version="3.2.4" release="4.5">
          <filename>libtdb1-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libtdb1" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libtdb1-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-32bit" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libtdb1-32bit-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-64bit" arch="ppc" version="3.2.4" release="4.5">
          <filename>libtdb1-64bit-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="i586" version="3.2.4" release="4.5">
          <filename>libwbclient-devel-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="ppc" version="3.2.4" release="4.5">
          <filename>libwbclient-devel-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libwbclient-devel-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0" arch="i586" version="3.2.4" release="4.5">
          <filename>libwbclient0-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="libwbclient0" arch="ppc" version="3.2.4" release="4.5">
          <filename>libwbclient0-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="libwbclient0" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libwbclient0-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-32bit" arch="x86_64" version="3.2.4" release="4.5">
          <filename>libwbclient0-32bit-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-64bit" arch="ppc" version="3.2.4" release="4.5">
          <filename>libwbclient0-64bit-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="samba" arch="i586" version="3.2.4" release="4.5">
          <filename>samba-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="samba" arch="ppc" version="3.2.4" release="4.5">
          <filename>samba-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="samba" arch="x86_64" version="3.2.4" release="4.5">
          <filename>samba-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="samba-32bit" arch="x86_64" version="3.2.4" release="4.5">
          <filename>samba-32bit-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="samba-64bit" arch="ppc" version="3.2.4" release="4.5">
          <filename>samba-64bit-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="i586" version="3.2.4" release="4.5">
          <filename>samba-client-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="samba-client" arch="ppc" version="3.2.4" release="4.5">
          <filename>samba-client-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="x86_64" version="3.2.4" release="4.5">
          <filename>samba-client-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="samba-client-32bit" arch="x86_64" version="3.2.4" release="4.5">
          <filename>samba-client-32bit-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="samba-client-64bit" arch="ppc" version="3.2.4" release="4.5">
          <filename>samba-client-64bit-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="i586" version="3.2.4" release="4.5">
          <filename>samba-devel-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="samba-devel" arch="ppc" version="3.2.4" release="4.5">
          <filename>samba-devel-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="x86_64" version="3.2.4" release="4.5">
          <filename>samba-devel-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="i586" version="3.2.4" release="4.5">
          <filename>samba-krb-printing-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="ppc" version="3.2.4" release="4.5">
          <filename>samba-krb-printing-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="x86_64" version="3.2.4" release="4.5">
          <filename>samba-krb-printing-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind" arch="i586" version="3.2.4" release="4.5">
          <filename>samba-winbind-3.2.4-4.5.i586.rpm</filename>
        </package>
        <package name="samba-winbind" arch="ppc" version="3.2.4" release="4.5">
          <filename>samba-winbind-3.2.4-4.5.ppc.rpm</filename>
        </package>
        <package name="samba-winbind" arch="x86_64" version="3.2.4" release="4.5">
          <filename>samba-winbind-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-32bit" arch="x86_64" version="3.2.4" release="4.5">
          <filename>samba-winbind-32bit-3.2.4-4.5.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-64bit" arch="ppc" version="3.2.4" release="4.5">
          <filename>samba-winbind-64bit-3.2.4-4.5.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d260689f030c1d3973b79f15a1fc4928"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1091">
  <id>MozillaThunderbird</id>
  <title>MozillaThunderbird: Update to 2.0.0.22 security release</title>
  <release>openSUSE 11.0</release>
  <issued date="1247234268"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=515950" id="515950" title="bug number 515950" type="bugzilla"/>
  </references>
  <description>Mozilla Thunderbird was updated to the 2.0.0.22 security
release. It fixes various bugs and security issues:

  * MFSA-2009-14/CVE-2009-1302/CVE-2009-1303/CVE-2009-1304
    CVE-2009-1305 Crashes with evidence of memory
    corruption (rv:1.9.0.9)
  * MFSA 2009-17/CVE-2009-1307 (bmo#481342) Same-origin
    violations when Adobe Flash loaded via view-source:
    scheme
  * MFSA 2009-24/CVE-2009-1392/CVE-2009-1832/CVE-2009-1833
    Crashes with evidence of memory corruption (rv:1.9.0.11)
  * MFSA 2009-27/CVE-2009-1836 (bmo#479880) SSL tampering
    via non-200 responses to proxy CONNECT requests
  * MFSA 2009-29/CVE-2009-1838 (bmo#489131) Arbitrary code
    execution using event listeners attached to an element
    whose owner document is null
  * MFSA 2009-32/CVE-2009-1841 (bmo#479560) JavaScript
    chrome privilege escalation
  * MFSA 2009-33 (bmo#495057) Crash viewing
    multipart/alternative message with text/enhanced part
</description>
  <pkglist>
    <collection>
        <package name="MozillaThunderbird" arch="i586" version="2.0.0.22" release="0.1">
          <filename>MozillaThunderbird-2.0.0.22-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="ppc" version="2.0.0.22" release="0.1">
          <filename>MozillaThunderbird-2.0.0.22-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="x86_64" version="2.0.0.22" release="0.1">
          <filename>MozillaThunderbird-2.0.0.22-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="i586" version="2.0.0.22" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.22-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="ppc" version="2.0.0.22" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.22-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="x86_64" version="2.0.0.22" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.22-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="i586" version="2.0.0.22" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.22-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="ppc" version="2.0.0.22" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.22-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="x86_64" version="2.0.0.22" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.22-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cd34d06447ca87925900fcda764653fa"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1046">
  <id>libpng-devel</id>
  <title>libpng: vulnerability while parsing 1-pixel image</title>
  <release>openSUSE 11.0</release>
  <issued date="1245872425"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=514727" id="514727" title="bug number 514727" type="bugzilla"/>
  </references>
  <description>This update of libpng improves the parsing of 1-bit
interlaced images. This bug could be abused to use
&quot;out-of-bounds pixels&quot; to read memory. (CVE-2009-2042)
</description>
  <pkglist>
    <collection>
        <package name="libpng-devel" arch="i586" version="1.2.26" release="14.10">
          <filename>libpng-devel-1.2.26-14.10.i586.rpm</filename>
        </package>
        <package name="libpng-devel" arch="ppc" version="1.2.26" release="14.10">
          <filename>libpng-devel-1.2.26-14.10.ppc.rpm</filename>
        </package>
        <package name="libpng-devel" arch="x86_64" version="1.2.26" release="14.10">
          <filename>libpng-devel-1.2.26-14.10.x86_64.rpm</filename>
        </package>
        <package name="libpng-devel-32bit" arch="x86_64" version="1.2.26" release="14.10">
          <filename>libpng-devel-32bit-1.2.26-14.10.x86_64.rpm</filename>
        </package>
        <package name="libpng-devel-64bit" arch="ppc" version="1.2.26" release="14.10">
          <filename>libpng-devel-64bit-1.2.26-14.10.ppc.rpm</filename>
        </package>
        <package name="libpng12-0" arch="i586" version="1.2.26" release="14.10">
          <filename>libpng12-0-1.2.26-14.10.i586.rpm</filename>
        </package>
        <package name="libpng12-0" arch="ppc" version="1.2.26" release="14.10">
          <filename>libpng12-0-1.2.26-14.10.ppc.rpm</filename>
        </package>
        <package name="libpng12-0" arch="x86_64" version="1.2.26" release="14.10">
          <filename>libpng12-0-1.2.26-14.10.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-32bit" arch="x86_64" version="1.2.26" release="14.10">
          <filename>libpng12-0-32bit-1.2.26-14.10.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-64bit" arch="ppc" version="1.2.26" release="14.10">
          <filename>libpng12-0-64bit-1.2.26-14.10.ppc.rpm</filename>
        </package>
        <package name="libpng3" arch="i586" version="1.2.26" release="14.10">
          <filename>libpng3-1.2.26-14.10.i586.rpm</filename>
        </package>
        <package name="libpng3" arch="ppc" version="1.2.26" release="14.10">
          <filename>libpng3-1.2.26-14.10.ppc.rpm</filename>
        </package>
        <package name="libpng3" arch="x86_64" version="1.2.26" release="14.10">
          <filename>libpng3-1.2.26-14.10.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ad22e43341380c18433746bd25b02346"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1067">
  <id>dhcp</id>
  <title>dhcp-client: Fixed a stack overflow</title>
  <release>openSUSE 11.0</release>
  <issued date="1246028381"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=515599" id="515599" title="bug number 515599" type="bugzilla"/>
  </references>
  <description>The DHCP client (dhclient) could be crashed by a malicious
DHCP server sending a overlong subnet field. (CVE-2009-0692)

In some circumstances code execution might be possible, but
might is likely caught by the buffer overflow checking of
the FORTIFY_SOURCE extension.
</description>
  <pkglist>
    <collection>
        <package name="dhcp" arch="i586" version="3.0.6" release="86.4">
          <filename>dhcp-3.0.6-86.4.i586.rpm</filename>
        </package>
        <package name="dhcp" arch="ppc" version="3.0.6" release="86.4">
          <filename>dhcp-3.0.6-86.4.ppc.rpm</filename>
        </package>
        <package name="dhcp" arch="x86_64" version="3.0.6" release="86.4">
          <filename>dhcp-3.0.6-86.4.x86_64.rpm</filename>
        </package>
        <package name="dhcp-client" arch="i586" version="3.0.6" release="86.4">
          <filename>dhcp-client-3.0.6-86.4.i586.rpm</filename>
        </package>
        <package name="dhcp-client" arch="ppc" version="3.0.6" release="86.4">
          <filename>dhcp-client-3.0.6-86.4.ppc.rpm</filename>
        </package>
        <package name="dhcp-client" arch="x86_64" version="3.0.6" release="86.4">
          <filename>dhcp-client-3.0.6-86.4.x86_64.rpm</filename>
        </package>
        <package name="dhcp-devel" arch="i586" version="3.0.6" release="86.4">
          <filename>dhcp-devel-3.0.6-86.4.i586.rpm</filename>
        </package>
        <package name="dhcp-devel" arch="ppc" version="3.0.6" release="86.4">
          <filename>dhcp-devel-3.0.6-86.4.ppc.rpm</filename>
        </package>
        <package name="dhcp-devel" arch="x86_64" version="3.0.6" release="86.4">
          <filename>dhcp-devel-3.0.6-86.4.x86_64.rpm</filename>
        </package>
        <package name="dhcp-relay" arch="i586" version="3.0.6" release="86.4">
          <filename>dhcp-relay-3.0.6-86.4.i586.rpm</filename>
        </package>
        <package name="dhcp-relay" arch="ppc" version="3.0.6" release="86.4">
          <filename>dhcp-relay-3.0.6-86.4.ppc.rpm</filename>
        </package>
        <package name="dhcp-relay" arch="x86_64" version="3.0.6" release="86.4">
          <filename>dhcp-relay-3.0.6-86.4.x86_64.rpm</filename>
        </package>
        <package name="dhcp-server" arch="i586" version="3.0.6" release="86.4">
          <filename>dhcp-server-3.0.6-86.4.i586.rpm</filename>
        </package>
        <package name="dhcp-server" arch="ppc" version="3.0.6" release="86.4">
          <filename>dhcp-server-3.0.6-86.4.ppc.rpm</filename>
        </package>
        <package name="dhcp-server" arch="x86_64" version="3.0.6" release="86.4">
          <filename>dhcp-server-3.0.6-86.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2e5c0c7163ae63f187f3cd4f2e5a20fe"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="991">
  <id>ga-pool-200905</id>
  <title>GA dependencies (11.0)</title>
  <release>openSUSE 11.0</release>
  <issued date="1212799476"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=465291" id="465291" title="bug number 465291" type="bugzilla"/>
  </references>
  <description>This patchinfo contains packages needed for installing
self-contained 11.1 updates.
</description>
  <pkglist>
    <collection>
        <package name="gconf2" arch="i586" version="2.22.0" release="28.1">
          <filename>gconf2-2.22.0-28.1.i586.rpm</filename>
        </package>
        <package name="gconf2" arch="ppc" version="2.22.0" release="28.1">
          <filename>gconf2-2.22.0-28.1.ppc.rpm</filename>
        </package>
        <package name="gconf2" arch="x86_64" version="2.22.0" release="28.1">
          <filename>gconf2-2.22.0-28.1.x86_64.rpm</filename>
        </package>
        <package name="gconf2-32bit" arch="x86_64" version="2.22.0" release="28.1">
          <filename>gconf2-32bit-2.22.0-28.1.x86_64.rpm</filename>
        </package>
        <package name="gconf2-64bit" arch="ppc" version="2.22.0" release="28.1">
          <filename>gconf2-64bit-2.22.0-28.1.ppc.rpm</filename>
        </package>
        <package name="gconf2-devel" arch="i586" version="2.22.0" release="28.1">
          <filename>gconf2-devel-2.22.0-28.1.i586.rpm</filename>
        </package>
        <package name="gconf2-devel" arch="ppc" version="2.22.0" release="28.1">
          <filename>gconf2-devel-2.22.0-28.1.ppc.rpm</filename>
        </package>
        <package name="gconf2-devel" arch="x86_64" version="2.22.0" release="28.1">
          <filename>gconf2-devel-2.22.0-28.1.x86_64.rpm</filename>
        </package>
        <package name="gconf2-doc" arch="i586" version="2.22.0" release="28.1">
          <filename>gconf2-doc-2.22.0-28.1.i586.rpm</filename>
        </package>
        <package name="gconf2-doc" arch="ppc" version="2.22.0" release="28.1">
          <filename>gconf2-doc-2.22.0-28.1.ppc.rpm</filename>
        </package>
        <package name="gconf2-doc" arch="x86_64" version="2.22.0" release="28.1">
          <filename>gconf2-doc-2.22.0-28.1.x86_64.rpm</filename>
        </package>
        <package name="jpackage-utils" arch="i586" version="1.7.4" release="31.1">
          <filename>jpackage-utils-1.7.4-31.1.i586.rpm</filename>
        </package>
        <package name="jpackage-utils" arch="ppc" version="1.7.4" release="31.1">
          <filename>jpackage-utils-1.7.4-31.1.ppc.rpm</filename>
        </package>
        <package name="jpackage-utils" arch="x86_64" version="1.7.4" release="31.1">
          <filename>jpackage-utils-1.7.4-31.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9d2407b0352245ff49a54784986b83a9"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="968">
  <id>libapr-util1</id>
  <title>libapr-util1: fixed three denial of service bugs</title>
  <release>openSUSE 11.0</release>
  <issued date="1244459722"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=509825" id="509825" title="bug number 509825" type="bugzilla"/>
  </references>
  <description>This update of libapr-util1 fixes a memory consumption bug
in the XML parser that can cause a remote denial-of-service
vulnerability in applications using APR (WebDAV for
example) (CVE-2009-1955). Additionally a one byte buffer
overflow in function apr_brigade_vprintf() (CVE-2009-1956)
and buffer underflow in function apr_strmatch_precompile()
(CVE-2009-0023) was fixed too. Depending on the application
using this function it can lead to remote denial of service
or information leakage.
</description>
  <pkglist>
    <collection>
        <package name="libapr-util1" arch="i586" version="1.2.12" release="43.2">
          <filename>libapr-util1-1.2.12-43.2.i586.rpm</filename>
        </package>
        <package name="libapr-util1" arch="ppc" version="1.2.12" release="43.2">
          <filename>libapr-util1-1.2.12-43.2.ppc.rpm</filename>
        </package>
        <package name="libapr-util1" arch="x86_64" version="1.2.12" release="43.2">
          <filename>libapr-util1-1.2.12-43.2.x86_64.rpm</filename>
        </package>
        <package name="libapr-util1-64bit" arch="ppc" version="1.2.12" release="43.2">
          <filename>libapr-util1-64bit-1.2.12-43.2.ppc.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-mysql" arch="i586" version="1.2.12" release="43.2">
          <filename>libapr-util1-dbd-mysql-1.2.12-43.2.i586.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-mysql" arch="ppc" version="1.2.12" release="43.2">
          <filename>libapr-util1-dbd-mysql-1.2.12-43.2.ppc.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-mysql" arch="x86_64" version="1.2.12" release="43.2">
          <filename>libapr-util1-dbd-mysql-1.2.12-43.2.x86_64.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-pgsql" arch="i586" version="1.2.12" release="43.2">
          <filename>libapr-util1-dbd-pgsql-1.2.12-43.2.i586.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-pgsql" arch="ppc" version="1.2.12" release="43.2">
          <filename>libapr-util1-dbd-pgsql-1.2.12-43.2.ppc.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-pgsql" arch="x86_64" version="1.2.12" release="43.2">
          <filename>libapr-util1-dbd-pgsql-1.2.12-43.2.x86_64.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-sqlite3" arch="i586" version="1.2.12" release="43.2">
          <filename>libapr-util1-dbd-sqlite3-1.2.12-43.2.i586.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-sqlite3" arch="ppc" version="1.2.12" release="43.2">
          <filename>libapr-util1-dbd-sqlite3-1.2.12-43.2.ppc.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-sqlite3" arch="x86_64" version="1.2.12" release="43.2">
          <filename>libapr-util1-dbd-sqlite3-1.2.12-43.2.x86_64.rpm</filename>
        </package>
        <package name="libapr-util1-devel" arch="i586" version="1.2.12" release="43.2">
          <filename>libapr-util1-devel-1.2.12-43.2.i586.rpm</filename>
        </package>
        <package name="libapr-util1-devel" arch="ppc" version="1.2.12" release="43.2">
          <filename>libapr-util1-devel-1.2.12-43.2.ppc.rpm</filename>
        </package>
        <package name="libapr-util1-devel" arch="x86_64" version="1.2.12" release="43.2">
          <filename>libapr-util1-devel-1.2.12-43.2.x86_64.rpm</filename>
        </package>
        <package name="libapr-util1-devel-64bit" arch="ppc" version="1.2.12" release="43.2">
          <filename>libapr-util1-devel-64bit-1.2.12-43.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3eacdd0910e6c07c6cb58e85f0f3db95"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1052">
  <id>openswan</id>
  <title>openswan: Fixes for DoS vulnerabilities in the ASN.1 parser</title>
  <release>openSUSE 11.0</release>
  <issued date="1246116772"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=515130" id="515130" title="bug number 515130" type="bugzilla"/>
  </references>
  <description>Two vulnerabilities in the openswan ASN.1 parser (when
handling RDNs, UTCTIME and GENERALIZEDTIME strings) could
lead to remote crashes of the pluto daemon (CVE-2009-2185).
</description>
  <pkglist>
    <collection>
        <package name="openswan" arch="i586" version="2.4.7" release="130.4">
          <filename>openswan-2.4.7-130.4.i586.rpm</filename>
        </package>
        <package name="openswan" arch="ppc" version="2.4.7" release="130.4">
          <filename>openswan-2.4.7-130.4.ppc.rpm</filename>
        </package>
        <package name="openswan" arch="x86_64" version="2.4.7" release="130.4">
          <filename>openswan-2.4.7-130.4.x86_64.rpm</filename>
        </package>
        <package name="openswan-doc" arch="i586" version="2.4.7" release="130.4">
          <filename>openswan-doc-2.4.7-130.4.i586.rpm</filename>
        </package>
        <package name="openswan-doc" arch="ppc" version="2.4.7" release="130.4">
          <filename>openswan-doc-2.4.7-130.4.ppc.rpm</filename>
        </package>
        <package name="openswan-doc" arch="x86_64" version="2.4.7" release="130.4">
          <filename>openswan-doc-2.4.7-130.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2cef7bf609bb0375362b1030b7dc2854"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1050">
  <id>strongswan</id>
  <title>strongswan: Fixes for DoS vulnerabilities in the ASN.1 parser</title>
  <release>openSUSE 11.0</release>
  <issued date="1246026808"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=515130" id="515130" title="bug number 515130" type="bugzilla"/>
  </references>
  <description>Two vulnerabilities in the strongswan ASN.1 parser (when
handling RDNs, UTCTIME and GENERALIZEDTIME strings) could
lead to remote crashes of the pluto daemon (CVE-2009-2185).
</description>
  <pkglist>
    <collection>
        <package name="strongswan" arch="i586" version="4.2.1" release="11.10">
          <filename>strongswan-4.2.1-11.10.i586.rpm</filename>
        </package>
        <package name="strongswan" arch="ppc" version="4.2.1" release="11.10">
          <filename>strongswan-4.2.1-11.10.ppc.rpm</filename>
        </package>
        <package name="strongswan" arch="x86_64" version="4.2.1" release="11.10">
          <filename>strongswan-4.2.1-11.10.x86_64.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="i586" version="4.2.1" release="11.10">
          <filename>strongswan-doc-4.2.1-11.10.i586.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="ppc" version="4.2.1" release="11.10">
          <filename>strongswan-doc-4.2.1-11.10.ppc.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="x86_64" version="4.2.1" release="11.10">
          <filename>strongswan-doc-4.2.1-11.10.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c6e96ee2134421d222e8156b30505732"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1088">
  <id>finch</id>
  <title>pidgin: Security update and Yahoo IM reenablement</title>
  <release>openSUSE 11.0</release>
  <issued date="1247134820"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=503447" id="503447" title="bug number 503447" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=404163" id="404163" title="bug number 404163" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=518301" id="518301" title="bug number 518301" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=517786" id="517786" title="bug number 517786" type="bugzilla"/>
  </references>
  <description>Several bugfixes were done for the Instant Messenger Pidgin:
- Malformed responses to file transfers could cause a
  buffer overflow in pidgin (CVE-2009-1373) and specially
  crafted packets could crash it (CVE-2009-1375).
- The fix against integer overflows in the msn protocol
  handling was incomplete (CVE-2009-1376).
- Fixed misparsing ICQ message as SMS DoS (CVE-2009-1889,
  Pidgin#9483).

Also the Yahoo IM protocol was made to work again.
</description>
  <pkglist>
    <collection>
        <package name="finch" arch="i586" version="2.4.1" release="28.9">
          <filename>finch-2.4.1-28.9.i586.rpm</filename>
        </package>
        <package name="finch" arch="ppc" version="2.4.1" release="28.9">
          <filename>finch-2.4.1-28.9.ppc.rpm</filename>
        </package>
        <package name="finch" arch="x86_64" version="2.4.1" release="28.9">
          <filename>finch-2.4.1-28.9.x86_64.rpm</filename>
        </package>
        <package name="finch-devel" arch="i586" version="2.4.1" release="28.9">
          <filename>finch-devel-2.4.1-28.9.i586.rpm</filename>
        </package>
        <package name="finch-devel" arch="ppc" version="2.4.1" release="28.9">
          <filename>finch-devel-2.4.1-28.9.ppc.rpm</filename>
        </package>
        <package name="finch-devel" arch="x86_64" version="2.4.1" release="28.9">
          <filename>finch-devel-2.4.1-28.9.x86_64.rpm</filename>
        </package>
        <package name="libpurple" arch="i586" version="2.4.1" release="28.9">
          <filename>libpurple-2.4.1-28.9.i586.rpm</filename>
        </package>
        <package name="libpurple" arch="ppc" version="2.4.1" release="28.9">
          <filename>libpurple-2.4.1-28.9.ppc.rpm</filename>
        </package>
        <package name="libpurple" arch="x86_64" version="2.4.1" release="28.9">
          <filename>libpurple-2.4.1-28.9.x86_64.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="i586" version="2.4.1" release="28.9">
          <filename>libpurple-devel-2.4.1-28.9.i586.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="ppc" version="2.4.1" release="28.9">
          <filename>libpurple-devel-2.4.1-28.9.ppc.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="x86_64" version="2.4.1" release="28.9">
          <filename>libpurple-devel-2.4.1-28.9.x86_64.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="i586" version="2.4.1" release="28.9">
          <filename>libpurple-lang-2.4.1-28.9.i586.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="ppc" version="2.4.1" release="28.9">
          <filename>libpurple-lang-2.4.1-28.9.ppc.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="x86_64" version="2.4.1" release="28.9">
          <filename>libpurple-lang-2.4.1-28.9.x86_64.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="i586" version="2.4.1" release="28.9">
          <filename>libpurple-meanwhile-2.4.1-28.9.i586.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="ppc" version="2.4.1" release="28.9">
          <filename>libpurple-meanwhile-2.4.1-28.9.ppc.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="x86_64" version="2.4.1" release="28.9">
          <filename>libpurple-meanwhile-2.4.1-28.9.x86_64.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="i586" version="2.4.1" release="28.9">
          <filename>libpurple-mono-2.4.1-28.9.i586.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="ppc" version="2.4.1" release="28.9">
          <filename>libpurple-mono-2.4.1-28.9.ppc.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="x86_64" version="2.4.1" release="28.9">
          <filename>libpurple-mono-2.4.1-28.9.x86_64.rpm</filename>
        </package>
        <package name="pidgin" arch="i586" version="2.4.1" release="28.9">
          <filename>pidgin-2.4.1-28.9.i586.rpm</filename>
        </package>
        <package name="pidgin" arch="ppc" version="2.4.1" release="28.9">
          <filename>pidgin-2.4.1-28.9.ppc.rpm</filename>
        </package>
        <package name="pidgin" arch="x86_64" version="2.4.1" release="28.9">
          <filename>pidgin-2.4.1-28.9.x86_64.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="i586" version="2.4.1" release="28.9">
          <filename>pidgin-devel-2.4.1-28.9.i586.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="ppc" version="2.4.1" release="28.9">
          <filename>pidgin-devel-2.4.1-28.9.ppc.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="x86_64" version="2.4.1" release="28.9">
          <filename>pidgin-devel-2.4.1-28.9.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f7e6fe6715fa75f03d61051b49d8f61c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="949">
  <id>libsndfile</id>
  <title>libsndfile: potential heap overflows</title>
  <release>openSUSE 11.0</release>
  <issued date="1243521752"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=504434" id="504434" title="bug number 504434" type="bugzilla"/>
  </references>
  <description>This update of libsndfile fixes a heap-based buffer
overflow in voc_read_header() (CVE-2009-1788) and a
heap-based buffer overflow in aiff_read_header()
(CVE-2009-1791).
</description>
  <pkglist>
    <collection>
        <package name="libsndfile" arch="i586" version="1.0.17" release="141.4">
          <filename>libsndfile-1.0.17-141.4.i586.rpm</filename>
        </package>
        <package name="libsndfile" arch="ppc" version="1.0.17" release="141.4">
          <filename>libsndfile-1.0.17-141.4.ppc.rpm</filename>
        </package>
        <package name="libsndfile" arch="x86_64" version="1.0.17" release="141.4">
          <filename>libsndfile-1.0.17-141.4.x86_64.rpm</filename>
        </package>
        <package name="libsndfile-32bit" arch="x86_64" version="1.0.17" release="141.4">
          <filename>libsndfile-32bit-1.0.17-141.4.x86_64.rpm</filename>
        </package>
        <package name="libsndfile-64bit" arch="ppc" version="1.0.17" release="141.4">
          <filename>libsndfile-64bit-1.0.17-141.4.ppc.rpm</filename>
        </package>
        <package name="libsndfile-devel" arch="i586" version="1.0.17" release="141.4">
          <filename>libsndfile-devel-1.0.17-141.4.i586.rpm</filename>
        </package>
        <package name="libsndfile-devel" arch="ppc" version="1.0.17" release="141.4">
          <filename>libsndfile-devel-1.0.17-141.4.ppc.rpm</filename>
        </package>
        <package name="libsndfile-devel" arch="x86_64" version="1.0.17" release="141.4">
          <filename>libsndfile-devel-1.0.17-141.4.x86_64.rpm</filename>
        </package>
        <package name="libsndfile-octave" arch="i586" version="1.0.17" release="141.4">
          <filename>libsndfile-octave-1.0.17-141.4.i586.rpm</filename>
        </package>
        <package name="libsndfile-octave" arch="ppc" version="1.0.17" release="141.4">
          <filename>libsndfile-octave-1.0.17-141.4.ppc.rpm</filename>
        </package>
        <package name="libsndfile-octave" arch="x86_64" version="1.0.17" release="141.4">
          <filename>libsndfile-octave-1.0.17-141.4.x86_64.rpm</filename>
        </package>
        <package name="libsndfile-progs" arch="i586" version="1.0.17" release="141.4">
          <filename>libsndfile-progs-1.0.17-141.4.i586.rpm</filename>
        </package>
        <package name="libsndfile-progs" arch="ppc" version="1.0.17" release="141.4">
          <filename>libsndfile-progs-1.0.17-141.4.ppc.rpm</filename>
        </package>
        <package name="libsndfile-progs" arch="x86_64" version="1.0.17" release="141.4">
          <filename>libsndfile-progs-1.0.17-141.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="aff90373222866b71ad12fbf6ea02fd5"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1022">
  <id>build</id>
  <title>build: Collective Fixes and enhancements update</title>
  <release>openSUSE 11.0</release>
  <issued date="1245680287"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=479537" id="479537" title="bug number 479537" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396766" id="396766" title="bug number 396766" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=406596" id="406596" title="bug number 406596" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=396196" id="396196" title="bug number 396196" type="bugzilla"/>
  </references>
  <description>Bugfixes:
- bnc#396196: Generate debuginfo packages for baselibs 
- bnc#479537: build does not create /repos symlink for kiwi
- bnc#396766: fix broken debtransform
- bnc#406596: fix Build/Rpm.pm ignores BuildRequires in
  subpackages
- various fixes for kiwi build
- fix boolification in &amp;&amp; and ||

Enhancements:
- vc tool included now (buildvc)
- Support for new disturl containing a complete pointer to
  build service instance resource
- add support for package compare
- new armv7el arch for all binaries for up to ARMv7 EABI
  with VFP
- add support for Requires(pre) or (post) semantic
- support badarch (aka excludearch)
- added documentation for specfile control comments
- add --incarnation
- add --create-build-binaries
- added kvm support
- improved baselibs handling
</description>
  <pkglist>
    <collection>
        <package name="build" arch="noarch" version="2009.06.04" release="1.1">
          <filename>build-2009.06.04-1.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5a573a9051f013b865d54393922a35ce"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1135">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Security update to version 3.0.12</title>
  <release>openSUSE 11.0</release>
  <issued date="1248430621"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=522109" id="522109" title="bug number 522109" type="bugzilla"/>
  </references>
  <description>The MozillaFirefox 3.0.12 release fixes various bugs and
some critical security issues.

MFSA 2009-34 / CVE-2009-2462 / CVE-2009-2463 /
CVE-2009-2464 / CVE-2009-2465 / CVE-2009-2466:  Mozilla
developers and community members identified and fixed
several stability bugs in the browser engine used in
Firefox and other Mozilla-based products. Some of these
crashes showed evidence of memory corruption under certain
circumstances and we presume that with enough effort at
least some of these could be exploited to run arbitrary
code.

MFSA 2009-35 / CVE-2009-2467: Security researcher Attila
Suszter reported that when a page contains a Flash object
which presents a slow script dialog, and the page is
navigated while the dialog is still visible to the user,
the Flash plugin is unloaded resulting in a crash due to a
call to the deleted object. This crash could potentially be
used by an attacker to run arbitrary code on a victim's
computer.

MFSA 2009-36 / CVE-2009-1194:  oCERT security researcher
Will Drewry reported a series of heap and integer overflow
vulnerabilities which independently affected multiple font
glyph rendering libraries. On Linux platforms libpango was
susceptible to the vulnerabilities while on OS X
CoreGraphics was similarly vulnerable. An attacker could
trigger these overflows by constructing a very large text
run for the browser to display. Such an overflow can result
in a crash which the attacker could potentially use to run
arbitrary code on a victim's computer. The open-source
nature of Linux meant that Mozilla was able to work with
the libpango maintainers to implement the correct fix in
version 1.24 of that system library which was distributed
with OS security updates. On Mac OS X Firefox works around
the CoreGraphics flaw by limiting the length of text runs
passed to the system.

MFSA 2009-37 / CVE-2009-2469: Security researcher PenPal
reported a crash involving a SVG element on which a watch
function and __defineSetter__ function have been set for a
particular property. The crash showed evidence of memory
corruption and could potentially be used by an attacker to
run arbitrary code on a victim's computer.

MFSA 2009-39 / CVE-2009-2471: Mozilla developer Blake
Kaplan reported that setTimeout, when called with certain
object parameters which should be protected with a
XPCNativeWrapper, will fail to keep the object wrapped when
compiling the new function to be executed. If chrome
privileged code were to call setTimeout using this as an
argument, the this object will lose its wrapper and could
be unsafely accessed by chrome code. An attacker could use
such vulnerable code to run arbitrary JavaScript with
chrome privileges.

MFSA 2009-40 / CVE-2009-2472: Mozilla security researcher
moz_bug_r_a4 reported a series of vulnerabilities in which
objects that normally receive a XPCCrossOriginWrapper are
constructed without the wrapper. This can lead to cases
where JavaScript from one website may unsafely access
properties of such an object which had been set by a
different website. A malicious website could use this
vulnerability to launch a XSS attack and run arbitrary
JavaScript within the context of another site.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.12" release="0.1">
          <filename>MozillaFirefox-3.0.12-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.12" release="0.1">
          <filename>MozillaFirefox-3.0.12-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.12" release="0.1">
          <filename>MozillaFirefox-3.0.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.12" release="0.1">
          <filename>MozillaFirefox-translations-3.0.12-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.12" release="0.1">
          <filename>MozillaFirefox-translations-3.0.12-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.12" release="0.1">
          <filename>MozillaFirefox-translations-3.0.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.12-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.12-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.12-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.12-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.12-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.12-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.12-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.12-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.12-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.12-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.12-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.12-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.12-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.12-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.12-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.12-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.12-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.12" release="1.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.12-1.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3e1ffc0a457b194186ff851456174145"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1085">
  <id>xfig</id>
  <title>Xfig: Update fix problem with a crash after zoom</title>
  <release>openSUSE 11.0</release>
  <issued date="1246639547"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=492295" id="492295" title="bug number 492295" type="bugzilla"/>
  </references>
  <description>Xfig dies with FPE after zoom in caused by a division by
zero. This update fix the problem.
</description>
  <pkglist>
    <collection>
        <package name="xfig" arch="i586" version="3.2.5" release="96.2">
          <filename>xfig-3.2.5-96.2.i586.rpm</filename>
        </package>
        <package name="xfig" arch="ppc" version="3.2.5" release="96.2">
          <filename>xfig-3.2.5-96.2.ppc.rpm</filename>
        </package>
        <package name="xfig" arch="x86_64" version="3.2.5" release="96.2">
          <filename>xfig-3.2.5-96.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="779ccaf748aa6e39c79b69c4f88607fb"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1102">
  <id>nagios</id>
  <title>nagios remote code exec via CGI</title>
  <release>openSUSE 11.0</release>
  <issued date="1247665511"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=517311" id="517311" title="bug number 517311" type="bugzilla"/>
  </references>
  <description>A shell injection bug in nagios'  statuswml.cgi CGI script
has been fixed. CVE-2009-2288 has been assigned to this
issue.
</description>
  <pkglist>
    <collection>
        <package name="nagios" arch="i586" version="3.0.6" release="1.3">
          <filename>nagios-3.0.6-1.3.i586.rpm</filename>
        </package>
        <package name="nagios" arch="ppc" version="3.0.6" release="1.3">
          <filename>nagios-3.0.6-1.3.ppc.rpm</filename>
        </package>
        <package name="nagios" arch="x86_64" version="3.0.6" release="1.3">
          <filename>nagios-3.0.6-1.3.x86_64.rpm</filename>
        </package>
        <package name="nagios-devel" arch="i586" version="3.0.6" release="1.3">
          <filename>nagios-devel-3.0.6-1.3.i586.rpm</filename>
        </package>
        <package name="nagios-devel" arch="ppc" version="3.0.6" release="1.3">
          <filename>nagios-devel-3.0.6-1.3.ppc.rpm</filename>
        </package>
        <package name="nagios-devel" arch="x86_64" version="3.0.6" release="1.3">
          <filename>nagios-devel-3.0.6-1.3.x86_64.rpm</filename>
        </package>
        <package name="nagios-www" arch="i586" version="3.0.6" release="1.3">
          <filename>nagios-www-3.0.6-1.3.i586.rpm</filename>
        </package>
        <package name="nagios-www" arch="ppc" version="3.0.6" release="1.3">
          <filename>nagios-www-3.0.6-1.3.ppc.rpm</filename>
        </package>
        <package name="nagios-www" arch="x86_64" version="3.0.6" release="1.3">
          <filename>nagios-www-3.0.6-1.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2e4a0b05deafffc560721af15910308a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1146">
  <id>bind</id>
  <title>bind: Security update to fix a remote denial of service</title>
  <release>openSUSE 11.0</release>
  <issued date="1248883738"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=526185" id="526185" title="bug number 526185" type="bugzilla"/>
  </references>
  <description>Specially crafted ddns update packets could trigger an
exception in bind causing it to exit. The attack works if
BIND is master for a zone even if ddns is not configured
(CVE-2009-0696).
</description>
  <pkglist>
    <collection>
        <package name="bind" arch="i586" version="9.4.2" release="39.6">
          <filename>bind-9.4.2-39.6.i586.rpm</filename>
        </package>
        <package name="bind" arch="ppc" version="9.4.2" release="39.6">
          <filename>bind-9.4.2-39.6.ppc.rpm</filename>
        </package>
        <package name="bind" arch="x86_64" version="9.4.2" release="39.6">
          <filename>bind-9.4.2-39.6.x86_64.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="i586" version="9.4.2" release="39.6">
          <filename>bind-chrootenv-9.4.2-39.6.i586.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="ppc" version="9.4.2" release="39.6">
          <filename>bind-chrootenv-9.4.2-39.6.ppc.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="x86_64" version="9.4.2" release="39.6">
          <filename>bind-chrootenv-9.4.2-39.6.x86_64.rpm</filename>
        </package>
        <package name="bind-devel" arch="i586" version="9.4.2" release="39.6">
          <filename>bind-devel-9.4.2-39.6.i586.rpm</filename>
        </package>
        <package name="bind-devel" arch="ppc" version="9.4.2" release="39.6">
          <filename>bind-devel-9.4.2-39.6.ppc.rpm</filename>
        </package>
        <package name="bind-devel" arch="x86_64" version="9.4.2" release="39.6">
          <filename>bind-devel-9.4.2-39.6.x86_64.rpm</filename>
        </package>
        <package name="bind-devel-64bit" arch="ppc" version="9.4.2" release="39.6">
          <filename>bind-devel-64bit-9.4.2-39.6.ppc.rpm</filename>
        </package>
        <package name="bind-doc" arch="i586" version="9.4.2" release="39.6">
          <filename>bind-doc-9.4.2-39.6.i586.rpm</filename>
        </package>
        <package name="bind-doc" arch="ppc" version="9.4.2" release="39.6">
          <filename>bind-doc-9.4.2-39.6.ppc.rpm</filename>
        </package>
        <package name="bind-doc" arch="x86_64" version="9.4.2" release="39.6">
          <filename>bind-doc-9.4.2-39.6.x86_64.rpm</filename>
        </package>
        <package name="bind-libs" arch="i586" version="9.4.2" release="39.6">
          <filename>bind-libs-9.4.2-39.6.i586.rpm</filename>
        </package>
        <package name="bind-libs" arch="ppc" version="9.4.2" release="39.6">
          <filename>bind-libs-9.4.2-39.6.ppc.rpm</filename>
        </package>
        <package name="bind-libs" arch="x86_64" version="9.4.2" release="39.6">
          <filename>bind-libs-9.4.2-39.6.x86_64.rpm</filename>
        </package>
        <package name="bind-libs-32bit" arch="x86_64" version="9.4.2" release="39.6">
          <filename>bind-libs-32bit-9.4.2-39.6.x86_64.rpm</filename>
        </package>
        <package name="bind-libs-64bit" arch="ppc" version="9.4.2" release="39.6">
          <filename>bind-libs-64bit-9.4.2-39.6.ppc.rpm</filename>
        </package>
        <package name="bind-utils" arch="i586" version="9.4.2" release="39.6">
          <filename>bind-utils-9.4.2-39.6.i586.rpm</filename>
        </package>
        <package name="bind-utils" arch="ppc" version="9.4.2" release="39.6">
          <filename>bind-utils-9.4.2-39.6.ppc.rpm</filename>
        </package>
        <package name="bind-utils" arch="x86_64" version="9.4.2" release="39.6">
          <filename>bind-utils-9.4.2-39.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="90d1e006eeffa0e68e97d94151105e3b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1148">
  <id>flash-player</id>
  <title>flash-player security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1249031402"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=524508" id="524508" title="bug number 524508" type="bugzilla"/>
  </references>
  <description>Specially crafted Flash (SWF) files can cause a buffer
overflow in flash-player. Attackers could potentially
exploit that to execute arbitrary code (CVE-2009-1862,
CVE-2009-0901, CVE-2009-2395, CVE-2009-2493, CVE-2009-1863,
CVE-2009-1864, CVE-2009-1865, CVE-2009-1866, CVE-2009-1867,
CVE-2009-1868, CVE-2009-1869, CVE-2009-1870).
</description>
  <pkglist>
    <collection>
        <package name="flash-player" arch="i586" version="9.0.246.0" release="0.1">
          <filename>flash-player-9.0.246.0-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5b4a523091e76df85478773259387569"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1071">
  <id>libtiff3</id>
  <title>libtiff: buffer underflow in LZWDecodeCompat</title>
  <release>openSUSE 11.0</release>
  <issued date="1246637561"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=518698" id="518698" title="bug number 518698" type="bugzilla"/>
  </references>
  <description>This update of libtiff fixes a buffer underflow in
LZWDecodeCompat (CVE-2009-2285).
</description>
  <pkglist>
    <collection>
        <package name="libtiff3" arch="i586" version="3.8.2" release="108.6">
          <filename>libtiff3-3.8.2-108.6.i586.rpm</filename>
        </package>
        <package name="libtiff3" arch="ppc" version="3.8.2" release="108.6">
          <filename>libtiff3-3.8.2-108.6.ppc.rpm</filename>
        </package>
        <package name="libtiff3" arch="x86_64" version="3.8.2" release="108.6">
          <filename>libtiff3-3.8.2-108.6.x86_64.rpm</filename>
        </package>
        <package name="libtiff3-32bit" arch="x86_64" version="3.8.2" release="108.6">
          <filename>libtiff3-32bit-3.8.2-108.6.x86_64.rpm</filename>
        </package>
        <package name="libtiff3-64bit" arch="ppc" version="3.8.2" release="108.6">
          <filename>libtiff3-64bit-3.8.2-108.6.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fb3a26f625b309b047dda33b7f65a7fc"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1162">
  <id>java-1_5_0-sun</id>
  <title>java-1_5_0-sun: Security update to Sun JDK 5 Update 20</title>
  <release>openSUSE 11.0</release>
  <issued date="1249565122"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=528268" id="528268" title="bug number 528268" type="bugzilla"/>
  </references>
  <description>The Sun Java JRE /JDK 5 was updated to Update 20 fixing
various security issues.

CVE-2009-2670: The audio system in Sun Java Runtime
Environment (JRE) in JDK and JRE 6 before Update 15, and
JDK and JRE 5.0 before Update 20, does not prevent access
to java.lang.System properties by (1) untrusted applets and
(2) Java Web Start applications, which allows
context-dependent attackers to obtain sensitive information
by reading these properties.

CVE-2009-2671: The SOCKS proxy implementation in Sun Java
Runtime Environment (JRE) in JDK and JRE 6 before Update
15, and JDK and JRE 5.0 before Update 20, allows remote
attackers to discover the username of the account that
invoked an untrusted (1) applet or (2) Java Web Start
application via unspecified vectors.

CVE-2009-2672: The proxy mechanism implementation in Sun
Java Runtime Environment (JRE) in JDK and JRE 6 before
Update 15, and JDK and JRE 5.0 before Update 20, does not
prevent access to browser cookies by untrusted (1) applets
and (2) Java Web Start applications, which allows remote
attackers to hijack web sessions via unspecified vectors.

CVE-2009-2673: The proxy mechanism implementation in Sun
Java Runtime Environment (JRE) in JDK and JRE 6 before
Update 15, and JDK and JRE 5.0 before Update 20, allows
remote attackers to bypass intended access restrictions and
connect to arbitrary sites via unspecified vectors, related
to a declaration that lacks the final keyword.

CVE-2009-2674: Integer overflow in Sun Java Runtime
Environment (JRE) in JDK and JRE 6 before Update 15 allows
context-dependent attackers to gain privileges via vectors
involving an untrusted Java Web Start application that
grants permissions to itself, related to parsing of JPEG
images.

CVE-2009-2675: Integer overflow in the unpack200 utility in
Sun Java Runtime Environment (JRE) in JDK and JRE 6 before
Update 15, and JDK and JRE 5.0 before Update 20, allows
context-dependent attackers to gain privileges via vectors
involving an untrusted (1) applet or (2) Java Web Start
application that grants permissions to itself, related to
decompression.

CVE-2009-2676: Unspecified vulnerability in
JNLPAppletlauncher in Sun Java SE, and SE for Business, in
JDK and JRE 6 Update 14 and earlier +and JDK and JRE 5.0
Update 19 and earlier; and Java SE for Business in SDK and
JRE 1.4.2_21 and earlier; allows remote attackers to create
or modify arbitrary files via vectors involving an
untrusted Java applet.
</description>
  <pkglist>
    <collection>
        <package name="java-1_5_0-sun" arch="i586" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-1.5.0_update20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun" arch="x86_64" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-1.5.0_update20-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="i586" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="x86_64" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update20-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="i586" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="x86_64" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update20-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="i586" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="x86_64" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update20-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="i586" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="x86_64" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update20-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-plugin" arch="i586" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-plugin-1.5.0_update20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="i586" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-src-1.5.0_update20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="x86_64" version="1.5.0_update20" release="0.1">
          <filename>java-1_5_0-sun-src-1.5.0_update20-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a9f7f45946944bd6e787c0152af4bc32"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1161">
  <id>java-1_6_0-sun</id>
  <title>java-1_6_0-sun: Security update to Sun JDK 6 Update 15</title>
  <release>openSUSE 11.0</release>
  <issued date="1249565376"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=528268" id="528268" title="bug number 528268" type="bugzilla"/>
  </references>
  <description>The Sun Java JRE /JDK 6 was updated to Update 15 fixing
various security issues.

CVE-2009-2670: The audio system in Sun Java Runtime
Environment (JRE) in JDK and JRE 6 before Update 15, and
JDK and JRE 5.0 before Update 20, does not prevent access
to java.lang.System properties by (1) untrusted applets and
(2) Java Web Start applications, which allows
context-dependent attackers to obtain sensitive information
by reading these properties.

CVE-2009-2671: The SOCKS proxy implementation in Sun Java
Runtime Environment (JRE) in JDK and JRE 6 before Update
15, and JDK and JRE 5.0 before Update 20, allows remote
attackers to discover the username of the account that
invoked an untrusted (1) applet or (2) Java Web Start
application via unspecified vectors.

CVE-2009-2672: The proxy mechanism implementation in Sun
Java Runtime Environment (JRE) in JDK and JRE 6 before
Update 15, and JDK and JRE 5.0 before Update 20, does not
prevent access to browser cookies by untrusted (1) applets
and (2) Java Web Start applications, which allows remote
attackers to hijack web sessions via unspecified vectors.

CVE-2009-2673: The proxy mechanism implementation in Sun
Java Runtime Environment (JRE) in JDK and JRE 6 before
Update 15, and JDK and JRE 5.0 before Update 20, allows
remote attackers to bypass intended access restrictions and
connect to arbitrary sites via unspecified vectors, related
to a declaration that lacks the final keyword.

CVE-2009-2674: Integer overflow in Sun Java Runtime
Environment (JRE) in JDK and JRE 6 before Update 15 allows
context-dependent attackers to gain privileges via vectors
involving an untrusted Java Web Start application that
grants permissions to itself, related to parsing of JPEG
images.

CVE-2009-2675: Integer overflow in the unpack200 utility in
Sun Java Runtime Environment (JRE) in JDK and JRE 6 before
Update 15, and JDK and JRE 5.0 before Update 20, allows
context-dependent attackers to gain privileges via vectors
involving an untrusted (1) applet or (2) Java Web Start
application that grants permissions to itself, related to
decompression.

CVE-2009-2676: Unspecified vulnerability in
JNLPAppletlauncher in Sun Java SE, and SE for Business, in
JDK and JRE 6 Update 14 and earlier +and JDK and JRE 5.0
Update 19 and earlier; and Java SE for Business in SDK and
JRE 1.4.2_21 and earlier; allows remote attackers to create
or modify arbitrary files via vectors involving an
untrusted Java applet.
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u15-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u15-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u15-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u15-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u15-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u15-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u15-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u15-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u15-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u15-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u15-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="x86_64" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u15-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="i586" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-src-1.6.0.u15-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="x86_64" version="1.6.0.u15" release="0.1">
          <filename>java-1_6_0-sun-src-1.6.0.u15-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d817c4c810a64ac81c63c4303c942f8b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1165">
  <id>memcached</id>
  <title>memcached:  remote denial-of-service and information leak</title>
  <release>openSUSE 11.0</release>
  <issued date="1249601072"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=527875" id="527875" title="bug number 527875" type="bugzilla"/>
  </references>
  <description>This update of memcached fixes a signedness problem which
may lead to a buffer too small to hold all data received
from the network, this may allow arbitrary remote code
execution. (CVE-2009-2415) Additionally an information leak
was fixed (CVE-2009-1494, CVE-2009-1255 )
</description>
  <pkglist>
    <collection>
        <package name="memcached" arch="i586" version="1.2.2" release="49.2">
          <filename>memcached-1.2.2-49.2.i586.rpm</filename>
        </package>
        <package name="memcached" arch="ppc" version="1.2.2" release="49.2">
          <filename>memcached-1.2.2-49.2.ppc.rpm</filename>
        </package>
        <package name="memcached" arch="x86_64" version="1.2.2" release="49.2">
          <filename>memcached-1.2.2-49.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="52967c863368f15f7e08c1d3d7ffa498"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1175">
  <id>libxml2</id>
  <title>libxml2: XML parsing vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1249654458"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=528007" id="528007" title="bug number 528007" type="bugzilla"/>
  </references>
  <description>This update of libxml2 does not use pointers after they
were freed anymore. (CVE-2009-2416) Additionally a
stack-based buffer overflow was fixed while parsing the
root XML document. (CVE-2009-2414)
</description>
  <pkglist>
    <collection>
        <package name="libxml2" arch="i586" version="2.6.32" release="11.10">
          <filename>libxml2-2.6.32-11.10.i586.rpm</filename>
        </package>
        <package name="libxml2" arch="ppc" version="2.6.32" release="11.10">
          <filename>libxml2-2.6.32-11.10.ppc.rpm</filename>
        </package>
        <package name="libxml2" arch="x86_64" version="2.6.32" release="11.10">
          <filename>libxml2-2.6.32-11.10.x86_64.rpm</filename>
        </package>
        <package name="libxml2-32bit" arch="x86_64" version="2.6.32" release="11.10">
          <filename>libxml2-32bit-2.6.32-11.10.x86_64.rpm</filename>
        </package>
        <package name="libxml2-64bit" arch="ppc" version="2.6.32" release="11.10">
          <filename>libxml2-64bit-2.6.32-11.10.ppc.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="i586" version="2.6.32" release="11.10">
          <filename>libxml2-devel-2.6.32-11.10.i586.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="ppc" version="2.6.32" release="11.10">
          <filename>libxml2-devel-2.6.32-11.10.ppc.rpm</filename>
        </package>
        <package name="libxml2-devel" arch="x86_64" version="2.6.32" release="11.10">
          <filename>libxml2-devel-2.6.32-11.10.x86_64.rpm</filename>
        </package>
        <package name="libxml2-devel-32bit" arch="x86_64" version="2.6.32" release="11.10">
          <filename>libxml2-devel-32bit-2.6.32-11.10.x86_64.rpm</filename>
        </package>
        <package name="libxml2-devel-64bit" arch="ppc" version="2.6.32" release="11.10">
          <filename>libxml2-devel-64bit-2.6.32-11.10.ppc.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="i586" version="2.6.32" release="11.10">
          <filename>libxml2-doc-2.6.32-11.10.i586.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="ppc" version="2.6.32" release="11.10">
          <filename>libxml2-doc-2.6.32-11.10.ppc.rpm</filename>
        </package>
        <package name="libxml2-doc" arch="x86_64" version="2.6.32" release="11.10">
          <filename>libxml2-doc-2.6.32-11.10.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fb167fbbc414765fe96c2fd6c188d65f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1179">
  <id>fetchmail</id>
  <title>fetchmail: fix for security issue regarding SSL cert validatin</title>
  <release>openSUSE 11.0</release>
  <issued date="1249682796"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=528746" id="528746" title="bug number 528746" type="bugzilla"/>
  </references>
  <description>This update of fetchmail improves SSL certificate
validation to stop possible man-in-the-middle attacks by
inserting \0-character in the certificate's subject name.
(CVE-2009-2666)
</description>
  <pkglist>
    <collection>
        <package name="fetchmail" arch="i586" version="6.3.8" release="134.2">
          <filename>fetchmail-6.3.8-134.2.i586.rpm</filename>
        </package>
        <package name="fetchmail" arch="ppc" version="6.3.8" release="134.2">
          <filename>fetchmail-6.3.8-134.2.ppc.rpm</filename>
        </package>
        <package name="fetchmail" arch="x86_64" version="6.3.8" release="134.2">
          <filename>fetchmail-6.3.8-134.2.x86_64.rpm</filename>
        </package>
        <package name="fetchmailconf" arch="i586" version="6.3.8" release="134.2">
          <filename>fetchmailconf-6.3.8-134.2.i586.rpm</filename>
        </package>
        <package name="fetchmailconf" arch="ppc" version="6.3.8" release="134.2">
          <filename>fetchmailconf-6.3.8-134.2.ppc.rpm</filename>
        </package>
        <package name="fetchmailconf" arch="x86_64" version="6.3.8" release="134.2">
          <filename>fetchmailconf-6.3.8-134.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e076f23d0b0fbb6bdc26ff2547f08843"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1185">
  <id>subversion</id>
  <title>subversion: fix for buffer overflows in client and server.</title>
  <release>openSUSE 11.0</release>
  <issued date="1249918770"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=528714" id="528714" title="bug number 528714" type="bugzilla"/>
  </references>
  <description>This version upgrade of subversion to 1.5.7 fixes some
buffer overflows in the client and server code that can
occur while parsing binary diffs. (CVE-2009-2411)  Version
1.5.7 also fixes various non-security bugs.
</description>
  <pkglist>
    <collection>
        <package name="subversion" arch="i586" version="1.5.7" release="0.1">
          <filename>subversion-1.5.7-0.1.i586.rpm</filename>
        </package>
        <package name="subversion" arch="ppc" version="1.5.7" release="0.1">
          <filename>subversion-1.5.7-0.1.ppc.rpm</filename>
        </package>
        <package name="subversion" arch="x86_64" version="1.5.7" release="0.1">
          <filename>subversion-1.5.7-0.1.x86_64.rpm</filename>
        </package>
        <package name="subversion-devel" arch="i586" version="1.5.7" release="0.1">
          <filename>subversion-devel-1.5.7-0.1.i586.rpm</filename>
        </package>
        <package name="subversion-devel" arch="ppc" version="1.5.7" release="0.1">
          <filename>subversion-devel-1.5.7-0.1.ppc.rpm</filename>
        </package>
        <package name="subversion-devel" arch="x86_64" version="1.5.7" release="0.1">
          <filename>subversion-devel-1.5.7-0.1.x86_64.rpm</filename>
        </package>
        <package name="subversion-perl" arch="i586" version="1.5.7" release="0.1">
          <filename>subversion-perl-1.5.7-0.1.i586.rpm</filename>
        </package>
        <package name="subversion-perl" arch="ppc" version="1.5.7" release="0.1">
          <filename>subversion-perl-1.5.7-0.1.ppc.rpm</filename>
        </package>
        <package name="subversion-perl" arch="x86_64" version="1.5.7" release="0.1">
          <filename>subversion-perl-1.5.7-0.1.x86_64.rpm</filename>
        </package>
        <package name="subversion-python" arch="i586" version="1.5.7" release="0.1">
          <filename>subversion-python-1.5.7-0.1.i586.rpm</filename>
        </package>
        <package name="subversion-python" arch="ppc" version="1.5.7" release="0.1">
          <filename>subversion-python-1.5.7-0.1.ppc.rpm</filename>
        </package>
        <package name="subversion-python" arch="x86_64" version="1.5.7" release="0.1">
          <filename>subversion-python-1.5.7-0.1.x86_64.rpm</filename>
        </package>
        <package name="subversion-server" arch="i586" version="1.5.7" release="0.1">
          <filename>subversion-server-1.5.7-0.1.i586.rpm</filename>
        </package>
        <package name="subversion-server" arch="ppc" version="1.5.7" release="0.1">
          <filename>subversion-server-1.5.7-0.1.ppc.rpm</filename>
        </package>
        <package name="subversion-server" arch="x86_64" version="1.5.7" release="0.1">
          <filename>subversion-server-1.5.7-0.1.x86_64.rpm</filename>
        </package>
        <package name="subversion-tools" arch="i586" version="1.5.7" release="0.1">
          <filename>subversion-tools-1.5.7-0.1.i586.rpm</filename>
        </package>
        <package name="subversion-tools" arch="ppc" version="1.5.7" release="0.1">
          <filename>subversion-tools-1.5.7-0.1.ppc.rpm</filename>
        </package>
        <package name="subversion-tools" arch="x86_64" version="1.5.7" release="0.1">
          <filename>subversion-tools-1.5.7-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="978b31b25d30d31708bd30d81444ae4a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1198">
  <id>wget</id>
  <title>wget: security update for 0 in SSL certificate subject name</title>
  <release>openSUSE 11.0</release>
  <issued date="1250076203"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=528298" id="528298" title="bug number 528298" type="bugzilla"/>
  </references>
  <description>This update wget improves the handling of the  0-character
in the subject name of a SSL certificate.
</description>
  <pkglist>
    <collection>
        <package name="wget" arch="i586" version="1.11.1" release="11.2">
          <filename>wget-1.11.1-11.2.i586.rpm</filename>
        </package>
        <package name="wget" arch="ppc" version="1.11.1" release="11.2">
          <filename>wget-1.11.1-11.2.ppc.rpm</filename>
        </package>
        <package name="wget" arch="x86_64" version="1.11.1" release="11.2">
          <filename>wget-1.11.1-11.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0a8fa59efa6b7fc211ab1d34c839c21d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1028">
  <id>icu</id>
  <title>icu: XSS vulnerability due to improper invalid byte sequence handling</title>
  <release>openSUSE 11.0</release>
  <issued date="1245711182"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=508070" id="508070" title="bug number 508070" type="bugzilla"/>
  </references>
  <description>icu does not properly handle invalid byte sequences during
Unicode conversion. Remote attackers could potentially
exploit that to conduct conduct cross-site scripting (XSS)
attacks (CVE-2009-0153).
</description>
  <pkglist>
    <collection>
        <package name="icu" arch="i586" version="3.8.1" release="21.2">
          <filename>icu-3.8.1-21.2.i586.rpm</filename>
        </package>
        <package name="icu" arch="ppc" version="3.8.1" release="21.2">
          <filename>icu-3.8.1-21.2.ppc.rpm</filename>
        </package>
        <package name="icu" arch="x86_64" version="3.8.1" release="21.2">
          <filename>icu-3.8.1-21.2.x86_64.rpm</filename>
        </package>
        <package name="icu-data" arch="i586" version="3.8.1" release="21.2">
          <filename>icu-data-3.8.1-21.2.i586.rpm</filename>
        </package>
        <package name="icu-data" arch="ppc" version="3.8.1" release="21.2">
          <filename>icu-data-3.8.1-21.2.ppc.rpm</filename>
        </package>
        <package name="icu-data" arch="x86_64" version="3.8.1" release="21.2">
          <filename>icu-data-3.8.1-21.2.x86_64.rpm</filename>
        </package>
        <package name="libicu" arch="i586" version="3.8.1" release="21.2">
          <filename>libicu-3.8.1-21.2.i586.rpm</filename>
        </package>
        <package name="libicu" arch="ppc" version="3.8.1" release="21.2">
          <filename>libicu-3.8.1-21.2.ppc.rpm</filename>
        </package>
        <package name="libicu" arch="x86_64" version="3.8.1" release="21.2">
          <filename>libicu-3.8.1-21.2.x86_64.rpm</filename>
        </package>
        <package name="libicu-32bit" arch="x86_64" version="3.8.1" release="21.2">
          <filename>libicu-32bit-3.8.1-21.2.x86_64.rpm</filename>
        </package>
        <package name="libicu-64bit" arch="ppc" version="3.8.1" release="21.2">
          <filename>libicu-64bit-3.8.1-21.2.ppc.rpm</filename>
        </package>
        <package name="libicu-devel" arch="i586" version="3.8.1" release="21.2">
          <filename>libicu-devel-3.8.1-21.2.i586.rpm</filename>
        </package>
        <package name="libicu-devel" arch="ppc" version="3.8.1" release="21.2">
          <filename>libicu-devel-3.8.1-21.2.ppc.rpm</filename>
        </package>
        <package name="libicu-devel" arch="x86_64" version="3.8.1" release="21.2">
          <filename>libicu-devel-3.8.1-21.2.x86_64.rpm</filename>
        </package>
        <package name="libicu-devel-32bit" arch="x86_64" version="3.8.1" release="21.2">
          <filename>libicu-devel-32bit-3.8.1-21.2.x86_64.rpm</filename>
        </package>
        <package name="libicu-devel-64bit" arch="ppc" version="3.8.1" release="21.2">
          <filename>libicu-devel-64bit-3.8.1-21.2.ppc.rpm</filename>
        </package>
        <package name="libicu-doc" arch="i586" version="3.8.1" release="21.2">
          <filename>libicu-doc-3.8.1-21.2.i586.rpm</filename>
        </package>
        <package name="libicu-doc" arch="ppc" version="3.8.1" release="21.2">
          <filename>libicu-doc-3.8.1-21.2.ppc.rpm</filename>
        </package>
        <package name="libicu-doc" arch="x86_64" version="3.8.1" release="21.2">
          <filename>libicu-doc-3.8.1-21.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e45125b9ecda8788f5d94e3c0022985d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1180">
  <id>curl</id>
  <title>curl fix for embedded zero in SSL certificate subject name</title>
  <release>openSUSE 11.0</release>
  <issued date="1249654627"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=527990" id="527990" title="bug number 527990" type="bugzilla"/>
  </references>
  <description>This update of libcurl2 fixes the 0-character handling in
the subject name of a SSL certificate. This bug could be
used to execute an undetected man-in-the-middle-attack.
(CVE-2009-2417)
</description>
  <pkglist>
    <collection>
        <package name="curl" arch="i586" version="7.18.1" release="18.4">
          <filename>curl-7.18.1-18.4.i586.rpm</filename>
        </package>
        <package name="curl" arch="ppc" version="7.18.1" release="18.4">
          <filename>curl-7.18.1-18.4.ppc.rpm</filename>
        </package>
        <package name="curl" arch="x86_64" version="7.18.1" release="18.4">
          <filename>curl-7.18.1-18.4.x86_64.rpm</filename>
        </package>
        <package name="libcurl-devel" arch="i586" version="7.18.1" release="18.4">
          <filename>libcurl-devel-7.18.1-18.4.i586.rpm</filename>
        </package>
        <package name="libcurl-devel" arch="ppc" version="7.18.1" release="18.4">
          <filename>libcurl-devel-7.18.1-18.4.ppc.rpm</filename>
        </package>
        <package name="libcurl-devel" arch="x86_64" version="7.18.1" release="18.4">
          <filename>libcurl-devel-7.18.1-18.4.x86_64.rpm</filename>
        </package>
        <package name="libcurl4" arch="i586" version="7.18.1" release="18.4">
          <filename>libcurl4-7.18.1-18.4.i586.rpm</filename>
        </package>
        <package name="libcurl4" arch="ppc" version="7.18.1" release="18.4">
          <filename>libcurl4-7.18.1-18.4.ppc.rpm</filename>
        </package>
        <package name="libcurl4" arch="x86_64" version="7.18.1" release="18.4">
          <filename>libcurl4-7.18.1-18.4.x86_64.rpm</filename>
        </package>
        <package name="libcurl4-32bit" arch="x86_64" version="7.18.1" release="18.4">
          <filename>libcurl4-32bit-7.18.1-18.4.x86_64.rpm</filename>
        </package>
        <package name="libcurl4-64bit" arch="ppc" version="7.18.1" release="18.4">
          <filename>libcurl4-64bit-7.18.1-18.4.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fa6cee995a02040d4744f1899860b74c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1201">
  <id>libfreebl3</id>
  <title>mozilla-nss: Security update to 3.12.3.1</title>
  <release>openSUSE 11.0</release>
  <issued date="1250087775"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=522602" id="522602" title="bug number 522602" type="bugzilla"/>
  </references>
  <description>The Mozilla NSS security framework was updated to version
3.12.3.1.

CVE-2009-2404 / MFSA 2009-43 : Heap-based buffer overflow
in a regular-expression parser in Mozilla Network Security
Services (NSS) before 3.12.3, as used in Firefox,
Thunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant
Messenger (AIM), allows remote SSL servers to cause a
denial of service (application crash) or possibly execute
arbitrary code via a long domain name in the subject's
Common Name (CN) field of an X.509 certificate, related to
the cert_TestHostName function.

MFSA 2009-42 / CVE-2009-2408: IOActive security researcher
Dan Kaminsky reported a mismatch in the treatment of domain
names in SSL certificates between SSL clients and the
Certificate Authorities (CA) which issue server
certificates. In particular, if a malicious person
requested a certificate for a host name with an invalid
null character in it most CAs would issue the certificate
if the requester owned the domain specified after the null,
while most SSL clients (browsers) ignored that part of the
name and used the unvalidated part in front of the null.
This made it possible for attackers to obtain certificates
that would function for any site they wished to target.
These certificates could be used to intercept and
potentially alter encrypted communication between the
client and a server such as sensitive bank account
transactions. This vulnerability was independently reported
to us by researcher Moxie Marlinspike who also noted that
since Firefox relies on SSL to protect the integrity of
security updates this attack could be used to serve
malicious updates.
</description>
  <pkglist>
    <collection>
        <package name="libfreebl3" arch="i586" version="3.12.3.1" release="1.1">
          <filename>libfreebl3-3.12.3.1-1.1.i586.rpm</filename>
        </package>
        <package name="libfreebl3" arch="ppc" version="3.12.3.1" release="1.1">
          <filename>libfreebl3-3.12.3.1-1.1.ppc.rpm</filename>
        </package>
        <package name="libfreebl3" arch="x86_64" version="3.12.3.1" release="1.1">
          <filename>libfreebl3-3.12.3.1-1.1.x86_64.rpm</filename>
        </package>
        <package name="libfreebl3-32bit" arch="x86_64" version="3.12.3.1" release="1.1">
          <filename>libfreebl3-32bit-3.12.3.1-1.1.x86_64.rpm</filename>
        </package>
        <package name="libfreebl3-64bit" arch="ppc" version="3.12.3.1" release="1.1">
          <filename>libfreebl3-64bit-3.12.3.1-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="i586" version="3.12.3.1" release="1.1">
          <filename>mozilla-nss-3.12.3.1-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="ppc" version="3.12.3.1" release="1.1">
          <filename>mozilla-nss-3.12.3.1-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="x86_64" version="3.12.3.1" release="1.1">
          <filename>mozilla-nss-3.12.3.1-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-32bit" arch="x86_64" version="3.12.3.1" release="1.1">
          <filename>mozilla-nss-32bit-3.12.3.1-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-64bit" arch="ppc" version="3.12.3.1" release="1.1">
          <filename>mozilla-nss-64bit-3.12.3.1-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="i586" version="3.12.3.1" release="1.1">
          <filename>mozilla-nss-devel-3.12.3.1-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="ppc" version="3.12.3.1" release="1.1">
          <filename>mozilla-nss-devel-3.12.3.1-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="x86_64" version="3.12.3.1" release="1.1">
          <filename>mozilla-nss-devel-3.12.3.1-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="i586" version="3.12.3.1" release="1.1">
          <filename>mozilla-nss-tools-3.12.3.1-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="ppc" version="3.12.3.1" release="1.1">
          <filename>mozilla-nss-tools-3.12.3.1-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="x86_64" version="3.12.3.1" release="1.1">
          <filename>mozilla-nss-tools-3.12.3.1-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b70be6e8a0fb54fc1d48288a01359e1d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1202">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Updated to the 3.0.13 release</title>
  <release>openSUSE 11.0</release>
  <issued date="1250092060"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=527489" id="527489" title="bug number 527489" type="bugzilla"/>
  </references>
  <description>MozillaFirefox was updated to the 3.0.13 release, fixing
some security issues and bugs:

MFSA 2009-44 / CVE-2009-2654: Security researcher Juan
Pablo Lopez Yacubian reported that an attacker could call
window.open() on an invalid URL which looks similar to a
legitimate URL and then use document.write() to place
content within the new document, appearing to have come
from the spoofed location. Additionally, if the spoofed
document was created by a document with a valid SSL
certificate, the SSL indicators would be carried over into
the spoofed document. An attacker could use these issues to
display misleading location and SSL information for a
malicious web page.

MFSA 2009-45 / CVE-2009-2662:The browser engine in Mozilla
Firefox before 3.0.13, and 3.5.x before 3.5.2, allows
remote attackers to cause a denial of service (memory
corruption and application crash) or possibly execute
arbitrary code via vectors related to the
TraceRecorder::snapshot function in js/src/jstracer.cpp,
and unspecified other vectors.

CVE-2009-2663 / MFSA 2009-45: libvorbis before r16182, as
used in Mozilla Firefox before 3.0.13 and 3.5.x before
3.5.2 and other products, allows context-dependent
attackers to cause a denial of service (memory corruption
and application crash) or possibly execute arbitrary code
via a crafted .ogg file.

CVE-2009-2664 / MFSA 2009-45: The js_watch_set function in
js/src/jsdbgapi.cpp in the JavaScript engine in Mozilla
Firefox before 3.0.13, and 3.5.x before 3.5.2, allows
remote attackers to cause a denial of service (assertion
failure and application exit) or possibly execute arbitrary
code via a crafted .js file, related to a &quot;memory safety
bug.&quot;
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.13" release="0.1">
          <filename>MozillaFirefox-3.0.13-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.13" release="0.1">
          <filename>MozillaFirefox-3.0.13-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.13" release="0.1">
          <filename>MozillaFirefox-3.0.13-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.13" release="0.1">
          <filename>MozillaFirefox-translations-3.0.13-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.13" release="0.1">
          <filename>MozillaFirefox-translations-3.0.13-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.13" release="0.1">
          <filename>MozillaFirefox-translations-3.0.13-0.1.x86_64.rpm</filename>
        </package>
        <package name="gconf2" arch="i586" version="2.22.0" release="28.1">
          <filename>gconf2-2.22.0-28.1.i586.rpm</filename>
        </package>
        <package name="gconf2" arch="ppc" version="2.22.0" release="28.1">
          <filename>gconf2-2.22.0-28.1.ppc.rpm</filename>
        </package>
        <package name="gconf2" arch="x86_64" version="2.22.0" release="28.1">
          <filename>gconf2-2.22.0-28.1.x86_64.rpm</filename>
        </package>
        <package name="gconf2-32bit" arch="x86_64" version="2.22.0" release="28.1">
          <filename>gconf2-32bit-2.22.0-28.1.x86_64.rpm</filename>
        </package>
        <package name="gconf2-64bit" arch="ppc" version="2.22.0" release="28.1">
          <filename>gconf2-64bit-2.22.0-28.1.ppc.rpm</filename>
        </package>
        <package name="libidl" arch="i586" version="0.8.10" release="27.1">
          <filename>libidl-0.8.10-27.1.i586.rpm</filename>
        </package>
        <package name="libidl" arch="ppc" version="0.8.10" release="27.1">
          <filename>libidl-0.8.10-27.1.ppc.rpm</filename>
        </package>
        <package name="libidl" arch="x86_64" version="0.8.10" release="27.1">
          <filename>libidl-0.8.10-27.1.x86_64.rpm</filename>
        </package>
        <package name="libidl-32bit" arch="x86_64" version="0.8.10" release="27.1">
          <filename>libidl-32bit-0.8.10-27.1.x86_64.rpm</filename>
        </package>
        <package name="libidl-64bit" arch="ppc" version="0.8.10" release="27.1">
          <filename>libidl-64bit-0.8.10-27.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.13-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.13-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-1.9.0.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.13-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.13-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.13-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.13-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.13-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.13-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.13-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.13-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.13-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.13" release="1.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.13-1.1.ppc.rpm</filename>
        </package>
        <package name="orbit2" arch="i586" version="2.14.12" release="32.1">
          <filename>orbit2-2.14.12-32.1.i586.rpm</filename>
        </package>
        <package name="orbit2" arch="ppc" version="2.14.12" release="32.1">
          <filename>orbit2-2.14.12-32.1.ppc.rpm</filename>
        </package>
        <package name="orbit2" arch="x86_64" version="2.14.12" release="32.1">
          <filename>orbit2-2.14.12-32.1.x86_64.rpm</filename>
        </package>
        <package name="orbit2-32bit" arch="x86_64" version="2.14.12" release="32.1">
          <filename>orbit2-32bit-2.14.12-32.1.x86_64.rpm</filename>
        </package>
        <package name="orbit2-64bit" arch="ppc" version="2.14.12" release="32.1">
          <filename>orbit2-64bit-2.14.12-32.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="331145fe44eef1978d4e17b7b5210618"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1126">
  <id>xfce4-panel-plugin-battery</id>
  <title>xfce4-panel-plugins: Update to 0.7.0 of plugin weather</title>
  <release>openSUSE 11.0</release>
  <issued date="1247855882"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=521323" id="521323" title="bug number 521323" type="bugzilla"/>
  </references>
  <description>xfce4-panel-plugins:  Before version 0.6.3 of plugin
weather it cannot work to the current version of
weather.com's API. This update fixes the problem.
</description>
  <pkglist>
    <collection>
        <package name="xfce4-panel-plugin-battery" arch="i586" version="0.5.0" release="14.2">
          <filename>xfce4-panel-plugin-battery-0.5.0-14.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-battery" arch="ppc" version="0.5.0" release="14.2">
          <filename>xfce4-panel-plugin-battery-0.5.0-14.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-battery" arch="x86_64" version="0.5.0" release="14.2">
          <filename>xfce4-panel-plugin-battery-0.5.0-14.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cddrive" arch="i586" version="0.0.1" release="6.2">
          <filename>xfce4-panel-plugin-cddrive-0.0.1-6.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cddrive" arch="ppc" version="0.0.1" release="6.2">
          <filename>xfce4-panel-plugin-cddrive-0.0.1-6.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cddrive" arch="x86_64" version="0.0.1" release="6.2">
          <filename>xfce4-panel-plugin-cddrive-0.0.1-6.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cellmodem" arch="i586" version="0.0.5" release="11.2">
          <filename>xfce4-panel-plugin-cellmodem-0.0.5-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cellmodem" arch="ppc" version="0.0.5" release="11.2">
          <filename>xfce4-panel-plugin-cellmodem-0.0.5-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cellmodem" arch="x86_64" version="0.0.5" release="11.2">
          <filename>xfce4-panel-plugin-cellmodem-0.0.5-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-clipman" arch="i586" version="0.8.1" release="14.2">
          <filename>xfce4-panel-plugin-clipman-0.8.1-14.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-clipman" arch="ppc" version="0.8.1" release="14.2">
          <filename>xfce4-panel-plugin-clipman-0.8.1-14.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-clipman" arch="x86_64" version="0.8.1" release="14.2">
          <filename>xfce4-panel-plugin-clipman-0.8.1-14.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cpufreq" arch="i586" version="0.0.1" release="11.2">
          <filename>xfce4-panel-plugin-cpufreq-0.0.1-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cpufreq" arch="ppc" version="0.0.1" release="11.2">
          <filename>xfce4-panel-plugin-cpufreq-0.0.1-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cpufreq" arch="x86_64" version="0.0.1" release="11.2">
          <filename>xfce4-panel-plugin-cpufreq-0.0.1-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cpugraph" arch="i586" version="0.3.0" release="11.2">
          <filename>xfce4-panel-plugin-cpugraph-0.3.0-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cpugraph" arch="ppc" version="0.3.0" release="11.2">
          <filename>xfce4-panel-plugin-cpugraph-0.3.0-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-cpugraph" arch="x86_64" version="0.3.0" release="11.2">
          <filename>xfce4-panel-plugin-cpugraph-0.3.0-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-datetime" arch="i586" version="0.5.0" release="14.2">
          <filename>xfce4-panel-plugin-datetime-0.5.0-14.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-datetime" arch="ppc" version="0.5.0" release="14.2">
          <filename>xfce4-panel-plugin-datetime-0.5.0-14.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-datetime" arch="x86_64" version="0.5.0" release="14.2">
          <filename>xfce4-panel-plugin-datetime-0.5.0-14.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-dict" arch="i586" version="0.3.0" release="11.2">
          <filename>xfce4-panel-plugin-dict-0.3.0-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-dict" arch="ppc" version="0.3.0" release="11.2">
          <filename>xfce4-panel-plugin-dict-0.3.0-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-dict" arch="x86_64" version="0.3.0" release="11.2">
          <filename>xfce4-panel-plugin-dict-0.3.0-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-diskperf" arch="i586" version="2.1.0" release="14.2">
          <filename>xfce4-panel-plugin-diskperf-2.1.0-14.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-diskperf" arch="ppc" version="2.1.0" release="14.2">
          <filename>xfce4-panel-plugin-diskperf-2.1.0-14.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-diskperf" arch="x86_64" version="2.1.0" release="14.2">
          <filename>xfce4-panel-plugin-diskperf-2.1.0-14.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-eyes" arch="i586" version="4.4.0" release="14.2">
          <filename>xfce4-panel-plugin-eyes-4.4.0-14.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-eyes" arch="ppc" version="4.4.0" release="14.2">
          <filename>xfce4-panel-plugin-eyes-4.4.0-14.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-eyes" arch="x86_64" version="4.4.0" release="14.2">
          <filename>xfce4-panel-plugin-eyes-4.4.0-14.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-fsguard" arch="i586" version="0.4.1" release="11.2">
          <filename>xfce4-panel-plugin-fsguard-0.4.1-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-fsguard" arch="ppc" version="0.4.1" release="11.2">
          <filename>xfce4-panel-plugin-fsguard-0.4.1-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-fsguard" arch="x86_64" version="0.4.1" release="11.2">
          <filename>xfce4-panel-plugin-fsguard-0.4.1-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-genmon" arch="i586" version="3.2" release="11.2">
          <filename>xfce4-panel-plugin-genmon-3.2-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-genmon" arch="ppc" version="3.2" release="11.2">
          <filename>xfce4-panel-plugin-genmon-3.2-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-genmon" arch="x86_64" version="3.2" release="11.2">
          <filename>xfce4-panel-plugin-genmon-3.2-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-governor" arch="i586" version="0.1.0" release="6.2">
          <filename>xfce4-panel-plugin-governor-0.1.0-6.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-governor" arch="ppc" version="0.1.0" release="6.2">
          <filename>xfce4-panel-plugin-governor-0.1.0-6.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-governor" arch="x86_64" version="0.1.0" release="6.2">
          <filename>xfce4-panel-plugin-governor-0.1.0-6.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-mailwatch" arch="i586" version="1.0.1" release="11.2">
          <filename>xfce4-panel-plugin-mailwatch-1.0.1-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-mailwatch" arch="ppc" version="1.0.1" release="11.2">
          <filename>xfce4-panel-plugin-mailwatch-1.0.1-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-mailwatch" arch="x86_64" version="1.0.1" release="11.2">
          <filename>xfce4-panel-plugin-mailwatch-1.0.1-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-mount" arch="i586" version="0.5.4" release="11.2">
          <filename>xfce4-panel-plugin-mount-0.5.4-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-mount" arch="ppc" version="0.5.4" release="11.2">
          <filename>xfce4-panel-plugin-mount-0.5.4-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-mount" arch="x86_64" version="0.5.4" release="11.2">
          <filename>xfce4-panel-plugin-mount-0.5.4-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-mpc" arch="i586" version="0.3.3" release="11.2">
          <filename>xfce4-panel-plugin-mpc-0.3.3-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-mpc" arch="ppc" version="0.3.3" release="11.2">
          <filename>xfce4-panel-plugin-mpc-0.3.3-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-mpc" arch="x86_64" version="0.3.3" release="11.2">
          <filename>xfce4-panel-plugin-mpc-0.3.3-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-netload" arch="i586" version="0.4.0" release="14.2">
          <filename>xfce4-panel-plugin-netload-0.4.0-14.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-netload" arch="ppc" version="0.4.0" release="14.2">
          <filename>xfce4-panel-plugin-netload-0.4.0-14.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-netload" arch="x86_64" version="0.4.0" release="14.2">
          <filename>xfce4-panel-plugin-netload-0.4.0-14.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-notes" arch="i586" version="1.6.1" release="11.2">
          <filename>xfce4-panel-plugin-notes-1.6.1-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-notes" arch="ppc" version="1.6.1" release="11.2">
          <filename>xfce4-panel-plugin-notes-1.6.1-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-notes" arch="x86_64" version="1.6.1" release="11.2">
          <filename>xfce4-panel-plugin-notes-1.6.1-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-places" arch="i586" version="1.0.0" release="11.2">
          <filename>xfce4-panel-plugin-places-1.0.0-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-places" arch="ppc" version="1.0.0" release="11.2">
          <filename>xfce4-panel-plugin-places-1.0.0-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-places" arch="x86_64" version="1.0.0" release="11.2">
          <filename>xfce4-panel-plugin-places-1.0.0-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-quicklauncher" arch="i586" version="1.9.4" release="11.2">
          <filename>xfce4-panel-plugin-quicklauncher-1.9.4-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-quicklauncher" arch="ppc" version="1.9.4" release="11.2">
          <filename>xfce4-panel-plugin-quicklauncher-1.9.4-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-quicklauncher" arch="x86_64" version="1.9.4" release="11.2">
          <filename>xfce4-panel-plugin-quicklauncher-1.9.4-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-radio" arch="i586" version="0.2.0" release="11.2">
          <filename>xfce4-panel-plugin-radio-0.2.0-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-radio" arch="ppc" version="0.2.0" release="11.2">
          <filename>xfce4-panel-plugin-radio-0.2.0-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-radio" arch="x86_64" version="0.2.0" release="11.2">
          <filename>xfce4-panel-plugin-radio-0.2.0-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-screenshooter" arch="i586" version="1.0.0" release="11.2">
          <filename>xfce4-panel-plugin-screenshooter-1.0.0-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-screenshooter" arch="ppc" version="1.0.0" release="11.2">
          <filename>xfce4-panel-plugin-screenshooter-1.0.0-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-screenshooter" arch="x86_64" version="1.0.0" release="11.2">
          <filename>xfce4-panel-plugin-screenshooter-1.0.0-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-sensors" arch="i586" version="0.10.99.3" release="11.2">
          <filename>xfce4-panel-plugin-sensors-0.10.99.3-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-sensors" arch="ppc" version="0.10.99.3" release="11.2">
          <filename>xfce4-panel-plugin-sensors-0.10.99.3-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-sensors" arch="x86_64" version="0.10.99.3" release="11.2">
          <filename>xfce4-panel-plugin-sensors-0.10.99.3-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-smartbookmark" arch="i586" version="0.4.2" release="11.2">
          <filename>xfce4-panel-plugin-smartbookmark-0.4.2-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-smartbookmark" arch="ppc" version="0.4.2" release="11.2">
          <filename>xfce4-panel-plugin-smartbookmark-0.4.2-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-smartbookmark" arch="x86_64" version="0.4.2" release="11.2">
          <filename>xfce4-panel-plugin-smartbookmark-0.4.2-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-smartpm" arch="i586" version="0.1.2" release="11.2">
          <filename>xfce4-panel-plugin-smartpm-0.1.2-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-smartpm" arch="ppc" version="0.1.2" release="11.2">
          <filename>xfce4-panel-plugin-smartpm-0.1.2-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-smartpm" arch="x86_64" version="0.1.2" release="11.2">
          <filename>xfce4-panel-plugin-smartpm-0.1.2-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-systemload" arch="i586" version="0.4.2" release="14.2">
          <filename>xfce4-panel-plugin-systemload-0.4.2-14.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-systemload" arch="ppc" version="0.4.2" release="14.2">
          <filename>xfce4-panel-plugin-systemload-0.4.2-14.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-systemload" arch="x86_64" version="0.4.2" release="14.2">
          <filename>xfce4-panel-plugin-systemload-0.4.2-14.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-timeout" arch="i586" version="0.1.1" release="11.2">
          <filename>xfce4-panel-plugin-timeout-0.1.1-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-timeout" arch="ppc" version="0.1.1" release="11.2">
          <filename>xfce4-panel-plugin-timeout-0.1.1-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-timeout" arch="x86_64" version="0.1.1" release="11.2">
          <filename>xfce4-panel-plugin-timeout-0.1.1-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-timer" arch="i586" version="0.6" release="11.2">
          <filename>xfce4-panel-plugin-timer-0.6-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-timer" arch="ppc" version="0.6" release="11.2">
          <filename>xfce4-panel-plugin-timer-0.6-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-timer" arch="x86_64" version="0.6" release="11.2">
          <filename>xfce4-panel-plugin-timer-0.6-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-verve" arch="i586" version="0.3.5" release="14.2">
          <filename>xfce4-panel-plugin-verve-0.3.5-14.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-verve" arch="ppc" version="0.3.5" release="14.2">
          <filename>xfce4-panel-plugin-verve-0.3.5-14.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-verve" arch="x86_64" version="0.3.5" release="14.2">
          <filename>xfce4-panel-plugin-verve-0.3.5-14.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-wavelan" arch="i586" version="0.5.4" release="11.2">
          <filename>xfce4-panel-plugin-wavelan-0.5.4-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-wavelan" arch="ppc" version="0.5.4" release="11.2">
          <filename>xfce4-panel-plugin-wavelan-0.5.4-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-wavelan" arch="x86_64" version="0.5.4" release="11.2">
          <filename>xfce4-panel-plugin-wavelan-0.5.4-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-weather" arch="i586" version="0.7.0" release="0.1">
          <filename>xfce4-panel-plugin-weather-0.7.0-0.1.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-weather" arch="ppc" version="0.7.0" release="0.1">
          <filename>xfce4-panel-plugin-weather-0.7.0-0.1.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-weather" arch="x86_64" version="0.7.0" release="0.1">
          <filename>xfce4-panel-plugin-weather-0.7.0-0.1.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xfapplet" arch="i586" version="0.1.0" release="11.2">
          <filename>xfce4-panel-plugin-xfapplet-0.1.0-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xfapplet" arch="ppc" version="0.1.0" release="11.2">
          <filename>xfce4-panel-plugin-xfapplet-0.1.0-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xfapplet" arch="x86_64" version="0.1.0" release="11.2">
          <filename>xfce4-panel-plugin-xfapplet-0.1.0-11.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xfmedia-remote" arch="i586" version="0.2.2" release="6.2">
          <filename>xfce4-panel-plugin-xfmedia-remote-0.2.2-6.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xfmedia-remote" arch="ppc" version="0.2.2" release="6.2">
          <filename>xfce4-panel-plugin-xfmedia-remote-0.2.2-6.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xfmedia-remote" arch="x86_64" version="0.2.2" release="6.2">
          <filename>xfce4-panel-plugin-xfmedia-remote-0.2.2-6.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xkb" arch="i586" version="0.4.3" release="14.2">
          <filename>xfce4-panel-plugin-xkb-0.4.3-14.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xkb" arch="ppc" version="0.4.3" release="14.2">
          <filename>xfce4-panel-plugin-xkb-0.4.3-14.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xkb" arch="x86_64" version="0.4.3" release="14.2">
          <filename>xfce4-panel-plugin-xkb-0.4.3-14.2.x86_64.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xmms" arch="i586" version="0.5.1" release="11.2">
          <filename>xfce4-panel-plugin-xmms-0.5.1-11.2.i586.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xmms" arch="ppc" version="0.5.1" release="11.2">
          <filename>xfce4-panel-plugin-xmms-0.5.1-11.2.ppc.rpm</filename>
        </package>
        <package name="xfce4-panel-plugin-xmms" arch="x86_64" version="0.5.1" release="11.2">
          <filename>xfce4-panel-plugin-xmms-0.5.1-11.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b189c841c2708c538b283e8120b72e4c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1204">
  <id>Xerces-c</id>
  <title>Xerces-c: XML parsing vulnerability</title>
  <release>openSUSE 11.0</release>
  <issued date="1250242000"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=530708" id="530708" title="bug number 530708" type="bugzilla"/>
  </references>
  <description>The Xerces-c package was vulnerable to various bugs while
parsing XML. (CVE-2009-1885)
</description>
  <pkglist>
    <collection>
        <package name="Xerces-c" arch="i586" version="2.8.0" release="10.2">
          <filename>Xerces-c-2.8.0-10.2.i586.rpm</filename>
        </package>
        <package name="Xerces-c" arch="ppc" version="2.8.0" release="10.2">
          <filename>Xerces-c-2.8.0-10.2.ppc.rpm</filename>
        </package>
        <package name="Xerces-c" arch="x86_64" version="2.8.0" release="10.2">
          <filename>Xerces-c-2.8.0-10.2.x86_64.rpm</filename>
        </package>
        <package name="libXerces-c-28" arch="i586" version="2.8.0" release="10.2">
          <filename>libXerces-c-28-2.8.0-10.2.i586.rpm</filename>
        </package>
        <package name="libXerces-c-28" arch="ppc" version="2.8.0" release="10.2">
          <filename>libXerces-c-28-2.8.0-10.2.ppc.rpm</filename>
        </package>
        <package name="libXerces-c-28" arch="x86_64" version="2.8.0" release="10.2">
          <filename>libXerces-c-28-2.8.0-10.2.x86_64.rpm</filename>
        </package>
        <package name="libXerces-c-devel" arch="i586" version="2.8.0" release="10.2">
          <filename>libXerces-c-devel-2.8.0-10.2.i586.rpm</filename>
        </package>
        <package name="libXerces-c-devel" arch="ppc" version="2.8.0" release="10.2">
          <filename>libXerces-c-devel-2.8.0-10.2.ppc.rpm</filename>
        </package>
        <package name="libXerces-c-devel" arch="x86_64" version="2.8.0" release="10.2">
          <filename>libXerces-c-devel-2.8.0-10.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0a5af65bd5d0ed02ca80c38c5e984ec2"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1176">
  <id>libtiff-devel</id>
  <title>tiff tools integer overflows</title>
  <release>openSUSE 11.0</release>
  <issued date="1249654255"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=519796" id="519796" title="bug number 519796" type="bugzilla"/>
  </references>
  <description>This update of the tiff package fixes various integer
overflows in the tools. (CVE-2009-2347)
</description>
  <pkglist>
    <collection>
        <package name="libtiff-devel" arch="i586" version="3.8.2" release="108.7">
          <filename>libtiff-devel-3.8.2-108.7.i586.rpm</filename>
        </package>
        <package name="libtiff-devel" arch="ppc" version="3.8.2" release="108.7">
          <filename>libtiff-devel-3.8.2-108.7.ppc.rpm</filename>
        </package>
        <package name="libtiff-devel" arch="x86_64" version="3.8.2" release="108.7">
          <filename>libtiff-devel-3.8.2-108.7.x86_64.rpm</filename>
        </package>
        <package name="libtiff-devel-32bit" arch="x86_64" version="3.8.2" release="108.7">
          <filename>libtiff-devel-32bit-3.8.2-108.7.x86_64.rpm</filename>
        </package>
        <package name="libtiff-devel-64bit" arch="ppc" version="3.8.2" release="108.7">
          <filename>libtiff-devel-64bit-3.8.2-108.7.ppc.rpm</filename>
        </package>
        <package name="libtiff3" arch="i586" version="3.8.2" release="108.7">
          <filename>libtiff3-3.8.2-108.7.i586.rpm</filename>
        </package>
        <package name="libtiff3" arch="ppc" version="3.8.2" release="108.7">
          <filename>libtiff3-3.8.2-108.7.ppc.rpm</filename>
        </package>
        <package name="libtiff3" arch="x86_64" version="3.8.2" release="108.7">
          <filename>libtiff3-3.8.2-108.7.x86_64.rpm</filename>
        </package>
        <package name="libtiff3-32bit" arch="x86_64" version="3.8.2" release="108.7">
          <filename>libtiff3-32bit-3.8.2-108.7.x86_64.rpm</filename>
        </package>
        <package name="libtiff3-64bit" arch="ppc" version="3.8.2" release="108.7">
          <filename>libtiff3-64bit-3.8.2-108.7.ppc.rpm</filename>
        </package>
        <package name="tiff" arch="i586" version="3.8.2" release="108.7">
          <filename>tiff-3.8.2-108.7.i586.rpm</filename>
        </package>
        <package name="tiff" arch="ppc" version="3.8.2" release="108.7">
          <filename>tiff-3.8.2-108.7.ppc.rpm</filename>
        </package>
        <package name="tiff" arch="x86_64" version="3.8.2" release="108.7">
          <filename>tiff-3.8.2-108.7.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ef8f1bb6cdfacfb250de777405645e49"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1138">
  <id>xpdf</id>
  <title>xpdf security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1248694860"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=502974" id="502974" title="bug number 502974" type="bugzilla"/>
  </references>
  <description>Specially crafted PDF documents could crash xpdf or
potentially even allow execution of arbitrary code
(CVE-2009-0791).
</description>
  <pkglist>
    <collection>
        <package name="xpdf" arch="i586" version="3.02" release="95.6">
          <filename>xpdf-3.02-95.6.i586.rpm</filename>
        </package>
        <package name="xpdf" arch="ppc" version="3.02" release="95.6">
          <filename>xpdf-3.02-95.6.ppc.rpm</filename>
        </package>
        <package name="xpdf" arch="x86_64" version="3.02" release="95.6">
          <filename>xpdf-3.02-95.6.x86_64.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="i586" version="3.02" release="95.6">
          <filename>xpdf-tools-3.02-95.6.i586.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="ppc" version="3.02" release="95.6">
          <filename>xpdf-tools-3.02-95.6.ppc.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="x86_64" version="3.02" release="95.6">
          <filename>xpdf-tools-3.02-95.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ab611d24ffe18f24ce3f272e2a966c7d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1211">
  <id>kernel</id>
  <title>Linux Kernel update</title>
  <release>openSUSE 11.0</release>
  <issued date="1250269218"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=530151" id="530151" title="bug number 530151" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=521427" id="521427" title="bug number 521427" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=527848" id="527848" title="bug number 527848" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478699" id="478699" title="bug number 478699" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=523719" id="523719" title="bug number 523719" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=522914" id="522914" title="bug number 522914" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=522686" id="522686" title="bug number 522686" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=444982" id="444982" title="bug number 444982" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=474549" id="474549" title="bug number 474549" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=503870" id="503870" title="bug number 503870" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=511243" id="511243" title="bug number 511243" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=509822" id="509822" title="bug number 509822" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=478462" id="478462" title="bug number 478462" type="bugzilla"/>
  </references>
  <description>This kernel update for openSUSE 11.0 fixes some bugs and
several security problems.

The following security issues are fixed: CVE-2009-2692: A
missing NULL pointer check in the socket sendpage function
can be used by local attackers to gain root privileges.

CVE-2009-2406: A kernel stack overflow when mounting
eCryptfs filesystems in parse_tag_11_packet() was fixed.
Code execution might be possible of ecryptfs is in use.

CVE-2009-2407: A kernel heap overflow when mounting
eCryptfs filesystems in parse_tag_3_packet() was fixed.
Code execution might be possible of ecryptfs is in use.

The compiler option -fno-delete-null-pointer-checks was
added to the kernel build, and the -fwrapv compiler option
usage was fixed to be used everywhere. This works around
the compiler removing checks too aggressively.

CVE-2009-1389: A crash in the r8169 driver when receiving
large packets was fixed. This is probably exploitable only
in the local network.

CVE-2009-1895: Personality flags on set*id were not cleared
correctly, so ASLR and NULL page protection could be
bypassed.

CVE-2009-1046: A utf-8 console memory corruption that can
be used for local privilege escalation was fixed.

The NULL page protection using mmap_min_addr was enabled
(was disabled before).

No CVE yet: A sigaltstack kernel memory disclosure was
fixed.

CVE-2008-5033: A local denial of service (Oops) in
video4linux tvaudio was fixed.

CVE-2009-1385: A Integer underflow in the
e1000_clean_rx_irq function in
drivers/net/e1000/e1000_main.c in the e1000 driver the
e1000e driver in the Linux kernel, and Intel Wired Ethernet
(aka e1000) before 7.5.5 allows remote attackers to cause a
denial of service (panic) via a crafted frame size.
</description>
  <pkglist>
    <collection>
        <package name="acerhk-kmp-debug" arch="i586" version="0.5.35_2.6.25.20_0.5" release="98.1">
          <filename>acerhk-kmp-debug-0.5.35_2.6.25.20_0.5-98.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="acx-kmp-debug" arch="i586" version="20080210_2.6.25.20_0.5" release="3.1">
          <filename>acx-kmp-debug-20080210_2.6.25.20_0.5-3.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="acx-kmp-debug" arch="x86_64" version="20080210_2.6.25.20_0.5" release="3.1">
          <filename>acx-kmp-debug-20080210_2.6.25.20_0.5-3.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="appleir-kmp-debug" arch="i586" version="1.1_2.6.25.20_0.5" release="108.1">
          <filename>appleir-kmp-debug-1.1_2.6.25.20_0.5-108.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="appleir-kmp-debug" arch="x86_64" version="1.1_2.6.25.20_0.5" release="108.1">
          <filename>appleir-kmp-debug-1.1_2.6.25.20_0.5-108.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="at76_usb-kmp-debug" arch="i586" version="0.17_2.6.25.20_0.5" release="2.1">
          <filename>at76_usb-kmp-debug-0.17_2.6.25.20_0.5-2.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="at76_usb-kmp-debug" arch="x86_64" version="0.17_2.6.25.20_0.5" release="2.1">
          <filename>at76_usb-kmp-debug-0.17_2.6.25.20_0.5-2.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="atl2-kmp-debug" arch="i586" version="2.0.4_2.6.25.20_0.5" release="4.1">
          <filename>atl2-kmp-debug-2.0.4_2.6.25.20_0.5-4.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="atl2-kmp-debug" arch="x86_64" version="2.0.4_2.6.25.20_0.5" release="4.1">
          <filename>atl2-kmp-debug-2.0.4_2.6.25.20_0.5-4.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="aufs-kmp-debug" arch="i586" version="cvs20080429_2.6.25.20_0.5" release="13.3">
          <filename>aufs-kmp-debug-cvs20080429_2.6.25.20_0.5-13.3.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="aufs-kmp-debug" arch="x86_64" version="cvs20080429_2.6.25.20_0.5" release="13.3">
          <filename>aufs-kmp-debug-cvs20080429_2.6.25.20_0.5-13.3.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="dazuko-kmp-debug" arch="i586" version="2.3.4.4_2.6.25.20_0.5" release="42.1">
          <filename>dazuko-kmp-debug-2.3.4.4_2.6.25.20_0.5-42.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="dazuko-kmp-debug" arch="x86_64" version="2.3.4.4_2.6.25.20_0.5" release="42.1">
          <filename>dazuko-kmp-debug-2.3.4.4_2.6.25.20_0.5-42.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="drbd-kmp-debug" arch="i586" version="8.2.6_2.6.25.20_0.5" release="0.2">
          <filename>drbd-kmp-debug-8.2.6_2.6.25.20_0.5-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="drbd-kmp-debug" arch="x86_64" version="8.2.6_2.6.25.20_0.5" release="0.2">
          <filename>drbd-kmp-debug-8.2.6_2.6.25.20_0.5-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="gspcav-kmp-debug" arch="i586" version="01.00.20_2.6.25.20_0.5" release="1.1">
          <filename>gspcav-kmp-debug-01.00.20_2.6.25.20_0.5-1.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="gspcav-kmp-debug" arch="x86_64" version="01.00.20_2.6.25.20_0.5" release="1.1">
          <filename>gspcav-kmp-debug-01.00.20_2.6.25.20_0.5-1.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="iscsitarget-kmp-debug" arch="i586" version="0.4.15_2.6.25.20_0.5" release="63.1">
          <filename>iscsitarget-kmp-debug-0.4.15_2.6.25.20_0.5-63.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="iscsitarget-kmp-debug" arch="x86_64" version="0.4.15_2.6.25.20_0.5" release="63.1">
          <filename>iscsitarget-kmp-debug-0.4.15_2.6.25.20_0.5-63.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="ivtv-kmp-debug" arch="i586" version="1.0.3_2.6.25.20_0.5" release="66.1">
          <filename>ivtv-kmp-debug-1.0.3_2.6.25.20_0.5-66.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="ivtv-kmp-debug" arch="x86_64" version="1.0.3_2.6.25.20_0.5" release="66.1">
          <filename>ivtv-kmp-debug-1.0.3_2.6.25.20_0.5-66.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="i586" version="2.6.25.20" release="0.5">
          <filename>kernel-debug-2.6.25.20-0.5.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="x86_64" version="2.6.25.20" release="0.5">
          <filename>kernel-debug-2.6.25.20-0.5.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="i586" version="2.6.25.20" release="0.5">
          <filename>kernel-default-2.6.25.20-0.5.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="ppc" version="2.6.25.20" release="0.5">
          <filename>kernel-default-2.6.25.20-0.5.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="x86_64" version="2.6.25.20" release="0.5">
          <filename>kernel-default-2.6.25.20-0.5.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-docs" arch="noarch" version="2.6.25.20" release="0.5">
          <filename>kernel-docs-2.6.25.20-0.5.noarch.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-kdump" arch="ppc" version="2.6.25.20" release="0.5">
          <filename>kernel-kdump-2.6.25.20-0.5.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-pae" arch="i586" version="2.6.25.20" release="0.5">
          <filename>kernel-pae-2.6.25.20-0.5.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ppc64" arch="ppc" version="2.6.25.20" release="0.5">
          <filename>kernel-ppc64-2.6.25.20-0.5.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ps3" arch="ppc" version="2.6.25.20" release="0.5">
          <filename>kernel-ps3-2.6.25.20-0.5.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="i586" version="2.6.25.20" release="0.5">
          <filename>kernel-source-2.6.25.20-0.5.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="ppc" version="2.6.25.20" release="0.5">
          <filename>kernel-source-2.6.25.20-0.5.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="x86_64" version="2.6.25.20" release="0.5">
          <filename>kernel-source-2.6.25.20-0.5.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="i586" version="2.6.25.20" release="0.5">
          <filename>kernel-syms-2.6.25.20-0.5.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="ppc" version="2.6.25.20" release="0.5">
          <filename>kernel-syms-2.6.25.20-0.5.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="x86_64" version="2.6.25.20" release="0.5">
          <filename>kernel-syms-2.6.25.20-0.5.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="i586" version="2.6.25.20" release="0.5">
          <filename>kernel-vanilla-2.6.25.20-0.5.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="ppc" version="2.6.25.20" release="0.5">
          <filename>kernel-vanilla-2.6.25.20-0.5.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="x86_64" version="2.6.25.20" release="0.5">
          <filename>kernel-vanilla-2.6.25.20-0.5.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="i586" version="2.6.25.20" release="0.5">
          <filename>kernel-xen-2.6.25.20-0.5.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="x86_64" version="2.6.25.20" release="0.5">
          <filename>kernel-xen-2.6.25.20-0.5.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kqemu-kmp-debug" arch="i586" version="1.3.0pre11_2.6.25.20_0.5" release="7.1">
          <filename>kqemu-kmp-debug-1.3.0pre11_2.6.25.20_0.5-7.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kqemu-kmp-debug" arch="x86_64" version="1.3.0pre11_2.6.25.20_0.5" release="7.1">
          <filename>kqemu-kmp-debug-1.3.0pre11_2.6.25.20_0.5-7.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="nouveau-kmp-debug" arch="i586" version="0.10.1.20081112_2.6.25.20_0.5" release="0.4">
          <filename>nouveau-kmp-debug-0.10.1.20081112_2.6.25.20_0.5-0.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="nouveau-kmp-debug" arch="x86_64" version="0.10.1.20081112_2.6.25.20_0.5" release="0.4">
          <filename>nouveau-kmp-debug-0.10.1.20081112_2.6.25.20_0.5-0.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="omnibook-kmp-debug" arch="i586" version="20080313_2.6.25.20_0.5" release="1.1">
          <filename>omnibook-kmp-debug-20080313_2.6.25.20_0.5-1.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="omnibook-kmp-debug" arch="x86_64" version="20080313_2.6.25.20_0.5" release="1.1">
          <filename>omnibook-kmp-debug-20080313_2.6.25.20_0.5-1.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcc-acpi-kmp-debug" arch="i586" version="0.9_2.6.25.20_0.5" release="4.1">
          <filename>pcc-acpi-kmp-debug-0.9_2.6.25.20_0.5-4.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcc-acpi-kmp-debug" arch="x86_64" version="0.9_2.6.25.20_0.5" release="4.1">
          <filename>pcc-acpi-kmp-debug-0.9_2.6.25.20_0.5-4.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcfclock-kmp-debug" arch="i586" version="0.44_2.6.25.20_0.5" release="207.1">
          <filename>pcfclock-kmp-debug-0.44_2.6.25.20_0.5-207.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcfclock-kmp-debug" arch="x86_64" version="0.44_2.6.25.20_0.5" release="207.1">
          <filename>pcfclock-kmp-debug-0.44_2.6.25.20_0.5-207.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="tpctl-kmp-debug" arch="i586" version="4.17_2.6.25.20_0.5" release="189.1">
          <filename>tpctl-kmp-debug-4.17_2.6.25.20_0.5-189.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="uvcvideo-kmp-debug" arch="i586" version="r200_2.6.25.20_0.5" release="2.4">
          <filename>uvcvideo-kmp-debug-r200_2.6.25.20_0.5-2.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="uvcvideo-kmp-debug" arch="x86_64" version="r200_2.6.25.20_0.5" release="2.4">
          <filename>uvcvideo-kmp-debug-r200_2.6.25.20_0.5-2.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="virtualbox-ose-kmp-debug" arch="i586" version="1.5.6_2.6.25.20_0.5" release="33.3">
          <filename>virtualbox-ose-kmp-debug-1.5.6_2.6.25.20_0.5-33.3.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="virtualbox-ose-kmp-debug" arch="x86_64" version="1.5.6_2.6.25.20_0.5" release="33.3">
          <filename>virtualbox-ose-kmp-debug-1.5.6_2.6.25.20_0.5-33.3.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="vmware-kmp-debug" arch="i586" version="2008.04.14_2.6.25.20_0.5" release="21.1">
          <filename>vmware-kmp-debug-2008.04.14_2.6.25.20_0.5-21.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="vmware-kmp-debug" arch="x86_64" version="2008.04.14_2.6.25.20_0.5" release="21.1">
          <filename>vmware-kmp-debug-2008.04.14_2.6.25.20_0.5-21.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="wlan-ng-kmp-debug" arch="i586" version="0.2.8_2.6.25.20_0.5" release="107.1">
          <filename>wlan-ng-kmp-debug-0.2.8_2.6.25.20_0.5-107.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="wlan-ng-kmp-debug" arch="x86_64" version="0.2.8_2.6.25.20_0.5" release="107.1">
          <filename>wlan-ng-kmp-debug-0.2.8_2.6.25.20_0.5-107.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e6ee4ec015c33dd7280fb4997105605a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1182">
  <id>xemacs</id>
  <title>xemacs: security update for integer overflows and improved font handling</title>
  <release>openSUSE 11.0</release>
  <issued date="1249667436"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=522586" id="522586" title="bug number 522586" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=502716" id="502716" title="bug number 502716" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=484673" id="484673" title="bug number 484673" type="bugzilla"/>
  </references>
  <description>Specially crafted tiff, png and jpeg images could cause
integer overflows in xemacs and possible system compromise.
(CVE-2009-2688) Additionally two non-security bugs were
fixed that enable xemacs to use the configured fonts.
</description>
  <pkglist>
    <collection>
        <package name="xemacs" arch="i586" version="21.5.28.20080401" release="16.2">
          <filename>xemacs-21.5.28.20080401-16.2.i586.rpm</filename>
        </package>
        <package name="xemacs" arch="ppc" version="21.5.28.20080401" release="16.2">
          <filename>xemacs-21.5.28.20080401-16.2.ppc.rpm</filename>
        </package>
        <package name="xemacs" arch="x86_64" version="21.5.28.20080401" release="16.2">
          <filename>xemacs-21.5.28.20080401-16.2.x86_64.rpm</filename>
        </package>
        <package name="xemacs-el" arch="i586" version="21.5.28.20080401" release="16.2">
          <filename>xemacs-el-21.5.28.20080401-16.2.i586.rpm</filename>
        </package>
        <package name="xemacs-el" arch="ppc" version="21.5.28.20080401" release="16.2">
          <filename>xemacs-el-21.5.28.20080401-16.2.ppc.rpm</filename>
        </package>
        <package name="xemacs-el" arch="x86_64" version="21.5.28.20080401" release="16.2">
          <filename>xemacs-el-21.5.28.20080401-16.2.x86_64.rpm</filename>
        </package>
        <package name="xemacs-info" arch="i586" version="21.5.28.20080401" release="16.2">
          <filename>xemacs-info-21.5.28.20080401-16.2.i586.rpm</filename>
        </package>
        <package name="xemacs-info" arch="ppc" version="21.5.28.20080401" release="16.2">
          <filename>xemacs-info-21.5.28.20080401-16.2.ppc.rpm</filename>
        </package>
        <package name="xemacs-info" arch="x86_64" version="21.5.28.20080401" release="16.2">
          <filename>xemacs-info-21.5.28.20080401-16.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cddc4c67c5e717923e57de74681f253e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1233">
  <id>xerces-j2</id>
  <title>xerces-j2: XML parsing vulnerability (CVE-2009-2625)</title>
  <release>openSUSE 11.0</release>
  <issued date="1250730948"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=530717" id="530717" title="bug number 530717" type="bugzilla"/>
  </references>
  <description>The xerces-j2 package was vulnerable to various bugs while
parsing XML.CVE-2009-2625 has been assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="xerces-j2" arch="noarch" version="2.8.1" release="149.2">
          <filename>xerces-j2-2.8.1-149.2.noarch.rpm</filename>
        </package>
        <package name="xerces-j2-demo" arch="noarch" version="2.8.1" release="149.2">
          <filename>xerces-j2-demo-2.8.1-149.2.noarch.rpm</filename>
        </package>
        <package name="xerces-j2-javadoc-apis" arch="noarch" version="2.8.1" release="149.2">
          <filename>xerces-j2-javadoc-apis-2.8.1-149.2.noarch.rpm</filename>
        </package>
        <package name="xerces-j2-javadoc-dom3" arch="noarch" version="2.8.1" release="149.2">
          <filename>xerces-j2-javadoc-dom3-2.8.1-149.2.noarch.rpm</filename>
        </package>
        <package name="xerces-j2-javadoc-impl" arch="noarch" version="2.8.1" release="149.2">
          <filename>xerces-j2-javadoc-impl-2.8.1-149.2.noarch.rpm</filename>
        </package>
        <package name="xerces-j2-javadoc-other" arch="noarch" version="2.8.1" release="149.2">
          <filename>xerces-j2-javadoc-other-2.8.1-149.2.noarch.rpm</filename>
        </package>
        <package name="xerces-j2-javadoc-xni" arch="noarch" version="2.8.1" release="149.2">
          <filename>xerces-j2-javadoc-xni-2.8.1-149.2.noarch.rpm</filename>
        </package>
        <package name="xerces-j2-scripts" arch="noarch" version="2.8.1" release="149.2">
          <filename>xerces-j2-scripts-2.8.1-149.2.noarch.rpm</filename>
        </package>
        <package name="xerces-j2-xml-apis" arch="noarch" version="2.8.1" release="149.2">
          <filename>xerces-j2-xml-apis-2.8.1-149.2.noarch.rpm</filename>
        </package>
        <package name="xerces-j2-xml-resolver" arch="noarch" version="2.8.1" release="149.2">
          <filename>xerces-j2-xml-resolver-2.8.1-149.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="00f6af27c9453ea91d6031df5dac835c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1116">
  <id>libmysqlclient-devel</id>
  <title>mysql security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1247748978"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=520608" id="520608" title="bug number 520608" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=497546" id="497546" title="bug number 497546" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=480140" id="480140" title="bug number 480140" type="bugzilla"/>
  </references>
  <description>- the COM_CREATE_DB and COM_DROP_DB suffered from format
  string vulnerabilities (CVE-2009-2446)

- the command line client was prone to cross-site scripting
  (XSS) attacks (CVE-2008-4456)

- fix slave reconnect
</description>
  <pkglist>
    <collection>
        <package name="libmysqlclient-devel" arch="i586" version="5.0.51a" release="27.4">
          <filename>libmysqlclient-devel-5.0.51a-27.4.i586.rpm</filename>
        </package>
        <package name="libmysqlclient-devel" arch="ppc" version="5.0.51a" release="27.4">
          <filename>libmysqlclient-devel-5.0.51a-27.4.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient-devel" arch="x86_64" version="5.0.51a" release="27.4">
          <filename>libmysqlclient-devel-5.0.51a-27.4.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="i586" version="5.0.51a" release="27.4">
          <filename>libmysqlclient15-5.0.51a-27.4.i586.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="ppc" version="5.0.51a" release="27.4">
          <filename>libmysqlclient15-5.0.51a-27.4.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="x86_64" version="5.0.51a" release="27.4">
          <filename>libmysqlclient15-5.0.51a-27.4.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15-32bit" arch="x86_64" version="5.0.51a" release="27.4">
          <filename>libmysqlclient15-32bit-5.0.51a-27.4.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15-64bit" arch="ppc" version="5.0.51a" release="27.4">
          <filename>libmysqlclient15-64bit-5.0.51a-27.4.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="i586" version="5.0.51a" release="27.4">
          <filename>libmysqlclient_r15-5.0.51a-27.4.i586.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="ppc" version="5.0.51a" release="27.4">
          <filename>libmysqlclient_r15-5.0.51a-27.4.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="x86_64" version="5.0.51a" release="27.4">
          <filename>libmysqlclient_r15-5.0.51a-27.4.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient_r15-32bit" arch="x86_64" version="5.0.51a" release="27.4">
          <filename>libmysqlclient_r15-32bit-5.0.51a-27.4.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient_r15-64bit" arch="ppc" version="5.0.51a" release="27.4">
          <filename>libmysqlclient_r15-64bit-5.0.51a-27.4.ppc.rpm</filename>
        </package>
        <package name="mysql" arch="i586" version="5.0.51a" release="27.4">
          <filename>mysql-5.0.51a-27.4.i586.rpm</filename>
        </package>
        <package name="mysql" arch="ppc" version="5.0.51a" release="27.4">
          <filename>mysql-5.0.51a-27.4.ppc.rpm</filename>
        </package>
        <package name="mysql" arch="ppc64" version="5.0.51a" release="27.4">
          <filename>mysql-5.0.51a-27.4.ppc64.rpm</filename>
        </package>
        <package name="mysql" arch="x86_64" version="5.0.51a" release="27.4">
          <filename>mysql-5.0.51a-27.4.x86_64.rpm</filename>
        </package>
        <package name="mysql-Max" arch="i586" version="5.0.51a" release="27.4">
          <filename>mysql-Max-5.0.51a-27.4.i586.rpm</filename>
        </package>
        <package name="mysql-Max" arch="ppc" version="5.0.51a" release="27.4">
          <filename>mysql-Max-5.0.51a-27.4.ppc.rpm</filename>
        </package>
        <package name="mysql-Max" arch="x86_64" version="5.0.51a" release="27.4">
          <filename>mysql-Max-5.0.51a-27.4.x86_64.rpm</filename>
        </package>
        <package name="mysql-bench" arch="i586" version="5.0.51a" release="27.4">
          <filename>mysql-bench-5.0.51a-27.4.i586.rpm</filename>
        </package>
        <package name="mysql-bench" arch="ppc" version="5.0.51a" release="27.4">
          <filename>mysql-bench-5.0.51a-27.4.ppc.rpm</filename>
        </package>
        <package name="mysql-bench" arch="x86_64" version="5.0.51a" release="27.4">
          <filename>mysql-bench-5.0.51a-27.4.x86_64.rpm</filename>
        </package>
        <package name="mysql-client" arch="i586" version="5.0.51a" release="27.4">
          <filename>mysql-client-5.0.51a-27.4.i586.rpm</filename>
        </package>
        <package name="mysql-client" arch="ppc" version="5.0.51a" release="27.4">
          <filename>mysql-client-5.0.51a-27.4.ppc.rpm</filename>
        </package>
        <package name="mysql-client" arch="x86_64" version="5.0.51a" release="27.4">
          <filename>mysql-client-5.0.51a-27.4.x86_64.rpm</filename>
        </package>
        <package name="mysql-debug" arch="i586" version="5.0.51a" release="27.4">
          <filename>mysql-debug-5.0.51a-27.4.i586.rpm</filename>
        </package>
        <package name="mysql-debug" arch="ppc" version="5.0.51a" release="27.4">
          <filename>mysql-debug-5.0.51a-27.4.ppc.rpm</filename>
        </package>
        <package name="mysql-debug" arch="x86_64" version="5.0.51a" release="27.4">
          <filename>mysql-debug-5.0.51a-27.4.x86_64.rpm</filename>
        </package>
        <package name="mysql-tools" arch="i586" version="5.0.51a" release="27.4">
          <filename>mysql-tools-5.0.51a-27.4.i586.rpm</filename>
        </package>
        <package name="mysql-tools" arch="ppc" version="5.0.51a" release="27.4">
          <filename>mysql-tools-5.0.51a-27.4.ppc.rpm</filename>
        </package>
        <package name="mysql-tools" arch="x86_64" version="5.0.51a" release="27.4">
          <filename>mysql-tools-5.0.51a-27.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ba41b676c39b719fa82afb950dfb8541"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1252">
  <id>java-1_6_0-openjdk</id>
  <title>java-1_6_0-openjdk: update for several security vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1251289889"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=514421" id="514421" title="bug number 514421" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=521512" id="521512" title="bug number 521512" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=524505" id="524505" title="bug number 524505" type="bugzilla"/>
  </references>
  <description>The XML signature checker did not impose limits on the
minimum  length of HMAC signatures in XML documentes.
Attackers could  therefore specify a length of e.g. 1 to
make the signature appear  valid and therefore effectively
bypass verification of XML  documents. (CVE-2009-0217)  The
WebStart component does not allow to run unsigned code in
some cases. (CVE-2009-1896)  A null pointer dereference was
fixed in the LittleCMS component. (CVE-2009-0793)
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-openjdk" arch="i586" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-1.5.1_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="ppc" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-1.5.1_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="x86_64" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-1.5.1_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="i586" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-demo-1.5.1_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="ppc" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-demo-1.5.1_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="x86_64" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-demo-1.5.1_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="i586" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-devel-1.5.1_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="ppc" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-devel-1.5.1_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="x86_64" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-devel-1.5.1_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="i586" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-javadoc-1.5.1_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="ppc" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-javadoc-1.5.1_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="x86_64" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-javadoc-1.5.1_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="i586" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-plugin-1.5.1_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="ppc" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-plugin-1.5.1_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="x86_64" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-plugin-1.5.1_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="i586" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-src-1.5.1_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="ppc" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-src-1.5.1_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="x86_64" version="1.5.1_b16" release="0.1">
          <filename>java-1_6_0-openjdk-src-1.5.1_b16-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="06ca1d5a54f2a96ff665c2afad49154c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1248">
  <id>finch</id>
  <title>pidgin: remote arbitrary code execution vulnerability fixed</title>
  <release>openSUSE 11.0</release>
  <issued date="1251285454"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=527100" id="527100" title="bug number 527100" type="bugzilla"/>
  </references>
  <description>This update of pidgin fixes a remote arbitrary code
execution vulnerability in MSN SLP packet processing code.
(CORE-2009-0727)
</description>
  <pkglist>
    <collection>
        <package name="finch" arch="i586" version="2.4.1" release="28.12">
          <filename>finch-2.4.1-28.12.i586.rpm</filename>
        </package>
        <package name="finch" arch="ppc" version="2.4.1" release="28.12">
          <filename>finch-2.4.1-28.12.ppc.rpm</filename>
        </package>
        <package name="finch" arch="x86_64" version="2.4.1" release="28.12">
          <filename>finch-2.4.1-28.12.x86_64.rpm</filename>
        </package>
        <package name="finch-devel" arch="i586" version="2.4.1" release="28.12">
          <filename>finch-devel-2.4.1-28.12.i586.rpm</filename>
        </package>
        <package name="finch-devel" arch="ppc" version="2.4.1" release="28.12">
          <filename>finch-devel-2.4.1-28.12.ppc.rpm</filename>
        </package>
        <package name="finch-devel" arch="x86_64" version="2.4.1" release="28.12">
          <filename>finch-devel-2.4.1-28.12.x86_64.rpm</filename>
        </package>
        <package name="libpurple" arch="i586" version="2.4.1" release="28.12">
          <filename>libpurple-2.4.1-28.12.i586.rpm</filename>
        </package>
        <package name="libpurple" arch="ppc" version="2.4.1" release="28.12">
          <filename>libpurple-2.4.1-28.12.ppc.rpm</filename>
        </package>
        <package name="libpurple" arch="x86_64" version="2.4.1" release="28.12">
          <filename>libpurple-2.4.1-28.12.x86_64.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="i586" version="2.4.1" release="28.12">
          <filename>libpurple-devel-2.4.1-28.12.i586.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="ppc" version="2.4.1" release="28.12">
          <filename>libpurple-devel-2.4.1-28.12.ppc.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="x86_64" version="2.4.1" release="28.12">
          <filename>libpurple-devel-2.4.1-28.12.x86_64.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="i586" version="2.4.1" release="28.12">
          <filename>libpurple-lang-2.4.1-28.12.i586.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="ppc" version="2.4.1" release="28.12">
          <filename>libpurple-lang-2.4.1-28.12.ppc.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="x86_64" version="2.4.1" release="28.12">
          <filename>libpurple-lang-2.4.1-28.12.x86_64.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="i586" version="2.4.1" release="28.12">
          <filename>libpurple-meanwhile-2.4.1-28.12.i586.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="ppc" version="2.4.1" release="28.12">
          <filename>libpurple-meanwhile-2.4.1-28.12.ppc.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="x86_64" version="2.4.1" release="28.12">
          <filename>libpurple-meanwhile-2.4.1-28.12.x86_64.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="i586" version="2.4.1" release="28.12">
          <filename>libpurple-mono-2.4.1-28.12.i586.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="ppc" version="2.4.1" release="28.12">
          <filename>libpurple-mono-2.4.1-28.12.ppc.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="x86_64" version="2.4.1" release="28.12">
          <filename>libpurple-mono-2.4.1-28.12.x86_64.rpm</filename>
        </package>
        <package name="pidgin" arch="i586" version="2.4.1" release="28.12">
          <filename>pidgin-2.4.1-28.12.i586.rpm</filename>
        </package>
        <package name="pidgin" arch="ppc" version="2.4.1" release="28.12">
          <filename>pidgin-2.4.1-28.12.ppc.rpm</filename>
        </package>
        <package name="pidgin" arch="x86_64" version="2.4.1" release="28.12">
          <filename>pidgin-2.4.1-28.12.x86_64.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="i586" version="2.4.1" release="28.12">
          <filename>pidgin-devel-2.4.1-28.12.i586.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="ppc" version="2.4.1" release="28.12">
          <filename>pidgin-devel-2.4.1-28.12.ppc.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="x86_64" version="2.4.1" release="28.12">
          <filename>pidgin-devel-2.4.1-28.12.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="35b048fa90c255ea27fbdf0d85ea0f36"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1157">
  <id>OpenEXR</id>
  <title>OpenEXR: security update for CVE-2009-1720 and CVE-2009-1721</title>
  <release>openSUSE 11.0</release>
  <issued date="1249401082"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=527539" id="527539" title="bug number 527539" type="bugzilla"/>
  </references>
  <description>This update of OpenEXR fixes seceral integer overflows
(CVE-2009-1720) and a denial-of-service (probably execution
of arbitrary code) bug (CVE-2009-1721).
</description>
  <pkglist>
    <collection>
        <package name="OpenEXR" arch="i586" version="1.6.1" release="47.2">
          <filename>OpenEXR-1.6.1-47.2.i586.rpm</filename>
        </package>
        <package name="OpenEXR" arch="ppc" version="1.6.1" release="47.2">
          <filename>OpenEXR-1.6.1-47.2.ppc.rpm</filename>
        </package>
        <package name="OpenEXR" arch="x86_64" version="1.6.1" release="47.2">
          <filename>OpenEXR-1.6.1-47.2.x86_64.rpm</filename>
        </package>
        <package name="OpenEXR-32bit" arch="x86_64" version="1.6.1" release="47.2">
          <filename>OpenEXR-32bit-1.6.1-47.2.x86_64.rpm</filename>
        </package>
        <package name="OpenEXR-64bit" arch="ppc" version="1.6.1" release="47.2">
          <filename>OpenEXR-64bit-1.6.1-47.2.ppc.rpm</filename>
        </package>
        <package name="OpenEXR-devel" arch="i586" version="1.6.1" release="47.2">
          <filename>OpenEXR-devel-1.6.1-47.2.i586.rpm</filename>
        </package>
        <package name="OpenEXR-devel" arch="ppc" version="1.6.1" release="47.2">
          <filename>OpenEXR-devel-1.6.1-47.2.ppc.rpm</filename>
        </package>
        <package name="OpenEXR-devel" arch="x86_64" version="1.6.1" release="47.2">
          <filename>OpenEXR-devel-1.6.1-47.2.x86_64.rpm</filename>
        </package>
        <package name="OpenEXR-doc" arch="i586" version="1.6.1" release="47.2">
          <filename>OpenEXR-doc-1.6.1-47.2.i586.rpm</filename>
        </package>
        <package name="OpenEXR-doc" arch="ppc" version="1.6.1" release="47.2">
          <filename>OpenEXR-doc-1.6.1-47.2.ppc.rpm</filename>
        </package>
        <package name="OpenEXR-doc" arch="x86_64" version="1.6.1" release="47.2">
          <filename>OpenEXR-doc-1.6.1-47.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="91a6f977f69fd5e485d5026e78bde299"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1229">
  <id>wireshark</id>
  <title>wireshark security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1250608433"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=523718" id="523718" title="bug number 523718" type="bugzilla"/>
  </references>
  <description>Flaws in the AFS dissector allowed attackers to crash
wireshark  via specially crafted network traffic
(CVE-2009-2562).
</description>
  <pkglist>
    <collection>
        <package name="wireshark" arch="i586" version="1.0.0" release="17.14">
          <filename>wireshark-1.0.0-17.14.i586.rpm</filename>
        </package>
        <package name="wireshark" arch="ppc" version="1.0.0" release="17.14">
          <filename>wireshark-1.0.0-17.14.ppc.rpm</filename>
        </package>
        <package name="wireshark" arch="x86_64" version="1.0.0" release="17.14">
          <filename>wireshark-1.0.0-17.14.x86_64.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="i586" version="1.0.0" release="17.14">
          <filename>wireshark-devel-1.0.0-17.14.i586.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="ppc" version="1.0.0" release="17.14">
          <filename>wireshark-devel-1.0.0-17.14.ppc.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="x86_64" version="1.0.0" release="17.14">
          <filename>wireshark-devel-1.0.0-17.14.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="eb674d821667b79bb118be56e3f659e7"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1241">
  <id>dnsmasq</id>
  <title>dnsmasq: remote buffer overflow in TFTP server code</title>
  <release>openSUSE 11.0</release>
  <issued date="1251133264"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=533710" id="533710" title="bug number 533710" type="bugzilla"/>
  </references>
  <description>This update fixes a buffer overflow in the TFTP server code
of dnsmasq. Please note that the TFTP server is disabled by
default.
</description>
  <pkglist>
    <collection>
        <package name="dnsmasq" arch="i586" version="2.45" release="0.3">
          <filename>dnsmasq-2.45-0.3.i586.rpm</filename>
        </package>
        <package name="dnsmasq" arch="ppc" version="2.45" release="0.3">
          <filename>dnsmasq-2.45-0.3.ppc.rpm</filename>
        </package>
        <package name="dnsmasq" arch="x86_64" version="2.45" release="0.3">
          <filename>dnsmasq-2.45-0.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3283cdf57f09f0d519bb009c630f2e72"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1239">
  <id>xen</id>
  <title>xen security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1250860917"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=432485" id="432485" title="bug number 432485" type="bugzilla"/>
  </references>
  <description>xend did not properly enforce access control of the
xenstore directory tree, therefore allowing guest VM's to
write there.  This could lead to security problems if other
applications such as libvirt are not prepared for untrusted
data in the xenstore directory (CVE-2008-4405).
</description>
  <pkglist>
    <collection>
        <package name="xen" arch="i586" version="3.2.1_16881_04" release="4.3">
          <filename>xen-3.2.1_16881_04-4.3.i586.rpm</filename>
        </package>
        <package name="xen" arch="x86_64" version="3.2.1_16881_04" release="4.3">
          <filename>xen-3.2.1_16881_04-4.3.x86_64.rpm</filename>
        </package>
        <package name="xen-devel" arch="i586" version="3.2.1_16881_04" release="4.3">
          <filename>xen-devel-3.2.1_16881_04-4.3.i586.rpm</filename>
        </package>
        <package name="xen-devel" arch="x86_64" version="3.2.1_16881_04" release="4.3">
          <filename>xen-devel-3.2.1_16881_04-4.3.x86_64.rpm</filename>
        </package>
        <package name="xen-doc-html" arch="i586" version="3.2.1_16881_04" release="4.3">
          <filename>xen-doc-html-3.2.1_16881_04-4.3.i586.rpm</filename>
        </package>
        <package name="xen-doc-html" arch="x86_64" version="3.2.1_16881_04" release="4.3">
          <filename>xen-doc-html-3.2.1_16881_04-4.3.x86_64.rpm</filename>
        </package>
        <package name="xen-doc-pdf" arch="i586" version="3.2.1_16881_04" release="4.3">
          <filename>xen-doc-pdf-3.2.1_16881_04-4.3.i586.rpm</filename>
        </package>
        <package name="xen-doc-pdf" arch="x86_64" version="3.2.1_16881_04" release="4.3">
          <filename>xen-doc-pdf-3.2.1_16881_04-4.3.x86_64.rpm</filename>
        </package>
        <package name="xen-libs" arch="i586" version="3.2.1_16881_04" release="4.3">
          <filename>xen-libs-3.2.1_16881_04-4.3.i586.rpm</filename>
        </package>
        <package name="xen-libs" arch="x86_64" version="3.2.1_16881_04" release="4.3">
          <filename>xen-libs-3.2.1_16881_04-4.3.x86_64.rpm</filename>
        </package>
        <package name="xen-tools" arch="i586" version="3.2.1_16881_04" release="4.3">
          <filename>xen-tools-3.2.1_16881_04-4.3.i586.rpm</filename>
        </package>
        <package name="xen-tools" arch="x86_64" version="3.2.1_16881_04" release="4.3">
          <filename>xen-tools-3.2.1_16881_04-4.3.x86_64.rpm</filename>
        </package>
        <package name="xen-tools-domU" arch="i586" version="3.2.1_16881_04" release="4.3">
          <filename>xen-tools-domU-3.2.1_16881_04-4.3.i586.rpm</filename>
        </package>
        <package name="xen-tools-domU" arch="x86_64" version="3.2.1_16881_04" release="4.3">
          <filename>xen-tools-domU-3.2.1_16881_04-4.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="32f024165513ce55bb447fdb9244ced5"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1247">
  <id>fetchmsttfonts</id>
  <title>fetchmsttfonts: Fixed font download for new Sourceforge Download URLs</title>
  <release>openSUSE 11.0</release>
  <issued date="1244666436"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=533112" id="533112" title="bug number 533112" type="bugzilla"/>
  </references>
  <description>The Sourceforge download URLs changed, so fetchmsttfonts
was not able to download the MS TrueType corefonts anymore.

This patch fixes this issue.
</description>
  <pkglist>
    <collection>
        <package name="cabextract" arch="i586" version="1.2" release="94.2">
          <filename>cabextract-1.2-94.2.i586.rpm</filename>
        </package>
        <package name="cabextract" arch="ppc" version="1.2" release="94.2">
          <filename>cabextract-1.2-94.2.ppc.rpm</filename>
        </package>
        <package name="cabextract" arch="x86_64" version="1.2" release="94.2">
          <filename>cabextract-1.2-94.2.x86_64.rpm</filename>
        </package>
        <package name="fetchmsttfonts" arch="noarch" version="11.0" release="2.3">
          <filename>fetchmsttfonts-11.0-2.3.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a897914e6fa37f606b823ac101036941"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1261">
  <id>opera</id>
  <title>opera: Update to version 10 to fix XML denial of service and SSL tampering problem</title>
  <release>openSUSE 11.0</release>
  <issued date="1251853583"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=514728" id="514728" title="bug number 514728" type="bugzilla"/>
  </references>
  <description>Opera version 10 includes at least security fixes for an
XML denial-of-service bug (CVE-2009-1234) and the &quot;SSL
tampering&quot; attack (CVE-2009-2059, CVE-2009-2063,
CVE-2009-2067, CVE-2009-2070).
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="10.00" release="6.1">
          <filename>opera-10.00-6.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="10.00" release="6.1">
          <filename>opera-10.00-6.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="10.00" release="6.1">
          <filename>opera-10.00-6.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="899bbe6cc7075e3e231013492bc6a2b6"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1124">
  <id>bytefx-data-mysql</id>
  <title>mono security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1247659881"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=521184" id="521184" title="bug number 521184" type="bugzilla"/>
  </references>
  <description>The XML signature checker did not impose limits on the
minimum length of HMAC signatures in XML documents.
Attackers could therefore specify a length of e.g. 1 to
make the signature appear valid and therefore effectively
bypass verification of XML documents.
</description>
  <pkglist>
    <collection>
        <package name="bytefx-data-mysql" arch="i586" version="1.9.1" release="6.5">
          <filename>bytefx-data-mysql-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="bytefx-data-mysql" arch="ppc" version="1.9.1" release="6.5">
          <filename>bytefx-data-mysql-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="bytefx-data-mysql" arch="x86_64" version="1.9.1" release="6.5">
          <filename>bytefx-data-mysql-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="ibm-data-db2" arch="i586" version="1.9.1" release="6.5">
          <filename>ibm-data-db2-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="ibm-data-db2" arch="ppc" version="1.9.1" release="6.5">
          <filename>ibm-data-db2-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="ibm-data-db2" arch="x86_64" version="1.9.1" release="6.5">
          <filename>ibm-data-db2-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-complete" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-complete-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-complete" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-complete-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-complete" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-complete-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-core" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-core-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-core" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-core-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-core" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-core-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-core-32bit" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-core-32bit-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-data" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-data-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-data" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-data-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-data" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-data-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-data-firebird" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-data-firebird-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-data-firebird" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-data-firebird-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-data-firebird" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-data-firebird-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-data-oracle" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-data-oracle-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-data-oracle" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-data-oracle-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-data-oracle" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-data-oracle-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-data-postgresql" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-data-postgresql-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-data-postgresql" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-data-postgresql-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-data-postgresql" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-data-postgresql-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-data-sqlite" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-data-sqlite-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-data-sqlite" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-data-sqlite-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-data-sqlite" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-data-sqlite-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-data-sybase" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-data-sybase-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-data-sybase" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-data-sybase-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-data-sybase" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-data-sybase-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-devel" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-devel-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-devel" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-devel-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-devel" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-devel-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-extras" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-extras-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-extras" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-extras-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-extras" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-extras-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-jscript" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-jscript-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-jscript" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-jscript-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-jscript" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-jscript-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-locale-extras" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-locale-extras-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-locale-extras" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-locale-extras-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-locale-extras" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-locale-extras-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-nunit" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-nunit-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-nunit" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-nunit-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-nunit" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-nunit-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-web" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-web-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-web" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-web-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-web" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-web-1.9.1-6.5.x86_64.rpm</filename>
        </package>
        <package name="mono-winforms" arch="i586" version="1.9.1" release="6.5">
          <filename>mono-winforms-1.9.1-6.5.i586.rpm</filename>
        </package>
        <package name="mono-winforms" arch="ppc" version="1.9.1" release="6.5">
          <filename>mono-winforms-1.9.1-6.5.ppc.rpm</filename>
        </package>
        <package name="mono-winforms" arch="x86_64" version="1.9.1" release="6.5">
          <filename>mono-winforms-1.9.1-6.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a5f71fb8bd6354c7d16bd9b2d1645d5c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1187">
  <id>OpenOffice_org</id>
  <title>OpenOffice: fix for various security problems</title>
  <release>openSUSE 11.0</release>
  <issued date="1249936693"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=437666" id="437666" title="bug number 437666" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=514085" id="514085" title="bug number 514085" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=514089" id="514089" title="bug number 514089" type="bugzilla"/>
  </references>
  <description>This update of OpenOffice.org fixes potential buffer
overflow in EMF parser code (CVE-2009-2139, CVE-2009-2140)
(Thanks to Petr Mladek). Additionally Secunia reported an
integer underflow (CVE-2009-0200) and a buffer overflow
(CVE-2009-0201) that could be triggered while parsing Word
documents.
</description>
  <pkglist>
    <collection>
        <package name="OpenOffice_org" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-base-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-base-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-base-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-calc-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-calc-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-calc-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-devel-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-devel-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-devel-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-draw-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-draw-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-draw-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-filters-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-filters-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-filters-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-impress-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-impress-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-impress-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-kde-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-kde-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-kde-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-math-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-math-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-math-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-mono-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-mono-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-mono-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="i586" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-writer-2.4.0.14-1.4.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="ppc" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-writer-2.4.0.14-1.4.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="x86_64" version="2.4.0.14" release="1.4">
          <filename>OpenOffice_org-writer-2.4.0.14-1.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="012991c059eaec5ca5ff8127859c4bd5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1259">
  <id>gnutls</id>
  <title>gnutls: security update for certificate subject verification</title>
  <release>openSUSE 11.0</release>
  <issued date="1251810096"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=528372" id="528372" title="bug number 528372" type="bugzilla"/>
  </references>
  <description>This update of gnutls improves the verification of the
domain/subject names in SSL certificates (CVE-2009-2730).
</description>
  <pkglist>
    <collection>
        <package name="gnutls" arch="i586" version="2.2.2" release="17.9">
          <filename>gnutls-2.2.2-17.9.i586.rpm</filename>
        </package>
        <package name="gnutls" arch="ppc" version="2.2.2" release="17.9">
          <filename>gnutls-2.2.2-17.9.ppc.rpm</filename>
        </package>
        <package name="gnutls" arch="x86_64" version="2.2.2" release="17.9">
          <filename>gnutls-2.2.2-17.9.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="i586" version="2.2.2" release="17.9">
          <filename>libgnutls-devel-2.2.2-17.9.i586.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="ppc" version="2.2.2" release="17.9">
          <filename>libgnutls-devel-2.2.2-17.9.ppc.rpm</filename>
        </package>
        <package name="libgnutls-devel" arch="x86_64" version="2.2.2" release="17.9">
          <filename>libgnutls-devel-2.2.2-17.9.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="i586" version="2.2.2" release="17.9">
          <filename>libgnutls-extra-devel-2.2.2-17.9.i586.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="ppc" version="2.2.2" release="17.9">
          <filename>libgnutls-extra-devel-2.2.2-17.9.ppc.rpm</filename>
        </package>
        <package name="libgnutls-extra-devel" arch="x86_64" version="2.2.2" release="17.9">
          <filename>libgnutls-extra-devel-2.2.2-17.9.x86_64.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="i586" version="2.2.2" release="17.9">
          <filename>libgnutls-extra26-2.2.2-17.9.i586.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="ppc" version="2.2.2" release="17.9">
          <filename>libgnutls-extra26-2.2.2-17.9.ppc.rpm</filename>
        </package>
        <package name="libgnutls-extra26" arch="x86_64" version="2.2.2" release="17.9">
          <filename>libgnutls-extra26-2.2.2-17.9.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26" arch="i586" version="2.2.2" release="17.9">
          <filename>libgnutls26-2.2.2-17.9.i586.rpm</filename>
        </package>
        <package name="libgnutls26" arch="ppc" version="2.2.2" release="17.9">
          <filename>libgnutls26-2.2.2-17.9.ppc.rpm</filename>
        </package>
        <package name="libgnutls26" arch="x86_64" version="2.2.2" release="17.9">
          <filename>libgnutls26-2.2.2-17.9.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26-32bit" arch="x86_64" version="2.2.2" release="17.9">
          <filename>libgnutls26-32bit-2.2.2-17.9.x86_64.rpm</filename>
        </package>
        <package name="libgnutls26-64bit" arch="ppc" version="2.2.2" release="17.9">
          <filename>libgnutls26-64bit-2.2.2-17.9.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3cd8f7387ff8e32db23f2782c6f2382e"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1104">
  <id>yast2-backup</id>
  <title>yast2-backup: After a successful backup a correct message is shown.</title>
  <release>openSUSE 11.0</release>
  <issued date="1247661959"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=490995" id="490995" title="bug number 490995" type="bugzilla"/>
  </references>
  <description>yast2-backup: In some cases after a successful backup a
error message was shown. This bug is fixed by this update.
</description>
  <pkglist>
    <collection>
        <package name="yast2-backup" arch="noarch" version="2.16.7" release="0.1">
          <filename>yast2-backup-2.16.7-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e40be77af2d03aeb1e404e9f87be5d58"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1278">
  <id>libxml</id>
  <title>libxml: XML parsing vulnerability</title>
  <release>openSUSE 11.0</release>
  <issued date="1252427984"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=530661" id="530661" title="bug number 530661" type="bugzilla"/>
  </references>
  <description>This update of libxml does not use pointers after they were
freed anymore. (CVE-2009-2416)  Additionally a stack-based
buffer overflow was fixed while parsing the root XML
document. (CVE-2009-2414)
</description>
  <pkglist>
    <collection>
        <package name="libxml" arch="i586" version="1.8.17" release="489.2">
          <filename>libxml-1.8.17-489.2.i586.rpm</filename>
        </package>
        <package name="libxml" arch="ppc" version="1.8.17" release="489.2">
          <filename>libxml-1.8.17-489.2.ppc.rpm</filename>
        </package>
        <package name="libxml" arch="x86_64" version="1.8.17" release="489.2">
          <filename>libxml-1.8.17-489.2.x86_64.rpm</filename>
        </package>
        <package name="libxml-32bit" arch="x86_64" version="1.8.17" release="489.2">
          <filename>libxml-32bit-1.8.17-489.2.x86_64.rpm</filename>
        </package>
        <package name="libxml-64bit" arch="ppc" version="1.8.17" release="489.2">
          <filename>libxml-64bit-1.8.17-489.2.ppc.rpm</filename>
        </package>
        <package name="libxml-devel" arch="i586" version="1.8.17" release="489.2">
          <filename>libxml-devel-1.8.17-489.2.i586.rpm</filename>
        </package>
        <package name="libxml-devel" arch="ppc" version="1.8.17" release="489.2">
          <filename>libxml-devel-1.8.17-489.2.ppc.rpm</filename>
        </package>
        <package name="libxml-devel" arch="x86_64" version="1.8.17" release="489.2">
          <filename>libxml-devel-1.8.17-489.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a1d993f6a0398f2c0b4e0ce65a7cf70e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1280">
  <id>silc-toolkit</id>
  <title>silc-toolkit: official update fixes several security issues</title>
  <release>openSUSE 11.0</release>
  <issued date="1252428031"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=535841" id="535841" title="bug number 535841" type="bugzilla"/>
  </references>
  <description>This update of slic-toolkit fixes stack-based overflow
while encoding a ASN.1 OID (CVE-2008-7159) and several
format string bugs (CVE-2009-3051, CVE-2008-7160). The
probability to exploit this issues to execute arbitrary
code is high.
</description>
  <pkglist>
    <collection>
        <package name="silc-toolkit" arch="i586" version="1.1.7" release="19.2">
          <filename>silc-toolkit-1.1.7-19.2.i586.rpm</filename>
        </package>
        <package name="silc-toolkit" arch="ppc" version="1.1.7" release="19.2">
          <filename>silc-toolkit-1.1.7-19.2.ppc.rpm</filename>
        </package>
        <package name="silc-toolkit" arch="x86_64" version="1.1.7" release="19.2">
          <filename>silc-toolkit-1.1.7-19.2.x86_64.rpm</filename>
        </package>
        <package name="silc-toolkit-devel" arch="i586" version="1.1.7" release="19.2">
          <filename>silc-toolkit-devel-1.1.7-19.2.i586.rpm</filename>
        </package>
        <package name="silc-toolkit-devel" arch="ppc" version="1.1.7" release="19.2">
          <filename>silc-toolkit-devel-1.1.7-19.2.ppc.rpm</filename>
        </package>
        <package name="silc-toolkit-devel" arch="x86_64" version="1.1.7" release="19.2">
          <filename>silc-toolkit-devel-1.1.7-19.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8aff10152745aafe128363463ebb5010"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1238">
  <id>open-iscsi</id>
  <title>open-iscsi security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1250860377"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=528711" id="528711" title="bug number 528711" type="bugzilla"/>
  </references>
  <description>The iscsi_discovery tool created predictable temporary
files which potentially allowed attackers to overwrite
system files (CVE-2009-1297 ).
</description>
  <pkglist>
    <collection>
        <package name="open-iscsi" arch="i586" version="2.0.869" release="8.2">
          <filename>open-iscsi-2.0.869-8.2.i586.rpm</filename>
        </package>
        <package name="open-iscsi" arch="ppc" version="2.0.869" release="8.2">
          <filename>open-iscsi-2.0.869-8.2.ppc.rpm</filename>
        </package>
        <package name="open-iscsi" arch="x86_64" version="2.0.869" release="8.2">
          <filename>open-iscsi-2.0.869-8.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="75f46c9fd2936d98b45f668341fb8858"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1303">
  <id>MozillaThunderbird</id>
  <title>MozillaThunderbird: Security update to version 2.0.0.23</title>
  <release>openSUSE 11.0</release>
  <issued date="1252970017"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=534782" id="534782" title="bug number 534782" type="bugzilla"/>
  </references>
  <description>Mozilla Thunderbird was updated to version 2.0.0.23.

The release fixes one security issue: MFSA 2009-42 /
CVE-2009-2408: IOActive security researcher Dan Kaminsky
reported a mismatch in the treatment of domain names in SSL
certificates between SSL clients and the Certificate
Authorities (CA) which issue server certificates. In
particular, if a malicious person requested a certificate
for a host name with an invalid null character in it most
CAs would issue the certificate if the requester owned the
domain specified after the null, while most SSL clients
(browsers) ignored that part of the name and used the
unvalidated part in front of the null. This made it
possible for attackers to obtain certificates that would
function for any site they wished to target. These
certificates could be used to intercept and potentially
alter encrypted communication between the client and a
server such as sensitive bank account transactions. This
vulnerability was independently reported to us by
researcher Moxie Marlinspike who also noted that since
Firefox relies on SSL to protect the integrity of security
updates this attack could be used to serve malicious
updates.
</description>
  <pkglist>
    <collection>
        <package name="MozillaThunderbird" arch="i586" version="2.0.0.23" release="0.2">
          <filename>MozillaThunderbird-2.0.0.23-0.2.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="ppc" version="2.0.0.23" release="0.2">
          <filename>MozillaThunderbird-2.0.0.23-0.2.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="x86_64" version="2.0.0.23" release="0.2">
          <filename>MozillaThunderbird-2.0.0.23-0.2.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="i586" version="2.0.0.23" release="0.2">
          <filename>MozillaThunderbird-devel-2.0.0.23-0.2.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="ppc" version="2.0.0.23" release="0.2">
          <filename>MozillaThunderbird-devel-2.0.0.23-0.2.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="x86_64" version="2.0.0.23" release="0.2">
          <filename>MozillaThunderbird-devel-2.0.0.23-0.2.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="i586" version="2.0.0.23" release="0.2">
          <filename>MozillaThunderbird-translations-2.0.0.23-0.2.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="ppc" version="2.0.0.23" release="0.2">
          <filename>MozillaThunderbird-translations-2.0.0.23-0.2.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="x86_64" version="2.0.0.23" release="0.2">
          <filename>MozillaThunderbird-translations-2.0.0.23-0.2.x86_64.rpm</filename>
        </package>
        <package name="hunspell" arch="i586" version="1.2.2" release="15.1">
          <filename>hunspell-1.2.2-15.1.i586.rpm</filename>
        </package>
        <package name="hunspell" arch="ppc" version="1.2.2" release="15.1">
          <filename>hunspell-1.2.2-15.1.ppc.rpm</filename>
        </package>
        <package name="hunspell" arch="x86_64" version="1.2.2" release="15.1">
          <filename>hunspell-1.2.2-15.1.x86_64.rpm</filename>
        </package>
        <package name="hunspell-32bit" arch="x86_64" version="1.2.2" release="15.1">
          <filename>hunspell-32bit-1.2.2-15.1.x86_64.rpm</filename>
        </package>
        <package name="hunspell-64bit" arch="ppc" version="1.2.2" release="15.1">
          <filename>hunspell-64bit-1.2.2-15.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2d6da5b45c1cb52d53132d6454cd0eee"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1298">
  <id>mutt</id>
  <title>mutt: incorrectly handling of \0 character in SSL certificate</title>
  <release>openSUSE 11.0</release>
  <issued date="1252528940"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=537141" id="537141" title="bug number 537141" type="bugzilla"/>
  </references>
  <description>This update of mutt improves the handling of the \0
character in SSL certificates. (CVE-2009-2408 )
</description>
  <pkglist>
    <collection>
        <package name="mutt" arch="i586" version="1.5.17" release="63.2">
          <filename>mutt-1.5.17-63.2.i586.rpm</filename>
        </package>
        <package name="mutt" arch="ppc" version="1.5.17" release="63.2">
          <filename>mutt-1.5.17-63.2.ppc.rpm</filename>
        </package>
        <package name="mutt" arch="x86_64" version="1.5.17" release="63.2">
          <filename>mutt-1.5.17-63.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="801dcfbc71fdd1d72b972337c5ab58a5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1281">
  <id>strongswan</id>
  <title>strongswan security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1252278365"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=525388" id="525388" title="bug number 525388" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=524799" id="524799" title="bug number 524799" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=520582" id="520582" title="bug number 520582" type="bugzilla"/>
  </references>
  <description>The previous fix for a flaw in the ASN.1 parser was
incomplete and had to be reworked.  (CVE-2009-2661) This
could lead to crashes of the pluto IKE daemon.
</description>
  <pkglist>
    <collection>
        <package name="strongswan" arch="i586" version="4.2.1" release="11.13">
          <filename>strongswan-4.2.1-11.13.i586.rpm</filename>
        </package>
        <package name="strongswan" arch="ppc" version="4.2.1" release="11.13">
          <filename>strongswan-4.2.1-11.13.ppc.rpm</filename>
        </package>
        <package name="strongswan" arch="x86_64" version="4.2.1" release="11.13">
          <filename>strongswan-4.2.1-11.13.x86_64.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="i586" version="4.2.1" release="11.13">
          <filename>strongswan-doc-4.2.1-11.13.i586.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="ppc" version="4.2.1" release="11.13">
          <filename>strongswan-doc-4.2.1-11.13.ppc.rpm</filename>
        </package>
        <package name="strongswan-doc" arch="x86_64" version="4.2.1" release="11.13">
          <filename>strongswan-doc-4.2.1-11.13.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1538fd78cacfab3671959251b90700ae"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1285">
  <id>openswan</id>
  <title>openswan security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1252428066"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=525388" id="525388" title="bug number 525388" type="bugzilla"/>
  </references>
  <description>The previous fix for a flaw in the ASN.1 parser was
incomplete and had to be reworked. (CVE-2009-2661) This
could lead to crashes of the pluto IKE daemon.
</description>
  <pkglist>
    <collection>
        <package name="openswan" arch="i586" version="2.4.7" release="130.6">
          <filename>openswan-2.4.7-130.6.i586.rpm</filename>
        </package>
        <package name="openswan" arch="ppc" version="2.4.7" release="130.6">
          <filename>openswan-2.4.7-130.6.ppc.rpm</filename>
        </package>
        <package name="openswan" arch="x86_64" version="2.4.7" release="130.6">
          <filename>openswan-2.4.7-130.6.x86_64.rpm</filename>
        </package>
        <package name="openswan-doc" arch="i586" version="2.4.7" release="130.6">
          <filename>openswan-doc-2.4.7-130.6.i586.rpm</filename>
        </package>
        <package name="openswan-doc" arch="ppc" version="2.4.7" release="130.6">
          <filename>openswan-doc-2.4.7-130.6.ppc.rpm</filename>
        </package>
        <package name="openswan-doc" arch="x86_64" version="2.4.7" release="130.6">
          <filename>openswan-doc-2.4.7-130.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="107f71ab8766bda160f93900e02dfa78"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1312">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Security update to 3.0.14 release</title>
  <release>openSUSE 11.0</release>
  <issued date="1253121928"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=534458" id="534458" title="bug number 534458" type="bugzilla"/>
  </references>
  <description>This update brings Mozilla Firefox to the 3.0.14 stable
release.

It also fixes various security issues: MFSA 2009-47 /
CVE-2009-3069 / CVE-2009-3070 / CVE-2009-3071 /
CVE-2009-3072 / CVE-2009-3073 / CVE-2009-30 /
CVE-2009-3075: Mozilla developers and community members
identified and fixed several stability bugs in the browser
engine used in Firefox and other Mozilla-based products.
Some of these crashes showed evidence of memory corruption
under certain circumstances and we presume that with enough
effort at least some of these could be exploited to run
arbitrary code.

MFSA 2009-48 / CVE-2009-3076: Mozilla security researcher
Jesse Rudermanreported that when security modules were
added or removed via pkcs11.addmodule or
pkcs11.deletemodule, the resulting dialog was not
sufficiently informative. Without sufficient warning, an
attacker could entice a victim to install a malicious
PKCS11 module and affect the cryptographic integrity of the
victim's browser. Security researcher Dan Kaminsky reported
that this issue had not been fixed in Firefox 3.0 and that
under certain circumstances pkcs11 modules could be
installed from a remote location. Firefox 3.5 releases are
not affected.

MFSA 2009-49 / CVE-2009-3077: An anonymous security
researcher, via TippingPoint's Zero Day Initiative,
reported that the columns of a XUL tree element could be
manipulated in a particular way which would leave a pointer
owned by the column pointing to freed memory. An attacker
could potentially use this vulnerability to crash a
victim's browser and run arbitrary code on the victim's
computer.


MFSA 2009-50 / CVE-2009-3078: Security researcher Juan
Pablo Lopez Yacubian reported that the default Windows font
used to render the locationbar and other text fields was
improperly displaying certain Unicode characters with tall
line-height. In such cases the tall line-height would cause
the rest of the text in the input field to be scrolled
vertically out of view. An attacker could use this
vulnerability to prevent a user from seeing the URL of a
malicious site. Corrie Sloot also independently reported
this issue to Mozilla.

MFSA 2009-51 / CVE-2009-3079: Mozilla security researcher
moz_bug_r_a4 reported that the BrowserFeedWriter could be
leveraged to run JavaScript code from web content with
elevated privileges. Using this vulnerability, an attacker
could construct an object containing malicious JavaScript
and cause the FeedWriter to process the object, running the
malicious code with chrome privileges. Thunderbird does not
support the BrowserFeedWriter object and is not vulnerable
in its default configuration. Thunderbird might be
vulnerable if the user has installed any add-on which adds
a similarly implemented feature and then enables JavaScript
in mail messages. This is not the default setting and we
strongly discourage users from running JavaScript in mail.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.14" release="0.1">
          <filename>MozillaFirefox-3.0.14-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.14" release="0.1">
          <filename>MozillaFirefox-3.0.14-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.14" release="0.1">
          <filename>MozillaFirefox-3.0.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.14" release="0.1">
          <filename>MozillaFirefox-translations-3.0.14-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.14" release="0.1">
          <filename>MozillaFirefox-translations-3.0.14-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.14" release="0.1">
          <filename>MozillaFirefox-translations-3.0.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.14-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.14-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.14-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.14-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.14-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.14-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.14-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.14-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.14-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.14-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.14-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.14" release="0.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.14-0.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="755ce4d6ccf40fc2aaaf95a0beac23df"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1286">
  <id>cyrus-imapd</id>
  <title>cyrus-imapd: incorrect use of sizeof() leads to buffer overflow in snprintf()</title>
  <release>openSUSE 11.0</release>
  <issued date="1252428131"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=537128" id="537128" title="bug number 537128" type="bugzilla"/>
  </references>
  <description>This update of cyrus-imapd fixes a buffer overflow that
occurs in snprintf() due to incorrectly calculating the
size of the destination buffer. (CVE-2009-2632)
</description>
  <pkglist>
    <collection>
        <package name="cyrus-imapd" arch="i586" version="2.3.11" release="31.2">
          <filename>cyrus-imapd-2.3.11-31.2.i586.rpm</filename>
        </package>
        <package name="cyrus-imapd" arch="ppc" version="2.3.11" release="31.2">
          <filename>cyrus-imapd-2.3.11-31.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-imapd" arch="x86_64" version="2.3.11" release="31.2">
          <filename>cyrus-imapd-2.3.11-31.2.x86_64.rpm</filename>
        </package>
        <package name="cyrus-imapd-devel" arch="i586" version="2.3.11" release="31.2">
          <filename>cyrus-imapd-devel-2.3.11-31.2.i586.rpm</filename>
        </package>
        <package name="cyrus-imapd-devel" arch="ppc" version="2.3.11" release="31.2">
          <filename>cyrus-imapd-devel-2.3.11-31.2.ppc.rpm</filename>
        </package>
        <package name="cyrus-imapd-devel" arch="x86_64" version="2.3.11" release="31.2">
          <filename>cyrus-imapd-devel-2.3.11-31.2.x86_64.rpm</filename>
        </package>
        <package name="perl-Cyrus-IMAP" arch="i586" version="2.3.11" release="31.2">
          <filename>perl-Cyrus-IMAP-2.3.11-31.2.i586.rpm</filename>
        </package>
        <package name="perl-Cyrus-IMAP" arch="ppc" version="2.3.11" release="31.2">
          <filename>perl-Cyrus-IMAP-2.3.11-31.2.ppc.rpm</filename>
        </package>
        <package name="perl-Cyrus-IMAP" arch="x86_64" version="2.3.11" release="31.2">
          <filename>perl-Cyrus-IMAP-2.3.11-31.2.x86_64.rpm</filename>
        </package>
        <package name="perl-Cyrus-SIEVE-managesieve" arch="i586" version="2.3.11" release="31.2">
          <filename>perl-Cyrus-SIEVE-managesieve-2.3.11-31.2.i586.rpm</filename>
        </package>
        <package name="perl-Cyrus-SIEVE-managesieve" arch="ppc" version="2.3.11" release="31.2">
          <filename>perl-Cyrus-SIEVE-managesieve-2.3.11-31.2.ppc.rpm</filename>
        </package>
        <package name="perl-Cyrus-SIEVE-managesieve" arch="x86_64" version="2.3.11" release="31.2">
          <filename>perl-Cyrus-SIEVE-managesieve-2.3.11-31.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="bc27de2ca066dbc73291508df81e8022"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1301">
  <id>libldap-2_4-2</id>
  <title>openldap2: incorrectly handling of \0 character in SSL certificate</title>
  <release>openSUSE 11.0</release>
  <issued date="1252498302"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=537143" id="537143" title="bug number 537143" type="bugzilla"/>
  </references>
  <description>This update of openldap2 makes SSL certificate verification
more robust against uses of the special character \0 in the
subjects name. (CVE-2009-2408)
</description>
  <pkglist>
    <collection>
        <package name="openldap2" arch="i586" version="2.4.9" release="7.6">
          <filename>openldap2-2.4.9-7.6.i586.rpm</filename>
        </package>
        <package name="openldap2" arch="ppc" version="2.4.9" release="7.6">
          <filename>openldap2-2.4.9-7.6.ppc.rpm</filename>
        </package>
        <package name="openldap2" arch="x86_64" version="2.4.9" release="7.6">
          <filename>openldap2-2.4.9-7.6.x86_64.rpm</filename>
        </package>
        <package name="openldap2-back-meta" arch="i586" version="2.4.9" release="7.6">
          <filename>openldap2-back-meta-2.4.9-7.6.i586.rpm</filename>
        </package>
        <package name="openldap2-back-meta" arch="ppc" version="2.4.9" release="7.6">
          <filename>openldap2-back-meta-2.4.9-7.6.ppc.rpm</filename>
        </package>
        <package name="openldap2-back-meta" arch="x86_64" version="2.4.9" release="7.6">
          <filename>openldap2-back-meta-2.4.9-7.6.x86_64.rpm</filename>
        </package>
        <package name="openldap2-back-perl" arch="i586" version="2.4.9" release="7.6">
          <filename>openldap2-back-perl-2.4.9-7.6.i586.rpm</filename>
        </package>
        <package name="openldap2-back-perl" arch="ppc" version="2.4.9" release="7.6">
          <filename>openldap2-back-perl-2.4.9-7.6.ppc.rpm</filename>
        </package>
        <package name="openldap2-back-perl" arch="x86_64" version="2.4.9" release="7.6">
          <filename>openldap2-back-perl-2.4.9-7.6.x86_64.rpm</filename>
        </package>
        <package name="openldap2-client" arch="i586" version="2.4.9" release="7.6">
          <filename>openldap2-client-2.4.9-7.6.i586.rpm</filename>
        </package>
        <package name="openldap2-client" arch="ppc" version="2.4.9" release="7.6">
          <filename>openldap2-client-2.4.9-7.6.ppc.rpm</filename>
        </package>
        <package name="openldap2-client" arch="x86_64" version="2.4.9" release="7.6">
          <filename>openldap2-client-2.4.9-7.6.x86_64.rpm</filename>
        </package>
        <package name="openldap2-client-32bit" arch="x86_64" version="2.4.9" release="7.6">
          <filename>openldap2-client-32bit-2.4.9-7.6.x86_64.rpm</filename>
        </package>
        <package name="openldap2-client-64bit" arch="ppc" version="2.4.9" release="7.6">
          <filename>openldap2-client-64bit-2.4.9-7.6.ppc.rpm</filename>
        </package>
        <package name="openldap2-devel" arch="i586" version="2.4.9" release="7.6">
          <filename>openldap2-devel-2.4.9-7.6.i586.rpm</filename>
        </package>
        <package name="openldap2-devel" arch="ppc" version="2.4.9" release="7.6">
          <filename>openldap2-devel-2.4.9-7.6.ppc.rpm</filename>
        </package>
        <package name="openldap2-devel" arch="x86_64" version="2.4.9" release="7.6">
          <filename>openldap2-devel-2.4.9-7.6.x86_64.rpm</filename>
        </package>
        <package name="openldap2-devel-32bit" arch="x86_64" version="2.4.9" release="7.6">
          <filename>openldap2-devel-32bit-2.4.9-7.6.x86_64.rpm</filename>
        </package>
        <package name="openldap2-devel-64bit" arch="ppc" version="2.4.9" release="7.6">
          <filename>openldap2-devel-64bit-2.4.9-7.6.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="19373e96e1bed7939c7e0dfc0efd233f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1330">
  <id>java-1_6_0-openjdk</id>
  <title>java-1_6_0-openjdk: security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1253488755"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=537969" id="537969" title="bug number 537969" type="bugzilla"/>
  </references>
  <description>This update of java-1_6_0-openjdk fixes the following
issues:
- CVE-2009-2670: OpenJDK Untrusted applet System properties
  access
- CVE-2009-2671,CVE-2009-2672: OpenJDK Proxy mechanism
  information leaks
- CVE-2009-2673: OpenJDK proxy mechanism allows
  non-authorized socket connections
- CVE-2009-2674: Java Web Start Buffer JPEG processing
  integer overflow
- CVE-2009-2675: Java Web Start Buffer unpack200 processing
  integer overflow
- CVE-2009-2625: OpenJDK XML parsing Denial-Of-Service
- CVE-2009-2475: OpenJDK information leaks in mutable
  variables
- CVE-2009-2476: OpenJDK OpenType checks can be bypassed
- CVE-2009-2689: OpenJDK JDK13Services grants unnecessary
  privileges
- CVE-2009-2690: OpenJDK private variable information
  disclosure
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-openjdk" arch="i586" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-1.6_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="ppc" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-1.6_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="x86_64" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-1.6_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="i586" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-demo-1.6_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="ppc" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-demo-1.6_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="x86_64" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-demo-1.6_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="i586" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-devel-1.6_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="ppc" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-devel-1.6_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="x86_64" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-devel-1.6_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="i586" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-javadoc-1.6_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="ppc" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-javadoc-1.6_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="x86_64" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-javadoc-1.6_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="i586" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-plugin-1.6_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="ppc" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-plugin-1.6_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="x86_64" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-plugin-1.6_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="i586" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-src-1.6_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="ppc" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-src-1.6_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="x86_64" version="1.6_b16" release="0.1">
          <filename>java-1_6_0-openjdk-src-1.6_b16-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8def5011086b2f9a79a320097ee88f79"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1363">
  <id>wireshark</id>
  <title>wireshark security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1254753507"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=541654" id="541654" title="bug number 541654" type="bugzilla"/>
  </references>
  <description>Specially crafted packets could crash the OPC UA dissector
in Wireshark (CVE-2009-3241)
</description>
  <pkglist>
    <collection>
        <package name="wireshark" arch="i586" version="1.0.0" release="17.16">
          <filename>wireshark-1.0.0-17.16.i586.rpm</filename>
        </package>
        <package name="wireshark" arch="ppc" version="1.0.0" release="17.16">
          <filename>wireshark-1.0.0-17.16.ppc.rpm</filename>
        </package>
        <package name="wireshark" arch="x86_64" version="1.0.0" release="17.16">
          <filename>wireshark-1.0.0-17.16.x86_64.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="i586" version="1.0.0" release="17.16">
          <filename>wireshark-devel-1.0.0-17.16.i586.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="ppc" version="1.0.0" release="17.16">
          <filename>wireshark-devel-1.0.0-17.16.ppc.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="x86_64" version="1.0.0" release="17.16">
          <filename>wireshark-devel-1.0.0-17.16.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4c6fb0616c0f857515d6214e8a743afd"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1366">
  <id>dovecot</id>
  <title>dovecot: buffer overflows in sieve plug-in (CVE-2009-2632, CVE-2009-3235)</title>
  <release>openSUSE 11.0</release>
  <issued date="1254935763"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=539876" id="539876" title="bug number 539876" type="bugzilla"/>
  </references>
  <description>This update of dovecot fixes two buffer overflows in the
sieve plug-in (CVE-2009-2632, CVE-2009-3235)
</description>
  <pkglist>
    <collection>
        <package name="dovecot" arch="i586" version="1.0.13" release="24.4">
          <filename>dovecot-1.0.13-24.4.i586.rpm</filename>
        </package>
        <package name="dovecot" arch="ppc" version="1.0.13" release="24.4">
          <filename>dovecot-1.0.13-24.4.ppc.rpm</filename>
        </package>
        <package name="dovecot" arch="x86_64" version="1.0.13" release="24.4">
          <filename>dovecot-1.0.13-24.4.x86_64.rpm</filename>
        </package>
        <package name="dovecot-devel" arch="i586" version="1.0.13" release="24.4">
          <filename>dovecot-devel-1.0.13-24.4.i586.rpm</filename>
        </package>
        <package name="dovecot-devel" arch="ppc" version="1.0.13" release="24.4">
          <filename>dovecot-devel-1.0.13-24.4.ppc.rpm</filename>
        </package>
        <package name="dovecot-devel" arch="x86_64" version="1.0.13" release="24.4">
          <filename>dovecot-devel-1.0.13-24.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cef8c37e542688ee2ca3e259a02c041f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1334">
  <id>apache2-mod_php5</id>
  <title>php5: fixed multiple securityissues</title>
  <release>openSUSE 11.0</release>
  <issued date="1253800093"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=540242" id="540242" title="bug number 540242" type="bugzilla"/>
  </references>
  <description>Multiple issues have been fixed in php5:
- php_openssl_apply_verification_policy() fails to verify
  certificate (CVE-2009-3291)
- &quot;missing sainity checks around exif&quot; (CVE-2009-3292)
- unspecified vulnerability in the imagecolortransparent()
  (CVE-2009-3293)
- denial of service in exif module (CVE-2009-2687)
  Additionally we fixed:
- xmlparse was broken
- read_exif_data() only returns the first letter of UTF-16
  strings
</description>
  <pkglist>
    <collection>
        <package name="apache2-mod_php5" arch="i586" version="5.2.11" release="0.1">
          <filename>apache2-mod_php5-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="ppc" version="5.2.11" release="0.1">
          <filename>apache2-mod_php5-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="x86_64" version="5.2.11" release="0.1">
          <filename>apache2-mod_php5-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-bcmath-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-bcmath-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-bcmath-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-bz2" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-bz2-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-bz2" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-bz2-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-bz2" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-bz2-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-calendar" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-calendar-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-calendar" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-calendar-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-calendar" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-calendar-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ctype" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-ctype-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ctype" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-ctype-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ctype" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-ctype-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-curl" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-curl-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-curl" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-curl-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-curl" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-curl-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dba" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-dba-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dba" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-dba-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dba" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-dba-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dbase" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-dbase-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dbase" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-dbase-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dbase" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-dbase-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-devel" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-devel-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-devel" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-devel-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-devel" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-devel-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dom" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-dom-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dom" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-dom-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dom" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-dom-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-exif" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-exif-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-exif" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-exif-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-exif" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-exif-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-fastcgi-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-fastcgi-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-fastcgi-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ftp" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-ftp-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ftp" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-ftp-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ftp" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-ftp-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gd" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-gd-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gd" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-gd-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gd" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-gd-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gettext" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-gettext-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gettext" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-gettext-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gettext" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-gettext-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gmp" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-gmp-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gmp" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-gmp-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gmp" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-gmp-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-hash" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-hash-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-hash" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-hash-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-hash" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-hash-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-iconv" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-iconv-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-iconv" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-iconv-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-iconv" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-iconv-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-imap" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-imap-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-imap" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-imap-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-imap" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-imap-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-json" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-json-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-json" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-json-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-json" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-json-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ldap" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-ldap-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ldap" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-ldap-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ldap" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-ldap-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-mbstring-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-mbstring-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-mbstring-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-mcrypt-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-mcrypt-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-mcrypt-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mysql" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-mysql-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mysql" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-mysql-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mysql" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-mysql-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-ncurses-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-ncurses-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-ncurses-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-odbc" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-odbc-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-odbc" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-odbc-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-odbc" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-odbc-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-openssl" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-openssl-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-openssl" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-openssl-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-openssl" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-openssl-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-pcntl-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-pcntl-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-pcntl-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pdo" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-pdo-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pdo" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-pdo-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pdo" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-pdo-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pear" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-pear-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pear" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-pear-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pear" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-pear-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-pgsql-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-pgsql-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-pgsql-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-posix" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-posix-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-posix" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-posix-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-posix" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-posix-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pspell" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-pspell-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pspell" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-pspell-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pspell" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-pspell-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-readline" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-readline-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-readline" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-readline-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-readline" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-readline-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-shmop" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-shmop-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-shmop" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-shmop-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-shmop" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-shmop-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-snmp" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-snmp-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-snmp" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-snmp-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-snmp" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-snmp-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-soap" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-soap-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-soap" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-soap-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-soap" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-soap-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sockets" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-sockets-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sockets" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-sockets-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sockets" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-sockets-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-sqlite-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-sqlite-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-sqlite-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-suhosin-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-suhosin-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-suhosin-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-sysvmsg-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-sysvmsg-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-sysvmsg-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-sysvsem-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-sysvsem-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-sysvsem-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-sysvshm-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-sysvshm-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-sysvshm-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-tidy" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-tidy-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-tidy" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-tidy-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-tidy" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-tidy-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-tokenizer-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-tokenizer-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-tokenizer-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-wddx" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-wddx-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-wddx" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-wddx-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-wddx" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-wddx-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-xmlreader-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-xmlreader-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-xmlreader-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-xmlrpc-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-xmlrpc-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-xmlrpc-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-xmlwriter-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-xmlwriter-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-xmlwriter-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xsl" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-xsl-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xsl" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-xsl-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xsl" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-xsl-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-zip" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-zip-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-zip" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-zip-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-zip" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-zip-5.2.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-zlib" arch="i586" version="5.2.11" release="0.1">
          <filename>php5-zlib-5.2.11-0.1.i586.rpm</filename>
        </package>
        <package name="php5-zlib" arch="ppc" version="5.2.11" release="0.1">
          <filename>php5-zlib-5.2.11-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-zlib" arch="x86_64" version="5.2.11" release="0.1">
          <filename>php5-zlib-5.2.11-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a653de9011a155a32e8510c3e40539a7"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1331">
  <id>libnewt0_52</id>
  <title>newt: fixing a heap overflow (CVE-2009-2905)</title>
  <release>openSUSE 11.0</release>
  <issued date="1253713150"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=540930" id="540930" title="bug number 540930" type="bugzilla"/>
  </references>
  <description>A heap-based buffer overflow was found in the way newt used
to process content, to be rendered in text dialog box.
Local attacker could issue a specially-crafted text dialog
box rendering request (direct or via custom application),
leading to denial of service (application crash) or,
potentially, to execution of arbitrary code with the
privileges of the user running the application.

CVE-2009-2905 has been assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="libnewt0_52" arch="i586" version="0.52.9" release="20.2">
          <filename>libnewt0_52-0.52.9-20.2.i586.rpm</filename>
        </package>
        <package name="libnewt0_52" arch="ppc" version="0.52.9" release="20.2">
          <filename>libnewt0_52-0.52.9-20.2.ppc.rpm</filename>
        </package>
        <package name="libnewt0_52" arch="x86_64" version="0.52.9" release="20.2">
          <filename>libnewt0_52-0.52.9-20.2.x86_64.rpm</filename>
        </package>
        <package name="newt" arch="i586" version="0.52.9" release="20.2">
          <filename>newt-0.52.9-20.2.i586.rpm</filename>
        </package>
        <package name="newt" arch="ppc" version="0.52.9" release="20.2">
          <filename>newt-0.52.9-20.2.ppc.rpm</filename>
        </package>
        <package name="newt" arch="x86_64" version="0.52.9" release="20.2">
          <filename>newt-0.52.9-20.2.x86_64.rpm</filename>
        </package>
        <package name="newt-devel" arch="i586" version="0.52.9" release="20.2">
          <filename>newt-devel-0.52.9-20.2.i586.rpm</filename>
        </package>
        <package name="newt-devel" arch="ppc" version="0.52.9" release="20.2">
          <filename>newt-devel-0.52.9-20.2.ppc.rpm</filename>
        </package>
        <package name="newt-devel" arch="x86_64" version="0.52.9" release="20.2">
          <filename>newt-devel-0.52.9-20.2.x86_64.rpm</filename>
        </package>
        <package name="newt-doc" arch="i586" version="0.52.9" release="20.2">
          <filename>newt-doc-0.52.9-20.2.i586.rpm</filename>
        </package>
        <package name="newt-doc" arch="ppc" version="0.52.9" release="20.2">
          <filename>newt-doc-0.52.9-20.2.ppc.rpm</filename>
        </package>
        <package name="newt-doc" arch="x86_64" version="0.52.9" release="20.2">
          <filename>newt-doc-0.52.9-20.2.x86_64.rpm</filename>
        </package>
        <package name="newt-python" arch="i586" version="0.52.9" release="20.2">
          <filename>newt-python-0.52.9-20.2.i586.rpm</filename>
        </package>
        <package name="newt-python" arch="ppc" version="0.52.9" release="20.2">
          <filename>newt-python-0.52.9-20.2.ppc.rpm</filename>
        </package>
        <package name="newt-python" arch="x86_64" version="0.52.9" release="20.2">
          <filename>newt-python-0.52.9-20.2.x86_64.rpm</filename>
        </package>
        <package name="newt-static" arch="i586" version="0.52.9" release="20.2">
          <filename>newt-static-0.52.9-20.2.i586.rpm</filename>
        </package>
        <package name="newt-static" arch="ppc" version="0.52.9" release="20.2">
          <filename>newt-static-0.52.9-20.2.ppc.rpm</filename>
        </package>
        <package name="newt-static" arch="x86_64" version="0.52.9" release="20.2">
          <filename>newt-static-0.52.9-20.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="658e1defc8ffc1599dd6698f8b3cf423"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1364">
  <id>seamonkey</id>
  <title>seamonkey: Security update to version 1.1.18</title>
  <release>openSUSE 11.0</release>
  <issued date="1254937044"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=544910" id="544910" title="bug number 544910" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=515951" id="515951" title="bug number 515951" type="bugzilla"/>
  </references>
  <description>seamonkey was updated to version 1.1.18, fixing various
security issues:

MFSA 2009-43 / CVE-2009-2404 Moxie Marlinspike reported a
heap overflow vulnerability in the code that handles
regular expressions in certificate names. This
vulnerability could be used to compromise the browser and
run arbitrary code by presenting a specially crafted
certificate to the client. This code provided compatibility
with the non-standard regular expression syntax
historically supported by Netscape clients and servers.
With version 3.5 Firefox switched to the more limited
industry-standard wildcard syntax instead and is not
vulnerable to this flaw. 

MFSA 2009-42 / CVE-2009-2408: IOActive security researcher
Dan Kaminsky reported a mismatch in the treatment of domain
names in SSL certificates between SSL clients and the
Certificate Authorities (CA) which issue server
certificates. In particular, if a malicious person
requested a certificate for a host name with an invalid
null character in it most CAs would issue the certificate
if the requester owned the domain specified after the null,
while most SSL clients (browsers) ignored that part of the
name and used the unvalidated part in front of the null.
This made it possible for attackers to obtain certificates
that would function for any site they wished to target.
These certificates could be used to intercept and
potentially alter encrypted communication between the
client and a server such as sensitive bank account
transactions. This vulnerability was independently reported
to us by researcher Moxie Marlinspike who also noted that
since Firefox relies on SSL to protect the integrity of
security updates this attack could be used to serve
malicious updates.  Mozilla would like to thank Dan and the
Microsoft Vulnerability Research team for coordinating a
multiple-vendor response to this problem.

The update also contains the fixes from the skipped 1.1.17
security update: MFSA 2009-17/CVE-2009-1307: Same-origin
violations when Adobe Flash loaded via view-source: scheme 

MFSA 2009-21/CVE-2009-1311:POST data sent to wrong site
when saving web page with embedded frame 

MFSA 2009-24/CVE-2009-1392/CVE-2009-1832/CVE-2009-1833:
Crashes with evidence of memory corruption (rv:1.9.0.11) 

MFSA 2009-26/CVE-2009-1835: Arbitrary domain cookie access
by local file: resources 

MFSA 2009-27/CVE-2009-1836: SSL tampering via non-200
responses to proxy CONNECT requests 

MFSA 2009-29/CVE-2009-1838: Arbitrary code execution using
event listeners attached to an element whose owner document
is null 

MFSA 2009-32/CVE-2009-1841: JavaScript chrome privilege
escalation  MFSA 2009-33/CVE-2009-2210: Crash viewing
multipart/alternative message with text/enhanced part
</description>
  <pkglist>
    <collection>
        <package name="seamonkey" arch="i586" version="1.1.18" release="0.1">
          <filename>seamonkey-1.1.18-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey" arch="ppc" version="1.1.18" release="0.1">
          <filename>seamonkey-1.1.18-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey" arch="x86_64" version="1.1.18" release="0.1">
          <filename>seamonkey-1.1.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="i586" version="1.1.18" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.18-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="ppc" version="1.1.18" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.18-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="x86_64" version="1.1.18" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="i586" version="1.1.18" release="0.1">
          <filename>seamonkey-irc-1.1.18-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="ppc" version="1.1.18" release="0.1">
          <filename>seamonkey-irc-1.1.18-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="x86_64" version="1.1.18" release="0.1">
          <filename>seamonkey-irc-1.1.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="i586" version="1.1.18" release="0.1">
          <filename>seamonkey-mail-1.1.18-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="ppc" version="1.1.18" release="0.1">
          <filename>seamonkey-mail-1.1.18-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="x86_64" version="1.1.18" release="0.1">
          <filename>seamonkey-mail-1.1.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="i586" version="1.1.18" release="0.1">
          <filename>seamonkey-spellchecker-1.1.18-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="ppc" version="1.1.18" release="0.1">
          <filename>seamonkey-spellchecker-1.1.18-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="x86_64" version="1.1.18" release="0.1">
          <filename>seamonkey-spellchecker-1.1.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="i586" version="1.1.18" release="0.1">
          <filename>seamonkey-venkman-1.1.18-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="ppc" version="1.1.18" release="0.1">
          <filename>seamonkey-venkman-1.1.18-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="x86_64" version="1.1.18" release="0.1">
          <filename>seamonkey-venkman-1.1.18-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b6916ee4a2abc8ef3dabb232d1ec37dd"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1416">
  <id>phpMyAdmin</id>
  <title>phpMyAdmin security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1255698106"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=547128" id="547128" title="bug number 547128" type="bugzilla"/>
  </references>
  <description>phpMyAdmin has been updated to version 2.11.9.6 to fix a
cross-site scripting (XSS) issue (CVE-2009-3696) and an SQL
injection vulnerability (CVE-2009-3697).
</description>
  <pkglist>
    <collection>
        <package name="phpMyAdmin" arch="noarch" version="2.11.9.6" release="0.1">
          <filename>phpMyAdmin-2.11.9.6-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ed5800f3f23ff36656d08ea5801f483c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1354">
  <id>cifs-mount</id>
  <title>samba: fixed security issues (CVE-2009-2813, CVE-2009-2948,CVE-2009-2906)</title>
  <release>openSUSE 11.0</release>
  <issued date="1254343114"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=539517" id="539517" title="bug number 539517" type="bugzilla"/>
  </references>
  <description>samba's make_connection_snum() handles certain input
incorrectly, which may lead to disclosure of the root
directory. CVE-2009-2813 has been assigned to this issue.
Additionally an information disclosure vulnerability in
mount.cifs has been fixed (CVE-2009-2948) as well as a DoS
condition (CVE-2009-2906).
</description>
  <pkglist>
    <collection>
        <package name="cifs-mount" arch="i586" version="3.2.4" release="4.7">
          <filename>cifs-mount-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="cifs-mount" arch="ppc" version="3.2.4" release="4.7">
          <filename>cifs-mount-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="cifs-mount" arch="x86_64" version="3.2.4" release="4.7">
          <filename>cifs-mount-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="ldapsmb" arch="i586" version="1.34b" release="195.12">
          <filename>ldapsmb-1.34b-195.12.i586.rpm</filename>
        </package>
        <package name="ldapsmb" arch="ppc" version="1.34b" release="195.12">
          <filename>ldapsmb-1.34b-195.12.ppc.rpm</filename>
        </package>
        <package name="ldapsmb" arch="x86_64" version="1.34b" release="195.12">
          <filename>ldapsmb-1.34b-195.12.x86_64.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="i586" version="3.2.4" release="4.7">
          <filename>libnetapi-devel-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="ppc" version="3.2.4" release="4.7">
          <filename>libnetapi-devel-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libnetapi-devel-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libnetapi0" arch="i586" version="3.2.4" release="4.7">
          <filename>libnetapi0-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libnetapi0" arch="ppc" version="3.2.4" release="4.7">
          <filename>libnetapi0-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libnetapi0" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libnetapi0-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="i586" version="3.2.4" release="4.7">
          <filename>libsmbclient-devel-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="ppc" version="3.2.4" release="4.7">
          <filename>libsmbclient-devel-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libsmbclient-devel-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="i586" version="3.2.4" release="4.7">
          <filename>libsmbclient0-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="ppc" version="3.2.4" release="4.7">
          <filename>libsmbclient0-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libsmbclient0-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-32bit" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libsmbclient0-32bit-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-64bit" arch="ppc" version="3.2.4" release="4.7">
          <filename>libsmbclient0-64bit-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="i586" version="3.2.4" release="4.7">
          <filename>libsmbsharemodes-devel-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="ppc" version="3.2.4" release="4.7">
          <filename>libsmbsharemodes-devel-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libsmbsharemodes-devel-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="i586" version="3.2.4" release="4.7">
          <filename>libsmbsharemodes0-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="ppc" version="3.2.4" release="4.7">
          <filename>libsmbsharemodes0-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libsmbsharemodes0-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="i586" version="3.2.4" release="4.7">
          <filename>libtalloc-devel-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="ppc" version="3.2.4" release="4.7">
          <filename>libtalloc-devel-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libtalloc-devel-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1" arch="i586" version="3.2.4" release="4.7">
          <filename>libtalloc1-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libtalloc1" arch="ppc" version="3.2.4" release="4.7">
          <filename>libtalloc1-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libtalloc1" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libtalloc1-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-32bit" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libtalloc1-32bit-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-64bit" arch="ppc" version="3.2.4" release="4.7">
          <filename>libtalloc1-64bit-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="i586" version="3.2.4" release="4.7">
          <filename>libtdb-devel-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="ppc" version="3.2.4" release="4.7">
          <filename>libtdb-devel-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libtdb-devel-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libtdb1" arch="i586" version="3.2.4" release="4.7">
          <filename>libtdb1-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libtdb1" arch="ppc" version="3.2.4" release="4.7">
          <filename>libtdb1-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libtdb1" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libtdb1-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-32bit" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libtdb1-32bit-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-64bit" arch="ppc" version="3.2.4" release="4.7">
          <filename>libtdb1-64bit-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="i586" version="3.2.4" release="4.7">
          <filename>libwbclient-devel-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="ppc" version="3.2.4" release="4.7">
          <filename>libwbclient-devel-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libwbclient-devel-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0" arch="i586" version="3.2.4" release="4.7">
          <filename>libwbclient0-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="libwbclient0" arch="ppc" version="3.2.4" release="4.7">
          <filename>libwbclient0-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="libwbclient0" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libwbclient0-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-32bit" arch="x86_64" version="3.2.4" release="4.7">
          <filename>libwbclient0-32bit-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-64bit" arch="ppc" version="3.2.4" release="4.7">
          <filename>libwbclient0-64bit-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="samba" arch="i586" version="3.2.4" release="4.7">
          <filename>samba-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="samba" arch="ppc" version="3.2.4" release="4.7">
          <filename>samba-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="samba" arch="x86_64" version="3.2.4" release="4.7">
          <filename>samba-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="samba-32bit" arch="x86_64" version="3.2.4" release="4.7">
          <filename>samba-32bit-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="samba-64bit" arch="ppc" version="3.2.4" release="4.7">
          <filename>samba-64bit-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="i586" version="3.2.4" release="4.7">
          <filename>samba-client-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="samba-client" arch="ppc" version="3.2.4" release="4.7">
          <filename>samba-client-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="x86_64" version="3.2.4" release="4.7">
          <filename>samba-client-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="samba-client-32bit" arch="x86_64" version="3.2.4" release="4.7">
          <filename>samba-client-32bit-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="samba-client-64bit" arch="ppc" version="3.2.4" release="4.7">
          <filename>samba-client-64bit-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="i586" version="3.2.4" release="4.7">
          <filename>samba-devel-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="samba-devel" arch="ppc" version="3.2.4" release="4.7">
          <filename>samba-devel-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="x86_64" version="3.2.4" release="4.7">
          <filename>samba-devel-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="i586" version="3.2.4" release="4.7">
          <filename>samba-krb-printing-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="ppc" version="3.2.4" release="4.7">
          <filename>samba-krb-printing-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="x86_64" version="3.2.4" release="4.7">
          <filename>samba-krb-printing-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind" arch="i586" version="3.2.4" release="4.7">
          <filename>samba-winbind-3.2.4-4.7.i586.rpm</filename>
        </package>
        <package name="samba-winbind" arch="ppc" version="3.2.4" release="4.7">
          <filename>samba-winbind-3.2.4-4.7.ppc.rpm</filename>
        </package>
        <package name="samba-winbind" arch="x86_64" version="3.2.4" release="4.7">
          <filename>samba-winbind-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-32bit" arch="x86_64" version="3.2.4" release="4.7">
          <filename>samba-winbind-32bit-3.2.4-4.7.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-64bit" arch="ppc" version="3.2.4" release="4.7">
          <filename>samba-winbind-64bit-3.2.4-4.7.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e5367e007c9fcb0acf4d2437c235d48e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1375">
  <id>libapr-util1</id>
  <title>libapr1: Fixed overflows in memory allocation.</title>
  <release>openSUSE 11.0</release>
  <issued date="1255306293"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=529591" id="529591" title="bug number 529591" type="bugzilla"/>
  </references>
  <description>This update of libapr-util1 and libapr1 fixes multiple
integer overflows that could probably be used to execute
arbitrary code remotely. (CVE-2009-2412)
</description>
  <pkglist>
    <collection>
        <package name="libapr-util1" arch="i586" version="1.2.12" release="43.4">
          <filename>libapr-util1-1.2.12-43.4.i586.rpm</filename>
        </package>
        <package name="libapr-util1" arch="ppc" version="1.2.12" release="43.4">
          <filename>libapr-util1-1.2.12-43.4.ppc.rpm</filename>
        </package>
        <package name="libapr-util1" arch="x86_64" version="1.2.12" release="43.4">
          <filename>libapr-util1-1.2.12-43.4.x86_64.rpm</filename>
        </package>
        <package name="libapr-util1-64bit" arch="ppc" version="1.2.12" release="43.4">
          <filename>libapr-util1-64bit-1.2.12-43.4.ppc.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-mysql" arch="i586" version="1.2.12" release="43.4">
          <filename>libapr-util1-dbd-mysql-1.2.12-43.4.i586.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-mysql" arch="ppc" version="1.2.12" release="43.4">
          <filename>libapr-util1-dbd-mysql-1.2.12-43.4.ppc.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-mysql" arch="x86_64" version="1.2.12" release="43.4">
          <filename>libapr-util1-dbd-mysql-1.2.12-43.4.x86_64.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-pgsql" arch="i586" version="1.2.12" release="43.4">
          <filename>libapr-util1-dbd-pgsql-1.2.12-43.4.i586.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-pgsql" arch="ppc" version="1.2.12" release="43.4">
          <filename>libapr-util1-dbd-pgsql-1.2.12-43.4.ppc.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-pgsql" arch="x86_64" version="1.2.12" release="43.4">
          <filename>libapr-util1-dbd-pgsql-1.2.12-43.4.x86_64.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-sqlite3" arch="i586" version="1.2.12" release="43.4">
          <filename>libapr-util1-dbd-sqlite3-1.2.12-43.4.i586.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-sqlite3" arch="ppc" version="1.2.12" release="43.4">
          <filename>libapr-util1-dbd-sqlite3-1.2.12-43.4.ppc.rpm</filename>
        </package>
        <package name="libapr-util1-dbd-sqlite3" arch="x86_64" version="1.2.12" release="43.4">
          <filename>libapr-util1-dbd-sqlite3-1.2.12-43.4.x86_64.rpm</filename>
        </package>
        <package name="libapr-util1-devel" arch="i586" version="1.2.12" release="43.4">
          <filename>libapr-util1-devel-1.2.12-43.4.i586.rpm</filename>
        </package>
        <package name="libapr-util1-devel" arch="ppc" version="1.2.12" release="43.4">
          <filename>libapr-util1-devel-1.2.12-43.4.ppc.rpm</filename>
        </package>
        <package name="libapr-util1-devel" arch="x86_64" version="1.2.12" release="43.4">
          <filename>libapr-util1-devel-1.2.12-43.4.x86_64.rpm</filename>
        </package>
        <package name="libapr-util1-devel-64bit" arch="ppc" version="1.2.12" release="43.4">
          <filename>libapr-util1-devel-64bit-1.2.12-43.4.ppc.rpm</filename>
        </package>
        <package name="libapr1" arch="i586" version="1.2.12" release="27.2">
          <filename>libapr1-1.2.12-27.2.i586.rpm</filename>
        </package>
        <package name="libapr1" arch="ppc" version="1.2.12" release="27.2">
          <filename>libapr1-1.2.12-27.2.ppc.rpm</filename>
        </package>
        <package name="libapr1" arch="x86_64" version="1.2.12" release="27.2">
          <filename>libapr1-1.2.12-27.2.x86_64.rpm</filename>
        </package>
        <package name="libapr1-64bit" arch="ppc" version="1.2.12" release="27.2">
          <filename>libapr1-64bit-1.2.12-27.2.ppc.rpm</filename>
        </package>
        <package name="libapr1-devel" arch="i586" version="1.2.12" release="27.2">
          <filename>libapr1-devel-1.2.12-27.2.i586.rpm</filename>
        </package>
        <package name="libapr1-devel" arch="ppc" version="1.2.12" release="27.2">
          <filename>libapr1-devel-1.2.12-27.2.ppc.rpm</filename>
        </package>
        <package name="libapr1-devel" arch="x86_64" version="1.2.12" release="27.2">
          <filename>libapr1-devel-1.2.12-27.2.x86_64.rpm</filename>
        </package>
        <package name="libapr1-devel-64bit" arch="ppc" version="1.2.12" release="27.2">
          <filename>libapr1-devel-64bit-1.2.12-27.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4c67ef023be55d96ff2ab7b625418498"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1420">
  <id>viewvc</id>
  <title>viewvc security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1256087355"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=537154" id="537154" title="bug number 537154" type="bugzilla"/>
  </references>
  <description>Update of viewvc to version 1.0.9 fixes a cross-site
scripting (XSS) problem and enhances filtering of illegal
characters when displaying error messages (CVE-2009-3618,
CVE-2009-3619).
</description>
  <pkglist>
    <collection>
        <package name="viewvc" arch="i586" version="1.0.9" release="0.1">
          <filename>viewvc-1.0.9-0.1.i586.rpm</filename>
        </package>
        <package name="viewvc" arch="ppc" version="1.0.9" release="0.1">
          <filename>viewvc-1.0.9-0.1.ppc.rpm</filename>
        </package>
        <package name="viewvc" arch="x86_64" version="1.0.9" release="0.1">
          <filename>viewvc-1.0.9-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="15ac3566b28ac3dbe9c54dd0bc6f3a43"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1426">
  <id>acroread</id>
  <title>acoread security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1256202656"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=546083" id="546083" title="bug number 546083" type="bugzilla"/>
  </references>
  <description>Adobe Reader has been updated to fix numerous security
vulnerabilities. Some of the vulnerabilities allowed
attackers to potentially execute arbitrary code on the
victim's system via specially crafted PDF files.

(CVE-2007-0048, CVE-2007-0045, CVE-2009-2564,CVE-2009-2979,
CVE-2009-2980, CVE-2009-2981, CVE-2009-2982, CVE-2009-2983,
CVE-2009-2985, CVE-2009-2986, CVE-2009-2988, CVE-2009-2990,
CVE-2009-2991, CVE-2009-2992, CVE-2009-2993, CVE-2009-2994,
CVE-2009-2996, CVE-2009-2997, CVE-2009-2998, CVE-2009-3431,
CVE-2009-3458, CVE-2009-3459, CVE-2009-3462)
</description>
  <pkglist>
    <collection>
        <package name="acroread" arch="i586" version="8.1.7" release="0.1">
          <filename>acroread-8.1.7-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0683ec2df667efa4b179f003d0da49d3"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1419">
  <id>apache2</id>
  <title>apache2: Security fixes for various vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1256081269"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=512583" id="512583" title="bug number 512583" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=513080" id="513080" title="bug number 513080" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=521906" id="521906" title="bug number 521906" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=519194" id="519194" title="bug number 519194" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=539571" id="539571" title="bug number 539571" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=538322" id="538322" title="bug number 538322" type="bugzilla"/>
  </references>
  <description>This update of the Apache webserver fixes various security
issues:
- the option IncludesNOEXEC could be bypassed via .htaccess
  (CVE-2009-1195) 
- mod_proxy could run into an infinite loop when used as
  reverse  proxy (CVE-2009-1890) 
- mod_deflate continued to compress large files even after
  a network connection was closed, causing mod_deflate to
  consume large amounts of CPU (CVE-2009-1891)
- The ap_proxy_ftp_handler function in
  modules/proxy/proxy_ftp.c in the mod_proxy_ftp module
  allows remote FTP servers to cause a denial of service
  (NULL pointer dereference and child process crash) via a
  malformed reply to an EPSV command. (CVE-2009-3094)
- access restriction bypass in mod_proxy_ftp module
  (CVE-2009-3095)
</description>
  <pkglist>
    <collection>
        <package name="apache2" arch="i586" version="2.2.8" release="28.8">
          <filename>apache2-2.2.8-28.8.i586.rpm</filename>
        </package>
        <package name="apache2" arch="ppc" version="2.2.8" release="28.8">
          <filename>apache2-2.2.8-28.8.ppc.rpm</filename>
        </package>
        <package name="apache2" arch="x86_64" version="2.2.8" release="28.8">
          <filename>apache2-2.2.8-28.8.x86_64.rpm</filename>
        </package>
        <package name="apache2-devel" arch="i586" version="2.2.8" release="28.8">
          <filename>apache2-devel-2.2.8-28.8.i586.rpm</filename>
        </package>
        <package name="apache2-devel" arch="ppc" version="2.2.8" release="28.8">
          <filename>apache2-devel-2.2.8-28.8.ppc.rpm</filename>
        </package>
        <package name="apache2-devel" arch="x86_64" version="2.2.8" release="28.8">
          <filename>apache2-devel-2.2.8-28.8.x86_64.rpm</filename>
        </package>
        <package name="apache2-doc" arch="i586" version="2.2.8" release="28.8">
          <filename>apache2-doc-2.2.8-28.8.i586.rpm</filename>
        </package>
        <package name="apache2-doc" arch="ppc" version="2.2.8" release="28.8">
          <filename>apache2-doc-2.2.8-28.8.ppc.rpm</filename>
        </package>
        <package name="apache2-doc" arch="x86_64" version="2.2.8" release="28.8">
          <filename>apache2-doc-2.2.8-28.8.x86_64.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="i586" version="2.2.8" release="28.8">
          <filename>apache2-example-pages-2.2.8-28.8.i586.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="ppc" version="2.2.8" release="28.8">
          <filename>apache2-example-pages-2.2.8-28.8.ppc.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="x86_64" version="2.2.8" release="28.8">
          <filename>apache2-example-pages-2.2.8-28.8.x86_64.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="i586" version="2.2.8" release="28.8">
          <filename>apache2-prefork-2.2.8-28.8.i586.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="ppc" version="2.2.8" release="28.8">
          <filename>apache2-prefork-2.2.8-28.8.ppc.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="x86_64" version="2.2.8" release="28.8">
          <filename>apache2-prefork-2.2.8-28.8.x86_64.rpm</filename>
        </package>
        <package name="apache2-utils" arch="i586" version="2.2.8" release="28.8">
          <filename>apache2-utils-2.2.8-28.8.i586.rpm</filename>
        </package>
        <package name="apache2-utils" arch="ppc" version="2.2.8" release="28.8">
          <filename>apache2-utils-2.2.8-28.8.ppc.rpm</filename>
        </package>
        <package name="apache2-utils" arch="x86_64" version="2.2.8" release="28.8">
          <filename>apache2-utils-2.2.8-28.8.x86_64.rpm</filename>
        </package>
        <package name="apache2-worker" arch="i586" version="2.2.8" release="28.8">
          <filename>apache2-worker-2.2.8-28.8.i586.rpm</filename>
        </package>
        <package name="apache2-worker" arch="ppc" version="2.2.8" release="28.8">
          <filename>apache2-worker-2.2.8-28.8.ppc.rpm</filename>
        </package>
        <package name="apache2-worker" arch="x86_64" version="2.2.8" release="28.8">
          <filename>apache2-worker-2.2.8-28.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f0abbbe7e02dc9658960881f164c3a1b"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1421">
  <id>pinentry</id>
  <title>pinentry: Use pinentry-curses when pinentry-qt/gtk-2 is not installed.</title>
  <release>openSUSE 11.0</release>
  <issued date="1256166994"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=544365" id="544365" title="bug number 544365" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=441084" id="441084" title="bug number 441084" type="bugzilla"/>
  </references>
  <description>When pinentry is invoked in graphical session (xterm) and
pinentry-qt/gtk-2 is not installed, pinentry fails while it
could use pinentry-curses instead. (#544365, #441084)
</description>
  <pkglist>
    <collection>
        <package name="pinentry" arch="i586" version="0.7.5" release="18.3">
          <filename>pinentry-0.7.5-18.3.i586.rpm</filename>
        </package>
        <package name="pinentry" arch="ppc" version="0.7.5" release="18.3">
          <filename>pinentry-0.7.5-18.3.ppc.rpm</filename>
        </package>
        <package name="pinentry" arch="x86_64" version="0.7.5" release="18.3">
          <filename>pinentry-0.7.5-18.3.x86_64.rpm</filename>
        </package>
        <package name="pinentry-gtk2" arch="i586" version="0.7.5" release="14.2">
          <filename>pinentry-gtk2-0.7.5-14.2.i586.rpm</filename>
        </package>
        <package name="pinentry-gtk2" arch="ppc" version="0.7.5" release="14.2">
          <filename>pinentry-gtk2-0.7.5-14.2.ppc.rpm</filename>
        </package>
        <package name="pinentry-gtk2" arch="x86_64" version="0.7.5" release="14.2">
          <filename>pinentry-gtk2-0.7.5-14.2.x86_64.rpm</filename>
        </package>
        <package name="pinentry-qt" arch="i586" version="0.7.5" release="14.2">
          <filename>pinentry-qt-0.7.5-14.2.i586.rpm</filename>
        </package>
        <package name="pinentry-qt" arch="ppc" version="0.7.5" release="14.2">
          <filename>pinentry-qt-0.7.5-14.2.ppc.rpm</filename>
        </package>
        <package name="pinentry-qt" arch="x86_64" version="0.7.5" release="14.2">
          <filename>pinentry-qt-0.7.5-14.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="61e8a7944bfbd369b915673c77e34371"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1377">
  <id>libneon-devel</id>
  <title>neon security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1255352818"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=528370" id="528370" title="bug number 528370" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=532345" id="532345" title="bug number 532345" type="bugzilla"/>
  </references>
  <description>neon did not properly handle embedded NUL characters in
X.509 certificates when comparing host names. Attackers
could exploit that to spoof SSL servers (CVE-2009-2408).

Specially crafted XML documents that contain a large number
of nested entity references could cause neon to consume
large amounts of CPU and memory (CVE-2009-2473).
</description>
  <pkglist>
    <collection>
        <package name="libneon-devel" arch="i586" version="0.28.2" release="17.4">
          <filename>libneon-devel-0.28.2-17.4.i586.rpm</filename>
        </package>
        <package name="libneon-devel" arch="ppc" version="0.28.2" release="17.4">
          <filename>libneon-devel-0.28.2-17.4.ppc.rpm</filename>
        </package>
        <package name="libneon-devel" arch="x86_64" version="0.28.2" release="17.4">
          <filename>libneon-devel-0.28.2-17.4.x86_64.rpm</filename>
        </package>
        <package name="libneon27" arch="i586" version="0.28.2" release="17.4">
          <filename>libneon27-0.28.2-17.4.i586.rpm</filename>
        </package>
        <package name="libneon27" arch="ppc" version="0.28.2" release="17.4">
          <filename>libneon27-0.28.2-17.4.ppc.rpm</filename>
        </package>
        <package name="libneon27" arch="x86_64" version="0.28.2" release="17.4">
          <filename>libneon27-0.28.2-17.4.x86_64.rpm</filename>
        </package>
        <package name="libneon27-32bit" arch="x86_64" version="0.28.2" release="17.4">
          <filename>libneon27-32bit-0.28.2-17.4.x86_64.rpm</filename>
        </package>
        <package name="libneon27-64bit" arch="ppc" version="0.28.2" release="17.4">
          <filename>libneon27-64bit-0.28.2-17.4.ppc.rpm</filename>
        </package>
        <package name="neon" arch="i586" version="0.28.2" release="17.4">
          <filename>neon-0.28.2-17.4.i586.rpm</filename>
        </package>
        <package name="neon" arch="ppc" version="0.28.2" release="17.4">
          <filename>neon-0.28.2-17.4.ppc.rpm</filename>
        </package>
        <package name="neon" arch="x86_64" version="0.28.2" release="17.4">
          <filename>neon-0.28.2-17.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6a147d729df4754488d44340b45cae21"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1337">
  <id>cyrus-imapd</id>
  <title>cyrus-imapd: more buffer overflows in sieve code</title>
  <release>openSUSE 11.0</release>
  <issued date="1253796284"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=539877" id="539877" title="bug number 539877" type="bugzilla"/>
  </references>
  <description>This update fixes another buffer overflow in the Sieve code
(CVE-2009-3235). This can be exploited by users allowed to
use their own sieve scripts to execute arbitrary code
remotely. Additionally the handling of long headers was
improved.
</description>
  <pkglist>
    <collection>
        <package name="cyrus-imapd" arch="i586" version="2.3.11" release="31.4">
          <filename>cyrus-imapd-2.3.11-31.4.i586.rpm</filename>
        </package>
        <package name="cyrus-imapd" arch="ppc" version="2.3.11" release="31.4">
          <filename>cyrus-imapd-2.3.11-31.4.ppc.rpm</filename>
        </package>
        <package name="cyrus-imapd" arch="x86_64" version="2.3.11" release="31.4">
          <filename>cyrus-imapd-2.3.11-31.4.x86_64.rpm</filename>
        </package>
        <package name="cyrus-imapd-devel" arch="i586" version="2.3.11" release="31.4">
          <filename>cyrus-imapd-devel-2.3.11-31.4.i586.rpm</filename>
        </package>
        <package name="cyrus-imapd-devel" arch="ppc" version="2.3.11" release="31.4">
          <filename>cyrus-imapd-devel-2.3.11-31.4.ppc.rpm</filename>
        </package>
        <package name="cyrus-imapd-devel" arch="x86_64" version="2.3.11" release="31.4">
          <filename>cyrus-imapd-devel-2.3.11-31.4.x86_64.rpm</filename>
        </package>
        <package name="perl-Cyrus-IMAP" arch="i586" version="2.3.11" release="31.4">
          <filename>perl-Cyrus-IMAP-2.3.11-31.4.i586.rpm</filename>
        </package>
        <package name="perl-Cyrus-IMAP" arch="ppc" version="2.3.11" release="31.4">
          <filename>perl-Cyrus-IMAP-2.3.11-31.4.ppc.rpm</filename>
        </package>
        <package name="perl-Cyrus-IMAP" arch="x86_64" version="2.3.11" release="31.4">
          <filename>perl-Cyrus-IMAP-2.3.11-31.4.x86_64.rpm</filename>
        </package>
        <package name="perl-Cyrus-SIEVE-managesieve" arch="i586" version="2.3.11" release="31.4">
          <filename>perl-Cyrus-SIEVE-managesieve-2.3.11-31.4.i586.rpm</filename>
        </package>
        <package name="perl-Cyrus-SIEVE-managesieve" arch="ppc" version="2.3.11" release="31.4">
          <filename>perl-Cyrus-SIEVE-managesieve-2.3.11-31.4.ppc.rpm</filename>
        </package>
        <package name="perl-Cyrus-SIEVE-managesieve" arch="x86_64" version="2.3.11" release="31.4">
          <filename>perl-Cyrus-SIEVE-managesieve-2.3.11-31.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1a7863c7874b584a9a98c947bb617ef2"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1494">
  <id>timezone</id>
  <title>Timezone data update</title>
  <release>openSUSE 11.0</release>
  <issued date="1257167968"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=548413" id="548413" title="bug number 548413" type="bugzilla"/>
  </references>
  <description>- update data to 2009p:
  * DST changes: Asia/Karachi, Asia/Dhaka, America/Argentina
</description>
  <pkglist>
    <collection>
        <package name="timezone" arch="i586" version="2009p" release="1.1">
          <filename>timezone-2009p-1.1.i586.rpm</filename>
        </package>
        <package name="timezone" arch="ppc" version="2009p" release="1.1">
          <filename>timezone-2009p-1.1.ppc.rpm</filename>
        </package>
        <package name="timezone" arch="x86_64" version="2009p" release="1.1">
          <filename>timezone-2009p-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="26d6caf01ce1bc1bd09adac2dd4b1e66"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1499">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Security update to 3.0.0.15</title>
  <release>openSUSE 11.0</release>
  <issued date="1257243140"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=545277" id="545277" title="bug number 545277" type="bugzilla"/>
  </references>
  <description>The Mozilla Firefox browser was updated to version 3.0.0.15
to fix various bugs and security issues.

Following security issues have been fixed: MFSA 2009-52 /
CVE-2009-3370: Security researcher Paul Stone reported that
a user's form history, both from web content as well as the
smart location bar, was vulnerable to theft. A malicious
web page could synthesize events such as mouse focus and
key presses on behalf of the victim and trick the browser
into auto-filling the form fields with history entries and
then reading the entries.

MFSA 2009-53 / CVE-2009-3274: Security researcher Jeremy
Brown reported that the file naming scheme used for
downloading a file which already exists in the downloads
folder is predictable. If an attacker had local access to a
victim's computer and knew the name of a file the victim
intended to open through the Download Manager, he could use
this vulnerability to place a malicious file in the
world-writable directory used to save temporary downloaded
files and cause the browser to choose the incorrect file
when opening it. Since this attack requires local access to
the victim's machine, the severity of this vulnerability
was determined to be low.

MFSA 2009-54 / CVE-2009-3371: Security researcher Orlando
Berrera of Sec Theory reported that recursive creation of
JavaScript web-workers can be used to create a set of
objects whose memory could be freed prior to their use.
These conditions often result in a crash which could
potentially be used by an attacker to run arbitrary code on
a victim's computer.

MFSA 2009-55 / CVE-2009-3372: Security researcher Marco C.
reported a flaw in the parsing of regular expressions used
in Proxy Auto-configuration (PAC) files. In certain cases
this flaw could be used by an attacker to crash a victim's
browser and run arbitrary code on their computer. Since
this vulnerability requires the victim to have PAC
configured in their environment with specific regular
expresssions which can trigger the crash, the severity of
the issue was determined to be moderate.

MFSA 2009-56 / CVE-2009-3373: Security research firm
iDefense reported that researcher regenrecht discovered a
heap-based buffer overflow in Mozilla's GIF image parser.
This vulnerability could potentially be used by an attacker
to crash a victim's browser and run arbitrary code on their
computer.

MFSA 2009-57 / CVE-2009-3374: Mozilla security researcher
moz_bug_r_a4 reported that the XPCOM utility
XPCVariant::VariantDataToJS unwrapped doubly-wrapped
objects before returning them to chrome callers. This could
result in chrome privileged code calling methods on an
object which had previously been created or modified by web
content, potentially executing malicious JavaScript code
with chrome privileges.


MFSA 2009-59 / CVE-2009-1563: Security researcher Alin Rad
Pop of Secunia Research reported a heap-based buffer
overflow in Mozilla's string to floating point number
conversion routines. Using this vulnerability an attacker
could craft some malicious JavaScript code containing a
very long string to be converted to a floating point number
which would result in improper memory allocation and the
execution of an arbitrary memory location. This
vulnerability could thus be leveraged by the attacker to
run arbitrary code on a victim's computer.

MFSA 2009-61 / CVE-2009-3375: Security researcher Gregory
Fleischer reported that text within a selection on a web
page can be read by JavaScript in a different domain using
the document.getSelection function, violating the
same-origin policy. Since this vulnerability requires user
interaction to exploit, its severity was determined to be
moderate.


MFSA 2009-62 / CVE-2009-3376: Mozilla security researchers
Jesse Ruderman and Sid Stamm reported that when downloading
a file containing a right-to-left override character (RTL)
in the filename, the name displayed in the dialog title bar
conflicts with the name of the file shown in the dialog
body. An attacker could use this vulnerability to obfuscate
the name and file extension of a file to be downloaded and
opened, potentially causing a user to run an executable
file when they expected to open a non-executable file.

MFSA 2009-64 / CVE-2009-3380 / CVE-2009-3381 /
CVE-2009-3382 / CVE-2009-3383: Mozilla developers and
community members identified and fixed several stability
bugs in the browser engine used in Firefox and other
Mozilla-based products. Some of these crashes showed
evidence of memory corruption under certain circumstances
and we presume that with enough effort at least some of
these could be exploited to run arbitrary code.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.15" release="0.1">
          <filename>MozillaFirefox-3.0.15-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.15" release="0.1">
          <filename>MozillaFirefox-3.0.15-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.15" release="0.1">
          <filename>MozillaFirefox-3.0.15-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.15" release="0.1">
          <filename>MozillaFirefox-translations-3.0.15-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.15" release="0.1">
          <filename>MozillaFirefox-translations-3.0.15-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.15" release="0.1">
          <filename>MozillaFirefox-translations-3.0.15-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.15-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.15-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.15-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.15-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.15-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.15-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.15-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.15-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.15-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.15-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.15-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.15-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.15-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.15-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.15-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.15-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.15-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.15" release="0.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.15-0.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d429e340ae88e5a9f565a801fa3f9854"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1490">
  <id>expat</id>
  <title>expat security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1256897938"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550664" id="550664" title="bug number 550664" type="bugzilla"/>
  </references>
  <description>Specially crafted XML documents could make expat run into
an enless loop, therefore locking up applications using
expat (CVE-2009-3720).
</description>
  <pkglist>
    <collection>
        <package name="expat" arch="i586" version="2.0.1" release="62.2">
          <filename>expat-2.0.1-62.2.i586.rpm</filename>
        </package>
        <package name="expat" arch="ppc" version="2.0.1" release="62.2">
          <filename>expat-2.0.1-62.2.ppc.rpm</filename>
        </package>
        <package name="expat" arch="x86_64" version="2.0.1" release="62.2">
          <filename>expat-2.0.1-62.2.x86_64.rpm</filename>
        </package>
        <package name="libexpat-devel" arch="i586" version="2.0.1" release="62.2">
          <filename>libexpat-devel-2.0.1-62.2.i586.rpm</filename>
        </package>
        <package name="libexpat-devel" arch="ppc" version="2.0.1" release="62.2">
          <filename>libexpat-devel-2.0.1-62.2.ppc.rpm</filename>
        </package>
        <package name="libexpat-devel" arch="x86_64" version="2.0.1" release="62.2">
          <filename>libexpat-devel-2.0.1-62.2.x86_64.rpm</filename>
        </package>
        <package name="libexpat1" arch="i586" version="2.0.1" release="62.2">
          <filename>libexpat1-2.0.1-62.2.i586.rpm</filename>
        </package>
        <package name="libexpat1" arch="ppc" version="2.0.1" release="62.2">
          <filename>libexpat1-2.0.1-62.2.ppc.rpm</filename>
        </package>
        <package name="libexpat1" arch="x86_64" version="2.0.1" release="62.2">
          <filename>libexpat1-2.0.1-62.2.x86_64.rpm</filename>
        </package>
        <package name="libexpat1-32bit" arch="x86_64" version="2.0.1" release="62.2">
          <filename>libexpat1-32bit-2.0.1-62.2.x86_64.rpm</filename>
        </package>
        <package name="libexpat1-64bit" arch="ppc" version="2.0.1" release="62.2">
          <filename>libexpat1-64bit-2.0.1-62.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="75d26deab5ae41117b9e9fbccb1c5244"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1479">
  <id>apache2-mod_jk</id>
  <title>apache2-mod_jk security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1256747514"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=493575" id="493575" title="bug number 493575" type="bugzilla"/>
  </references>
  <description>Certain HTTP request could confuse the JK connector in
Apache Tomcat which could result in a user seeing responses
destined for other users (CVE-2008-5519).
</description>
  <pkglist>
    <collection>
        <package name="apache2-mod_jk" arch="i586" version="1.2.21" release="129.2">
          <filename>apache2-mod_jk-1.2.21-129.2.i586.rpm</filename>
        </package>
        <package name="apache2-mod_jk" arch="ppc" version="1.2.21" release="129.2">
          <filename>apache2-mod_jk-1.2.21-129.2.ppc.rpm</filename>
        </package>
        <package name="apache2-mod_jk" arch="x86_64" version="1.2.21" release="129.2">
          <filename>apache2-mod_jk-1.2.21-129.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9ca8a268825abc5af253fffbb2888dd8"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1510">
  <id>mozilla-nspr</id>
  <title>mozilla-nspr: Security update to 4.8.2</title>
  <release>openSUSE 11.0</release>
  <issued date="1257335720"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=546371" id="546371" title="bug number 546371" type="bugzilla"/>
  </references>
  <description>This update fixes a bug in the Mozilla NSPR helper
libraries, which could be used by remote attackers to
potentially execute code via javascript vectors.

MFSA 2009-59 / CVE-2009-1563: Security researcher Alin Rad
Pop of Secunia Research reported a heap-based buffer
overflow in Mozilla's string to floating point number
conversion routines. Using this vulnerability an attacker
could craft some malicious JavaScript code containing a
very long string to be converted to a floating point number
which would result in improper memory allocation and the
execution of an arbitrary memory location. This
vulnerability could thus be leveraged by the attacker to
run arbitrary code on a victim's computer.
</description>
  <pkglist>
    <collection>
        <package name="mozilla-nspr" arch="i586" version="4.8.2" release="1.1">
          <filename>mozilla-nspr-4.8.2-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-nspr" arch="ppc" version="4.8.2" release="1.1">
          <filename>mozilla-nspr-4.8.2-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nspr" arch="x86_64" version="4.8.2" release="1.1">
          <filename>mozilla-nspr-4.8.2-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nspr-32bit" arch="x86_64" version="4.8.2" release="1.1">
          <filename>mozilla-nspr-32bit-4.8.2-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nspr-64bit" arch="ppc" version="4.8.2" release="1.1">
          <filename>mozilla-nspr-64bit-4.8.2-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nspr-devel" arch="i586" version="4.8.2" release="1.1">
          <filename>mozilla-nspr-devel-4.8.2-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-nspr-devel" arch="ppc" version="4.8.2" release="1.1">
          <filename>mozilla-nspr-devel-4.8.2-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nspr-devel" arch="x86_64" version="4.8.2" release="1.1">
          <filename>mozilla-nspr-devel-4.8.2-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ddc0dce75cdd93e43e1609da50c8406b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1397">
  <id>xpdf</id>
  <title>xpdf security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1256336984"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=539875" id="539875" title="bug number 539875" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=543410" id="543410" title="bug number 543410" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=534764" id="534764" title="bug number 534764" type="bugzilla"/>
  </references>
  <description>Specially crafted PDF files could cause buffer overflows in
xpdf when viewing such a document (CVE-2009-3603,
CVE-2009-3604, CVE-2009-3605, CVE-2009-3606, CVE-2009-3608,
CVE-2009-3609).
</description>
  <pkglist>
    <collection>
        <package name="xpdf" arch="i586" version="3.02" release="95.9">
          <filename>xpdf-3.02-95.9.i586.rpm</filename>
        </package>
        <package name="xpdf" arch="ppc" version="3.02" release="95.9">
          <filename>xpdf-3.02-95.9.ppc.rpm</filename>
        </package>
        <package name="xpdf" arch="x86_64" version="3.02" release="95.9">
          <filename>xpdf-3.02-95.9.x86_64.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="i586" version="3.02" release="95.9">
          <filename>xpdf-tools-3.02-95.9.i586.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="ppc" version="3.02" release="95.9">
          <filename>xpdf-tools-3.02-95.9.ppc.rpm</filename>
        </package>
        <package name="xpdf-tools" arch="x86_64" version="3.02" release="95.9">
          <filename>xpdf-tools-3.02-95.9.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="77da8b9ebc7fffcff2363f6559ad0c99"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1530">
  <id>struts</id>
  <title>struts: access rights to /etc/tomcat6 directory not set right</title>
  <release>openSUSE 11.0</release>
  <issued date="1257792150"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=424675" id="424675" title="bug number 424675" type="bugzilla"/>
  </references>
  <description>This update of struts fixes a regression caused by the last
security update.
</description>
  <pkglist>
    <collection>
        <package name="struts" arch="noarch" version="1.2.9" release="198.4">
          <filename>struts-1.2.9-198.4.noarch.rpm</filename>
        </package>
        <package name="struts-javadoc" arch="noarch" version="1.2.9" release="198.4">
          <filename>struts-javadoc-1.2.9-198.4.noarch.rpm</filename>
        </package>
        <package name="struts-manual" arch="noarch" version="1.2.9" release="198.4">
          <filename>struts-manual-1.2.9-198.4.noarch.rpm</filename>
        </package>
        <package name="struts-webapps-tomcat6" arch="noarch" version="1.2.9" release="198.4">
          <filename>struts-webapps-tomcat6-1.2.9-198.4.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c9f84e41a039525ebc68632da6edb55a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1532">
  <id>opera</id>
  <title>opera: crosss site scripting attack via RSS and code execution via crafted domain names</title>
  <release>openSUSE 11.0</release>
  <issued date="1257788819"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=541665" id="541665" title="bug number 541665" type="bugzilla"/>
  </references>
  <description>Version upgrade of Opera to 10.1 to fix:
- CVE-2009-3265: CVSS v2 Base Score: 4.3 CVE-2009-3266:
  CVSS v2 Base Score: 4.3 two XSS attacks via RSS/Atom
- CVE-2009-3831: CVSS v2 Base Score: 9.3 possible remote
  arbitrary code execution via crafted domain names
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="10.01" release="1.1">
          <filename>opera-10.01-1.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="10.01" release="1.1">
          <filename>opera-10.01-1.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="10.01" release="1.1">
          <filename>opera-10.01-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="4ebc9273e381dc612cf56ce38116b6a6"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1529">
  <id>java-1_5_0-sun</id>
  <title>java-1_5_0-sun: u22 update</title>
  <release>openSUSE 11.0</release>
  <issued date="1257727391"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=552581" id="552581" title="bug number 552581" type="bugzilla"/>
  </references>
  <description>java-1_5_0-sun u22 update fixes the following security bugs:
- CVE-2009-3864: CVSS v2 Base Score: 7.5
- CVE-2009-3867: CVSS v2 Base Score: 9.3
- CVE-2009-3868: CVSS v2 Base Score: 9.3
- CVE-2009-3869: CVSS v2 Base Score: 9.3
- CVE-2009-3871: CVSS v2 Base Score: 9.3
- CVE-2009-3872: CVSS v2 Base Score: 10.0
- CVE-2009-3873: CVSS v2 Base Score: n/a
- CVE-2009-3874: CVSS v2 Base Score: 9.3
- CVE-2009-3875: CVSS v2 Base Score: 5.0
- CVE-2009-3876: CVSS v2 Base Score: 5.0
- CVE-2009-3877: CVSS v2 Base Score: 5.0 For bug details
  use the CVE-ID to query the Mitre database at
  http://cve.mitre.org/cve please.
</description>
  <pkglist>
    <collection>
        <package name="java-1_5_0-sun" arch="i586" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-1.5.0_update22-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun" arch="x86_64" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-1.5.0_update22-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="i586" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update22-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-alsa" arch="x86_64" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-alsa-1.5.0_update22-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="i586" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update22-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-demo" arch="x86_64" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-demo-1.5.0_update22-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="i586" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update22-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-devel" arch="x86_64" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-devel-1.5.0_update22-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="i586" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update22-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-jdbc" arch="x86_64" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-jdbc-1.5.0_update22-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-plugin" arch="i586" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-plugin-1.5.0_update22-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="i586" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-src-1.5.0_update22-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_5_0-sun-src" arch="x86_64" version="1.5.0_update22" release="0.1">
          <filename>java-1_5_0-sun-src-1.5.0_update22-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="419dc0eb8b2717b0d7d371167808d564"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1489">
  <id>clamav</id>
  <title>ClamAV 0.95.3</title>
  <release>openSUSE 11.0</release>
  <issued date="1256919792"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550929" id="550929" title="bug number 550929" type="bugzilla"/>
  </references>
  <description>ClamAV bugfix update to version 0.95.3
</description>
  <pkglist>
    <collection>
        <package name="clamav" arch="i586" version="0.95.3" release="0.1">
          <filename>clamav-0.95.3-0.1.i586.rpm</filename>
        </package>
        <package name="clamav" arch="ppc" version="0.95.3" release="0.1">
          <filename>clamav-0.95.3-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav" arch="x86_64" version="0.95.3" release="0.1">
          <filename>clamav-0.95.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="clamav-db" arch="i586" version="0.95.3" release="0.1">
          <filename>clamav-db-0.95.3-0.1.i586.rpm</filename>
        </package>
        <package name="clamav-db" arch="ppc" version="0.95.3" release="0.1">
          <filename>clamav-db-0.95.3-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav-db" arch="x86_64" version="0.95.3" release="0.1">
          <filename>clamav-db-0.95.3-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="833958b7059e178a154c45274afaf446"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1506">
  <id>cups</id>
  <title>cups security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1257295684"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=548317" id="548317" title="bug number 548317" type="bugzilla"/>
  </references>
  <description>The cups web interface was prone to Cross-Site   Scripting
(XSS) problems (CVE-2009-2820).
</description>
  <pkglist>
    <collection>
        <package name="cups" arch="i586" version="1.3.7" release="25.12">
          <filename>cups-1.3.7-25.12.i586.rpm</filename>
        </package>
        <package name="cups" arch="ppc" version="1.3.7" release="25.12">
          <filename>cups-1.3.7-25.12.ppc.rpm</filename>
        </package>
        <package name="cups" arch="x86_64" version="1.3.7" release="25.12">
          <filename>cups-1.3.7-25.12.x86_64.rpm</filename>
        </package>
        <package name="cups-client" arch="i586" version="1.3.7" release="25.12">
          <filename>cups-client-1.3.7-25.12.i586.rpm</filename>
        </package>
        <package name="cups-client" arch="ppc" version="1.3.7" release="25.12">
          <filename>cups-client-1.3.7-25.12.ppc.rpm</filename>
        </package>
        <package name="cups-client" arch="x86_64" version="1.3.7" release="25.12">
          <filename>cups-client-1.3.7-25.12.x86_64.rpm</filename>
        </package>
        <package name="cups-devel" arch="i586" version="1.3.7" release="25.12">
          <filename>cups-devel-1.3.7-25.12.i586.rpm</filename>
        </package>
        <package name="cups-devel" arch="ppc" version="1.3.7" release="25.12">
          <filename>cups-devel-1.3.7-25.12.ppc.rpm</filename>
        </package>
        <package name="cups-devel" arch="x86_64" version="1.3.7" release="25.12">
          <filename>cups-devel-1.3.7-25.12.x86_64.rpm</filename>
        </package>
        <package name="cups-libs" arch="i586" version="1.3.7" release="25.12">
          <filename>cups-libs-1.3.7-25.12.i586.rpm</filename>
        </package>
        <package name="cups-libs" arch="ppc" version="1.3.7" release="25.12">
          <filename>cups-libs-1.3.7-25.12.ppc.rpm</filename>
        </package>
        <package name="cups-libs" arch="x86_64" version="1.3.7" release="25.12">
          <filename>cups-libs-1.3.7-25.12.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-32bit" arch="x86_64" version="1.3.7" release="25.12">
          <filename>cups-libs-32bit-1.3.7-25.12.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-64bit" arch="ppc" version="1.3.7" release="25.12">
          <filename>cups-libs-64bit-1.3.7-25.12.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="184a5ac237b657f1e7e088e8eb689f81"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1521">
  <id>libqt4</id>
  <title>libqt4: vulnerability in QSslCertificate / QSslSocket</title>
  <release>openSUSE 11.0</release>
  <issued date="1257471737"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=534081" id="534081" title="bug number 534081" type="bugzilla"/>
  </references>
  <description>This update fixes the handling of the subjectAltName field
in SSL certificates. (CVE-2009-2700)
</description>
  <pkglist>
    <collection>
        <package name="libqt4" arch="i586" version="4.4.0" release="12.8">
          <filename>libqt4-4.4.0-12.8.i586.rpm</filename>
        </package>
        <package name="libqt4" arch="ppc" version="4.4.0" release="12.8">
          <filename>libqt4-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libqt4" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libqt4-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libqt4-32bit" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libqt4-32bit-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libqt4-64bit" arch="ppc" version="4.4.0" release="12.8">
          <filename>libqt4-64bit-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="i586" version="4.4.0" release="12.8">
          <filename>libqt4-devel-4.4.0-12.8.i586.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="ppc" version="4.4.0" release="12.8">
          <filename>libqt4-devel-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libqt4-devel" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libqt4-devel-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="i586" version="4.4.0" release="12.8">
          <filename>libqt4-qt3support-4.4.0-12.8.i586.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="ppc" version="4.4.0" release="12.8">
          <filename>libqt4-qt3support-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libqt4-qt3support" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libqt4-qt3support-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libqt4-qt3support-32bit" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libqt4-qt3support-32bit-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libqt4-qt3support-64bit" arch="ppc" version="4.4.0" release="12.8">
          <filename>libqt4-qt3support-64bit-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="i586" version="4.4.0" release="12.8">
          <filename>libqt4-sql-4.4.0-12.8.i586.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="ppc" version="4.4.0" release="12.8">
          <filename>libqt4-sql-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libqt4-sql-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-32bit" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libqt4-sql-32bit-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libqt4-sql-64bit" arch="ppc" version="4.4.0" release="12.8">
          <filename>libqt4-sql-64bit-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="i586" version="4.4.0" release="12.8">
          <filename>libqt4-sql-sqlite-4.4.0-12.8.i586.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="ppc" version="4.4.0" release="12.8">
          <filename>libqt4-sql-sqlite-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libqt4-sql-sqlite" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libqt4-sql-sqlite-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="i586" version="4.4.0" release="12.8">
          <filename>libqt4-x11-4.4.0-12.8.i586.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="ppc" version="4.4.0" release="12.8">
          <filename>libqt4-x11-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libqt4-x11" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libqt4-x11-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11-32bit" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libqt4-x11-32bit-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libqt4-x11-64bit" arch="ppc" version="4.4.0" release="12.8">
          <filename>libqt4-x11-64bit-4.4.0-12.8.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="38c2eb2d90c11bd3174d38f79b5dabcc"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1536">
  <id>kdegraphics3-pdf</id>
  <title>kdegraphics3-pdf: specially crafted PDF files could cause buffer overflows</title>
  <release>openSUSE 11.0</release>
  <issued date="1257879891"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=546404" id="546404" title="bug number 546404" type="bugzilla"/>
  </references>
  <description>Specially crafted PDF files could cause buffer overflows in
the pdftops filter when printing such a document.
CVE-2009-3608: CVSS v2 Base Score: 9.3 CVE-2009-3609: CVSS
v2 Base Score: 4.
</description>
  <pkglist>
    <collection>
        <package name="kdegraphics3-pdf" arch="i586" version="3.5.9" release="53.5">
          <filename>kdegraphics3-pdf-3.5.9-53.5.i586.rpm</filename>
        </package>
        <package name="kdegraphics3-pdf" arch="ppc" version="3.5.9" release="53.5">
          <filename>kdegraphics3-pdf-3.5.9-53.5.ppc.rpm</filename>
        </package>
        <package name="kdegraphics3-pdf" arch="x86_64" version="3.5.9" release="53.5">
          <filename>kdegraphics3-pdf-3.5.9-53.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8446b116898e33640c58be9a9340fc91"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1548">
  <id>compat-openssl097g</id>
  <title>openssl: fix for possible man-in-the-middle attack due to renegotiation</title>
  <release>openSUSE 11.0</release>
  <issued date="1258106709"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=553641" id="553641" title="bug number 553641" type="bugzilla"/>
  </references>
  <description>The TLS/SSLv3 protocol as implemented in openssl prior to
this update was not able to associate data to a
renegotiated connection. This allowed man-in-the-middle
attackers to inject HTTP requests in a HTTPS session
without being noticed. For example Apache's mod_ssl was
vulnerable to this kind of attack because it uses openssl.
Please note that renegotiation will be disabled by this
update and may cause problems in some cases.
(CVE-2009-3555: CVSS v2 Base Score: 6.4)
</description>
  <pkglist>
    <collection>
        <package name="compat-openssl097g" arch="i586" version="0.9.7g" release="119.7">
          <filename>compat-openssl097g-0.9.7g-119.7.i586.rpm</filename>
        </package>
        <package name="compat-openssl097g" arch="ppc" version="0.9.7g" release="119.7">
          <filename>compat-openssl097g-0.9.7g-119.7.ppc.rpm</filename>
        </package>
        <package name="compat-openssl097g" arch="x86_64" version="0.9.7g" release="119.7">
          <filename>compat-openssl097g-0.9.7g-119.7.x86_64.rpm</filename>
        </package>
        <package name="compat-openssl097g-32bit" arch="x86_64" version="0.9.7g" release="119.7">
          <filename>compat-openssl097g-32bit-0.9.7g-119.7.x86_64.rpm</filename>
        </package>
        <package name="compat-openssl097g-64bit" arch="ppc" version="0.9.7g" release="119.7">
          <filename>compat-openssl097g-64bit-0.9.7g-119.7.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e4785cb5d726a98caf1eaac50c035b49"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1554">
  <id>libopenssl-devel</id>
  <title>openssl: fix for possible man-in-the-middle attack due to renegotiation</title>
  <release>openSUSE 11.0</release>
  <issued date="1258028797"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=553641" id="553641" title="bug number 553641" type="bugzilla"/>
  </references>
  <description>The TLS/SSLv3 protocol as implemented in openssl prior to
this update was not able to associate data to a
renegotiated connection. This allowed man-in-the-middle
attackers to inject HTTP requests in a HTTPS session
without being noticed. For example Apache's mod_ssl was
vulnerable to this kind of attack because it uses openssl.
Please note that renegotiation will be disabled by this
update and may cause problems in some cases.
(CVE-2009-3555: CVSS v2 Base Score: 6.4)
</description>
  <pkglist>
    <collection>
        <package name="libopenssl-devel" arch="i586" version="0.9.8g" release="47.10">
          <filename>libopenssl-devel-0.9.8g-47.10.i586.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="ppc" version="0.9.8g" release="47.10">
          <filename>libopenssl-devel-0.9.8g-47.10.ppc.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="x86_64" version="0.9.8g" release="47.10">
          <filename>libopenssl-devel-0.9.8g-47.10.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="i586" version="0.9.8g" release="47.10">
          <filename>libopenssl0_9_8-0.9.8g-47.10.i586.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="ppc" version="0.9.8g" release="47.10">
          <filename>libopenssl0_9_8-0.9.8g-47.10.ppc.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="x86_64" version="0.9.8g" release="47.10">
          <filename>libopenssl0_9_8-0.9.8g-47.10.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-32bit" arch="x86_64" version="0.9.8g" release="47.10">
          <filename>libopenssl0_9_8-32bit-0.9.8g-47.10.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-64bit" arch="ppc" version="0.9.8g" release="47.10">
          <filename>libopenssl0_9_8-64bit-0.9.8g-47.10.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="i586" version="0.9.8g" release="47.10">
          <filename>openssl-0.9.8g-47.10.i586.rpm</filename>
        </package>
        <package name="openssl" arch="ppc" version="0.9.8g" release="47.10">
          <filename>openssl-0.9.8g-47.10.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="x86_64" version="0.9.8g" release="47.10">
          <filename>openssl-0.9.8g-47.10.x86_64.rpm</filename>
        </package>
        <package name="openssl-certs" arch="i586" version="0.9.8g" release="47.10">
          <filename>openssl-certs-0.9.8g-47.10.i586.rpm</filename>
        </package>
        <package name="openssl-certs" arch="ppc" version="0.9.8g" release="47.10">
          <filename>openssl-certs-0.9.8g-47.10.ppc.rpm</filename>
        </package>
        <package name="openssl-certs" arch="x86_64" version="0.9.8g" release="47.10">
          <filename>openssl-certs-0.9.8g-47.10.x86_64.rpm</filename>
        </package>
        <package name="openssl-doc" arch="i586" version="0.9.8g" release="47.10">
          <filename>openssl-doc-0.9.8g-47.10.i586.rpm</filename>
        </package>
        <package name="openssl-doc" arch="ppc" version="0.9.8g" release="47.10">
          <filename>openssl-doc-0.9.8g-47.10.ppc.rpm</filename>
        </package>
        <package name="openssl-doc" arch="x86_64" version="0.9.8g" release="47.10">
          <filename>openssl-doc-0.9.8g-47.10.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e2eee2fe9af55d32793d757b22be882a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1541">
  <id>java-1_6_0-sun</id>
  <title>java-1_6_0-sun: Update to security update u17</title>
  <release>openSUSE 11.0</release>
  <issued date="1258076212"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=552586" id="552586" title="bug number 552586" type="bugzilla"/>
  </references>
  <description>The Sun Java 6 SDK/JRE was updated to u17 update fixing
bugs and various security issues:

CVE-2009-3866:The Java Web Start Installer in Sun Java SE
in JDK and JRE 6 before Update 17 does not properly use
security model permissions when removing installer
extensions, which allows remote attackers to execute
arbitrary code by modifying a certain JNLP file to have a
URL field that poi nts to an unintended trusted
application, aka Bug Id 6872824.

CVE-2009-3867: Stack-based buffer overflow in the
HsbParser.getSoundBank function in Sun Java SE in JDK and
JRE 5.0 before Update 22, JDK and JRE 6 before Update 17,
SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x
before 1.4.2_24 allows remote attackers to execute
arbitrary code via a long file: URL in an argument, aka Bug
Id 6854303.

CVE-2009-3869: Stack-based buffer overflow in the
setDiffICM function in the Abstract Window Toolkit (AWT) in
Java Runtime Environment (JRE) in Sun Java SE in JDK and
JRE 5.0 before Update 22, JDK and JRE 6 before Update 17,
SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x
before 1.4.2_ 24 allows remote attackers to execute
arbitrary code via a crafted argument, aka Bug Id 6872357.

CVE-2009-3871: Heap-based buffer overflow in the
setBytePixels function in the Abstract Window Toolkit (AWT)
in Java Runtime Environment (JRE) in Sun Java SE in JDK and
JRE 5.0 before Update 22, JDK and JRE 6 before Update 17,
SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x
before 1.4. 2_24 allows remote attackers to execute
arbitrary code via crafted arguments, aka Bug Id 6872358.

CVE-2009-3874: Integer overflow in the JPEGImageReader
implementation in the ImageI/O component in Sun Java SE in
JDK and JRE 5.0 before Update 22, JDK and JRE 6 before
Update 17, and SDK and JRE 1.4.x before 1.4.2_24 allows
remote attackers to execute arbitrary code via large
subsample dimensi ons in a JPEG file that triggers a
heap-based buffer overflow, aka Bug Id 6874643.

CVE-2009-3875: The MessageDigest.isEqual function in Java
Runtime Environment (JRE) in Sun Java SE in JDK and JRE 5.0
before Update 22, JDK and JRE 6 befor e Update 17, SDK and
JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before
1.4.2_24 allows remote attackers to spoof HMAC-based
digital si gnatures, and possibly bypass authentication,
via unspecified vectors related to &quot;timing attack
vulnerabilities,&quot; aka Bug Id 6863503.

CVE-2009-3876: Unspecified vulnerability in Sun Java SE in
JDK and JRE 5.0 before Update 22, JDK and JRE 6 before
Update 17, SDK and JRE 1.3.x before 1.3.1 _27, and SDK and
JRE 1.4.x before 1.4.2_24 allows remote attackers to cause
a denial of service (memory consumption) via crafted DER
encoded data, which is not properly decoded by the ASN.1
DER input stream parser, aka Bug Id 6864911.

CVE-2009-3877: Unspecified vulnerability in Sun Java SE in
JDK and JRE 5.0 before Update 22, JDK and JRE 6 before
Update 17, SDK and JRE 1.3.x before 1.3.1 _27, and SDK and
JRE 1.4.x before 1.4.2_24 allows remote attackers to cause
a denial of service (memory consumption) via crafted HTTP
header s, which are not properly parsed by the ASN.1 DER
input stream parser, aka Bug Id 6864911.

CVE-2009-3864: The Java Update functionality in Java
Runtime Environment (JRE) in Sun Java SE in JDK and JRE 5.0
before Update 22 and JDK and JRE 6 before Update 17, when a
non-English version of Windows is used, does not retrieve
available new JRE versions, which allows remote attackers
to lev erage vulnerabilities in older releases of this
software, aka Bug Id 6869694.

CVE-2009-3865: The launch method in the Deployment Toolkit
plugin in Java Runtime Environment (JRE) in Sun Java SE in
JDK and JRE 6 before Update 17 allows remote attackers to
execute arbitrary commands via a crafted web page, aka Bug
Id 6869752.

CVE-2009-3868: Sun Java SE in JDK and JRE 5.0 before Update
22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x
before 1.3.1_27, and SDK and JRE 1.4.x be fore 1.4.2_24
does not properly parse color profiles, which allows remote
attackers to gain privileges via a crafted image file, aka
Bug Id 6862970.

CVE-2009-3872: Unspecified vulnerability in the JPEG JFIF
Decoder in Sun Java SE in JDK and JRE 5.0 before Update 22,
JDK and JRE 6 before Update 17, SDK a nd JRE 1.3.x before
1.3.1_27, and SDK and JRE 1.4.x before 1.4.2_24 allows
remote attackers to gain privileges via a crafted image
file, aka Bug Id 6862969.

CVE-2009-3873: The JPEG Image Writer in Sun Java SE in JDK
and JRE 5.0 before Update 22, JDK and JRE 6 before Update
17, and SDK and JRE 1.4.x before 1.4.2 _24 allows remote
attackers to gain privileges via a crafted image file,
related to a &quot;quanization problem,&quot; aka Bug Id 6862968.
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-1.6.0.u17-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-1.6.0.u17-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u17-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u17-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u17-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u17-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u17-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u17-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u17-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u17-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u17-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="x86_64" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u17-1.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="i586" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-src-1.6.0.u17-1.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="x86_64" version="1.6.0.u17" release="1.1">
          <filename>java-1_6_0-sun-src-1.6.0.u17-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="05112c21c454767c8572d5c0784b53c4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1537">
  <id>qemu</id>
  <title>QEMU: possible guest escape</title>
  <release>openSUSE 11.0</release>
  <issued date="1257989050"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=547554" id="547554" title="bug number 547554" type="bugzilla"/>
  </references>
  <description>The VNC server of qemu was vulnerable to use-after-free
bugs, that allowed the execution of code on the host system
initiated from the guest system. This can be used to escape
from the guest machine to the host machine. (CVE-2009-3616:
CVSS v2 Base Score: 8.5)
</description>
  <pkglist>
    <collection>
        <package name="qemu" arch="i586" version="0.10.1" release="0.3">
          <filename>qemu-0.10.1-0.3.i586.rpm</filename>
        </package>
        <package name="qemu" arch="ppc" version="0.10.1" release="0.3">
          <filename>qemu-0.10.1-0.3.ppc.rpm</filename>
        </package>
        <package name="qemu" arch="x86_64" version="0.10.1" release="0.3">
          <filename>qemu-0.10.1-0.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6fe5fbce42495f7641f6da93c667dadd"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1547">
  <id>kvm</id>
  <title>QEMU KVM: several security bugs fixed</title>
  <release>openSUSE 11.0</release>
  <issued date="1258107921"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=547555" id="547555" title="bug number 547555" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550072" id="550072" title="bug number 550072" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=549487" id="549487" title="bug number 549487" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=540247" id="540247" title="bug number 540247" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550917" id="550917" title="bug number 550917" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=547624" id="547624" title="bug number 547624" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550732" id="550732" title="bug number 550732" type="bugzilla"/>
  </references>
  <description>This update of QEMU KVM fixes the following bugs:
- CVE-2009-3616: CVSS v2 Base Score: 8.5 use-after-free bug
  in VNC code which might be used to execute code on the
  host system injected from the guest system
- CVE-2009-3638: CVSS v2 Base Score: 7.2 integer overflow
  in kvm_dev_ioctl_get_supported_cpuid() 
- CVE-2009-3640: CVSS v2 Base Score: 2.1
  update_cr8_intercept() NULL pointer dereference
</description>
  <pkglist>
    <collection>
        <package name="kvm" arch="i586" version="78.0.10.6" release="0.1">
          <filename>kvm-78.0.10.6-0.1.i586.rpm</filename>
        </package>
        <package name="kvm" arch="x86_64" version="78.0.10.6" release="0.1">
          <filename>kvm-78.0.10.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="kvm-kmp-default" arch="i586" version="78.2.6.30.1_2.6.25.20_0.5" release="0.1">
          <filename>kvm-kmp-default-78.2.6.30.1_2.6.25.20_0.5-0.1.i586.rpm</filename>
        </package>
        <package name="kvm-kmp-default" arch="x86_64" version="78.2.6.30.1_2.6.25.20_0.5" release="0.1">
          <filename>kvm-kmp-default-78.2.6.30.1_2.6.25.20_0.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="kvm-kmp-pae" arch="i586" version="78.2.6.30.1_2.6.25.20_0.5" release="0.1">
          <filename>kvm-kmp-pae-78.2.6.30.1_2.6.25.20_0.5-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6afff2c3564e26489badb909c6d8e412"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1599">
  <id>opera</id>
  <title>opera: version upgrade to 10.10</title>
  <release>openSUSE 11.0</release>
  <issued date="1259112298"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=557127" id="557127" title="bug number 557127" type="bugzilla"/>
  </references>
  <description>Opera was upgraded to version 10.10 to fix the following
security bugs:
- CVE-2009-0689: CVSS v2 Base Score: 6.8 A heap buffer
  overflow in string to number conversion.
- Error messages could leak information.
- Another, yet unspecified, vulnerability reported by Chris
  Evans.
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="10.10" release="0.1">
          <filename>opera-10.10-0.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="10.10" release="0.1">
          <filename>opera-10.10-0.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="10.10" release="0.1">
          <filename>opera-10.10-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e2e7daed7580c86bcb53feed9e9073a8"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1613">
  <id>java-1_6_0-openjdk</id>
  <title>java-1_6_0-openjdk: fix for several security issues</title>
  <release>openSUSE 11.0</release>
  <issued date="1259170348"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=554069" id="554069" title="bug number 554069" type="bugzilla"/>
  </references>
  <description>New icedtea update to fix:
- ICC_Profile file existence detection information leak;
  CVE-2009-3728: CVSS v2 Base Score: 5.0
- BMP parsing DoS with UNC ICC links; CVE-2009-3885: CVSS
  v2 Base Score: 5.0
- resurrected classloaders can still have children;
  CVE-2009-3881: CVSS v2 Base Score: 7.5
- Numerous static security flaws in Swing; CVE-2009-3882:
  CVSS v2 Base Score: 7.5
- Mutable statics in Windows PL&amp;F; CVE-2009-3883: CVSS v2
  Base Score: 7.5
- UI logging information leakage; CVE-2009-3880: CVSS v2
  Base Score: 5.0
- GraphicsConfiguration information leak; CVE-2009-3879:
  CVSS v2 Base Score: 7.5
- zoneinfo file existence information leak; CVE-2009-3884:
  CVSS v2 Base Score: 5.0
- deprecate MD2 in SSL cert validation; CVE-2009-2409: CVSS
  v2 Base Score: 6.4
- JPEG Image Writer quantization problem; CVE-2009-3873:
  CVSS v2 Base Score: 9.3
- MessageDigest.isEqual introduces timing attack
  vulnerabilities; CVE-2009-3875: CVSS v2 Base Score: 5.0
- OpenJDK ASN.1/DER input stream parser denial of service;
  CVE-2009-3876,CVE-2009-3877: CVSS v2 Base Score: 5.0
- JRE AWT setDifflCM stack overflow; CVE-2009-3869: CVSS v2
  Base Score: 9.3
- ImageI/O JPEG heap overflow; CVE-2009-3874: CVSS v2 Base
  Score: 9.3
- JRE AWT setBytePixels heap overflow; CVE-2009-3871: CVSS
  v2 Base Score: 9.3
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-openjdk" arch="i586" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-1.6.2_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="ppc" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-1.6.2_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="x86_64" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-1.6.2_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="i586" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-demo-1.6.2_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="ppc" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-demo-1.6.2_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="x86_64" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-demo-1.6.2_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="i586" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-devel-1.6.2_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="ppc" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-devel-1.6.2_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="x86_64" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-devel-1.6.2_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="i586" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-javadoc-1.6.2_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="ppc" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-javadoc-1.6.2_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="x86_64" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-javadoc-1.6.2_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="i586" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-plugin-1.6.2_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="ppc" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-plugin-1.6.2_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="x86_64" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-plugin-1.6.2_b16-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="i586" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-src-1.6.2_b16-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="ppc" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-src-1.6.2_b16-0.1.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="x86_64" version="1.6.2_b16" release="0.1">
          <filename>java-1_6_0-openjdk-src-1.6.2_b16-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8e08d9b8b625bc9fb7365a4b7e6d2187"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1600">
  <id>wireshark</id>
  <title>Wireshark fix multiple vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1259112901"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550320" id="550320" title="bug number 550320" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=553215" id="553215" title="bug number 553215" type="bugzilla"/>
  </references>
  <description>Version upgrade of wireshark fix multiple vulnerabilities:
- CVE-2009-3549: CVSS v2 Base Score: 5.0 (MEDIUM) The
  Paltalk dissector could crash on alignment-sensitive
  processors.
- CVE-2009-3550: CVSS v2 Base Score: 4.3 (MEDIUM) The
  DCERPC/NT dissector could crash.
- CVE-2009-3551: CVSS v2 Base Score: 5.0 (MEDIUM) The SMB
  dissector could crash.
- CVE-2009-2560: CVSS v2 Base Score: 5.0 (MEDIUM) The
  RADIUS dissector could crash.
- CVE-2009-3829 CVSS v2 Base Score: 9.3 (HIGH) Fix for an
  integer overflow in wiretap/erf.c that allowed remote
  attackers to execute arbitrary code via a crafted ERF
  file. This does not  affect SLE products.
</description>
  <pkglist>
    <collection>
        <package name="wireshark" arch="i586" version="1.0.0" release="17.19">
          <filename>wireshark-1.0.0-17.19.i586.rpm</filename>
        </package>
        <package name="wireshark" arch="ppc" version="1.0.0" release="17.19">
          <filename>wireshark-1.0.0-17.19.ppc.rpm</filename>
        </package>
        <package name="wireshark" arch="x86_64" version="1.0.0" release="17.19">
          <filename>wireshark-1.0.0-17.19.x86_64.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="i586" version="1.0.0" release="17.19">
          <filename>wireshark-devel-1.0.0-17.19.i586.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="ppc" version="1.0.0" release="17.19">
          <filename>wireshark-devel-1.0.0-17.19.ppc.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="x86_64" version="1.0.0" release="17.19">
          <filename>wireshark-devel-1.0.0-17.19.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3035ae67700c7ab936e8b21caeb99807"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1615">
  <id>bind</id>
  <title>bind: potential cache poisoning attack fixed</title>
  <release>openSUSE 11.0</release>
  <issued date="1259332207"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=558260" id="558260" title="bug number 558260" type="bugzilla"/>
  </references>
  <description>The bind DNS server was updated to close a possible cache
poisoning vulnerability which allowed to bypass DNSSEC.
CVE-2009-4022: CVSS v2 Base Score: 2.6
</description>
  <pkglist>
    <collection>
        <package name="bind" arch="i586" version="9.4.2" release="39.8">
          <filename>bind-9.4.2-39.8.i586.rpm</filename>
        </package>
        <package name="bind" arch="ppc" version="9.4.2" release="39.8">
          <filename>bind-9.4.2-39.8.ppc.rpm</filename>
        </package>
        <package name="bind" arch="x86_64" version="9.4.2" release="39.8">
          <filename>bind-9.4.2-39.8.x86_64.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="i586" version="9.4.2" release="39.8">
          <filename>bind-chrootenv-9.4.2-39.8.i586.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="ppc" version="9.4.2" release="39.8">
          <filename>bind-chrootenv-9.4.2-39.8.ppc.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="x86_64" version="9.4.2" release="39.8">
          <filename>bind-chrootenv-9.4.2-39.8.x86_64.rpm</filename>
        </package>
        <package name="bind-devel" arch="i586" version="9.4.2" release="39.8">
          <filename>bind-devel-9.4.2-39.8.i586.rpm</filename>
        </package>
        <package name="bind-devel" arch="ppc" version="9.4.2" release="39.8">
          <filename>bind-devel-9.4.2-39.8.ppc.rpm</filename>
        </package>
        <package name="bind-devel" arch="x86_64" version="9.4.2" release="39.8">
          <filename>bind-devel-9.4.2-39.8.x86_64.rpm</filename>
        </package>
        <package name="bind-devel-64bit" arch="ppc" version="9.4.2" release="39.8">
          <filename>bind-devel-64bit-9.4.2-39.8.ppc.rpm</filename>
        </package>
        <package name="bind-doc" arch="i586" version="9.4.2" release="39.8">
          <filename>bind-doc-9.4.2-39.8.i586.rpm</filename>
        </package>
        <package name="bind-doc" arch="ppc" version="9.4.2" release="39.8">
          <filename>bind-doc-9.4.2-39.8.ppc.rpm</filename>
        </package>
        <package name="bind-doc" arch="x86_64" version="9.4.2" release="39.8">
          <filename>bind-doc-9.4.2-39.8.x86_64.rpm</filename>
        </package>
        <package name="bind-libs" arch="i586" version="9.4.2" release="39.8">
          <filename>bind-libs-9.4.2-39.8.i586.rpm</filename>
        </package>
        <package name="bind-libs" arch="ppc" version="9.4.2" release="39.8">
          <filename>bind-libs-9.4.2-39.8.ppc.rpm</filename>
        </package>
        <package name="bind-libs" arch="x86_64" version="9.4.2" release="39.8">
          <filename>bind-libs-9.4.2-39.8.x86_64.rpm</filename>
        </package>
        <package name="bind-libs-32bit" arch="x86_64" version="9.4.2" release="39.8">
          <filename>bind-libs-32bit-9.4.2-39.8.x86_64.rpm</filename>
        </package>
        <package name="bind-libs-64bit" arch="ppc" version="9.4.2" release="39.8">
          <filename>bind-libs-64bit-9.4.2-39.8.ppc.rpm</filename>
        </package>
        <package name="bind-utils" arch="i586" version="9.4.2" release="39.8">
          <filename>bind-utils-9.4.2-39.8.i586.rpm</filename>
        </package>
        <package name="bind-utils" arch="ppc" version="9.4.2" release="39.8">
          <filename>bind-utils-9.4.2-39.8.ppc.rpm</filename>
        </package>
        <package name="bind-utils" arch="x86_64" version="9.4.2" release="39.8">
          <filename>bind-utils-9.4.2-39.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1081a4ce9f85a36c0b29013e86b9d031"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1586">
  <id>lighttpd</id>
  <title>lighttpd: fix for regression caused by security update.</title>
  <release>openSUSE 11.0</release>
  <issued date="1258995929"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429764" id="429764" title="bug number 429764" type="bugzilla"/>
  </references>
  <description>This update fixes a regression caused by the last security
update for CVE-2008-4360.
</description>
  <pkglist>
    <collection>
        <package name="lighttpd" arch="i586" version="1.4.19" release="6.4">
          <filename>lighttpd-1.4.19-6.4.i586.rpm</filename>
        </package>
        <package name="lighttpd" arch="ppc" version="1.4.19" release="6.4">
          <filename>lighttpd-1.4.19-6.4.ppc.rpm</filename>
        </package>
        <package name="lighttpd" arch="x86_64" version="1.4.19" release="6.4">
          <filename>lighttpd-1.4.19-6.4.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="i586" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_cml-1.4.19-6.4.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="ppc" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_cml-1.4.19-6.4.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="x86_64" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_cml-1.4.19-6.4.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="i586" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_magnet-1.4.19-6.4.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="ppc" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_magnet-1.4.19-6.4.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="x86_64" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_magnet-1.4.19-6.4.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="i586" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.4.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="ppc" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.4.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="x86_64" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.4.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="i586" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.4.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="ppc" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.4.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="x86_64" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.4.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="i586" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.4.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="ppc" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.4.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="x86_64" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.4.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="i586" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_webdav-1.4.19-6.4.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="ppc" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_webdav-1.4.19-6.4.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="x86_64" version="1.4.19" release="6.4">
          <filename>lighttpd-mod_webdav-1.4.19-6.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c2e784862315d2b22bca8a10b043e6aa"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1608">
  <id>mutt</id>
  <title>mutt: improved SSL certificate handling</title>
  <release>openSUSE 11.0</release>
  <issued date="1259167913"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=537141" id="537141" title="bug number 537141" type="bugzilla"/>
  </references>
  <description>This update improves the handling of SSL certificates and
fixes a minor usability bug introduced with the last
security update.
</description>
  <pkglist>
    <collection>
        <package name="mutt" arch="i586" version="1.5.17" release="63.4">
          <filename>mutt-1.5.17-63.4.i586.rpm</filename>
        </package>
        <package name="mutt" arch="ppc" version="1.5.17" release="63.4">
          <filename>mutt-1.5.17-63.4.ppc.rpm</filename>
        </package>
        <package name="mutt" arch="x86_64" version="1.5.17" release="63.4">
          <filename>mutt-1.5.17-63.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1804e6c1e4507d88ef84402de3690724"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1373">
  <id>e2fsprogs</id>
  <title>e2fsprogs: fsck during boot up fails with the error message &quot;too many open files&quot;. This bug is fixed by this update.</title>
  <release>openSUSE 11.0</release>
  <issued date="1255090783"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=503008" id="503008" title="bug number 503008" type="bugzilla"/>
  </references>
  <description>e2fsprogs: fsck during boot up fails with the error message
&quot;too many open files&quot;. This bug is fixed by this update.
</description>
  <pkglist>
    <collection>
        <package name="e2fsprogs" arch="i586" version="1.40.8" release="20.2">
          <filename>e2fsprogs-1.40.8-20.2.i586.rpm</filename>
        </package>
        <package name="e2fsprogs" arch="ppc" version="1.40.8" release="20.2">
          <filename>e2fsprogs-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="e2fsprogs" arch="x86_64" version="1.40.8" release="20.2">
          <filename>e2fsprogs-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="e2fsprogs-devel" arch="i586" version="1.40.8" release="20.2">
          <filename>e2fsprogs-devel-1.40.8-20.2.i586.rpm</filename>
        </package>
        <package name="e2fsprogs-devel" arch="ppc" version="1.40.8" release="20.2">
          <filename>e2fsprogs-devel-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="e2fsprogs-devel" arch="x86_64" version="1.40.8" release="20.2">
          <filename>e2fsprogs-devel-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libblkid-devel" arch="i586" version="1.40.8" release="20.2">
          <filename>libblkid-devel-1.40.8-20.2.i586.rpm</filename>
        </package>
        <package name="libblkid-devel" arch="ppc" version="1.40.8" release="20.2">
          <filename>libblkid-devel-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libblkid-devel" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libblkid-devel-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libblkid-devel-32bit" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libblkid-devel-32bit-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libblkid-devel-64bit" arch="ppc" version="1.40.8" release="20.2">
          <filename>libblkid-devel-64bit-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libblkid1" arch="i586" version="1.40.8" release="20.2">
          <filename>libblkid1-1.40.8-20.2.i586.rpm</filename>
        </package>
        <package name="libblkid1" arch="ppc" version="1.40.8" release="20.2">
          <filename>libblkid1-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libblkid1" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libblkid1-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libblkid1-32bit" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libblkid1-32bit-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libblkid1-64bit" arch="ppc" version="1.40.8" release="20.2">
          <filename>libblkid1-64bit-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libcom_err-devel" arch="i586" version="1.40.8" release="20.2">
          <filename>libcom_err-devel-1.40.8-20.2.i586.rpm</filename>
        </package>
        <package name="libcom_err-devel" arch="ppc" version="1.40.8" release="20.2">
          <filename>libcom_err-devel-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libcom_err-devel" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libcom_err-devel-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libcom_err-devel-32bit" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libcom_err-devel-32bit-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libcom_err-devel-64bit" arch="ppc" version="1.40.8" release="20.2">
          <filename>libcom_err-devel-64bit-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libcom_err2" arch="i586" version="1.40.8" release="20.2">
          <filename>libcom_err2-1.40.8-20.2.i586.rpm</filename>
        </package>
        <package name="libcom_err2" arch="ppc" version="1.40.8" release="20.2">
          <filename>libcom_err2-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libcom_err2" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libcom_err2-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libcom_err2-32bit" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libcom_err2-32bit-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libcom_err2-64bit" arch="ppc" version="1.40.8" release="20.2">
          <filename>libcom_err2-64bit-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libext2fs-devel" arch="i586" version="1.40.8" release="20.2">
          <filename>libext2fs-devel-1.40.8-20.2.i586.rpm</filename>
        </package>
        <package name="libext2fs-devel" arch="ppc" version="1.40.8" release="20.2">
          <filename>libext2fs-devel-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libext2fs-devel" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libext2fs-devel-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libext2fs-devel-32bit" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libext2fs-devel-32bit-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libext2fs-devel-64bit" arch="ppc" version="1.40.8" release="20.2">
          <filename>libext2fs-devel-64bit-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libext2fs2" arch="i586" version="1.40.8" release="20.2">
          <filename>libext2fs2-1.40.8-20.2.i586.rpm</filename>
        </package>
        <package name="libext2fs2" arch="ppc" version="1.40.8" release="20.2">
          <filename>libext2fs2-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libext2fs2" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libext2fs2-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libext2fs2-32bit" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libext2fs2-32bit-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libext2fs2-64bit" arch="ppc" version="1.40.8" release="20.2">
          <filename>libext2fs2-64bit-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libuuid-devel" arch="i586" version="1.40.8" release="20.2">
          <filename>libuuid-devel-1.40.8-20.2.i586.rpm</filename>
        </package>
        <package name="libuuid-devel" arch="ppc" version="1.40.8" release="20.2">
          <filename>libuuid-devel-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libuuid-devel" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libuuid-devel-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libuuid-devel-32bit" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libuuid-devel-32bit-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libuuid-devel-64bit" arch="ppc" version="1.40.8" release="20.2">
          <filename>libuuid-devel-64bit-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libuuid1" arch="i586" version="1.40.8" release="20.2">
          <filename>libuuid1-1.40.8-20.2.i586.rpm</filename>
        </package>
        <package name="libuuid1" arch="ppc" version="1.40.8" release="20.2">
          <filename>libuuid1-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="libuuid1" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libuuid1-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libuuid1-32bit" arch="x86_64" version="1.40.8" release="20.2">
          <filename>libuuid1-32bit-1.40.8-20.2.x86_64.rpm</filename>
        </package>
        <package name="libuuid1-64bit" arch="ppc" version="1.40.8" release="20.2">
          <filename>libuuid1-64bit-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="uuid-runtime" arch="i586" version="1.40.8" release="20.2">
          <filename>uuid-runtime-1.40.8-20.2.i586.rpm</filename>
        </package>
        <package name="uuid-runtime" arch="ppc" version="1.40.8" release="20.2">
          <filename>uuid-runtime-1.40.8-20.2.ppc.rpm</filename>
        </package>
        <package name="uuid-runtime" arch="x86_64" version="1.40.8" release="20.2">
          <filename>uuid-runtime-1.40.8-20.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e0be868bd6ee351b262a14c36c1e362a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1627">
  <id>cacti</id>
  <title>cacti: patch for four XSS vulnerabilities and one privilege escalation issue</title>
  <release>openSUSE 11.0</release>
  <issued date="1259776055"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=558664" id="558664" title="bug number 558664" type="bugzilla"/>
  </references>
  <description>The package cacti was updated to fix four
cross-site-scripting vulnerabilities (CVE-2009-4032: CVSS
v2 Base Score: 4.9) and one privilege escalation bug
(CVE-2009-4112).
</description>
  <pkglist>
    <collection>
        <package name="cacti" arch="noarch" version="0.8.7e" release="0.1">
          <filename>cacti-0.8.7e-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9b1f74ec1352113e1871ef7f687b74cc"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1648">
  <id>kdelibs3</id>
  <title>kdelibs3,kdelibs4: SecurityReason: KDE KDELibs 4.3.3 Remote Array Overrun (Arbitrary code execution)</title>
  <release>openSUSE 11.0</release>
  <issued date="1259750198"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=557126" id="557126" title="bug number 557126" type="bugzilla"/>
  </references>
  <description>KDE KDELibs Remote Array Overrun (Arbitrary code
execution), CVE-2009-0689
</description>
  <pkglist>
    <collection>
        <package name="kdelibs3" arch="i586" version="3.5.9" release="49.2">
          <filename>kdelibs3-3.5.9-49.2.i586.rpm</filename>
        </package>
        <package name="kdelibs3" arch="ppc" version="3.5.9" release="49.2">
          <filename>kdelibs3-3.5.9-49.2.ppc.rpm</filename>
        </package>
        <package name="kdelibs3" arch="x86_64" version="3.5.9" release="49.2">
          <filename>kdelibs3-3.5.9-49.2.x86_64.rpm</filename>
        </package>
        <package name="kdelibs3-32bit" arch="x86_64" version="3.5.9" release="49.2">
          <filename>kdelibs3-32bit-3.5.9-49.2.x86_64.rpm</filename>
        </package>
        <package name="kdelibs3-64bit" arch="ppc" version="3.5.9" release="49.2">
          <filename>kdelibs3-64bit-3.5.9-49.2.ppc.rpm</filename>
        </package>
        <package name="kdelibs3-arts" arch="i586" version="3.5.9" release="49.2">
          <filename>kdelibs3-arts-3.5.9-49.2.i586.rpm</filename>
        </package>
        <package name="kdelibs3-arts" arch="ppc" version="3.5.9" release="49.2">
          <filename>kdelibs3-arts-3.5.9-49.2.ppc.rpm</filename>
        </package>
        <package name="kdelibs3-arts" arch="x86_64" version="3.5.9" release="49.2">
          <filename>kdelibs3-arts-3.5.9-49.2.x86_64.rpm</filename>
        </package>
        <package name="kdelibs3-arts-32bit" arch="x86_64" version="3.5.9" release="49.2">
          <filename>kdelibs3-arts-32bit-3.5.9-49.2.x86_64.rpm</filename>
        </package>
        <package name="kdelibs3-arts-64bit" arch="ppc" version="3.5.9" release="49.2">
          <filename>kdelibs3-arts-64bit-3.5.9-49.2.ppc.rpm</filename>
        </package>
        <package name="kdelibs3-default-style" arch="i586" version="3.5.9" release="49.2">
          <filename>kdelibs3-default-style-3.5.9-49.2.i586.rpm</filename>
        </package>
        <package name="kdelibs3-default-style" arch="ppc" version="3.5.9" release="49.2">
          <filename>kdelibs3-default-style-3.5.9-49.2.ppc.rpm</filename>
        </package>
        <package name="kdelibs3-default-style" arch="x86_64" version="3.5.9" release="49.2">
          <filename>kdelibs3-default-style-3.5.9-49.2.x86_64.rpm</filename>
        </package>
        <package name="kdelibs3-default-style-32bit" arch="x86_64" version="3.5.9" release="49.2">
          <filename>kdelibs3-default-style-32bit-3.5.9-49.2.x86_64.rpm</filename>
        </package>
        <package name="kdelibs3-default-style-64bit" arch="ppc" version="3.5.9" release="49.2">
          <filename>kdelibs3-default-style-64bit-3.5.9-49.2.ppc.rpm</filename>
        </package>
        <package name="kdelibs3-devel" arch="i586" version="3.5.9" release="49.2">
          <filename>kdelibs3-devel-3.5.9-49.2.i586.rpm</filename>
        </package>
        <package name="kdelibs3-devel" arch="ppc" version="3.5.9" release="49.2">
          <filename>kdelibs3-devel-3.5.9-49.2.ppc.rpm</filename>
        </package>
        <package name="kdelibs3-devel" arch="x86_64" version="3.5.9" release="49.2">
          <filename>kdelibs3-devel-3.5.9-49.2.x86_64.rpm</filename>
        </package>
        <package name="kdelibs3-doc" arch="i586" version="3.5.9" release="49.2">
          <filename>kdelibs3-doc-3.5.9-49.2.i586.rpm</filename>
        </package>
        <package name="kdelibs3-doc" arch="ppc" version="3.5.9" release="49.2">
          <filename>kdelibs3-doc-3.5.9-49.2.ppc.rpm</filename>
        </package>
        <package name="kdelibs3-doc" arch="x86_64" version="3.5.9" release="49.2">
          <filename>kdelibs3-doc-3.5.9-49.2.x86_64.rpm</filename>
        </package>
        <package name="kdelibs4" arch="i586" version="4.0.4" release="15.4">
          <filename>kdelibs4-4.0.4-15.4.i586.rpm</filename>
        </package>
        <package name="kdelibs4" arch="ppc" version="4.0.4" release="15.4">
          <filename>kdelibs4-4.0.4-15.4.ppc.rpm</filename>
        </package>
        <package name="kdelibs4" arch="x86_64" version="4.0.4" release="15.4">
          <filename>kdelibs4-4.0.4-15.4.x86_64.rpm</filename>
        </package>
        <package name="kdelibs4-core" arch="i586" version="4.0.4" release="15.4">
          <filename>kdelibs4-core-4.0.4-15.4.i586.rpm</filename>
        </package>
        <package name="kdelibs4-core" arch="ppc" version="4.0.4" release="15.4">
          <filename>kdelibs4-core-4.0.4-15.4.ppc.rpm</filename>
        </package>
        <package name="kdelibs4-core" arch="x86_64" version="4.0.4" release="15.4">
          <filename>kdelibs4-core-4.0.4-15.4.x86_64.rpm</filename>
        </package>
        <package name="kdelibs4-doc" arch="i586" version="4.0.4" release="15.4">
          <filename>kdelibs4-doc-4.0.4-15.4.i586.rpm</filename>
        </package>
        <package name="kdelibs4-doc" arch="ppc" version="4.0.4" release="15.4">
          <filename>kdelibs4-doc-4.0.4-15.4.ppc.rpm</filename>
        </package>
        <package name="kdelibs4-doc" arch="x86_64" version="4.0.4" release="15.4">
          <filename>kdelibs4-doc-4.0.4-15.4.x86_64.rpm</filename>
        </package>
        <package name="libkde4" arch="i586" version="4.0.4" release="15.4">
          <filename>libkde4-4.0.4-15.4.i586.rpm</filename>
        </package>
        <package name="libkde4" arch="ppc" version="4.0.4" release="15.4">
          <filename>libkde4-4.0.4-15.4.ppc.rpm</filename>
        </package>
        <package name="libkde4" arch="x86_64" version="4.0.4" release="15.4">
          <filename>libkde4-4.0.4-15.4.x86_64.rpm</filename>
        </package>
        <package name="libkde4-32bit" arch="x86_64" version="4.0.4" release="15.4">
          <filename>libkde4-32bit-4.0.4-15.4.x86_64.rpm</filename>
        </package>
        <package name="libkde4-64bit" arch="ppc" version="4.0.4" release="15.4">
          <filename>libkde4-64bit-4.0.4-15.4.ppc.rpm</filename>
        </package>
        <package name="libkde4-devel" arch="i586" version="4.0.4" release="15.4">
          <filename>libkde4-devel-4.0.4-15.4.i586.rpm</filename>
        </package>
        <package name="libkde4-devel" arch="ppc" version="4.0.4" release="15.4">
          <filename>libkde4-devel-4.0.4-15.4.ppc.rpm</filename>
        </package>
        <package name="libkde4-devel" arch="x86_64" version="4.0.4" release="15.4">
          <filename>libkde4-devel-4.0.4-15.4.x86_64.rpm</filename>
        </package>
        <package name="libkdecore4" arch="i586" version="4.0.4" release="15.4">
          <filename>libkdecore4-4.0.4-15.4.i586.rpm</filename>
        </package>
        <package name="libkdecore4" arch="ppc" version="4.0.4" release="15.4">
          <filename>libkdecore4-4.0.4-15.4.ppc.rpm</filename>
        </package>
        <package name="libkdecore4" arch="x86_64" version="4.0.4" release="15.4">
          <filename>libkdecore4-4.0.4-15.4.x86_64.rpm</filename>
        </package>
        <package name="libkdecore4-32bit" arch="x86_64" version="4.0.4" release="15.4">
          <filename>libkdecore4-32bit-4.0.4-15.4.x86_64.rpm</filename>
        </package>
        <package name="libkdecore4-64bit" arch="ppc" version="4.0.4" release="15.4">
          <filename>libkdecore4-64bit-4.0.4-15.4.ppc.rpm</filename>
        </package>
        <package name="libkdecore4-devel" arch="i586" version="4.0.4" release="15.4">
          <filename>libkdecore4-devel-4.0.4-15.4.i586.rpm</filename>
        </package>
        <package name="libkdecore4-devel" arch="ppc" version="4.0.4" release="15.4">
          <filename>libkdecore4-devel-4.0.4-15.4.ppc.rpm</filename>
        </package>
        <package name="libkdecore4-devel" arch="x86_64" version="4.0.4" release="15.4">
          <filename>libkdecore4-devel-4.0.4-15.4.x86_64.rpm</filename>
        </package>
        <package name="utempter" arch="i586" version="0.5.5" release="114.1">
          <filename>utempter-0.5.5-114.1.i586.rpm</filename>
        </package>
        <package name="utempter" arch="ppc" version="0.5.5" release="114.1">
          <filename>utempter-0.5.5-114.1.ppc.rpm</filename>
        </package>
        <package name="utempter" arch="x86_64" version="0.5.5" release="114.1">
          <filename>utempter-0.5.5-114.1.x86_64.rpm</filename>
        </package>
        <package name="utempter-32bit" arch="x86_64" version="0.5.5" release="114.1">
          <filename>utempter-32bit-0.5.5-114.1.x86_64.rpm</filename>
        </package>
        <package name="utempter-64bit" arch="ppc" version="0.5.5" release="114.1">
          <filename>utempter-64bit-0.5.5-114.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5d83b2cd58eab7e12eb8ef070639116e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1625">
  <id>finch</id>
  <title>pidgin accumulated security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1212781497"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=535570" id="535570" title="bug number 535570" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=535832" id="535832" title="bug number 535832" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=536602" id="536602" title="bug number 536602" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=548072" id="548072" title="bug number 548072" type="bugzilla"/>
  </references>
  <description>This update of pidgin fixes the following issues:
- CVE-2009-3026: CVSS v2 Base Score: 5.0 Allowed to send
  confidential data unencrypted even if SSL was chosen by
  user.
- CVE-2009-3025: CVSS v2 Base Score: 4.3 Remote denial of
  service in yahoo IM plug-in.
- CVE-2009-3083: CVSS v2 Base Score: 5.0 Remote denial of
  service in MSN plug-in.
- CVE-2009-3084: CVSS v2 Base Score: 5.0 Remote denial of
  service in MSN plug-in.
- CVE-2009-3085: CVSS v2 Base Score: 5.0 Remote denial of
  service in XMPP plug-in.
- CVE-2009-3615: CVSS v2 Base Score: 5.0 Remote denial of
  service in ICQ plug-in.
- QQ protocol upgrade Migrate all QQ accounts to QQ2008.
</description>
  <pkglist>
    <collection>
        <package name="cdparanoia" arch="i586" version="IIIalpha9.8" release="664.1">
          <filename>cdparanoia-IIIalpha9.8-664.1.i586.rpm</filename>
        </package>
        <package name="cdparanoia" arch="ppc" version="IIIalpha9.8" release="664.1">
          <filename>cdparanoia-IIIalpha9.8-664.1.ppc.rpm</filename>
        </package>
        <package name="cdparanoia" arch="x86_64" version="IIIalpha9.8" release="664.1">
          <filename>cdparanoia-IIIalpha9.8-664.1.x86_64.rpm</filename>
        </package>
        <package name="cdparanoia-32bit" arch="x86_64" version="IIIalpha9.8" release="664.1">
          <filename>cdparanoia-32bit-IIIalpha9.8-664.1.x86_64.rpm</filename>
        </package>
        <package name="cdparanoia-64bit" arch="ppc" version="IIIalpha9.8" release="664.1">
          <filename>cdparanoia-64bit-IIIalpha9.8-664.1.ppc.rpm</filename>
        </package>
        <package name="check" arch="i586" version="0.9.5" release="72.1">
          <filename>check-0.9.5-72.1.i586.rpm</filename>
        </package>
        <package name="check" arch="ppc" version="0.9.5" release="72.1">
          <filename>check-0.9.5-72.1.ppc.rpm</filename>
        </package>
        <package name="check" arch="x86_64" version="0.9.5" release="72.1">
          <filename>check-0.9.5-72.1.x86_64.rpm</filename>
        </package>
        <package name="check-32bit" arch="x86_64" version="0.9.5" release="72.1">
          <filename>check-32bit-0.9.5-72.1.x86_64.rpm</filename>
        </package>
        <package name="check-64bit" arch="ppc" version="0.9.5" release="72.1">
          <filename>check-64bit-0.9.5-72.1.ppc.rpm</filename>
        </package>
        <package name="desktop-file-utils" arch="i586" version="0.15" release="34.1">
          <filename>desktop-file-utils-0.15-34.1.i586.rpm</filename>
        </package>
        <package name="desktop-file-utils" arch="ppc" version="0.15" release="34.1">
          <filename>desktop-file-utils-0.15-34.1.ppc.rpm</filename>
        </package>
        <package name="desktop-file-utils" arch="x86_64" version="0.15" release="34.1">
          <filename>desktop-file-utils-0.15-34.1.x86_64.rpm</filename>
        </package>
        <package name="fam" arch="i586" version="2.7.0" release="106.1">
          <filename>fam-2.7.0-106.1.i586.rpm</filename>
        </package>
        <package name="fam" arch="ppc" version="2.7.0" release="106.1">
          <filename>fam-2.7.0-106.1.ppc.rpm</filename>
        </package>
        <package name="fam" arch="x86_64" version="2.7.0" release="106.1">
          <filename>fam-2.7.0-106.1.x86_64.rpm</filename>
        </package>
        <package name="fam-32bit" arch="x86_64" version="2.7.0" release="106.1">
          <filename>fam-32bit-2.7.0-106.1.x86_64.rpm</filename>
        </package>
        <package name="fam-64bit" arch="ppc" version="2.7.0" release="106.1">
          <filename>fam-64bit-2.7.0-106.1.ppc.rpm</filename>
        </package>
        <package name="finch" arch="i586" version="2.6.3" release="0.1">
          <filename>finch-2.6.3-0.1.i586.rpm</filename>
        </package>
        <package name="finch" arch="ppc" version="2.6.3" release="0.1">
          <filename>finch-2.6.3-0.1.ppc.rpm</filename>
        </package>
        <package name="finch" arch="x86_64" version="2.6.3" release="0.1">
          <filename>finch-2.6.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="finch-devel" arch="i586" version="2.6.3" release="0.1">
          <filename>finch-devel-2.6.3-0.1.i586.rpm</filename>
        </package>
        <package name="finch-devel" arch="ppc" version="2.6.3" release="0.1">
          <filename>finch-devel-2.6.3-0.1.ppc.rpm</filename>
        </package>
        <package name="finch-devel" arch="x86_64" version="2.6.3" release="0.1">
          <filename>finch-devel-2.6.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="gnome-vfs2" arch="i586" version="2.22.0" release="33.1">
          <filename>gnome-vfs2-2.22.0-33.1.i586.rpm</filename>
        </package>
        <package name="gnome-vfs2" arch="ppc" version="2.22.0" release="33.1">
          <filename>gnome-vfs2-2.22.0-33.1.ppc.rpm</filename>
        </package>
        <package name="gnome-vfs2" arch="x86_64" version="2.22.0" release="33.1">
          <filename>gnome-vfs2-2.22.0-33.1.x86_64.rpm</filename>
        </package>
        <package name="gnome-vfs2-32bit" arch="x86_64" version="2.22.0" release="33.1">
          <filename>gnome-vfs2-32bit-2.22.0-33.1.x86_64.rpm</filename>
        </package>
        <package name="gnome-vfs2-64bit" arch="ppc" version="2.22.0" release="33.1">
          <filename>gnome-vfs2-64bit-2.22.0-33.1.ppc.rpm</filename>
        </package>
        <package name="gnome-vfs2-lang" arch="i586" version="2.22.0" release="33.1">
          <filename>gnome-vfs2-lang-2.22.0-33.1.i586.rpm</filename>
        </package>
        <package name="gnome-vfs2-lang" arch="ppc" version="2.22.0" release="33.1">
          <filename>gnome-vfs2-lang-2.22.0-33.1.ppc.rpm</filename>
        </package>
        <package name="gnome-vfs2-lang" arch="x86_64" version="2.22.0" release="33.1">
          <filename>gnome-vfs2-lang-2.22.0-33.1.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10" arch="i586" version="0.10.19" release="16.1">
          <filename>gstreamer-0_10-0.10.19-16.1.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10" arch="ppc" version="0.10.19" release="16.1">
          <filename>gstreamer-0_10-0.10.19-16.1.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10" arch="x86_64" version="0.10.19" release="16.1">
          <filename>gstreamer-0_10-0.10.19-16.1.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10-32bit" arch="x86_64" version="0.10.19" release="16.1">
          <filename>gstreamer-0_10-32bit-0.10.19-16.1.x86_64.rpm</filename>
        </package>
        <package name="gstreamer-0_10-64bit" arch="ppc" version="0.10.19" release="16.1">
          <filename>gstreamer-0_10-64bit-0.10.19-16.1.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-lang" arch="i586" version="0.10.19" release="16.1">
          <filename>gstreamer-0_10-lang-0.10.19-16.1.i586.rpm</filename>
        </package>
        <package name="gstreamer-0_10-lang" arch="ppc" version="0.10.19" release="16.1">
          <filename>gstreamer-0_10-lang-0.10.19-16.1.ppc.rpm</filename>
        </package>
        <package name="gstreamer-0_10-lang" arch="x86_64" version="0.10.19" release="16.1">
          <filename>gstreamer-0_10-lang-0.10.19-16.1.x86_64.rpm</filename>
        </package>
        <package name="libgstreamer-0_10-0" arch="i586" version="0.10.19" release="16.1">
          <filename>libgstreamer-0_10-0-0.10.19-16.1.i586.rpm</filename>
        </package>
        <package name="libgstreamer-0_10-0" arch="ppc" version="0.10.19" release="16.1">
          <filename>libgstreamer-0_10-0-0.10.19-16.1.ppc.rpm</filename>
        </package>
        <package name="libgstreamer-0_10-0" arch="x86_64" version="0.10.19" release="16.1">
          <filename>libgstreamer-0_10-0-0.10.19-16.1.x86_64.rpm</filename>
        </package>
        <package name="libgstreamer-0_10-0-32bit" arch="x86_64" version="0.10.19" release="16.1">
          <filename>libgstreamer-0_10-0-32bit-0.10.19-16.1.x86_64.rpm</filename>
        </package>
        <package name="libgstreamer-0_10-0-64bit" arch="ppc" version="0.10.19" release="16.1">
          <filename>libgstreamer-0_10-0-64bit-0.10.19-16.1.ppc.rpm</filename>
        </package>
        <package name="libogg0" arch="i586" version="1.1.3" release="86.1">
          <filename>libogg0-1.1.3-86.1.i586.rpm</filename>
        </package>
        <package name="libogg0" arch="ppc" version="1.1.3" release="86.1">
          <filename>libogg0-1.1.3-86.1.ppc.rpm</filename>
        </package>
        <package name="libogg0" arch="x86_64" version="1.1.3" release="86.1">
          <filename>libogg0-1.1.3-86.1.x86_64.rpm</filename>
        </package>
        <package name="libogg0-32bit" arch="x86_64" version="1.1.3" release="86.1">
          <filename>libogg0-32bit-1.1.3-86.1.x86_64.rpm</filename>
        </package>
        <package name="libogg0-64bit" arch="ppc" version="1.1.3" release="86.1">
          <filename>libogg0-64bit-1.1.3-86.1.ppc.rpm</filename>
        </package>
        <package name="liboil" arch="i586" version="0.3.14" release="18.1">
          <filename>liboil-0.3.14-18.1.i586.rpm</filename>
        </package>
        <package name="liboil" arch="ppc" version="0.3.14" release="18.1">
          <filename>liboil-0.3.14-18.1.ppc.rpm</filename>
        </package>
        <package name="liboil" arch="x86_64" version="0.3.14" release="18.1">
          <filename>liboil-0.3.14-18.1.x86_64.rpm</filename>
        </package>
        <package name="liboil-32bit" arch="x86_64" version="0.3.14" release="18.1">
          <filename>liboil-32bit-0.3.14-18.1.x86_64.rpm</filename>
        </package>
        <package name="liboil-64bit" arch="ppc" version="0.3.14" release="18.1">
          <filename>liboil-64bit-0.3.14-18.1.ppc.rpm</filename>
        </package>
        <package name="libpurple" arch="i586" version="2.6.3" release="0.1">
          <filename>libpurple-2.6.3-0.1.i586.rpm</filename>
        </package>
        <package name="libpurple" arch="ppc" version="2.6.3" release="0.1">
          <filename>libpurple-2.6.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libpurple" arch="x86_64" version="2.6.3" release="0.1">
          <filename>libpurple-2.6.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="i586" version="2.6.3" release="0.1">
          <filename>libpurple-devel-2.6.3-0.1.i586.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="ppc" version="2.6.3" release="0.1">
          <filename>libpurple-devel-2.6.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="x86_64" version="2.6.3" release="0.1">
          <filename>libpurple-devel-2.6.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="i586" version="2.6.3" release="0.1">
          <filename>libpurple-lang-2.6.3-0.1.i586.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="ppc" version="2.6.3" release="0.1">
          <filename>libpurple-lang-2.6.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="x86_64" version="2.6.3" release="0.1">
          <filename>libpurple-lang-2.6.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="i586" version="2.6.3" release="0.1">
          <filename>libpurple-meanwhile-2.6.3-0.1.i586.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="ppc" version="2.6.3" release="0.1">
          <filename>libpurple-meanwhile-2.6.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="x86_64" version="2.6.3" release="0.1">
          <filename>libpurple-meanwhile-2.6.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="i586" version="2.6.3" release="0.1">
          <filename>libpurple-mono-2.6.3-0.1.i586.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="ppc" version="2.6.3" release="0.1">
          <filename>libpurple-mono-2.6.3-0.1.ppc.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="x86_64" version="2.6.3" release="0.1">
          <filename>libpurple-mono-2.6.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="libtheora0" arch="i586" version="1.0.beta2" release="3.1">
          <filename>libtheora0-1.0.beta2-3.1.i586.rpm</filename>
        </package>
        <package name="libtheora0" arch="ppc" version="1.0.beta2" release="3.1">
          <filename>libtheora0-1.0.beta2-3.1.ppc.rpm</filename>
        </package>
        <package name="libtheora0" arch="x86_64" version="1.0.beta2" release="3.1">
          <filename>libtheora0-1.0.beta2-3.1.x86_64.rpm</filename>
        </package>
        <package name="libtheora0-32bit" arch="x86_64" version="1.0.beta2" release="3.1">
          <filename>libtheora0-32bit-1.0.beta2-3.1.x86_64.rpm</filename>
        </package>
        <package name="libtheora0-64bit" arch="ppc" version="1.0.beta2" release="3.1">
          <filename>libtheora0-64bit-1.0.beta2-3.1.ppc.rpm</filename>
        </package>
        <package name="libvisual" arch="i586" version="0.4.0" release="139.1">
          <filename>libvisual-0.4.0-139.1.i586.rpm</filename>
        </package>
        <package name="libvisual" arch="ppc" version="0.4.0" release="139.1">
          <filename>libvisual-0.4.0-139.1.ppc.rpm</filename>
        </package>
        <package name="libvisual" arch="x86_64" version="0.4.0" release="139.1">
          <filename>libvisual-0.4.0-139.1.x86_64.rpm</filename>
        </package>
        <package name="libvisual-32bit" arch="x86_64" version="0.4.0" release="139.1">
          <filename>libvisual-32bit-0.4.0-139.1.x86_64.rpm</filename>
        </package>
        <package name="libvisual-64bit" arch="ppc" version="0.4.0" release="139.1">
          <filename>libvisual-64bit-0.4.0-139.1.ppc.rpm</filename>
        </package>
        <package name="libvorbis" arch="i586" version="1.2.0" release="53.1">
          <filename>libvorbis-1.2.0-53.1.i586.rpm</filename>
        </package>
        <package name="libvorbis" arch="ppc" version="1.2.0" release="53.1">
          <filename>libvorbis-1.2.0-53.1.ppc.rpm</filename>
        </package>
        <package name="libvorbis" arch="x86_64" version="1.2.0" release="53.1">
          <filename>libvorbis-1.2.0-53.1.x86_64.rpm</filename>
        </package>
        <package name="libvorbis-32bit" arch="x86_64" version="1.2.0" release="53.1">
          <filename>libvorbis-32bit-1.2.0-53.1.x86_64.rpm</filename>
        </package>
        <package name="libvorbis-64bit" arch="ppc" version="1.2.0" release="53.1">
          <filename>libvorbis-64bit-1.2.0-53.1.ppc.rpm</filename>
        </package>
        <package name="pidgin" arch="i586" version="2.6.3" release="0.1">
          <filename>pidgin-2.6.3-0.1.i586.rpm</filename>
        </package>
        <package name="pidgin" arch="ppc" version="2.6.3" release="0.1">
          <filename>pidgin-2.6.3-0.1.ppc.rpm</filename>
        </package>
        <package name="pidgin" arch="x86_64" version="2.6.3" release="0.1">
          <filename>pidgin-2.6.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="i586" version="2.6.3" release="0.1">
          <filename>pidgin-devel-2.6.3-0.1.i586.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="ppc" version="2.6.3" release="0.1">
          <filename>pidgin-devel-2.6.3-0.1.ppc.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="x86_64" version="2.6.3" release="0.1">
          <filename>pidgin-devel-2.6.3-0.1.x86_64.rpm</filename>
        </package>
        <package name="pidgin-otr" arch="i586" version="3.1.0" release="87.1">
          <filename>pidgin-otr-3.1.0-87.1.i586.rpm</filename>
        </package>
        <package name="pidgin-otr" arch="ppc" version="3.1.0" release="87.1">
          <filename>pidgin-otr-3.1.0-87.1.ppc.rpm</filename>
        </package>
        <package name="pidgin-otr" arch="x86_64" version="3.1.0" release="87.1">
          <filename>pidgin-otr-3.1.0-87.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8bd5ab1731af33eb912357bce8da173e"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1640">
  <id>ncpfs</id>
  <title>ncpfs: Fix migedir hanging on ncpmount command</title>
  <release>openSUSE 11.0</release>
  <issued date="1259806530"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=527802" id="527802" title="bug number 527802" type="bugzilla"/>
  </references>
  <description>This update fixes a problem problem that occurs when the
eDir replica is only held by a Linux server and the user is
trying to mount a volume on the NetWare server (bnc#527802).
</description>
  <pkglist>
    <collection>
        <package name="ncpfs" arch="i586" version="2.2.6" release="132.2">
          <filename>ncpfs-2.2.6-132.2.i586.rpm</filename>
        </package>
        <package name="ncpfs" arch="ppc" version="2.2.6" release="132.2">
          <filename>ncpfs-2.2.6-132.2.ppc.rpm</filename>
        </package>
        <package name="ncpfs" arch="x86_64" version="2.2.6" release="132.2">
          <filename>ncpfs-2.2.6-132.2.x86_64.rpm</filename>
        </package>
        <package name="ncpfs-32bit" arch="x86_64" version="2.2.6" release="132.2">
          <filename>ncpfs-32bit-2.2.6-132.2.x86_64.rpm</filename>
        </package>
        <package name="ncpfs-64bit" arch="ppc" version="2.2.6" release="132.2">
          <filename>ncpfs-64bit-2.2.6-132.2.ppc.rpm</filename>
        </package>
        <package name="ncpfs-devel" arch="i586" version="2.2.6" release="132.2">
          <filename>ncpfs-devel-2.2.6-132.2.i586.rpm</filename>
        </package>
        <package name="ncpfs-devel" arch="ppc" version="2.2.6" release="132.2">
          <filename>ncpfs-devel-2.2.6-132.2.ppc.rpm</filename>
        </package>
        <package name="ncpfs-devel" arch="x86_64" version="2.2.6" release="132.2">
          <filename>ncpfs-devel-2.2.6-132.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b26370214cc3ff791660851dd3190b7a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1491">
  <id>perl-HTML-Parser</id>
  <title>perl-HTML-Parser security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1256897931"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550076" id="550076" title="bug number 550076" type="bugzilla"/>
  </references>
  <description>Specially crafted HTML documents could cause
perl-HTML-Parser to run into an endless loop
(CVE-2009-3627).
</description>
  <pkglist>
    <collection>
        <package name="perl-HTML-Parser" arch="i586" version="3.56" release="77.2">
          <filename>perl-HTML-Parser-3.56-77.2.i586.rpm</filename>
        </package>
        <package name="perl-HTML-Parser" arch="ppc" version="3.56" release="77.2">
          <filename>perl-HTML-Parser-3.56-77.2.ppc.rpm</filename>
        </package>
        <package name="perl-HTML-Parser" arch="x86_64" version="3.56" release="77.2">
          <filename>perl-HTML-Parser-3.56-77.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="71340217590c26c58d84a5b21a2ab796"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1653">
  <id>expat</id>
  <title>expat security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1260147937"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=558892" id="558892" title="bug number 558892" type="bugzilla"/>
  </references>
  <description>Specially crafted XML files could crash applications that
use expat to parse such files (CVE-2009-3560).
</description>
  <pkglist>
    <collection>
        <package name="expat" arch="i586" version="2.0.1" release="62.4">
          <filename>expat-2.0.1-62.4.i586.rpm</filename>
        </package>
        <package name="expat" arch="ppc" version="2.0.1" release="62.4">
          <filename>expat-2.0.1-62.4.ppc.rpm</filename>
        </package>
        <package name="expat" arch="x86_64" version="2.0.1" release="62.4">
          <filename>expat-2.0.1-62.4.x86_64.rpm</filename>
        </package>
        <package name="libexpat-devel" arch="i586" version="2.0.1" release="62.4">
          <filename>libexpat-devel-2.0.1-62.4.i586.rpm</filename>
        </package>
        <package name="libexpat-devel" arch="ppc" version="2.0.1" release="62.4">
          <filename>libexpat-devel-2.0.1-62.4.ppc.rpm</filename>
        </package>
        <package name="libexpat-devel" arch="x86_64" version="2.0.1" release="62.4">
          <filename>libexpat-devel-2.0.1-62.4.x86_64.rpm</filename>
        </package>
        <package name="libexpat1" arch="i586" version="2.0.1" release="62.4">
          <filename>libexpat1-2.0.1-62.4.i586.rpm</filename>
        </package>
        <package name="libexpat1" arch="ppc" version="2.0.1" release="62.4">
          <filename>libexpat1-2.0.1-62.4.ppc.rpm</filename>
        </package>
        <package name="libexpat1" arch="x86_64" version="2.0.1" release="62.4">
          <filename>libexpat1-2.0.1-62.4.x86_64.rpm</filename>
        </package>
        <package name="libexpat1-32bit" arch="x86_64" version="2.0.1" release="62.4">
          <filename>libexpat1-32bit-2.0.1-62.4.x86_64.rpm</filename>
        </package>
        <package name="libexpat1-64bit" arch="ppc" version="2.0.1" release="62.4">
          <filename>libexpat1-64bit-2.0.1-62.4.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e527c2726976dfadcc198e0f9d0f19af"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1577">
  <id>openslp</id>
  <title>openslp: This update fixes a bug in DAAdvert handling of non-openslp servers</title>
  <release>openSUSE 11.0</release>
  <issued date="1258730501"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=533432" id="533432" title="bug number 533432" type="bugzilla"/>
  </references>
  <description>libslp may use only a subset of the known DAs due to a bug
in the DAAdvert handling for non-openslp servers.
</description>
  <pkglist>
    <collection>
        <package name="openslp" arch="i586" version="1.2.0" release="143.4">
          <filename>openslp-1.2.0-143.4.i586.rpm</filename>
        </package>
        <package name="openslp" arch="ppc" version="1.2.0" release="143.4">
          <filename>openslp-1.2.0-143.4.ppc.rpm</filename>
        </package>
        <package name="openslp" arch="x86_64" version="1.2.0" release="143.4">
          <filename>openslp-1.2.0-143.4.x86_64.rpm</filename>
        </package>
        <package name="openslp-32bit" arch="x86_64" version="1.2.0" release="143.4">
          <filename>openslp-32bit-1.2.0-143.4.x86_64.rpm</filename>
        </package>
        <package name="openslp-64bit" arch="ppc" version="1.2.0" release="143.4">
          <filename>openslp-64bit-1.2.0-143.4.ppc.rpm</filename>
        </package>
        <package name="openslp-devel" arch="i586" version="1.2.0" release="143.4">
          <filename>openslp-devel-1.2.0-143.4.i586.rpm</filename>
        </package>
        <package name="openslp-devel" arch="ppc" version="1.2.0" release="143.4">
          <filename>openslp-devel-1.2.0-143.4.ppc.rpm</filename>
        </package>
        <package name="openslp-devel" arch="x86_64" version="1.2.0" release="143.4">
          <filename>openslp-devel-1.2.0-143.4.x86_64.rpm</filename>
        </package>
        <package name="openslp-server" arch="i586" version="1.2.0" release="143.4">
          <filename>openslp-server-1.2.0-143.4.i586.rpm</filename>
        </package>
        <package name="openslp-server" arch="ppc" version="1.2.0" release="143.4">
          <filename>openslp-server-1.2.0-143.4.ppc.rpm</filename>
        </package>
        <package name="openslp-server" arch="x86_64" version="1.2.0" release="143.4">
          <filename>openslp-server-1.2.0-143.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="926d4e9f90d8bba440201cb608fc6996"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1670">
  <id>pyxml</id>
  <title>pyxml security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1260435087"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=561561" id="561561" title="bug number 561561" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550666" id="550666" title="bug number 550666" type="bugzilla"/>
  </references>
  <description>Specially crafted XML documents could make pyxml run into
an enless loop, therefore locking up applications using
pyxml (CVE-2009-3720, CVE-2009-3560).
</description>
  <pkglist>
    <collection>
        <package name="pyxml" arch="i586" version="0.8.4" release="164.3">
          <filename>pyxml-0.8.4-164.3.i586.rpm</filename>
        </package>
        <package name="pyxml" arch="ppc" version="0.8.4" release="164.3">
          <filename>pyxml-0.8.4-164.3.ppc.rpm</filename>
        </package>
        <package name="pyxml" arch="x86_64" version="0.8.4" release="164.3">
          <filename>pyxml-0.8.4-164.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e8eafd36af71a1d8611b06837754705e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1682">
  <id>htmldoc</id>
  <title>htmldoc security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1260547217"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=535943" id="535943" title="bug number 535943" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3050" id="CVE-2009-3050" title="CVE-2009-3050" type="cve"/>
  </references>
  <description>Specially crafted files could cause a buffer overflow in
htmldoc (CVE-2009-3050).
</description>
  <pkglist>
    <collection>
        <package name="htmldoc" arch="i586" version="1.8.27" release="136.2">
          <filename>htmldoc-1.8.27-136.2.i586.rpm</filename>
        </package>
        <package name="htmldoc" arch="ppc" version="1.8.27" release="136.2">
          <filename>htmldoc-1.8.27-136.2.ppc.rpm</filename>
        </package>
        <package name="htmldoc" arch="x86_64" version="1.8.27" release="136.2">
          <filename>htmldoc-1.8.27-136.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c8eac3f3aab4972b2d705aced5754fb6"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1727">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Update to 3.0.16</title>
  <release>openSUSE 11.0</release>
  <issued date="1261067998"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=559807" id="559807" title="bug number 559807" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3979" id="CVE-2009-3979" title="CVE-2009-3979" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3981" id="CVE-2009-3981" title="CVE-2009-3981" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3983" id="CVE-2009-3983" title="CVE-2009-3983" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3984" id="CVE-2009-3984" title="CVE-2009-3984" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3985" id="CVE-2009-3985" title="CVE-2009-3985" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3986" id="CVE-2009-3986" title="CVE-2009-3986" type="cve"/>
  </references>
  <description>The Mozilla Firefox was updated to version 3.0.16, fixing
lots of bugs and various security issues.

The following issues were fixed:
* MFSA 2009-65/CVE-2009-3979/CVE-2009-3981 Crashes with
  evidence of memory corruption (1.9.0.16)
* MFSA 2009-68/CVE-2009-3983 (bmo#487872) NTLM reflection
  vulnerability
* MFSA 2009-69/CVE-2009-3984/CVE-2009-3985
  (bmo#521461,bmo#514232) Location bar spoofing
  vulnerabilities
* MFSA 2009-70/CVE-2009-3986 (bmo#522430) Privilege
  escalation via chrome window.opener
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.16" release="0.1">
          <filename>MozillaFirefox-3.0.16-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.16" release="0.1">
          <filename>MozillaFirefox-3.0.16-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.16" release="0.1">
          <filename>MozillaFirefox-3.0.16-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.16" release="0.1">
          <filename>MozillaFirefox-translations-3.0.16-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.16" release="0.1">
          <filename>MozillaFirefox-translations-3.0.16-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.16" release="0.1">
          <filename>MozillaFirefox-translations-3.0.16-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.16-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.16-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.16-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.16-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.16-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.16-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.16-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.16-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.16-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.16-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.16-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.16-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.16-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.16-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.16-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.16-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.16-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.16" release="0.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.16-0.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2577fb5e65d1c094e757eaa7a73b0543"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1671">
  <id>cups</id>
  <title>cups: Fixed a use-after-free problem</title>
  <release>openSUSE 11.0</release>
  <issued date="1260404895"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=554861" id="554861" title="bug number 554861" type="bugzilla"/>
  </references>
  <description>A use-after-free problem in cupsd allowed remote attackers
to crash the cups server (CVE-2009-3553).
</description>
  <pkglist>
    <collection>
        <package name="cups" arch="i586" version="1.3.7" release="25.14">
          <filename>cups-1.3.7-25.14.i586.rpm</filename>
        </package>
        <package name="cups" arch="ppc" version="1.3.7" release="25.14">
          <filename>cups-1.3.7-25.14.ppc.rpm</filename>
        </package>
        <package name="cups" arch="x86_64" version="1.3.7" release="25.14">
          <filename>cups-1.3.7-25.14.x86_64.rpm</filename>
        </package>
        <package name="cups-client" arch="i586" version="1.3.7" release="25.14">
          <filename>cups-client-1.3.7-25.14.i586.rpm</filename>
        </package>
        <package name="cups-client" arch="ppc" version="1.3.7" release="25.14">
          <filename>cups-client-1.3.7-25.14.ppc.rpm</filename>
        </package>
        <package name="cups-client" arch="x86_64" version="1.3.7" release="25.14">
          <filename>cups-client-1.3.7-25.14.x86_64.rpm</filename>
        </package>
        <package name="cups-devel" arch="i586" version="1.3.7" release="25.14">
          <filename>cups-devel-1.3.7-25.14.i586.rpm</filename>
        </package>
        <package name="cups-devel" arch="ppc" version="1.3.7" release="25.14">
          <filename>cups-devel-1.3.7-25.14.ppc.rpm</filename>
        </package>
        <package name="cups-devel" arch="x86_64" version="1.3.7" release="25.14">
          <filename>cups-devel-1.3.7-25.14.x86_64.rpm</filename>
        </package>
        <package name="cups-libs" arch="i586" version="1.3.7" release="25.14">
          <filename>cups-libs-1.3.7-25.14.i586.rpm</filename>
        </package>
        <package name="cups-libs" arch="ppc" version="1.3.7" release="25.14">
          <filename>cups-libs-1.3.7-25.14.ppc.rpm</filename>
        </package>
        <package name="cups-libs" arch="x86_64" version="1.3.7" release="25.14">
          <filename>cups-libs-1.3.7-25.14.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-32bit" arch="x86_64" version="1.3.7" release="25.14">
          <filename>cups-libs-32bit-1.3.7-25.14.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-64bit" arch="ppc" version="1.3.7" release="25.14">
          <filename>cups-libs-64bit-1.3.7-25.14.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fff91b3e781560ac7e3fa2be341b5c8d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1740">
  <id>libpoppler-devel</id>
  <title>libpoppler3: buffer overflow in the Abiword backend</title>
  <release>openSUSE 11.0</release>
  <issued date="1261526792"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=537171" id="537171" title="bug number 537171" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=543090" id="543090" title="bug number 543090" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=546393" id="546393" title="bug number 546393" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=507102" id="507102" title="bug number 507102" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=556876" id="556876" title="bug number 556876" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=556607" id="556607" title="bug number 556607" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0791" id="CVE-2009-0791" title="CVE-2009-0791" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3608" id="CVE-2009-3608" title="CVE-2009-3608" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3607" id="CVE-2009-3607" title="CVE-2009-3607" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3938" id="CVE-2009-3938" title="CVE-2009-3938" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4035" id="CVE-2009-4035" title="CVE-2009-4035" type="cve"/>
  </references>
  <description>This update of libpoppler3 fixes various security issues.

CVE-2009-0791: Fix multiple integer overflows in &quot;pdftops&quot;
filter that could be used by attackers to execute code.

CVE-2009-3607: Integer overflow in the
create_surface_from_thumbnail_data function in
glib/poppler-page.cc in Poppler 0.x allows remote attackers
to cause a denial of service (memory corruption) or
possibly execute arbitrary code via a crafted PDF document
that triggers a heap-based buffer overflow. NOTE: some of
these details are obtained from third party information. 

CVE-2009-3608: Integer overflow in the
ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x
before 3.02pl4 and Poppler before 0.12.1, as used in GPdf,
kdegraphics KPDF, CUPS pdftops, and teTeX, might allow
remote attackers to execute arbitrary code via a crafted
PDF document that triggers a heap-based buffer overflow. 

CVE-2009-3938: Buffer overflow in the ABWOutputDev::endWord
function in poppler/ABWOutputDev.cc in Poppler (aka
libpoppler) 0.10.6, 0.12.0, and possibly other versions, as
used by the Abiword pdftoabw utility, allows user-assisted
remote attackers to cause a denial of service and possibly
execute arbitrary code via a crafted PDF file. 

CVE-2009-4035: A indexing error in FoFiType1::parse() was
fixed that could be used by attackers to corrupt memory and
potentially execute code.
</description>
  <pkglist>
    <collection>
        <package name="libpoppler-devel" arch="i586" version="0.8.2" release="1.5">
          <filename>libpoppler-devel-0.8.2-1.5.i586.rpm</filename>
        </package>
        <package name="libpoppler-devel" arch="ppc" version="0.8.2" release="1.5">
          <filename>libpoppler-devel-0.8.2-1.5.ppc.rpm</filename>
        </package>
        <package name="libpoppler-devel" arch="x86_64" version="0.8.2" release="1.5">
          <filename>libpoppler-devel-0.8.2-1.5.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-doc" arch="i586" version="0.8.2" release="1.5">
          <filename>libpoppler-doc-0.8.2-1.5.i586.rpm</filename>
        </package>
        <package name="libpoppler-doc" arch="ppc" version="0.8.2" release="1.5">
          <filename>libpoppler-doc-0.8.2-1.5.ppc.rpm</filename>
        </package>
        <package name="libpoppler-doc" arch="x86_64" version="0.8.2" release="1.5">
          <filename>libpoppler-doc-0.8.2-1.5.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-glib-devel" arch="i586" version="0.8.2" release="1.5">
          <filename>libpoppler-glib-devel-0.8.2-1.5.i586.rpm</filename>
        </package>
        <package name="libpoppler-glib-devel" arch="ppc" version="0.8.2" release="1.5">
          <filename>libpoppler-glib-devel-0.8.2-1.5.ppc.rpm</filename>
        </package>
        <package name="libpoppler-glib-devel" arch="x86_64" version="0.8.2" release="1.5">
          <filename>libpoppler-glib-devel-0.8.2-1.5.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-glib3" arch="i586" version="0.8.2" release="1.5">
          <filename>libpoppler-glib3-0.8.2-1.5.i586.rpm</filename>
        </package>
        <package name="libpoppler-glib3" arch="ppc" version="0.8.2" release="1.5">
          <filename>libpoppler-glib3-0.8.2-1.5.ppc.rpm</filename>
        </package>
        <package name="libpoppler-glib3" arch="x86_64" version="0.8.2" release="1.5">
          <filename>libpoppler-glib3-0.8.2-1.5.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-qt2" arch="i586" version="0.8.2" release="1.5">
          <filename>libpoppler-qt2-0.8.2-1.5.i586.rpm</filename>
        </package>
        <package name="libpoppler-qt2" arch="ppc" version="0.8.2" release="1.5">
          <filename>libpoppler-qt2-0.8.2-1.5.ppc.rpm</filename>
        </package>
        <package name="libpoppler-qt2" arch="x86_64" version="0.8.2" release="1.5">
          <filename>libpoppler-qt2-0.8.2-1.5.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-qt3-devel" arch="i586" version="0.8.2" release="1.5">
          <filename>libpoppler-qt3-devel-0.8.2-1.5.i586.rpm</filename>
        </package>
        <package name="libpoppler-qt3-devel" arch="ppc" version="0.8.2" release="1.5">
          <filename>libpoppler-qt3-devel-0.8.2-1.5.ppc.rpm</filename>
        </package>
        <package name="libpoppler-qt3-devel" arch="x86_64" version="0.8.2" release="1.5">
          <filename>libpoppler-qt3-devel-0.8.2-1.5.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-qt4-3" arch="i586" version="0.8.2" release="1.5">
          <filename>libpoppler-qt4-3-0.8.2-1.5.i586.rpm</filename>
        </package>
        <package name="libpoppler-qt4-3" arch="ppc" version="0.8.2" release="1.5">
          <filename>libpoppler-qt4-3-0.8.2-1.5.ppc.rpm</filename>
        </package>
        <package name="libpoppler-qt4-3" arch="x86_64" version="0.8.2" release="1.5">
          <filename>libpoppler-qt4-3-0.8.2-1.5.x86_64.rpm</filename>
        </package>
        <package name="libpoppler-qt4-devel" arch="i586" version="0.8.2" release="1.5">
          <filename>libpoppler-qt4-devel-0.8.2-1.5.i586.rpm</filename>
        </package>
        <package name="libpoppler-qt4-devel" arch="ppc" version="0.8.2" release="1.5">
          <filename>libpoppler-qt4-devel-0.8.2-1.5.ppc.rpm</filename>
        </package>
        <package name="libpoppler-qt4-devel" arch="x86_64" version="0.8.2" release="1.5">
          <filename>libpoppler-qt4-devel-0.8.2-1.5.x86_64.rpm</filename>
        </package>
        <package name="libpoppler3" arch="i586" version="0.8.2" release="1.5">
          <filename>libpoppler3-0.8.2-1.5.i586.rpm</filename>
        </package>
        <package name="libpoppler3" arch="ppc" version="0.8.2" release="1.5">
          <filename>libpoppler3-0.8.2-1.5.ppc.rpm</filename>
        </package>
        <package name="libpoppler3" arch="x86_64" version="0.8.2" release="1.5">
          <filename>libpoppler3-0.8.2-1.5.x86_64.rpm</filename>
        </package>
        <package name="poppler-tools" arch="i586" version="0.8.2" release="1.5">
          <filename>poppler-tools-0.8.2-1.5.i586.rpm</filename>
        </package>
        <package name="poppler-tools" arch="ppc" version="0.8.2" release="1.5">
          <filename>poppler-tools-0.8.2-1.5.ppc.rpm</filename>
        </package>
        <package name="poppler-tools" arch="x86_64" version="0.8.2" release="1.5">
          <filename>poppler-tools-0.8.2-1.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6141bdcc869bb1cca023f28e33d24cb8"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1651">
  <id>yast2-backup</id>
  <title>yast2-backup: Two YaST automatic backup bugs are fixed by this update.</title>
  <release>openSUSE 11.0</release>
  <issued date="1259936400"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550996" id="550996" title="bug number 550996" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=548427" id="548427" title="bug number 548427" type="bugzilla"/>
  </references>
  <description></description>
  <pkglist>
    <collection>
        <package name="yast2-backup" arch="noarch" version="2.16.8" release="0.1">
          <filename>yast2-backup-2.16.8-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7a8b73fdf49c4662baf96f0baa7426eb"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1638">
  <id>libltdl-3</id>
  <title>VUL-0: libtool: libltdl may load modules from the current working directory</title>
  <release>openSUSE 11.0</release>
  <issued date="1259687082"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=556122" id="556122" title="bug number 556122" type="bugzilla"/>
  </references>
  <description>libtool: libltdl may load modules from the current working
directory. CVE-2009-3736 has been assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="libltdl-3" arch="i586" version="1.5.26" release="23.2">
          <filename>libltdl-3-1.5.26-23.2.i586.rpm</filename>
        </package>
        <package name="libltdl-3" arch="ppc" version="1.5.26" release="23.2">
          <filename>libltdl-3-1.5.26-23.2.ppc.rpm</filename>
        </package>
        <package name="libltdl-3" arch="x86_64" version="1.5.26" release="23.2">
          <filename>libltdl-3-1.5.26-23.2.x86_64.rpm</filename>
        </package>
        <package name="libltdl-3-32bit" arch="x86_64" version="1.5.26" release="23.2">
          <filename>libltdl-3-32bit-1.5.26-23.2.x86_64.rpm</filename>
        </package>
        <package name="libltdl-3-64bit" arch="ppc" version="1.5.26" release="23.2">
          <filename>libltdl-3-64bit-1.5.26-23.2.ppc.rpm</filename>
        </package>
        <package name="libtool" arch="i586" version="1.5.26" release="23.2">
          <filename>libtool-1.5.26-23.2.i586.rpm</filename>
        </package>
        <package name="libtool" arch="ppc" version="1.5.26" release="23.2">
          <filename>libtool-1.5.26-23.2.ppc.rpm</filename>
        </package>
        <package name="libtool" arch="x86_64" version="1.5.26" release="23.2">
          <filename>libtool-1.5.26-23.2.x86_64.rpm</filename>
        </package>
        <package name="libtool-32bit" arch="x86_64" version="1.5.26" release="23.2">
          <filename>libtool-32bit-1.5.26-23.2.x86_64.rpm</filename>
        </package>
        <package name="libtool-64bit" arch="ppc" version="1.5.26" release="23.2">
          <filename>libtool-64bit-1.5.26-23.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ae6ee68d5973a4950360c0e4ca8a5352"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1745">
  <id>perl-spamassassin</id>
  <title>SpamAssassin: Fixed FH_DATE_PAST_20XX rule mishandling of 2010</title>
  <release>openSUSE 11.0</release>
  <issued date="1262708981"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=567849" id="567849" title="bug number 567849" type="bugzilla"/>
  </references>
  <description>Versions of the FH_DATE_PAST_20XX [2] rule released with
versions of Apache SpamAssassin 3.2.0 thru 3.2.5 will
trigger on most mail with a Date header that includes the
year 2010 or later.  The rule will add a score of up to 3.6
towards the spam classification of all email.
</description>
  <pkglist>
    <collection>
        <package name="perl-spamassassin" arch="i586" version="3.2.4" release="29.2">
          <filename>perl-spamassassin-3.2.4-29.2.i586.rpm</filename>
        </package>
        <package name="perl-spamassassin" arch="ppc" version="3.2.4" release="29.2">
          <filename>perl-spamassassin-3.2.4-29.2.ppc.rpm</filename>
        </package>
        <package name="perl-spamassassin" arch="x86_64" version="3.2.4" release="29.2">
          <filename>perl-spamassassin-3.2.4-29.2.x86_64.rpm</filename>
        </package>
        <package name="spamassassin" arch="i586" version="3.2.4" release="29.2">
          <filename>spamassassin-3.2.4-29.2.i586.rpm</filename>
        </package>
        <package name="spamassassin" arch="ppc" version="3.2.4" release="29.2">
          <filename>spamassassin-3.2.4-29.2.ppc.rpm</filename>
        </package>
        <package name="spamassassin" arch="x86_64" version="3.2.4" release="29.2">
          <filename>spamassassin-3.2.4-29.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="76b3da6fa588e934f34180d3a0b353d4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1769">
  <id>flash-player</id>
  <title>flash-player security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1263174487"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=560259" id="560259" title="bug number 560259" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3794" id="CVE-2009-3794" title="CVE-2009-3794" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3796" id="CVE-2009-3796" title="CVE-2009-3796" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3797" id="CVE-2009-3797" title="CVE-2009-3797" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3798" id="CVE-2009-3798" title="CVE-2009-3798" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3799" id="CVE-2009-3799" title="CVE-2009-3799" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3800" id="CVE-2009-3800" title="CVE-2009-3800" type="cve"/>
  </references>
  <description>Specially crafted Flash (SWF) files can cause overflows in
flash-player. Attackers could potentially exploit that to
execute arbitrary code (CVE-2009-3794, CVE-2009-3796,
CVE-2009-3797, CVE-2009-3798,CVE-2009-3799, CVE-2009-3800,
CVE-2009-3951)

flash-player was upgraded to version 10 to fix those
problems.
</description>
  <pkglist>
    <collection>
        <package name="flash-player" arch="i586" version="10.0.42.34" release="2.1">
          <filename>flash-player-10.0.42.34-2.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3cac3fb5903c9272730a8239dda56078"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1728">
  <id>ntp</id>
  <title>ntp security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1260494867"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550316" id="550316" title="bug number 550316" type="bugzilla"/>
  </references>
  <description>By sending specially crafted NTP packets attackers could
make ntpd flood it's log file with error messages or even
run into an endless loop (CVE-2009-3563).
</description>
  <pkglist>
    <collection>
        <package name="ntp" arch="i586" version="4.2.4p4" release="44.7">
          <filename>ntp-4.2.4p4-44.7.i586.rpm</filename>
        </package>
        <package name="ntp" arch="ppc" version="4.2.4p4" release="44.7">
          <filename>ntp-4.2.4p4-44.7.ppc.rpm</filename>
        </package>
        <package name="ntp" arch="x86_64" version="4.2.4p4" release="44.7">
          <filename>ntp-4.2.4p4-44.7.x86_64.rpm</filename>
        </package>
        <package name="ntp-doc" arch="i586" version="4.2.4p4" release="44.7">
          <filename>ntp-doc-4.2.4p4-44.7.i586.rpm</filename>
        </package>
        <package name="ntp-doc" arch="ppc" version="4.2.4p4" release="44.7">
          <filename>ntp-doc-4.2.4p4-44.7.ppc.rpm</filename>
        </package>
        <package name="ntp-doc" arch="x86_64" version="4.2.4p4" release="44.7">
          <filename>ntp-doc-4.2.4p4-44.7.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="add2442b44633257e1d88aca1c518dec"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1768">
  <id>timezone-2009u</id>
  <title>timezone: Update to 2009u</title>
  <release>openSUSE 11.0</release>
  <issued date="1263174316"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=558411" id="558411" title="bug number 558411" type="bugzilla"/>
  </references>
  <description>updated tzdata to version 2009u:
  * DST changes: Asia/Damascus, Asia/Dhaka, Pacific/Fiji
  * GMT offset changes: some bases in Antartica
  * New zones: Asia/Novokuznetsk
  * Historical changes: Asia/Hong_Kong
</description>
  <pkglist>
    <collection>
        <package name="timezone" arch="i586" version="2009u" release="0.1">
          <filename>timezone-2009u-0.1.i586.rpm</filename>
        </package>
        <package name="timezone" arch="ppc" version="2009u" release="0.1">
          <filename>timezone-2009u-0.1.ppc.rpm</filename>
        </package>
        <package name="timezone" arch="x86_64" version="2009u" release="0.1">
          <filename>timezone-2009u-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5d2b76c2e616bd0554e6be62b375d69b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1781">
  <id>expat</id>
  <title>expat regression</title>
  <release>openSUSE 11.0</release>
  <issued date="1263174759"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=566434" id="566434" title="bug number 566434" type="bugzilla"/>
  </references>
  <description>The previous expat security update (CVE-2009-3560) caused
parse errors with some xml documents.
</description>
  <pkglist>
    <collection>
        <package name="expat" arch="i586" version="2.0.1" release="62.6">
          <filename>expat-2.0.1-62.6.i586.rpm</filename>
        </package>
        <package name="expat" arch="ppc" version="2.0.1" release="62.6">
          <filename>expat-2.0.1-62.6.ppc.rpm</filename>
        </package>
        <package name="expat" arch="x86_64" version="2.0.1" release="62.6">
          <filename>expat-2.0.1-62.6.x86_64.rpm</filename>
        </package>
        <package name="libexpat-devel" arch="i586" version="2.0.1" release="62.6">
          <filename>libexpat-devel-2.0.1-62.6.i586.rpm</filename>
        </package>
        <package name="libexpat-devel" arch="ppc" version="2.0.1" release="62.6">
          <filename>libexpat-devel-2.0.1-62.6.ppc.rpm</filename>
        </package>
        <package name="libexpat-devel" arch="x86_64" version="2.0.1" release="62.6">
          <filename>libexpat-devel-2.0.1-62.6.x86_64.rpm</filename>
        </package>
        <package name="libexpat1" arch="i586" version="2.0.1" release="62.6">
          <filename>libexpat1-2.0.1-62.6.i586.rpm</filename>
        </package>
        <package name="libexpat1" arch="ppc" version="2.0.1" release="62.6">
          <filename>libexpat1-2.0.1-62.6.ppc.rpm</filename>
        </package>
        <package name="libexpat1" arch="x86_64" version="2.0.1" release="62.6">
          <filename>libexpat1-2.0.1-62.6.x86_64.rpm</filename>
        </package>
        <package name="libexpat1-32bit" arch="x86_64" version="2.0.1" release="62.6">
          <filename>libexpat1-32bit-2.0.1-62.6.x86_64.rpm</filename>
        </package>
        <package name="libexpat1-64bit" arch="ppc" version="2.0.1" release="62.6">
          <filename>libexpat1-64bit-2.0.1-62.6.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="aa78a7136a779ea72415981ed4b06e1c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1801">
  <id>phpMyAdmin</id>
  <title>phpMyAdmin security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1260378863"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=559569" id="559569" title="bug number 559569" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4605" id="CVE-2009-4605" title="CVE-2009-4605" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-7251" id="CVE-2008-7251" title="CVE-2008-7251" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-7252" id="CVE-2008-7252" title="CVE-2008-7252" type="cve"/>
  </references>
  <description>The use of unserialize() on POST data which could have lead
to remote code execution (CVE-2009-4605) has been fixed as
well as some minor temporary file issues (CVE-2008-7251,
CVE-2008-7252).
</description>
  <pkglist>
    <collection>
        <package name="phpMyAdmin" arch="noarch" version="2.11.9.6" release="0.3">
          <filename>phpMyAdmin-2.11.9.6-0.3.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="525ed99dde8b46293eb0ecfa04651841"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1773">
  <id>postgresql</id>
  <title>postgresql security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1262952673"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=564360" id="564360" title="bug number 564360" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=564710" id="564710" title="bug number 564710" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4136" id="CVE-2009-4136" title="CVE-2009-4136" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4034" id="CVE-2009-4034" title="CVE-2009-4034" type="cve"/>
  </references>
  <description>An unprivileged, authenticated PostgreSQL user could create
a table which references functions with malicious content.
Maintenance operations carried out be the database
superuser could execute such functions (CVE-2009-4136).

Embedded null bytes in the common name of SSL certificates
could bypass certificate hostname checks (CVE-2009-4034).

postgresql was updated to the next upstream patchlevel
update which also includes several bugfixes. See the
package changelog for details.
</description>
  <pkglist>
    <collection>
        <package name="postgresql" arch="i586" version="8.3.9" release="0.1">
          <filename>postgresql-8.3.9-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql" arch="ppc" version="8.3.9" release="0.1">
          <filename>postgresql-8.3.9-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql" arch="ppc64" version="8.3.9" release="0.1">
          <filename>postgresql-8.3.9-0.1.ppc64.rpm</filename>
        </package>
        <package name="postgresql" arch="x86_64" version="8.3.9" release="0.1">
          <filename>postgresql-8.3.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="i586" version="8.3.9" release="0.1">
          <filename>postgresql-contrib-8.3.9-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="ppc" version="8.3.9" release="0.1">
          <filename>postgresql-contrib-8.3.9-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="x86_64" version="8.3.9" release="0.1">
          <filename>postgresql-contrib-8.3.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="i586" version="8.3.9" release="0.1">
          <filename>postgresql-devel-8.3.9-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="ppc" version="8.3.9" release="0.1">
          <filename>postgresql-devel-8.3.9-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="x86_64" version="8.3.9" release="0.1">
          <filename>postgresql-devel-8.3.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="i586" version="8.3.9" release="0.1">
          <filename>postgresql-docs-8.3.9-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="ppc" version="8.3.9" release="0.1">
          <filename>postgresql-docs-8.3.9-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="x86_64" version="8.3.9" release="0.1">
          <filename>postgresql-docs-8.3.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="i586" version="8.3.9" release="0.1">
          <filename>postgresql-libs-8.3.9-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="ppc" version="8.3.9" release="0.1">
          <filename>postgresql-libs-8.3.9-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="x86_64" version="8.3.9" release="0.1">
          <filename>postgresql-libs-8.3.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs-32bit" arch="x86_64" version="8.3.9" release="0.1">
          <filename>postgresql-libs-32bit-8.3.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs-64bit" arch="ppc" version="8.3.9" release="0.1">
          <filename>postgresql-libs-64bit-8.3.9-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-plperl" arch="i586" version="8.3.9" release="0.1">
          <filename>postgresql-plperl-8.3.9-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-plperl" arch="ppc" version="8.3.9" release="0.1">
          <filename>postgresql-plperl-8.3.9-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-plperl" arch="x86_64" version="8.3.9" release="0.1">
          <filename>postgresql-plperl-8.3.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-plpython" arch="i586" version="8.3.9" release="0.1">
          <filename>postgresql-plpython-8.3.9-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-plpython" arch="ppc" version="8.3.9" release="0.1">
          <filename>postgresql-plpython-8.3.9-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-plpython" arch="x86_64" version="8.3.9" release="0.1">
          <filename>postgresql-plpython-8.3.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-pltcl" arch="i586" version="8.3.9" release="0.1">
          <filename>postgresql-pltcl-8.3.9-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-pltcl" arch="ppc" version="8.3.9" release="0.1">
          <filename>postgresql-pltcl-8.3.9-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-pltcl" arch="x86_64" version="8.3.9" release="0.1">
          <filename>postgresql-pltcl-8.3.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-server" arch="i586" version="8.3.9" release="0.1">
          <filename>postgresql-server-8.3.9-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-server" arch="ppc" version="8.3.9" release="0.1">
          <filename>postgresql-server-8.3.9-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-server" arch="x86_64" version="8.3.9" release="0.1">
          <filename>postgresql-server-8.3.9-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="50472277a8983b6e02cde01a1094f1f5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1813">
  <id>msmtp</id>
  <title>msmtp security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1263775993"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=557181" id="557181" title="bug number 557181" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3942" id="CVE-2009-3942" title="CVE-2009-3942" type="cve"/>
  </references>
  <description>msmtp did not properly handle a '0' character in the domain
name of SSL certificates (CVE-2009-3942).
</description>
  <pkglist>
    <collection>
        <package name="msmtp" arch="i586" version="1.4.14" release="14.2">
          <filename>msmtp-1.4.14-14.2.i586.rpm</filename>
        </package>
        <package name="msmtp" arch="ppc" version="1.4.14" release="14.2">
          <filename>msmtp-1.4.14-14.2.ppc.rpm</filename>
        </package>
        <package name="msmtp" arch="x86_64" version="1.4.14" release="14.2">
          <filename>msmtp-1.4.14-14.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c3f00622573f678ec6905accc33e53b4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1795">
  <id>krb5</id>
  <title>krb5 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1263343487"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=561351" id="561351" title="bug number 561351" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4212" id="CVE-2009-4212" title="CVE-2009-4212" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3295" id="CVE-2009-3295" title="CVE-2009-3295" type="cve"/>
  </references>
  <description>Specially crafted AES and RC4 packets could allow
unauthenticated remote attackers to trigger an integer
overflow leads to heap memory corruption (CVE-2009-4212).
</description>
  <pkglist>
    <collection>
        <package name="krb5" arch="i586" version="1.6.3" release="50.7">
          <filename>krb5-1.6.3-50.7.i586.rpm</filename>
        </package>
        <package name="krb5" arch="ppc" version="1.6.3" release="50.7">
          <filename>krb5-1.6.3-50.7.ppc.rpm</filename>
        </package>
        <package name="krb5" arch="x86_64" version="1.6.3" release="50.7">
          <filename>krb5-1.6.3-50.7.x86_64.rpm</filename>
        </package>
        <package name="krb5-32bit" arch="x86_64" version="1.6.3" release="50.7">
          <filename>krb5-32bit-1.6.3-50.7.x86_64.rpm</filename>
        </package>
        <package name="krb5-64bit" arch="ppc" version="1.6.3" release="50.7">
          <filename>krb5-64bit-1.6.3-50.7.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="i586" version="1.6.3" release="50.7">
          <filename>krb5-apps-clients-1.6.3-50.7.i586.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="ppc" version="1.6.3" release="50.7">
          <filename>krb5-apps-clients-1.6.3-50.7.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="x86_64" version="1.6.3" release="50.7">
          <filename>krb5-apps-clients-1.6.3-50.7.x86_64.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="i586" version="1.6.3" release="50.7">
          <filename>krb5-apps-servers-1.6.3-50.7.i586.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="ppc" version="1.6.3" release="50.7">
          <filename>krb5-apps-servers-1.6.3-50.7.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="x86_64" version="1.6.3" release="50.7">
          <filename>krb5-apps-servers-1.6.3-50.7.x86_64.rpm</filename>
        </package>
        <package name="krb5-client" arch="i586" version="1.6.3" release="50.7">
          <filename>krb5-client-1.6.3-50.7.i586.rpm</filename>
        </package>
        <package name="krb5-client" arch="ppc" version="1.6.3" release="50.7">
          <filename>krb5-client-1.6.3-50.7.ppc.rpm</filename>
        </package>
        <package name="krb5-client" arch="x86_64" version="1.6.3" release="50.7">
          <filename>krb5-client-1.6.3-50.7.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel" arch="i586" version="1.6.3" release="50.7">
          <filename>krb5-devel-1.6.3-50.7.i586.rpm</filename>
        </package>
        <package name="krb5-devel" arch="ppc" version="1.6.3" release="50.7">
          <filename>krb5-devel-1.6.3-50.7.ppc.rpm</filename>
        </package>
        <package name="krb5-devel" arch="x86_64" version="1.6.3" release="50.7">
          <filename>krb5-devel-1.6.3-50.7.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel-32bit" arch="x86_64" version="1.6.3" release="50.7">
          <filename>krb5-devel-32bit-1.6.3-50.7.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel-64bit" arch="ppc" version="1.6.3" release="50.7">
          <filename>krb5-devel-64bit-1.6.3-50.7.ppc.rpm</filename>
        </package>
        <package name="krb5-server" arch="i586" version="1.6.3" release="50.7">
          <filename>krb5-server-1.6.3-50.7.i586.rpm</filename>
        </package>
        <package name="krb5-server" arch="ppc" version="1.6.3" release="50.7">
          <filename>krb5-server-1.6.3-50.7.ppc.rpm</filename>
        </package>
        <package name="krb5-server" arch="x86_64" version="1.6.3" release="50.7">
          <filename>krb5-server-1.6.3-50.7.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f765e0443654ec8e8bc6efba5d2ceca3"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1777">
  <id>transmission</id>
  <title>transmission security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1263232289"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=568228" id="568228" title="bug number 568228" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0012" id="CVE-2010-0012" title="CVE-2010-0012" type="cve"/>
  </references>
  <description>Specially crafted torrent files could overwrite arbitrary
files.
</description>
  <pkglist>
    <collection>
        <package name="transmission" arch="i586" version="1.11" release="18.2">
          <filename>transmission-1.11-18.2.i586.rpm</filename>
        </package>
        <package name="transmission" arch="ppc" version="1.11" release="18.2">
          <filename>transmission-1.11-18.2.ppc.rpm</filename>
        </package>
        <package name="transmission" arch="x86_64" version="1.11" release="18.2">
          <filename>transmission-1.11-18.2.x86_64.rpm</filename>
        </package>
        <package name="transmission-gtk" arch="i586" version="1.11" release="18.2">
          <filename>transmission-gtk-1.11-18.2.i586.rpm</filename>
        </package>
        <package name="transmission-gtk" arch="ppc" version="1.11" release="18.2">
          <filename>transmission-gtk-1.11-18.2.ppc.rpm</filename>
        </package>
        <package name="transmission-gtk" arch="x86_64" version="1.11" release="18.2">
          <filename>transmission-gtk-1.11-18.2.x86_64.rpm</filename>
        </package>
        <package name="transmission-lang" arch="i586" version="1.11" release="18.2">
          <filename>transmission-lang-1.11-18.2.i586.rpm</filename>
        </package>
        <package name="transmission-lang" arch="ppc" version="1.11" release="18.2">
          <filename>transmission-lang-1.11-18.2.ppc.rpm</filename>
        </package>
        <package name="transmission-lang" arch="x86_64" version="1.11" release="18.2">
          <filename>transmission-lang-1.11-18.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a45fbe6ee8657c4b02d8a2b5418ad16c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1833">
  <id>openssl-CVE-2009-4355.patch</id>
  <title>openssl security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1263567079"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=566238" id="566238" title="bug number 566238" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4355" id="CVE-2009-4355" title="CVE-2009-4355" type="cve"/>
  </references>
  <description>Incorrect use of an openssl cleanup function can lead to
memory leaks in applications. For example an ssl enabled
web server such as apache that uses php, curl and openssl
leaks memory if a SIGHUP signal was sent to apache. The
openssl cleanup function was made more robust to avoid
memory leaks (CVE-2009-4355).
</description>
  <pkglist>
    <collection>
        <package name="libopenssl-devel" arch="i586" version="0.9.8g" release="47.12">
          <filename>libopenssl-devel-0.9.8g-47.12.i586.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="ppc" version="0.9.8g" release="47.12">
          <filename>libopenssl-devel-0.9.8g-47.12.ppc.rpm</filename>
        </package>
        <package name="libopenssl-devel" arch="x86_64" version="0.9.8g" release="47.12">
          <filename>libopenssl-devel-0.9.8g-47.12.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="i586" version="0.9.8g" release="47.12">
          <filename>libopenssl0_9_8-0.9.8g-47.12.i586.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="ppc" version="0.9.8g" release="47.12">
          <filename>libopenssl0_9_8-0.9.8g-47.12.ppc.rpm</filename>
        </package>
        <package name="libopenssl0_9_8" arch="x86_64" version="0.9.8g" release="47.12">
          <filename>libopenssl0_9_8-0.9.8g-47.12.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-32bit" arch="x86_64" version="0.9.8g" release="47.12">
          <filename>libopenssl0_9_8-32bit-0.9.8g-47.12.x86_64.rpm</filename>
        </package>
        <package name="libopenssl0_9_8-64bit" arch="ppc" version="0.9.8g" release="47.12">
          <filename>libopenssl0_9_8-64bit-0.9.8g-47.12.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="i586" version="0.9.8g" release="47.12">
          <filename>openssl-0.9.8g-47.12.i586.rpm</filename>
        </package>
        <package name="openssl" arch="ppc" version="0.9.8g" release="47.12">
          <filename>openssl-0.9.8g-47.12.ppc.rpm</filename>
        </package>
        <package name="openssl" arch="x86_64" version="0.9.8g" release="47.12">
          <filename>openssl-0.9.8g-47.12.x86_64.rpm</filename>
        </package>
        <package name="openssl-certs" arch="i586" version="0.9.8g" release="47.12">
          <filename>openssl-certs-0.9.8g-47.12.i586.rpm</filename>
        </package>
        <package name="openssl-certs" arch="ppc" version="0.9.8g" release="47.12">
          <filename>openssl-certs-0.9.8g-47.12.ppc.rpm</filename>
        </package>
        <package name="openssl-certs" arch="x86_64" version="0.9.8g" release="47.12">
          <filename>openssl-certs-0.9.8g-47.12.x86_64.rpm</filename>
        </package>
        <package name="openssl-doc" arch="i586" version="0.9.8g" release="47.12">
          <filename>openssl-doc-0.9.8g-47.12.i586.rpm</filename>
        </package>
        <package name="openssl-doc" arch="ppc" version="0.9.8g" release="47.12">
          <filename>openssl-doc-0.9.8g-47.12.ppc.rpm</filename>
        </package>
        <package name="openssl-doc" arch="x86_64" version="0.9.8g" release="47.12">
          <filename>openssl-doc-0.9.8g-47.12.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cce6f950d887c9dbc2a539986dfc1a53"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1849">
  <id>acroread</id>
  <title>acroread security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1264155899"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=564742" id="564742" title="bug number 564742" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3953" id="CVE-2009-3953" title="CVE-2009-3953" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3954" id="CVE-2009-3954" title="CVE-2009-3954" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3955" id="CVE-2009-3955" title="CVE-2009-3955" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3956" id="CVE-2009-3956" title="CVE-2009-3956" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3957" id="CVE-2009-3957" title="CVE-2009-3957" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3958" id="CVE-2009-3958" title="CVE-2009-3958" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3959" id="CVE-2009-3959" title="CVE-2009-3959" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4324" id="CVE-2009-4324" title="CVE-2009-4324" type="cve"/>
  </references>
  <description>Specially crafted PDF files could crash acroread. Attackers
could exploit that to potentially execute arbitrary code
(CVE-2009-3953, CVE-2009-3954, CVE-2009-3955,
CVE-2009-3956, CVE-2009-3957, CVE-2009-3958, CVE-2009-3959,
CVE-2009-4324).

Acrobat reader was updated to version 9.3 to fix those
security issues.
</description>
  <pkglist>
    <collection>
        <package name="acroread" arch="i586" version="9.3" release="0.1">
          <filename>acroread-9.3-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a2862dc82a06968bf258e3bb085ab14b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1843">
  <id>bind</id>
  <title>bind security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1264094207"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=570912" id="570912" title="bug number 570912" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0097" id="CVE-2010-0097" title="CVE-2010-0097" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0290" id="CVE-2010-0290" title="CVE-2010-0290" type="cve"/>
  </references>
  <description>bind when configured for DNSSEC could incorrectly cache
NXDOMAIN responses (CVE-2010-0097). Moreover, the fix for
CVE-2009-4022 was incomplete. Despite the previous fix
CNAME and DNAME responses could be incorrectly cached
(CVE-2010-0290).

bind was updated to version 9.4.3-P5 in order to fix those
issues.
</description>
  <pkglist>
    <collection>
        <package name="bind" arch="i586" version="9.4.3P5" release="0.1">
          <filename>bind-9.4.3P5-0.1.i586.rpm</filename>
        </package>
        <package name="bind" arch="ppc" version="9.4.3P5" release="0.1">
          <filename>bind-9.4.3P5-0.1.ppc.rpm</filename>
        </package>
        <package name="bind" arch="x86_64" version="9.4.3P5" release="0.1">
          <filename>bind-9.4.3P5-0.1.x86_64.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="i586" version="9.4.3P5" release="0.1">
          <filename>bind-chrootenv-9.4.3P5-0.1.i586.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="ppc" version="9.4.3P5" release="0.1">
          <filename>bind-chrootenv-9.4.3P5-0.1.ppc.rpm</filename>
        </package>
        <package name="bind-chrootenv" arch="x86_64" version="9.4.3P5" release="0.1">
          <filename>bind-chrootenv-9.4.3P5-0.1.x86_64.rpm</filename>
        </package>
        <package name="bind-devel" arch="i586" version="9.4.3P5" release="0.1">
          <filename>bind-devel-9.4.3P5-0.1.i586.rpm</filename>
        </package>
        <package name="bind-devel" arch="ppc" version="9.4.3P5" release="0.1">
          <filename>bind-devel-9.4.3P5-0.1.ppc.rpm</filename>
        </package>
        <package name="bind-devel" arch="x86_64" version="9.4.3P5" release="0.1">
          <filename>bind-devel-9.4.3P5-0.1.x86_64.rpm</filename>
        </package>
        <package name="bind-devel-64bit" arch="ppc" version="9.4.3P5" release="0.1">
          <filename>bind-devel-64bit-9.4.3P5-0.1.ppc.rpm</filename>
        </package>
        <package name="bind-doc" arch="i586" version="9.4.3P5" release="0.1">
          <filename>bind-doc-9.4.3P5-0.1.i586.rpm</filename>
        </package>
        <package name="bind-doc" arch="ppc" version="9.4.3P5" release="0.1">
          <filename>bind-doc-9.4.3P5-0.1.ppc.rpm</filename>
        </package>
        <package name="bind-doc" arch="x86_64" version="9.4.3P5" release="0.1">
          <filename>bind-doc-9.4.3P5-0.1.x86_64.rpm</filename>
        </package>
        <package name="bind-libs" arch="i586" version="9.4.3P5" release="0.1">
          <filename>bind-libs-9.4.3P5-0.1.i586.rpm</filename>
        </package>
        <package name="bind-libs" arch="ppc" version="9.4.3P5" release="0.1">
          <filename>bind-libs-9.4.3P5-0.1.ppc.rpm</filename>
        </package>
        <package name="bind-libs" arch="x86_64" version="9.4.3P5" release="0.1">
          <filename>bind-libs-9.4.3P5-0.1.x86_64.rpm</filename>
        </package>
        <package name="bind-libs-32bit" arch="x86_64" version="9.4.3P5" release="0.1">
          <filename>bind-libs-32bit-9.4.3P5-0.1.x86_64.rpm</filename>
        </package>
        <package name="bind-libs-64bit" arch="ppc" version="9.4.3P5" release="0.1">
          <filename>bind-libs-64bit-9.4.3P5-0.1.ppc.rpm</filename>
        </package>
        <package name="bind-utils" arch="i586" version="9.4.3P5" release="0.1">
          <filename>bind-utils-9.4.3P5-0.1.i586.rpm</filename>
        </package>
        <package name="bind-utils" arch="ppc" version="9.4.3P5" release="0.1">
          <filename>bind-utils-9.4.3P5-0.1.ppc.rpm</filename>
        </package>
        <package name="bind-utils" arch="x86_64" version="9.4.3P5" release="0.1">
          <filename>bind-utils-9.4.3P5-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cf2b0afd8f6b10f16eb564f537758acb"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1838">
  <id>gzip</id>
  <title>gzip security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1264003427"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=570331" id="570331" title="bug number 570331" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2624" id="CVE-2009-2624" title="CVE-2009-2624" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0001" id="CVE-2010-0001" title="CVE-2010-0001" type="cve"/>
  </references>
  <description>Specially crafted gzip archives could lead to gzip
allocating a too small huffman table. Attackers could
exploit that to crash gzip (CVE-2009-2624).

Specially crafted gzip archives could trigger integer
overflows. Attackers could exploit that to crash gzip or
potentially execute arbitrary code (CVE-2010-0001). Only
64bit architectures are affected by this flaw.
</description>
  <pkglist>
    <collection>
        <package name="gzip" arch="i586" version="1.3.12" release="72.2">
          <filename>gzip-1.3.12-72.2.i586.rpm</filename>
        </package>
        <package name="gzip" arch="ppc" version="1.3.12" release="72.2">
          <filename>gzip-1.3.12-72.2.ppc.rpm</filename>
        </package>
        <package name="gzip" arch="x86_64" version="1.3.12" release="72.2">
          <filename>gzip-1.3.12-72.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1297d8b2abfe71e091e93b8aaf32c101"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1874">
  <id>virtualbox-ose</id>
  <title>virtualbox-ose: fix for denial of service</title>
  <release>openSUSE 11.0</release>
  <issued date="1264524238"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=556031" id="556031" title="bug number 556031" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3940" id="CVE-2009-3940" title="CVE-2009-3940" type="cve"/>
  </references>
  <description>This update of virtualbox-ose fixes a memory consumption
bug in the kernel code that can be used to allocate almost
all physical memory. CVE-2009-3940: CVSS v2 Base Score: 2.1
(LOW) (AV:L/AC:L/Au:N/C:N/I:N/A:P)
</description>
  <pkglist>
    <collection>
        <package name="virtualbox-ose" arch="i586" version="1.5.6" release="33.4">
          <filename>virtualbox-ose-1.5.6-33.4.i586.rpm</filename>
        </package>
        <package name="virtualbox-ose" arch="x86_64" version="1.5.6" release="33.4">
          <filename>virtualbox-ose-1.5.6-33.4.x86_64.rpm</filename>
        </package>
        <package name="virtualbox-ose-guest-tools" arch="i586" version="1.5.6" release="33.4">
          <filename>virtualbox-ose-guest-tools-1.5.6-33.4.i586.rpm</filename>
        </package>
        <package name="virtualbox-ose-guest-tools" arch="x86_64" version="1.5.6" release="33.4">
          <filename>virtualbox-ose-guest-tools-1.5.6-33.4.x86_64.rpm</filename>
        </package>
        <package name="virtualbox-ose-kmp-debug" arch="i586" version="1.5.6_2.6.25.20_0.5" release="33.4">
          <filename>virtualbox-ose-kmp-debug-1.5.6_2.6.25.20_0.5-33.4.i586.rpm</filename>
        </package>
        <package name="virtualbox-ose-kmp-debug" arch="x86_64" version="1.5.6_2.6.25.20_0.5" release="33.4">
          <filename>virtualbox-ose-kmp-debug-1.5.6_2.6.25.20_0.5-33.4.x86_64.rpm</filename>
        </package>
        <package name="virtualbox-ose-kmp-default" arch="i586" version="1.5.6_2.6.25.20_0.5" release="33.4">
          <filename>virtualbox-ose-kmp-default-1.5.6_2.6.25.20_0.5-33.4.i586.rpm</filename>
        </package>
        <package name="virtualbox-ose-kmp-default" arch="x86_64" version="1.5.6_2.6.25.20_0.5" release="33.4">
          <filename>virtualbox-ose-kmp-default-1.5.6_2.6.25.20_0.5-33.4.x86_64.rpm</filename>
        </package>
        <package name="virtualbox-ose-kmp-pae" arch="i586" version="1.5.6_2.6.25.20_0.5" release="33.4">
          <filename>virtualbox-ose-kmp-pae-1.5.6_2.6.25.20_0.5-33.4.i586.rpm</filename>
        </package>
        <package name="xorg-x11-driver-virtualbox-ose" arch="i586" version="1.5.6" release="33.4">
          <filename>xorg-x11-driver-virtualbox-ose-1.5.6-33.4.i586.rpm</filename>
        </package>
        <package name="xorg-x11-driver-virtualbox-ose" arch="x86_64" version="1.5.6" release="33.4">
          <filename>xorg-x11-driver-virtualbox-ose-1.5.6-33.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b04bab26d5032d6ebaf5024421d826fb"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1780">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Update to version 3.0.17</title>
  <release>openSUSE 11.0</release>
  <issued date="1263232492"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=568011" id="568011" title="bug number 568011" type="bugzilla"/>
  </references>
  <description>Mozilla Firefox was upgraded to 3.0.17 fixing some bugs and
regressions.

CVE-2010-0220: The nsObserverList::FillObserverArray
function in xpcom/ds/nsObserverList.cpp in Mozilla Firefox
before 3.5.7 allows remote attackers to cause a denial of
service (application crash) via a crafted web site that
triggers memory consumption and an accompanying Low Memory
alert dialog, and also triggers attempted removal of an
observer from an empty observers array.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.17" release="0.1">
          <filename>MozillaFirefox-3.0.17-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.17" release="0.1">
          <filename>MozillaFirefox-3.0.17-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.17" release="0.1">
          <filename>MozillaFirefox-3.0.17-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.17" release="0.1">
          <filename>MozillaFirefox-translations-3.0.17-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.17" release="0.1">
          <filename>MozillaFirefox-translations-3.0.17-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.17" release="0.1">
          <filename>MozillaFirefox-translations-3.0.17-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.17-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.17-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.17-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.17-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.17-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.17-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.17-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.17-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.17-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.17-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.17-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.17-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.17-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.17-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.17-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.17-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.17-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.17" release="0.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.17-0.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9087eabeec74919402b9c8cd2c46e6de"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1877">
  <id>NetworkManager-gnome</id>
  <title>NetworkManager-gnome security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1264525017"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=565549" id="565549" title="bug number 565549" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4144" id="CVE-2009-4144" title="CVE-2009-4144" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4145" id="CVE-2009-4145" title="CVE-2009-4145" type="cve"/>
  </references>
  <description>nm-applet connected to WPA2 Enterprise networks even if the
specified CA certificate file didn't exist (CVE-2009-4144).

When editing connections in nm-applet the connection object
was exported via DBus disclosing potentially sensitive
information to local users (CVE-2009-4145).
</description>
  <pkglist>
    <collection>
        <package name="NetworkManager-gnome" arch="i586" version="0.7.0.r729" release="7.6">
          <filename>NetworkManager-gnome-0.7.0.r729-7.6.i586.rpm</filename>
        </package>
        <package name="NetworkManager-gnome" arch="ppc" version="0.7.0.r729" release="7.6">
          <filename>NetworkManager-gnome-0.7.0.r729-7.6.ppc.rpm</filename>
        </package>
        <package name="NetworkManager-gnome" arch="x86_64" version="0.7.0.r729" release="7.6">
          <filename>NetworkManager-gnome-0.7.0.r729-7.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b6a9313e49b43726b07c7c0404de0ff8"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1803">
  <id>acl</id>
  <title>acl security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1263566064"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=567090" id="567090" title="bug number 567090" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4411" id="CVE-2009-4411" title="CVE-2009-4411" type="cve"/>
  </references>
  <description>the setfacl tool followed symbolic links in recursive (-R)
mode even if the --physical (-P) option was specified
(CVE-2009-4411).
</description>
  <pkglist>
    <collection>
        <package name="acl" arch="i586" version="2.2.47" release="6.3">
          <filename>acl-2.2.47-6.3.i586.rpm</filename>
        </package>
        <package name="acl" arch="ppc" version="2.2.47" release="6.3">
          <filename>acl-2.2.47-6.3.ppc.rpm</filename>
        </package>
        <package name="acl" arch="x86_64" version="2.2.47" release="6.3">
          <filename>acl-2.2.47-6.3.x86_64.rpm</filename>
        </package>
        <package name="libacl" arch="i586" version="2.2.47" release="6.3">
          <filename>libacl-2.2.47-6.3.i586.rpm</filename>
        </package>
        <package name="libacl" arch="ppc" version="2.2.47" release="6.3">
          <filename>libacl-2.2.47-6.3.ppc.rpm</filename>
        </package>
        <package name="libacl" arch="x86_64" version="2.2.47" release="6.3">
          <filename>libacl-2.2.47-6.3.x86_64.rpm</filename>
        </package>
        <package name="libacl-32bit" arch="x86_64" version="2.2.47" release="6.3">
          <filename>libacl-32bit-2.2.47-6.3.x86_64.rpm</filename>
        </package>
        <package name="libacl-64bit" arch="ppc" version="2.2.47" release="6.3">
          <filename>libacl-64bit-2.2.47-6.3.ppc.rpm</filename>
        </package>
        <package name="libacl-devel" arch="i586" version="2.2.47" release="6.3">
          <filename>libacl-devel-2.2.47-6.3.i586.rpm</filename>
        </package>
        <package name="libacl-devel" arch="ppc" version="2.2.47" release="6.3">
          <filename>libacl-devel-2.2.47-6.3.ppc.rpm</filename>
        </package>
        <package name="libacl-devel" arch="x86_64" version="2.2.47" release="6.3">
          <filename>libacl-devel-2.2.47-6.3.x86_64.rpm</filename>
        </package>
        <package name="libacl-devel-64bit" arch="ppc" version="2.2.47" release="6.3">
          <filename>libacl-devel-64bit-2.2.47-6.3.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fec58df171cc71f8af1763e5afae9a8e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1808">
  <id>libthai</id>
  <title>libthai security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1263566128"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=569615" id="569615" title="bug number 569615" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4012" id="CVE-2009-4012" title="CVE-2009-4012" type="cve"/>
  </references>
  <description>very long strings could lead to a heap buffer overflow in
libthai
</description>
  <pkglist>
    <collection>
        <package name="libthai" arch="i586" version="0.1.9" release="11.2">
          <filename>libthai-0.1.9-11.2.i586.rpm</filename>
        </package>
        <package name="libthai" arch="ppc" version="0.1.9" release="11.2">
          <filename>libthai-0.1.9-11.2.ppc.rpm</filename>
        </package>
        <package name="libthai" arch="x86_64" version="0.1.9" release="11.2">
          <filename>libthai-0.1.9-11.2.x86_64.rpm</filename>
        </package>
        <package name="libthai-devel" arch="i586" version="0.1.9" release="11.2">
          <filename>libthai-devel-0.1.9-11.2.i586.rpm</filename>
        </package>
        <package name="libthai-devel" arch="ppc" version="0.1.9" release="11.2">
          <filename>libthai-devel-0.1.9-11.2.ppc.rpm</filename>
        </package>
        <package name="libthai-devel" arch="x86_64" version="0.1.9" release="11.2">
          <filename>libthai-devel-0.1.9-11.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="dad5d10952b85be36dde7d43721be905"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1832">
  <id>avahi</id>
  <title>avahi security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1263925461"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=480865" id="480865" title="bug number 480865" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0758" id="CVE-2009-0758" title="CVE-2009-0758" type="cve"/>
  </references>
  <description>The avahi-daemon reflector could cause packet storms when
reflecting legacy unicast mDNS traffic (CVE-2009-0758).
</description>
  <pkglist>
    <collection>
        <package name="avahi" arch="i586" version="0.6.22" release="68.4">
          <filename>avahi-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="avahi" arch="ppc" version="0.6.22" release="68.4">
          <filename>avahi-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="avahi" arch="x86_64" version="0.6.22" release="68.4">
          <filename>avahi-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="avahi-compat-howl-devel" arch="i586" version="0.6.22" release="68.4">
          <filename>avahi-compat-howl-devel-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="avahi-compat-howl-devel" arch="ppc" version="0.6.22" release="68.4">
          <filename>avahi-compat-howl-devel-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="avahi-compat-howl-devel" arch="x86_64" version="0.6.22" release="68.4">
          <filename>avahi-compat-howl-devel-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="avahi-compat-mDNSResponder-devel" arch="i586" version="0.6.22" release="68.4">
          <filename>avahi-compat-mDNSResponder-devel-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="avahi-compat-mDNSResponder-devel" arch="ppc" version="0.6.22" release="68.4">
          <filename>avahi-compat-mDNSResponder-devel-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="avahi-compat-mDNSResponder-devel" arch="x86_64" version="0.6.22" release="68.4">
          <filename>avahi-compat-mDNSResponder-devel-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="avahi-lang" arch="i586" version="0.6.22" release="68.4">
          <filename>avahi-lang-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="avahi-lang" arch="ppc" version="0.6.22" release="68.4">
          <filename>avahi-lang-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="avahi-lang" arch="x86_64" version="0.6.22" release="68.4">
          <filename>avahi-lang-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="avahi-utils" arch="i586" version="0.6.22" release="68.4">
          <filename>avahi-utils-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="avahi-utils" arch="ppc" version="0.6.22" release="68.4">
          <filename>avahi-utils-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="avahi-utils" arch="x86_64" version="0.6.22" release="68.4">
          <filename>avahi-utils-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="avahi-utils-gtk" arch="i586" version="0.6.22" release="68.4">
          <filename>avahi-utils-gtk-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="avahi-utils-gtk" arch="ppc" version="0.6.22" release="68.4">
          <filename>avahi-utils-gtk-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="avahi-utils-gtk" arch="x86_64" version="0.6.22" release="68.4">
          <filename>avahi-utils-gtk-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-client3" arch="i586" version="0.6.22" release="68.4">
          <filename>libavahi-client3-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="libavahi-client3" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-client3-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-client3" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-client3-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-client3-32bit" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-client3-32bit-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-client3-64bit" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-client3-64bit-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-common3" arch="i586" version="0.6.22" release="68.4">
          <filename>libavahi-common3-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="libavahi-common3" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-common3-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-common3" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-common3-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-common3-32bit" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-common3-32bit-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-common3-64bit" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-common3-64bit-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-core5" arch="i586" version="0.6.22" release="68.4">
          <filename>libavahi-core5-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="libavahi-core5" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-core5-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-core5" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-core5-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-devel" arch="i586" version="0.6.22" release="68.4">
          <filename>libavahi-devel-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="libavahi-devel" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-devel-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-devel" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-devel-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-glib-devel" arch="i586" version="0.6.22" release="68.4">
          <filename>libavahi-glib-devel-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="libavahi-glib-devel" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-glib-devel-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-glib-devel" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-glib-devel-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-glib1" arch="i586" version="0.6.22" release="68.4">
          <filename>libavahi-glib1-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="libavahi-glib1" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-glib1-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-glib1" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-glib1-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-glib1-32bit" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-glib1-32bit-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-glib1-64bit" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-glib1-64bit-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-gobject-devel" arch="i586" version="0.6.22" release="68.4">
          <filename>libavahi-gobject-devel-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="libavahi-gobject-devel" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-gobject-devel-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-gobject-devel" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-gobject-devel-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-gobject0" arch="i586" version="0.6.22" release="68.4">
          <filename>libavahi-gobject0-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="libavahi-gobject0" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-gobject0-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-gobject0" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-gobject0-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libavahi-ui0" arch="i586" version="0.6.22" release="68.4">
          <filename>libavahi-ui0-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="libavahi-ui0" arch="ppc" version="0.6.22" release="68.4">
          <filename>libavahi-ui0-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libavahi-ui0" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libavahi-ui0-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libdns_sd" arch="i586" version="0.6.22" release="68.4">
          <filename>libdns_sd-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="libdns_sd" arch="ppc" version="0.6.22" release="68.4">
          <filename>libdns_sd-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libdns_sd" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libdns_sd-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libdns_sd-32bit" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libdns_sd-32bit-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="libdns_sd-64bit" arch="ppc" version="0.6.22" release="68.4">
          <filename>libdns_sd-64bit-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libhowl0" arch="i586" version="0.6.22" release="68.4">
          <filename>libhowl0-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="libhowl0" arch="ppc" version="0.6.22" release="68.4">
          <filename>libhowl0-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="libhowl0" arch="x86_64" version="0.6.22" release="68.4">
          <filename>libhowl0-0.6.22-68.4.x86_64.rpm</filename>
        </package>
        <package name="python-avahi" arch="i586" version="0.6.22" release="68.4">
          <filename>python-avahi-0.6.22-68.4.i586.rpm</filename>
        </package>
        <package name="python-avahi" arch="ppc" version="0.6.22" release="68.4">
          <filename>python-avahi-0.6.22-68.4.ppc.rpm</filename>
        </package>
        <package name="python-avahi" arch="x86_64" version="0.6.22" release="68.4">
          <filename>python-avahi-0.6.22-68.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="874947d4674eec18f0d709ee21d0ec1a"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1814">
  <id>ethtool</id>
  <title>ethtool: fixed being unable to set speed to 10Gbe</title>
  <release>openSUSE 11.0</release>
  <issued date="1263858313"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=557016" id="557016" title="bug number 557016" type="bugzilla"/>
  </references>
  <description>This update fixes ethtool to be able to set the wire speed
to 10Gbit.
</description>
  <pkglist>
    <collection>
        <package name="ethtool" arch="i586" version="6" release="52.2">
          <filename>ethtool-6-52.2.i586.rpm</filename>
        </package>
        <package name="ethtool" arch="ppc" version="6" release="52.2">
          <filename>ethtool-6-52.2.ppc.rpm</filename>
        </package>
        <package name="ethtool" arch="x86_64" version="6" release="52.2">
          <filename>ethtool-6-52.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3ba1e13a0e62465d76b45dd3af454b12"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1875">
  <id>nscd</id>
  <title>nscd: Improve nscd stability</title>
  <release>openSUSE 11.0</release>
  <issued date="1264592956"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=387202" id="387202" title="bug number 387202" type="bugzilla"/>
  </references>
  <description>nscd is name service caching daemon, caching requests of
applications to resolve usernames, hostnames, etc. This
update backports a variety of race condition and database
management bugfixes; upgrade if you have nscd stability
problems.
</description>
  <pkglist>
    <collection>
        <package name="nscd" arch="i586" version="2.8" release="14.5">
          <filename>nscd-2.8-14.5.i586.rpm</filename>
        </package>
        <package name="nscd" arch="ppc" version="2.8" release="14.5">
          <filename>nscd-2.8-14.5.ppc.rpm</filename>
        </package>
        <package name="nscd" arch="x86_64" version="2.8" release="14.5">
          <filename>nscd-2.8-14.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2c33df8045f4e05722a110a934be7946"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1914">
  <id>lighttpd</id>
  <title>lighttpd: fix for denial of service vulnerability</title>
  <release>openSUSE 11.0</release>
  <issued date="1265216492"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=573948" id="573948" title="bug number 573948" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0295" id="CVE-2010-0295" title="CVE-2010-0295" type="cve"/>
  </references>
  <description>This update fixes a denial of service vulnerability in
lighttpd that can be triggers using slow requests.
(CVE-2010-0295)
</description>
  <pkglist>
    <collection>
        <package name="lighttpd" arch="i586" version="1.4.19" release="6.6">
          <filename>lighttpd-1.4.19-6.6.i586.rpm</filename>
        </package>
        <package name="lighttpd" arch="ppc" version="1.4.19" release="6.6">
          <filename>lighttpd-1.4.19-6.6.ppc.rpm</filename>
        </package>
        <package name="lighttpd" arch="x86_64" version="1.4.19" release="6.6">
          <filename>lighttpd-1.4.19-6.6.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="i586" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_cml-1.4.19-6.6.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="ppc" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_cml-1.4.19-6.6.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="x86_64" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_cml-1.4.19-6.6.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="i586" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_magnet-1.4.19-6.6.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="ppc" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_magnet-1.4.19-6.6.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="x86_64" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_magnet-1.4.19-6.6.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="i586" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.6.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="ppc" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.6.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="x86_64" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.6.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="i586" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.6.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="ppc" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.6.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="x86_64" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.6.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="i586" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.6.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="ppc" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.6.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="x86_64" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.6.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="i586" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_webdav-1.4.19-6.6.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="ppc" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_webdav-1.4.19-6.6.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="x86_64" version="1.4.19" release="6.6">
          <filename>lighttpd-mod_webdav-1.4.19-6.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="9bf97acc2fb4a3466237695b296fee3c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1897">
  <id>fuse</id>
  <title>fuse security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1265157557"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550003" id="550003" title="bug number 550003" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3297" id="CVE-2009-3297" title="CVE-2009-3297" type="cve"/>
  </references>
  <description>A race condition in fusermount allowed users to umount any
filesystem (CVE-2009-3297).
</description>
  <pkglist>
    <collection>
        <package name="fuse" arch="i586" version="2.7.2" release="32.2">
          <filename>fuse-2.7.2-32.2.i586.rpm</filename>
        </package>
        <package name="fuse" arch="ppc" version="2.7.2" release="32.2">
          <filename>fuse-2.7.2-32.2.ppc.rpm</filename>
        </package>
        <package name="fuse" arch="x86_64" version="2.7.2" release="32.2">
          <filename>fuse-2.7.2-32.2.x86_64.rpm</filename>
        </package>
        <package name="fuse-devel" arch="i586" version="2.7.2" release="32.2">
          <filename>fuse-devel-2.7.2-32.2.i586.rpm</filename>
        </package>
        <package name="fuse-devel" arch="ppc" version="2.7.2" release="32.2">
          <filename>fuse-devel-2.7.2-32.2.ppc.rpm</filename>
        </package>
        <package name="fuse-devel" arch="x86_64" version="2.7.2" release="32.2">
          <filename>fuse-devel-2.7.2-32.2.x86_64.rpm</filename>
        </package>
        <package name="libfuse2" arch="i586" version="2.7.2" release="32.2">
          <filename>libfuse2-2.7.2-32.2.i586.rpm</filename>
        </package>
        <package name="libfuse2" arch="ppc" version="2.7.2" release="32.2">
          <filename>libfuse2-2.7.2-32.2.ppc.rpm</filename>
        </package>
        <package name="libfuse2" arch="x86_64" version="2.7.2" release="32.2">
          <filename>libfuse2-2.7.2-32.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cf7a99382d35000afd76c255a9f52d5f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1933">
  <id>moodle</id>
  <title>moodle: security update to 1.9.7</title>
  <release>openSUSE 11.0</release>
  <issued date="1265593058"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=564364" id="564364" title="bug number 564364" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4297" id="CVE-2009-4297" title="CVE-2009-4297" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4298" id="CVE-2009-4298" title="CVE-2009-4298" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4299" id="CVE-2009-4299" title="CVE-2009-4299" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4300" id="CVE-2009-4300" title="CVE-2009-4300" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4301" id="CVE-2009-4301" title="CVE-2009-4301" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4302" id="CVE-2009-4302" title="CVE-2009-4302" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4303" id="CVE-2009-4303" title="CVE-2009-4303" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4304" id="CVE-2009-4304" title="CVE-2009-4304" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4305" id="CVE-2009-4305" title="CVE-2009-4305" type="cve"/>
  </references>
  <description>This patch updates Moodle to the latest stable upstream
version (1.9.7) fixing multiple security issues:
CVE-2009-4297, CVE-2009-4298, CVE-2009-4299, CVE-2009-4300,
CVE-2009-4301, CVE-2009-4302, CVE-2009-4303, CVE-2009-4304,
CVE-2009-4305,  MSA-09-0030 (New detection of insecure
Flash player plugins)

The new version also has a completely new , more secure
password handling. Beside other features, Admins will be
asked to change their passwords next time they log in after
upgrading.
</description>
  <pkglist>
    <collection>
        <package name="moodle" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-af" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-af-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ar" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-ar-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-be" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-be-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-bg" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-bg-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-bs" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-bs-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ca" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-ca-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-cs" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-cs-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-da" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-da-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-de" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-de-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-de_du" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-de_du-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-el" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-el-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-es" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-es-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-et" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-et-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-eu" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-eu-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-fa" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-fa-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-fi" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-fi-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-fr" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-fr-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ga" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-ga-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-gl" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-gl-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-he" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-he-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-hi" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-hi-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-hr" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-hr-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-hu" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-hu-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-id" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-id-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-is" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-is-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-it" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-it-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ja" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-ja-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ka" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-ka-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-km" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-km-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-kn" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-kn-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ko" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-ko-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-lt" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-lt-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-lv" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-lv-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-mi_tn" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-mi_tn-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ms" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-ms-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-nl" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-nl-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-nn" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-nn-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-no" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-no-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-pl" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-pl-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-pt" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-pt-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ro" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-ro-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ru" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-ru-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sk" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-sk-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sl" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-sl-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-so" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-so-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sq" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-sq-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sr" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-sr-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sv" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-sv-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-th" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-th-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-tl" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-tl-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-tr" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-tr-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-uk" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-uk-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-vi" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-vi-1.9.7-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-zh_cn" arch="noarch" version="1.9.7" release="0.1">
          <filename>moodle-zh_cn-1.9.7-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="62b724c126bb44c9b22ca8fbaa6e782e"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1886">
  <id>java-1_6_0-sun</id>
  <title>java-1_6_0-sun: Update to bugfix release U18</title>
  <release>openSUSE 11.0</release>
  <issued date="1264777778"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=574502" id="574502" title="bug number 574502" type="bugzilla"/>
  </references>
  <description>Sun Java 6 was updated to Update 18.

To our knowledge, no security bugs are fixed, but a lot of
non-security bugs.

Also the timezone data was bumped to Olson timezone data
2009s.

See also http://java.sun.com/javase/6/webnotes/6u18.html
for more details.
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u18-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u18-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u18-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u18-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u18-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="x86_64" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u18-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="i586" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-src-1.6.0.u18-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="x86_64" version="1.6.0.u18" release="0.1">
          <filename>java-1_6_0-sun-src-1.6.0.u18-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="978a02dabd909720c319ba98e691c925"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1945">
  <id>pdns-recursor</id>
  <title>pdns-recursor: fix for buffer overflow and DNS spoofing</title>
  <release>openSUSE 11.0</release>
  <issued date="1265717087"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=567990" id="567990" title="bug number 567990" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4009" id="CVE-2009-4009" title="CVE-2009-4009" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4010" id="CVE-2009-4010" title="CVE-2009-4010" type="cve"/>
  </references>
  <description>This update of pdns-rucursor improves the packet parsing
code to fix a possible DNS spoofing vulnerability
(CVE-2009-4010) and a remote buffer overflow that could
give the ability to execute arbitrary code (CVE-2009-4009).
</description>
  <pkglist>
    <collection>
        <package name="pdns-recursor" arch="i586" version="3.1.5" release="14.4">
          <filename>pdns-recursor-3.1.5-14.4.i586.rpm</filename>
        </package>
        <package name="pdns-recursor" arch="ppc" version="3.1.5" release="14.4">
          <filename>pdns-recursor-3.1.5-14.4.ppc.rpm</filename>
        </package>
        <package name="pdns-recursor" arch="x86_64" version="3.1.5" release="14.4">
          <filename>pdns-recursor-3.1.5-14.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="cdd3e30c10b6f15b1fb3522ec2ecd1c5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1947">
  <id>horde</id>
  <title>horde: security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1265820968"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=539585" id="539585" title="bug number 539585" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3237" id="CVE-2009-3237" title="CVE-2009-3237" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3236" id="CVE-2009-3236" title="CVE-2009-3236" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4363" id="CVE-2009-4363" title="CVE-2009-4363" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3701" id="CVE-2009-3701" title="CVE-2009-3701" type="cve"/>
  </references>
  <description>This update of horde fixes:
- CVE-2009-3236: CVSS v2 Base Score: 5.0: Overwrite
  arbitrary files and execute PHP code
- CVE-2009-3237: CVSS v2 Base Score: 5.0: Cross-Site
  Scripting (XSS)
- CVE-2009-3701: CVSS v2 Base Score: 4.3: Cross-Site
  Scripting (XSS)
- CVE-2009-4363: CVSS v2 Base Score: 4.3: Cross-Site
  Scripting (XSS)
</description>
  <pkglist>
    <collection>
        <package name="horde" arch="noarch" version="3.1.9" release="0.3">
          <filename>horde-3.1.9-0.3.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b0da07dc6a598c532ea95a6d87534592"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1907">
  <id>kbuild</id>
  <title>kbuild: This update fixes a crash on the build of virtualbox-ose.</title>
  <release>openSUSE 11.0</release>
  <issued date="1264599073"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=573539" id="573539" title="bug number 573539" type="bugzilla"/>
  </references>
  <description>This update fixes a crash on the build of virtualbox-ose.
</description>
  <pkglist>
    <collection>
        <package name="kbuild" arch="i586" version="0.1.2svn1480" release="15.2">
          <filename>kbuild-0.1.2svn1480-15.2.i586.rpm</filename>
        </package>
        <package name="kbuild" arch="ppc" version="0.1.2svn1480" release="15.2">
          <filename>kbuild-0.1.2svn1480-15.2.ppc.rpm</filename>
        </package>
        <package name="kbuild" arch="x86_64" version="0.1.2svn1480" release="15.2">
          <filename>kbuild-0.1.2svn1480-15.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="673f29f8ed31c65b1e815da82648689c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1829">
  <id>pango</id>
  <title>pango security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1263922702"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=534701" id="534701" title="bug number 534701" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1194" id="CVE-2009-1194" title="CVE-2009-1194" type="cve"/>
  </references>
  <description>Long glyph string could trigger a heap-based buffer
overflow in pango (CVE-2009-1194).
</description>
  <pkglist>
    <collection>
        <package name="pango" arch="i586" version="1.20.1" release="20.2">
          <filename>pango-1.20.1-20.2.i586.rpm</filename>
        </package>
        <package name="pango" arch="ppc" version="1.20.1" release="20.2">
          <filename>pango-1.20.1-20.2.ppc.rpm</filename>
        </package>
        <package name="pango" arch="x86_64" version="1.20.1" release="20.2">
          <filename>pango-1.20.1-20.2.x86_64.rpm</filename>
        </package>
        <package name="pango-32bit" arch="x86_64" version="1.20.1" release="20.2">
          <filename>pango-32bit-1.20.1-20.2.x86_64.rpm</filename>
        </package>
        <package name="pango-64bit" arch="ppc" version="1.20.1" release="20.2">
          <filename>pango-64bit-1.20.1-20.2.ppc.rpm</filename>
        </package>
        <package name="pango-devel" arch="i586" version="1.20.1" release="20.2">
          <filename>pango-devel-1.20.1-20.2.i586.rpm</filename>
        </package>
        <package name="pango-devel" arch="ppc" version="1.20.1" release="20.2">
          <filename>pango-devel-1.20.1-20.2.ppc.rpm</filename>
        </package>
        <package name="pango-devel" arch="x86_64" version="1.20.1" release="20.2">
          <filename>pango-devel-1.20.1-20.2.x86_64.rpm</filename>
        </package>
        <package name="pango-devel-64bit" arch="ppc" version="1.20.1" release="20.2">
          <filename>pango-devel-64bit-1.20.1-20.2.ppc.rpm</filename>
        </package>
        <package name="pango-doc" arch="i586" version="1.20.1" release="20.2">
          <filename>pango-doc-1.20.1-20.2.i586.rpm</filename>
        </package>
        <package name="pango-doc" arch="ppc" version="1.20.1" release="20.2">
          <filename>pango-doc-1.20.1-20.2.ppc.rpm</filename>
        </package>
        <package name="pango-doc" arch="x86_64" version="1.20.1" release="20.2">
          <filename>pango-doc-1.20.1-20.2.x86_64.rpm</filename>
        </package>
        <package name="pango-module-thai-lang" arch="i586" version="1.20.1" release="20.2">
          <filename>pango-module-thai-lang-1.20.1-20.2.i586.rpm</filename>
        </package>
        <package name="pango-module-thai-lang" arch="ppc" version="1.20.1" release="20.2">
          <filename>pango-module-thai-lang-1.20.1-20.2.ppc.rpm</filename>
        </package>
        <package name="pango-module-thai-lang" arch="x86_64" version="1.20.1" release="20.2">
          <filename>pango-module-thai-lang-1.20.1-20.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c712f028499acb2e251bc0d65d85f3fc"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1930">
  <id>acroread-cmaps</id>
  <title>Adobe Acroread: Upgrade to 9.3 was without Font packages</title>
  <release>openSUSE 11.0</release>
  <issued date="1264598647"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=576908" id="576908" title="bug number 576908" type="bugzilla"/>
  </references>
  <description>The last Adobe Acrobat Reader was released without
Character Maps packages. This update delivers them.
</description>
  <pkglist>
    <collection>
        <package name="acroread-cmaps" arch="noarch" version="9.3" release="0.1">
          <filename>acroread-cmaps-9.3-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-ja" arch="noarch" version="9.3" release="0.1">
          <filename>acroread-fonts-ja-9.3-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-ko" arch="noarch" version="9.3" release="0.1">
          <filename>acroread-fonts-ko-9.3-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-zh_CN" arch="noarch" version="9.3" release="0.1">
          <filename>acroread-fonts-zh_CN-9.3-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-zh_TW" arch="noarch" version="9.3" release="0.1">
          <filename>acroread-fonts-zh_TW-9.3-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="042f042d94a7628f4e441c281157014b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1908">
  <id>kernel</id>
  <title>Linux Kernel update</title>
  <release>openSUSE 11.0</release>
  <issued date="1265222170"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=570606" id="570606" title="bug number 570606" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=569902" id="569902" title="bug number 569902" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=567376" id="567376" title="bug number 567376" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=421732" id="421732" title="bug number 421732" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=421732" id="421732" title="bug number 421732" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=564712" id="564712" title="bug number 564712" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=564382" id="564382" title="bug number 564382" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=557180" id="557180" title="bug number 557180" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=556864" id="556864" title="bug number 556864" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=441062" id="441062" title="bug number 441062" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550001" id="550001" title="bug number 550001" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=539878" id="539878" title="bug number 539878" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=539878" id="539878" title="bug number 539878" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=548070" id="548070" title="bug number 548070" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=536467" id="536467" title="bug number 536467" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=548071" id="548071" title="bug number 548071" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=552775" id="552775" title="bug number 552775" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=547131" id="547131" title="bug number 547131" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=541648" id="541648" title="bug number 541648" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=543740" id="543740" title="bug number 543740" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=541658" id="541658" title="bug number 541658" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=526368" id="526368" title="bug number 526368" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=527865" id="527865" title="bug number 527865" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=534372" id="534372" title="bug number 534372" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=492282" id="492282" title="bug number 492282" type="bugzilla"/>
  </references>
  <description>This kernel update for openSUSE 11.0 fixes some bugs and
several security problems.

The following security issues are fixed: CVE-2009-4536:
drivers/net/e1000/e1000_main.c in the e1000 driver in the
Linux kernel handles Ethernet frames that exceed the MTU by
processing certain trailing payload data as if it were a
complete frame, which allows remote attackers to bypass
packet filters via a large packet with a crafted payload.

CVE-2009-4538: drivers/net/e1000e/netdev.c in the e1000e
driver in the Linux kernel does not properly check the size
of an Ethernet frame that exceeds the MTU, which allows
remote attackers to have an unspecified impact via crafted
packets.

CVE-2010-0007: Missing CAP_NET_ADMIN checks in the ebtables
netfilter code might have allowed local attackers to modify
bridge firewall settings.

CVE-2010-0003: An information leakage on fatal signals on
x86_64 machines was fixed.

CVE-2009-4138: drivers/firewire/ohci.c in the Linux kernel,
when packet-per-buffer mode is used, allows local users to
cause a denial of service (NULL pointer dereference and
system crash) or possibly have unknown other impact via an
unspecified ioctl associated with receiving an ISO packet
that contains zero in the payload-length field.

CVE-2009-4308: The ext4_decode_error function in
fs/ext4/super.c in the ext4 filesystem in the Linux kernel
before 2.6.32 allows user-assisted remote attackers to
cause a denial of service (NULL pointer dereference), and
possibly have unspecified other impact, via a crafted
read-only filesystem that lacks a journal.

CVE-2009-3939: The poll_mode_io file for the megaraid_sas
driver in the Linux kernel 2.6.31.6 and earlier has
world-writable permissions, which allows local users to
change the I/O mode of the driver by modifying this file.

CVE-2009-4021: The fuse_direct_io function in
fs/fuse/file.c in the fuse subsystem in the Linux kernel
before 2.6.32-rc7 might allow attackers to cause a denial
of service (invalid pointer dereference and OOPS) via
vectors possibly related to a memory-consumption attack.

CVE-2009-3547: A race condition in the pipe(2) systemcall
could be used by local attackers to hang the machine. The
kernel in Moblin 2.0 uses NULL ptr protection which avoids
code execution possbilities.

CVE-2009-2903: Memory leak in the appletalk subsystem in
the Linux kernel 2.4.x through 2.4.37.6 and 2.6.x through
2.6.31, when the appletalk and ipddp modules are loaded but
the ipddp&quot;N&quot; device is not found, allows remote attackers
to cause a denial of service (memory consumption) via
IP-DDP datagrams.

CVE-2009-3621: net/unix/af_unix.c in the Linux kernel
2.6.31.4 and earlier allows local users to cause a denial
of service (system hang) by creating an abstract-namespace
AF_UNIX listening socket, performing a shutdown operation
on this socket, and then performing a series of connect
operations to this socket.

CVE-2009-3612: The tcf_fill_node function in
net/sched/cls_api.c in the netlink subsystem in the Linux
kernel 2.6.x before 2.6.32-rc5, and 2.4.37.6 and earlier,
does not initialize a certain tcm__pad2 structure member,
which might allow local users to obtain sensitive
information from kernel memory via unspecified vectors.

CVE-2009-3620: The ATI Rage 128 (aka r128) driver in the
Linux kernel before 2.6.31-git11 does not properly verify
Concurrent Command Engine (CCE) state initialization, which
allows local users to cause a denial of service (NULL
pointer dereference and system crash) or possibly gain
privileges via unspecified ioctl calls.

CVE-2009-3726: The nfs4_proc_lock function in
fs/nfs/nfs4proc.c in the NFSv4 client in the Linux kernel
before 2.6.31-rc4 allows remote NFS servers to cause a
denial of service (NULL pointer dereference and panic) by
sending a certain response containing incorrect file
attributes, which trigger attempted use of an open file
that lacks NFSv4 state.

CVE-2009-3286: NFSv4 in the Linux kernel 2.6.18, and
possibly other versions, does not properly clean up an
inode when an O_EXCL create fails, which causes files to be
created with insecure settings such as setuid bits, and
possibly allows local users to gain privileges, related to
the execution of the do_open_permission function even when
a create fails.

CVE-2009-2910: arch/x86/ia32/ia32entry.S in the Linux
kernel before 2.6.31.4 on the x86_64 platform does not
clear certain kernel registers before a return to user
mode, which allows local users to read register values from
an earlier process by switching an ia32 process to 64-bit
mode.

CVE-2009-3238: The get_random_int function in
drivers/char/random.c in the Linux kernel before 2.6.30
produces insufficiently random numbers, which allows
attackers to predict the return value, and possibly defeat
protection mechanisms based on randomization, via vectors
that leverage the function's tendency to &quot;return the same
value over and over again for long stretches of time.&quot;

CVE-2009-2848: The execve function in the Linux kernel,
possibly 2.6.30-rc6 and earlier, does not properly clear
the current-&gt;clear_child_tid pointer, which allows local
users to cause a denial of service (memory corruption) or
possibly gain privileges via a clone system call with
CLONE_CHILD_SETTID or CLONE_CHILD_CLEARTID enabled, which
is not properly handled during thread creation and exit.

CVE-2009-3002: The Linux kernel before 2.6.31-rc7 does not
initialize certain data structures within getname
functions, which allows local users to read the contents of
some kernel memory locations by calling getsockname on (1)
an AF_APPLETALK socket, related to the atalk_getname
function in net/appletalk/ddp.c; (2) an AF_IRDA socket,
related to the irda_getname function in net/irda/af_irda.c;
(3) an AF_ECONET socket, related to the econet_getname
function in net/econet/af_econet.c; (4) an AF_NETROM
socket, related to the nr_getname function in
net/netrom/af_netrom.c; (5) an AF_ROSE socket, related to
the rose_getname function in net/rose/af_rose.c; or (6) a
raw CAN socket, related to the raw_getname function in
net/can/raw.c.

CVE-2009-1633: Multiple buffer overflows in the cifs
subsystem in the Linux kernel before 2.6.29.4 allow remote
CIFS servers to cause a denial of service (memory
corruption) and possibly have unspecified other impact via
(1) a malformed Unicode string, related to Unicode string
area alignment in fs/cifs/sess.c; or (2) long Unicode
characters, related to fs/cifs/cifssmb.c and the
cifs_readdir function in fs/cifs/readdir.c.
</description>
  <pkglist>
    <collection>
        <package name="acerhk-kmp-debug" arch="i586" version="0.5.35_2.6.25.20_0.6" release="98.1">
          <filename>acerhk-kmp-debug-0.5.35_2.6.25.20_0.6-98.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="acx-kmp-debug" arch="i586" version="20080210_2.6.25.20_0.6" release="4.1">
          <filename>acx-kmp-debug-20080210_2.6.25.20_0.6-4.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="acx-kmp-debug" arch="x86_64" version="20080210_2.6.25.20_0.6" release="4.1">
          <filename>acx-kmp-debug-20080210_2.6.25.20_0.6-4.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="appleir-kmp-debug" arch="i586" version="1.1_2.6.25.20_0.6" release="108.1">
          <filename>appleir-kmp-debug-1.1_2.6.25.20_0.6-108.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="appleir-kmp-debug" arch="x86_64" version="1.1_2.6.25.20_0.6" release="108.1">
          <filename>appleir-kmp-debug-1.1_2.6.25.20_0.6-108.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="at76_usb-kmp-debug" arch="i586" version="0.17_2.6.25.20_0.6" release="2.1">
          <filename>at76_usb-kmp-debug-0.17_2.6.25.20_0.6-2.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="at76_usb-kmp-debug" arch="x86_64" version="0.17_2.6.25.20_0.6" release="2.1">
          <filename>at76_usb-kmp-debug-0.17_2.6.25.20_0.6-2.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="atl2-kmp-debug" arch="i586" version="2.0.4_2.6.25.20_0.6" release="4.1">
          <filename>atl2-kmp-debug-2.0.4_2.6.25.20_0.6-4.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="atl2-kmp-debug" arch="x86_64" version="2.0.4_2.6.25.20_0.6" release="4.1">
          <filename>atl2-kmp-debug-2.0.4_2.6.25.20_0.6-4.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="aufs-kmp-debug" arch="i586" version="cvs20080429_2.6.25.20_0.6" release="13.3">
          <filename>aufs-kmp-debug-cvs20080429_2.6.25.20_0.6-13.3.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="aufs-kmp-debug" arch="x86_64" version="cvs20080429_2.6.25.20_0.6" release="13.3">
          <filename>aufs-kmp-debug-cvs20080429_2.6.25.20_0.6-13.3.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="dazuko-kmp-debug" arch="i586" version="2.3.4.4_2.6.25.20_0.6" release="42.1">
          <filename>dazuko-kmp-debug-2.3.4.4_2.6.25.20_0.6-42.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="dazuko-kmp-debug" arch="x86_64" version="2.3.4.4_2.6.25.20_0.6" release="42.1">
          <filename>dazuko-kmp-debug-2.3.4.4_2.6.25.20_0.6-42.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="drbd-kmp-debug" arch="i586" version="8.2.6_2.6.25.20_0.6" release="0.2">
          <filename>drbd-kmp-debug-8.2.6_2.6.25.20_0.6-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="drbd-kmp-debug" arch="x86_64" version="8.2.6_2.6.25.20_0.6" release="0.2">
          <filename>drbd-kmp-debug-8.2.6_2.6.25.20_0.6-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="gspcav-kmp-debug" arch="i586" version="01.00.20_2.6.25.20_0.6" release="1.1">
          <filename>gspcav-kmp-debug-01.00.20_2.6.25.20_0.6-1.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="gspcav-kmp-debug" arch="x86_64" version="01.00.20_2.6.25.20_0.6" release="1.1">
          <filename>gspcav-kmp-debug-01.00.20_2.6.25.20_0.6-1.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="iscsitarget-kmp-debug" arch="i586" version="0.4.15_2.6.25.20_0.6" release="63.1">
          <filename>iscsitarget-kmp-debug-0.4.15_2.6.25.20_0.6-63.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="iscsitarget-kmp-debug" arch="x86_64" version="0.4.15_2.6.25.20_0.6" release="63.1">
          <filename>iscsitarget-kmp-debug-0.4.15_2.6.25.20_0.6-63.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="ivtv-kmp-debug" arch="i586" version="1.0.3_2.6.25.20_0.6" release="66.1">
          <filename>ivtv-kmp-debug-1.0.3_2.6.25.20_0.6-66.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="ivtv-kmp-debug" arch="x86_64" version="1.0.3_2.6.25.20_0.6" release="66.1">
          <filename>ivtv-kmp-debug-1.0.3_2.6.25.20_0.6-66.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="i586" version="2.6.25.20" release="0.6">
          <filename>kernel-debug-2.6.25.20-0.6.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="x86_64" version="2.6.25.20" release="0.6">
          <filename>kernel-debug-2.6.25.20-0.6.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="i586" version="2.6.25.20" release="0.6">
          <filename>kernel-default-2.6.25.20-0.6.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="ppc" version="2.6.25.20" release="0.6">
          <filename>kernel-default-2.6.25.20-0.6.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="x86_64" version="2.6.25.20" release="0.6">
          <filename>kernel-default-2.6.25.20-0.6.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-docs" arch="noarch" version="2.6.25.20" release="0.6">
          <filename>kernel-docs-2.6.25.20-0.6.noarch.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-kdump" arch="ppc" version="2.6.25.20" release="0.6">
          <filename>kernel-kdump-2.6.25.20-0.6.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-pae" arch="i586" version="2.6.25.20" release="0.6">
          <filename>kernel-pae-2.6.25.20-0.6.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ppc64" arch="ppc" version="2.6.25.20" release="0.6">
          <filename>kernel-ppc64-2.6.25.20-0.6.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ps3" arch="ppc" version="2.6.25.20" release="0.6">
          <filename>kernel-ps3-2.6.25.20-0.6.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="i586" version="2.6.25.20" release="0.6">
          <filename>kernel-source-2.6.25.20-0.6.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="ppc" version="2.6.25.20" release="0.6">
          <filename>kernel-source-2.6.25.20-0.6.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="x86_64" version="2.6.25.20" release="0.6">
          <filename>kernel-source-2.6.25.20-0.6.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="i586" version="2.6.25.20" release="0.6">
          <filename>kernel-syms-2.6.25.20-0.6.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="ppc" version="2.6.25.20" release="0.6">
          <filename>kernel-syms-2.6.25.20-0.6.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="x86_64" version="2.6.25.20" release="0.6">
          <filename>kernel-syms-2.6.25.20-0.6.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="i586" version="2.6.25.20" release="0.6">
          <filename>kernel-vanilla-2.6.25.20-0.6.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="ppc" version="2.6.25.20" release="0.6">
          <filename>kernel-vanilla-2.6.25.20-0.6.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="x86_64" version="2.6.25.20" release="0.6">
          <filename>kernel-vanilla-2.6.25.20-0.6.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="i586" version="2.6.25.20" release="0.6">
          <filename>kernel-xen-2.6.25.20-0.6.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="x86_64" version="2.6.25.20" release="0.6">
          <filename>kernel-xen-2.6.25.20-0.6.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kqemu-kmp-debug" arch="i586" version="1.3.0pre11_2.6.25.20_0.6" release="7.1">
          <filename>kqemu-kmp-debug-1.3.0pre11_2.6.25.20_0.6-7.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kqemu-kmp-debug" arch="x86_64" version="1.3.0pre11_2.6.25.20_0.6" release="7.1">
          <filename>kqemu-kmp-debug-1.3.0pre11_2.6.25.20_0.6-7.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="nouveau-kmp-debug" arch="i586" version="0.10.1.20081112_2.6.25.20_0.6" release="0.4">
          <filename>nouveau-kmp-debug-0.10.1.20081112_2.6.25.20_0.6-0.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="nouveau-kmp-debug" arch="x86_64" version="0.10.1.20081112_2.6.25.20_0.6" release="0.4">
          <filename>nouveau-kmp-debug-0.10.1.20081112_2.6.25.20_0.6-0.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="omnibook-kmp-debug" arch="i586" version="20080313_2.6.25.20_0.6" release="1.1">
          <filename>omnibook-kmp-debug-20080313_2.6.25.20_0.6-1.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="omnibook-kmp-debug" arch="x86_64" version="20080313_2.6.25.20_0.6" release="1.1">
          <filename>omnibook-kmp-debug-20080313_2.6.25.20_0.6-1.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcc-acpi-kmp-debug" arch="i586" version="0.9_2.6.25.20_0.6" release="4.1">
          <filename>pcc-acpi-kmp-debug-0.9_2.6.25.20_0.6-4.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcc-acpi-kmp-debug" arch="x86_64" version="0.9_2.6.25.20_0.6" release="4.1">
          <filename>pcc-acpi-kmp-debug-0.9_2.6.25.20_0.6-4.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcfclock-kmp-debug" arch="i586" version="0.44_2.6.25.20_0.6" release="207.1">
          <filename>pcfclock-kmp-debug-0.44_2.6.25.20_0.6-207.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcfclock-kmp-debug" arch="x86_64" version="0.44_2.6.25.20_0.6" release="207.1">
          <filename>pcfclock-kmp-debug-0.44_2.6.25.20_0.6-207.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="tpctl-kmp-debug" arch="i586" version="4.17_2.6.25.20_0.6" release="189.1">
          <filename>tpctl-kmp-debug-4.17_2.6.25.20_0.6-189.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="uvcvideo-kmp-debug" arch="i586" version="r200_2.6.25.20_0.6" release="2.4">
          <filename>uvcvideo-kmp-debug-r200_2.6.25.20_0.6-2.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="uvcvideo-kmp-debug" arch="x86_64" version="r200_2.6.25.20_0.6" release="2.4">
          <filename>uvcvideo-kmp-debug-r200_2.6.25.20_0.6-2.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="virtualbox-ose-kmp-debug" arch="i586" version="1.5.6_2.6.25.20_0.6" release="33.5">
          <filename>virtualbox-ose-kmp-debug-1.5.6_2.6.25.20_0.6-33.5.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="virtualbox-ose-kmp-debug" arch="x86_64" version="1.5.6_2.6.25.20_0.6" release="33.5">
          <filename>virtualbox-ose-kmp-debug-1.5.6_2.6.25.20_0.6-33.5.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="vmware-kmp-debug" arch="i586" version="2008.04.14_2.6.25.20_0.6" release="21.1">
          <filename>vmware-kmp-debug-2008.04.14_2.6.25.20_0.6-21.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="vmware-kmp-debug" arch="x86_64" version="2008.04.14_2.6.25.20_0.6" release="21.1">
          <filename>vmware-kmp-debug-2008.04.14_2.6.25.20_0.6-21.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="wlan-ng-kmp-debug" arch="i586" version="0.2.8_2.6.25.20_0.6" release="107.1">
          <filename>wlan-ng-kmp-debug-0.2.8_2.6.25.20_0.6-107.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="wlan-ng-kmp-debug" arch="x86_64" version="0.2.8_2.6.25.20_0.6" release="107.1">
          <filename>wlan-ng-kmp-debug-0.2.8_2.6.25.20_0.6-107.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="11ea9f3ea7285181a551af10eb577e71"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1970">
  <id>flash-player</id>
  <title>flash-player security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1266139232"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=578997" id="578997" title="bug number 578997" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0186" id="CVE-2010-0186" title="CVE-2010-0186" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0187" id="CVE-2010-0187" title="CVE-2010-0187" type="cve"/>
  </references>
  <description>Insufficient checks in flash-player allowed malicious flash
applets to create illegal cross-domain requests
(CVE-2010-0186). The update also fixes a denial of service
condition (CVE-2010-0187).
</description>
  <pkglist>
    <collection>
        <package name="flash-player" arch="i586" version="10.0.45.2" release="0.1">
          <filename>flash-player-10.0.45.2-0.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="45decd7d2240dd94c7c08a648d5c252d"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1968">
  <id>osc</id>
  <title>osc: Collective maintenance update and improvements for osc</title>
  <release>openSUSE 11.0</release>
  <issued date="1265822960"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=551756" id="551756" title="bug number 551756" type="bugzilla"/>
  </references>
  <description>This version supports secure https connections, proxy
support and new features for creating maintenance updates.
</description>
  <pkglist>
    <collection>
        <package name="osc" arch="i586" version="0.125.5" release="0.1">
          <filename>osc-0.125.5-0.1.i586.rpm</filename>
        </package>
        <package name="osc" arch="ppc" version="0.125.5" release="0.1">
          <filename>osc-0.125.5-0.1.ppc.rpm</filename>
        </package>
        <package name="osc" arch="x86_64" version="0.125.5" release="0.1">
          <filename>osc-0.125.5-0.1.x86_64.rpm</filename>
        </package>
        <package name="python-keyring" arch="i586" version="0.2" release="0.1">
          <filename>python-keyring-0.2-0.1.i586.rpm</filename>
        </package>
        <package name="python-keyring" arch="ppc" version="0.2" release="0.1">
          <filename>python-keyring-0.2-0.1.ppc.rpm</filename>
        </package>
        <package name="python-keyring" arch="x86_64" version="0.2" release="0.1">
          <filename>python-keyring-0.2-0.1.x86_64.rpm</filename>
        </package>
        <package name="python-keyring-gnome" arch="i586" version="0.2" release="0.1">
          <filename>python-keyring-gnome-0.2-0.1.i586.rpm</filename>
        </package>
        <package name="python-keyring-gnome" arch="ppc" version="0.2" release="0.1">
          <filename>python-keyring-gnome-0.2-0.1.ppc.rpm</filename>
        </package>
        <package name="python-keyring-gnome" arch="x86_64" version="0.2" release="0.1">
          <filename>python-keyring-gnome-0.2-0.1.x86_64.rpm</filename>
        </package>
        <package name="python-keyring-kde" arch="i586" version="0.2" release="0.1">
          <filename>python-keyring-kde-0.2-0.1.i586.rpm</filename>
        </package>
        <package name="python-keyring-kde" arch="ppc" version="0.2" release="0.1">
          <filename>python-keyring-kde-0.2-0.1.ppc.rpm</filename>
        </package>
        <package name="python-keyring-kde" arch="x86_64" version="0.2" release="0.1">
          <filename>python-keyring-kde-0.2-0.1.x86_64.rpm</filename>
        </package>
        <package name="python-m2crypto" arch="i586" version="0.19.1" release="1.1">
          <filename>python-m2crypto-0.19.1-1.1.i586.rpm</filename>
        </package>
        <package name="python-m2crypto" arch="ppc" version="0.19.1" release="1.1">
          <filename>python-m2crypto-0.19.1-1.1.ppc.rpm</filename>
        </package>
        <package name="python-m2crypto" arch="x86_64" version="0.19.1" release="1.1">
          <filename>python-m2crypto-0.19.1-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a2063f9ed5465ac3983741a47098cc39"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1951">
  <id>build</id>
  <title>build: This updates added support for new kiwi 4.1 and contains some bugfixes.</title>
  <release>openSUSE 11.0</release>
  <issued date="1265821161"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=551756" id="551756" title="bug number 551756" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=553880" id="553880" title="bug number 553880" type="bugzilla"/>
  </references>
  <description>This updates added support for new kiwi 4.1 and contains
some bugfixes.
</description>
  <pkglist>
    <collection>
        <package name="build" arch="noarch" version="2010.02.08" release="0.1">
          <filename>build-2010.02.08-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2cc68d0ce474e04b91d9bd5dd8ab3fd9"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2035">
  <id>libexpat0</id>
  <title>libexpat0: denial of service while parsing XML files</title>
  <release>openSUSE 11.0</release>
  <issued date="1266667558"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=558892" id="558892" title="bug number 558892" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2625" id="CVE-2009-2625" title="CVE-2009-2625" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3560" id="CVE-2009-3560" title="CVE-2009-3560" type="cve"/>
  </references>
  <description>Specially crafted XML files could crash applications that
use expat to parse such files. CVE-2009-2625: CVSS v2 Base
Score: 5.0 CVE-2009-3560: CVSS v2 Base Score: 5.0
</description>
  <pkglist>
    <collection>
        <package name="libexpat0" arch="i586" version="1.95.8" release="73.2">
          <filename>libexpat0-1.95.8-73.2.i586.rpm</filename>
        </package>
        <package name="libexpat0" arch="ppc" version="1.95.8" release="73.2">
          <filename>libexpat0-1.95.8-73.2.ppc.rpm</filename>
        </package>
        <package name="libexpat0" arch="x86_64" version="1.95.8" release="73.2">
          <filename>libexpat0-1.95.8-73.2.x86_64.rpm</filename>
        </package>
        <package name="libexpat0-32bit" arch="x86_64" version="1.95.8" release="73.2">
          <filename>libexpat0-32bit-1.95.8-73.2.x86_64.rpm</filename>
        </package>
        <package name="libexpat0-64bit" arch="ppc" version="1.95.8" release="73.2">
          <filename>libexpat0-64bit-1.95.8-73.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="051e60b1cd753810bd1e57e8fa1e5d07"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1993">
  <id>apache2-mod_php5</id>
  <title>php5: fix for several vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1265988951"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=557157" id="557157" title="bug number 557157" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=none" id="none" title="none" type="cve"/>
  </references>
  <description>This update of php5 fixes: CVE-2008-5624: CVSS v2 Base
Score: 7.5 (HIGH) (AV:N/AC:L/Au:N/C:P/I:P/A:P):
Permissions, Privileges, and Access Control (CWE-264)
CVE-2008-5625: CVSS v2 Base Score: 7.5 (HIGH)
(AV:N/AC:L/Au:N/C:P/I:P/A:P): Permissions, Privileges, and
Access Control (CWE-264) CVE-2008-5814: CVSS v2 Base Score:
2.6 (LOW) (AV:N/AC:H/Au:N/C:N/I:P/A:N): Cross-Site
Scripting (XSS) (CWE-79) CVE-2009-2626: CVSS v2 Base Score:
6.4 (MEDIUM) (AV:N/AC:L/Au:N/C:P/I:N/A:P): Other
(CWE-Other) CVE-2009-2687: CVSS v2 Base Score: 4.3 (MEDIUM)
(AV:N/AC:M/Au:N/C:N/I:N/A:P): Input Validation (CWE-20)
CVE-2009-3546: CVSS v2 Base Score: 4.4 (moderate)
(AV:L/AC:M/Au:N/C:P/I:P/A:P): Other (CWE-Other)
CVE-2009-4017: CVSS v2 Base Score: 5.0 (moderate)
(AV:N/AC:L/Au:N/C:N/I:N/A:P): Other (CWE-Other)
CVE-2009-4142: CVSS v2 Base Score: 4.3 (MEDIUM)
(AV:N/AC:M/Au:N/C:N/I:P/A:N): Cross-Site Scripting (XSS)
(CWE-79)
</description>
  <pkglist>
    <collection>
        <package name="apache2-mod_php5" arch="i586" version="5.2.12" release="0.1">
          <filename>apache2-mod_php5-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="ppc" version="5.2.12" release="0.1">
          <filename>apache2-mod_php5-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="apache2-mod_php5" arch="x86_64" version="5.2.12" release="0.1">
          <filename>apache2-mod_php5-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-bcmath-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-bcmath-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-bcmath" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-bcmath-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-bz2" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-bz2-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-bz2" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-bz2-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-bz2" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-bz2-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-calendar" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-calendar-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-calendar" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-calendar-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-calendar" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-calendar-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ctype" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-ctype-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ctype" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-ctype-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ctype" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-ctype-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-curl" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-curl-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-curl" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-curl-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-curl" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-curl-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dba" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-dba-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dba" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-dba-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dba" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-dba-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dbase" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-dbase-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dbase" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-dbase-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dbase" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-dbase-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-devel" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-devel-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-devel" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-devel-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-devel" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-devel-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-dom" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-dom-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-dom" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-dom-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-dom" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-dom-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-exif" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-exif-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-exif" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-exif-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-exif" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-exif-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-fastcgi-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-fastcgi-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-fastcgi" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-fastcgi-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ftp" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-ftp-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ftp" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-ftp-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ftp" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-ftp-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gd" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-gd-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gd" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-gd-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gd" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-gd-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gettext" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-gettext-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gettext" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-gettext-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gettext" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-gettext-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-gmp" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-gmp-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-gmp" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-gmp-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-gmp" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-gmp-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-hash" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-hash-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-hash" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-hash-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-hash" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-hash-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-iconv" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-iconv-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-iconv" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-iconv-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-iconv" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-iconv-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-imap" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-imap-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-imap" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-imap-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-imap" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-imap-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-json" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-json-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-json" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-json-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-json" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-json-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ldap" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-ldap-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ldap" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-ldap-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ldap" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-ldap-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-mbstring-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-mbstring-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mbstring" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-mbstring-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-mcrypt-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-mcrypt-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mcrypt" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-mcrypt-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-mysql" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-mysql-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-mysql" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-mysql-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-mysql" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-mysql-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-ncurses-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-ncurses-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-ncurses" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-ncurses-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-odbc" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-odbc-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-odbc" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-odbc-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-odbc" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-odbc-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-openssl" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-openssl-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-openssl" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-openssl-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-openssl" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-openssl-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-pcntl-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-pcntl-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pcntl" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-pcntl-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pdo" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-pdo-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pdo" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-pdo-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pdo" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-pdo-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pear" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-pear-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pear" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-pear-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pear" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-pear-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-pgsql-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-pgsql-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pgsql" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-pgsql-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-posix" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-posix-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-posix" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-posix-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-posix" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-posix-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-pspell" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-pspell-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-pspell" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-pspell-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-pspell" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-pspell-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-readline" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-readline-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-readline" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-readline-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-readline" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-readline-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-shmop" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-shmop-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-shmop" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-shmop-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-shmop" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-shmop-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-snmp" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-snmp-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-snmp" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-snmp-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-snmp" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-snmp-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-soap" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-soap-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-soap" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-soap-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-soap" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-soap-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sockets" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-sockets-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sockets" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-sockets-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sockets" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-sockets-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-sqlite-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-sqlite-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sqlite" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-sqlite-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-suhosin-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-suhosin-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-suhosin" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-suhosin-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-sysvmsg-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-sysvmsg-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvmsg" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-sysvmsg-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-sysvsem-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-sysvsem-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvsem" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-sysvsem-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-sysvshm-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-sysvshm-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-sysvshm" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-sysvshm-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-tidy" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-tidy-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-tidy" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-tidy-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-tidy" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-tidy-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-tokenizer-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-tokenizer-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-tokenizer" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-tokenizer-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-wddx" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-wddx-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-wddx" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-wddx-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-wddx" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-wddx-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-xmlreader-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-xmlreader-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlreader" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-xmlreader-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-xmlrpc-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-xmlrpc-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlrpc" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-xmlrpc-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-xmlwriter-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-xmlwriter-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xmlwriter" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-xmlwriter-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-xsl" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-xsl-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-xsl" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-xsl-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-xsl" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-xsl-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-zip" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-zip-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-zip" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-zip-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-zip" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-zip-5.2.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="php5-zlib" arch="i586" version="5.2.12" release="0.1">
          <filename>php5-zlib-5.2.12-0.1.i586.rpm</filename>
        </package>
        <package name="php5-zlib" arch="ppc" version="5.2.12" release="0.1">
          <filename>php5-zlib-5.2.12-0.1.ppc.rpm</filename>
        </package>
        <package name="php5-zlib" arch="x86_64" version="5.2.12" release="0.1">
          <filename>php5-zlib-5.2.12-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="aa472469a7bc4521f8e4ab2337d9a38f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1997">
  <id>gmime</id>
  <title>gmime: GMIME_UUENCODE_LEN fixed to prevent possible buffer overflow</title>
  <release>openSUSE 11.0</release>
  <issued date="1266342507"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=576923" id="576923" title="bug number 576923" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0409" id="CVE-2010-0409" title="CVE-2010-0409" type="cve"/>
  </references>
  <description>This update of gmime fixes a buffer overflow in the
GMIME_UUENCODE_LEN macro which allowed possible code
execution while processing uuencoded data. (CVE-2010-0409:
CVSS v2 Base Score: 5.8)
</description>
  <pkglist>
    <collection>
        <package name="gmime" arch="i586" version="2.2.18" release="28.2">
          <filename>gmime-2.2.18-28.2.i586.rpm</filename>
        </package>
        <package name="gmime" arch="ppc" version="2.2.18" release="28.2">
          <filename>gmime-2.2.18-28.2.ppc.rpm</filename>
        </package>
        <package name="gmime" arch="x86_64" version="2.2.18" release="28.2">
          <filename>gmime-2.2.18-28.2.x86_64.rpm</filename>
        </package>
        <package name="gmime-devel" arch="i586" version="2.2.18" release="28.2">
          <filename>gmime-devel-2.2.18-28.2.i586.rpm</filename>
        </package>
        <package name="gmime-devel" arch="ppc" version="2.2.18" release="28.2">
          <filename>gmime-devel-2.2.18-28.2.ppc.rpm</filename>
        </package>
        <package name="gmime-devel" arch="x86_64" version="2.2.18" release="28.2">
          <filename>gmime-devel-2.2.18-28.2.x86_64.rpm</filename>
        </package>
        <package name="gmime-doc" arch="i586" version="2.2.18" release="28.2">
          <filename>gmime-doc-2.2.18-28.2.i586.rpm</filename>
        </package>
        <package name="gmime-doc" arch="ppc" version="2.2.18" release="28.2">
          <filename>gmime-doc-2.2.18-28.2.ppc.rpm</filename>
        </package>
        <package name="gmime-doc" arch="x86_64" version="2.2.18" release="28.2">
          <filename>gmime-doc-2.2.18-28.2.x86_64.rpm</filename>
        </package>
        <package name="gmime-sharp" arch="i586" version="2.2.18" release="28.2">
          <filename>gmime-sharp-2.2.18-28.2.i586.rpm</filename>
        </package>
        <package name="gmime-sharp" arch="ppc" version="2.2.18" release="28.2">
          <filename>gmime-sharp-2.2.18-28.2.ppc.rpm</filename>
        </package>
        <package name="gmime-sharp" arch="x86_64" version="2.2.18" release="28.2">
          <filename>gmime-sharp-2.2.18-28.2.x86_64.rpm</filename>
        </package>
        <package name="libgmime-2_0-3" arch="i586" version="2.2.18" release="28.2">
          <filename>libgmime-2_0-3-2.2.18-28.2.i586.rpm</filename>
        </package>
        <package name="libgmime-2_0-3" arch="ppc" version="2.2.18" release="28.2">
          <filename>libgmime-2_0-3-2.2.18-28.2.ppc.rpm</filename>
        </package>
        <package name="libgmime-2_0-3" arch="x86_64" version="2.2.18" release="28.2">
          <filename>libgmime-2_0-3-2.2.18-28.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3fd814ddf2f9d7e6b55ab6b2edaa3afa"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2052">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Upgrade to security release 3.0.18</title>
  <release>openSUSE 11.0</release>
  <issued date="1266926929"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=576969" id="576969" title="bug number 576969" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0159" id="CVE-2010-0159" title="CVE-2010-0159" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0160" id="CVE-2010-0160" title="CVE-2010-0160" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1571" id="CVE-2009-1571" title="CVE-2009-1571" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3988" id="CVE-2009-3988" title="CVE-2009-3988" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0162" id="CVE-2010-0162" title="CVE-2010-0162" type="cve"/>
  </references>
  <description>Mozilla Firefox was upgraded to version 3.0.18, fixing
various bugs and security issues.

Following security issues have been fixed: MFSA 2010-01 /
CVE-2010-0159: Mozilla developers identified and fixed
several stability bugs in the browser  engine used in
Firefox and other Mozilla-based products. Some of these
crashes showed evidence of memory corruption under certain
circumstances and we presume that with enough effort at
least some of these could be exploited to run arbitrary
code.

MFSA 2010-02 / CVE-2010-0160: Security researcher Orlando
Barrera II reported via TippingPoint's Zero Day Initiative
that Mozilla's implementation of Web Workers contained an
error in its handling of array data types when processing
posted messages. This error could be used by an attacker to
corrupt heap memory and crash the browser, potentially
running arbitrary code on a victim's computer.

MFSA 2010-03 / CVE-2009-1571: Security researcher Alin Rad
Pop of Secunia Research reported that the HTML parser
incorrectly freed used memory when insufficient space was
available to process remaining input. Under such
circumstances, memory occupied by in-use objects was freed
and could later be filled with attacker-controlled text.
These conditions could result in the execution or arbitrary
code if methods on the freed objects were subsequently
called.

MFSA 2010-04 / CVE-2009-3988: Security researcher Hidetake
Jo of Microsoft Vulnerability Research reported that the
properties set on an object passed to showModalDialog were
readable by the document contained in the dialog, even when
the document was from a different domain. This is a
violation of the same-origin policy and could result in a
website running untrusted JavaScript if it assumed the
dialogArguments could not be initialized by another site.

An anonymous security researcher, via TippingPoint's Zero
Day Initiative, also independently reported this issue to
Mozilla.


MFSA 2010-05 / CVE-2010-0162: Mozilla security researcher
Georgi Guninski reported that when a SVG document which is
served with Content-Type: application/octet-stream is
embedded into another document via an &lt;embed&gt; tag with
type=&quot;image/svg+xml&quot;, the Content-Type is ignored and the
SVG document is processed normally. A website which allows
arbitrary binary data to be uploaded but which relies on
Content-Type: application/octet-stream to prevent script
execution could have such protection bypassed. An attacker
could upload a SVG document containing JavaScript as a
binary file to a website, embed the SVG document into a
malicous page on another site, and gain access to the
script environment from the SVG-serving site, bypassing the
same-origin policy.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.0.18" release="0.1">
          <filename>MozillaFirefox-3.0.18-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.0.18" release="0.1">
          <filename>MozillaFirefox-3.0.18-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.0.18" release="0.1">
          <filename>MozillaFirefox-3.0.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="i586" version="3.0.18" release="0.1">
          <filename>MozillaFirefox-translations-3.0.18-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="ppc" version="3.0.18" release="0.1">
          <filename>MozillaFirefox-translations-3.0.18-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations" arch="x86_64" version="3.0.18" release="0.1">
          <filename>MozillaFirefox-translations-3.0.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.18-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.18-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.18-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.18-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.18-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.18-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.18-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.18-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.18-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.18-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.18-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.18" release="0.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.18-0.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="361e9df33357edcf562a3d490ac5e2de"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2012">
  <id>rmail</id>
  <title>sendmail: improve handling of bogus X.509 certificates</title>
  <release>openSUSE 11.0</release>
  <issued date="1266509352"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=568017" id="568017" title="bug number 568017" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=none" id="none" title="none" type="cve"/>
  </references>
  <description>This update of sendmail improves the handling of
special-characters in the SSL certificate. (CVE-2009-4565:
CVSS v2 Base Score: 7.5)
</description>
  <pkglist>
    <collection>
        <package name="rmail" arch="i586" version="8.14.3" release="8.2">
          <filename>rmail-8.14.3-8.2.i586.rpm</filename>
        </package>
        <package name="rmail" arch="ppc" version="8.14.3" release="8.2">
          <filename>rmail-8.14.3-8.2.ppc.rpm</filename>
        </package>
        <package name="rmail" arch="x86_64" version="8.14.3" release="8.2">
          <filename>rmail-8.14.3-8.2.x86_64.rpm</filename>
        </package>
        <package name="sendmail" arch="i586" version="8.14.3" release="8.2">
          <filename>sendmail-8.14.3-8.2.i586.rpm</filename>
        </package>
        <package name="sendmail" arch="ppc" version="8.14.3" release="8.2">
          <filename>sendmail-8.14.3-8.2.ppc.rpm</filename>
        </package>
        <package name="sendmail" arch="x86_64" version="8.14.3" release="8.2">
          <filename>sendmail-8.14.3-8.2.x86_64.rpm</filename>
        </package>
        <package name="sendmail-devel" arch="i586" version="8.14.3" release="8.2">
          <filename>sendmail-devel-8.14.3-8.2.i586.rpm</filename>
        </package>
        <package name="sendmail-devel" arch="ppc" version="8.14.3" release="8.2">
          <filename>sendmail-devel-8.14.3-8.2.ppc.rpm</filename>
        </package>
        <package name="sendmail-devel" arch="x86_64" version="8.14.3" release="8.2">
          <filename>sendmail-devel-8.14.3-8.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0bfaefbdb6c0ab07ac0ab7a691cdb5d1"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1946">
  <id>rubygem-actionpack</id>
  <title>ruby gems security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1265381403"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=558879" id="558879" title="bug number 558879" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=564362" id="564362" title="bug number 564362" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4214" id="CVE-2009-4214" title="CVE-2009-4214" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-7248" id="CVE-2008-7248" title="CVE-2008-7248" type="cve"/>
  </references>
  <description>This update of rubygems fixes two vulnerabilities:
- CVE-2008-7248: CVSS v2 Base Score: 4.3 Rails CSRF
  protection can be bypassed by using special content-types
  for a HTTP request.
- CVE-2009-4214: CVSS v2 Base Score: 4.3 The method
  strip_tags does not completely protect agains XSS attacks.
</description>
  <pkglist>
    <collection>
        <package name="rubygem-actionpack" arch="i586" version="1.13.5" release="71.4">
          <filename>rubygem-actionpack-1.13.5-71.4.i586.rpm</filename>
        </package>
        <package name="rubygem-actionpack" arch="ppc" version="1.13.5" release="71.4">
          <filename>rubygem-actionpack-1.13.5-71.4.ppc.rpm</filename>
        </package>
        <package name="rubygem-actionpack" arch="x86_64" version="1.13.5" release="71.4">
          <filename>rubygem-actionpack-1.13.5-71.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a886bdab004076b032a70da00a4ae29b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2032">
  <id>finch</id>
  <title>pidgin: security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1266595515"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=569616" id="569616" title="bug number 569616" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=567799" id="567799" title="bug number 567799" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0277" id="CVE-2010-0277" title="CVE-2010-0277" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0013" id="CVE-2010-0013" title="CVE-2010-0013" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0420" id="CVE-2010-0420" title="CVE-2010-0420" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0423" id="CVE-2010-0423" title="CVE-2010-0423" type="cve"/>
  </references>
  <description>This update of pidgin fixes various security vulnerabilities
- CVE-2010-0013: CVSS v2 Base Score: 4.3: Path Traversal
  (CWE-22) Remote file disclosure vulnerability by using
  the MSN protocol.
- CVE-2010-0277: CVSS v2 Base Score: 4.9: Resource
  Management Errors (CWE-399) MSN protocol plugin in
  libpurple allowed remote attackers to cause a denial of
  service (memory corruption) at least.
- CVE-2010-0420 Same nick names in XMPP MUC lead to a crash
  in finch.
- CVE-2010-0423 A remote denial of service attack (resource
  consumption) is possible by sending an IM with a lot of
  smilies in it.
</description>
  <pkglist>
    <collection>
        <package name="finch" arch="i586" version="2.6.6" release="0.1">
          <filename>finch-2.6.6-0.1.i586.rpm</filename>
        </package>
        <package name="finch" arch="ppc" version="2.6.6" release="0.1">
          <filename>finch-2.6.6-0.1.ppc.rpm</filename>
        </package>
        <package name="finch" arch="x86_64" version="2.6.6" release="0.1">
          <filename>finch-2.6.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="finch-devel" arch="i586" version="2.6.6" release="0.1">
          <filename>finch-devel-2.6.6-0.1.i586.rpm</filename>
        </package>
        <package name="finch-devel" arch="ppc" version="2.6.6" release="0.1">
          <filename>finch-devel-2.6.6-0.1.ppc.rpm</filename>
        </package>
        <package name="finch-devel" arch="x86_64" version="2.6.6" release="0.1">
          <filename>finch-devel-2.6.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="libpurple" arch="i586" version="2.6.6" release="0.1">
          <filename>libpurple-2.6.6-0.1.i586.rpm</filename>
        </package>
        <package name="libpurple" arch="ppc" version="2.6.6" release="0.1">
          <filename>libpurple-2.6.6-0.1.ppc.rpm</filename>
        </package>
        <package name="libpurple" arch="x86_64" version="2.6.6" release="0.1">
          <filename>libpurple-2.6.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="i586" version="2.6.6" release="0.1">
          <filename>libpurple-devel-2.6.6-0.1.i586.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="ppc" version="2.6.6" release="0.1">
          <filename>libpurple-devel-2.6.6-0.1.ppc.rpm</filename>
        </package>
        <package name="libpurple-devel" arch="x86_64" version="2.6.6" release="0.1">
          <filename>libpurple-devel-2.6.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="i586" version="2.6.6" release="0.1">
          <filename>libpurple-lang-2.6.6-0.1.i586.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="ppc" version="2.6.6" release="0.1">
          <filename>libpurple-lang-2.6.6-0.1.ppc.rpm</filename>
        </package>
        <package name="libpurple-lang" arch="x86_64" version="2.6.6" release="0.1">
          <filename>libpurple-lang-2.6.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="i586" version="2.6.6" release="0.1">
          <filename>libpurple-meanwhile-2.6.6-0.1.i586.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="ppc" version="2.6.6" release="0.1">
          <filename>libpurple-meanwhile-2.6.6-0.1.ppc.rpm</filename>
        </package>
        <package name="libpurple-meanwhile" arch="x86_64" version="2.6.6" release="0.1">
          <filename>libpurple-meanwhile-2.6.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="i586" version="2.6.6" release="0.1">
          <filename>libpurple-mono-2.6.6-0.1.i586.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="ppc" version="2.6.6" release="0.1">
          <filename>libpurple-mono-2.6.6-0.1.ppc.rpm</filename>
        </package>
        <package name="libpurple-mono" arch="x86_64" version="2.6.6" release="0.1">
          <filename>libpurple-mono-2.6.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="pidgin" arch="i586" version="2.6.6" release="0.1">
          <filename>pidgin-2.6.6-0.1.i586.rpm</filename>
        </package>
        <package name="pidgin" arch="ppc" version="2.6.6" release="0.1">
          <filename>pidgin-2.6.6-0.1.ppc.rpm</filename>
        </package>
        <package name="pidgin" arch="x86_64" version="2.6.6" release="0.1">
          <filename>pidgin-2.6.6-0.1.x86_64.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="i586" version="2.6.6" release="0.1">
          <filename>pidgin-devel-2.6.6-0.1.i586.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="ppc" version="2.6.6" release="0.1">
          <filename>pidgin-devel-2.6.6-0.1.ppc.rpm</filename>
        </package>
        <package name="pidgin-devel" arch="x86_64" version="2.6.6" release="0.1">
          <filename>pidgin-devel-2.6.6-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7ec0a11cdc6c3eae820cd46c576761b0"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2068">
  <id>acroread</id>
  <title>acroread: security update to version 9.3.1</title>
  <release>openSUSE 11.0</release>
  <issued date="1267120546"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=580470" id="580470" title="bug number 580470" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0186" id="CVE-2010-0186" title="CVE-2010-0186" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0188" id="CVE-2010-0188" title="CVE-2010-0188" type="cve"/>
  </references>
  <description>This update of acroread fixes:
- CVE-2010-0186: CVSS v2 Base Score: 5.8 Cross-domain
  request vulnerability
- CVE-2010-0188: CVSS v2 Base Score: 6.8 An unspecified
  vulnerability that possibly allowed remote code execution.
</description>
  <pkglist>
    <collection>
        <package name="acroread" arch="i586" version="9.3.1" release="0.1">
          <filename>acroread-9.3.1-0.1.i586.rpm</filename>
        </package>
        <package name="acroread-cmaps" arch="noarch" version="9.3.1" release="0.1">
          <filename>acroread-cmaps-9.3.1-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-ja" arch="noarch" version="9.3.1" release="0.1">
          <filename>acroread-fonts-ja-9.3.1-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-ko" arch="noarch" version="9.3.1" release="0.1">
          <filename>acroread-fonts-ko-9.3.1-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-zh_CN" arch="noarch" version="9.3.1" release="0.1">
          <filename>acroread-fonts-zh_CN-9.3.1-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-zh_TW" arch="noarch" version="9.3.1" release="0.1">
          <filename>acroread-fonts-zh_TW-9.3.1-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f1ce0472bc882283901eebc3de22346b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2096">
  <id>pidgin-otr</id>
  <title>pidgin-otr: Update to align with pidgin release.</title>
  <release>openSUSE 11.0</release>
  <issued date="1267491224"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=569616" id="569616" title="bug number 569616" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=567799" id="567799" title="bug number 567799" type="bugzilla"/>
  </references>
  <description>This update contains the missed pidgin-otr dependend
package of the last pidgin update.
</description>
  <pkglist>
    <collection>
        <package name="pidgin-otr" arch="i586" version="3.1.0" release="87.2">
          <filename>pidgin-otr-3.1.0-87.2.i586.rpm</filename>
        </package>
        <package name="pidgin-otr" arch="ppc" version="3.1.0" release="87.2">
          <filename>pidgin-otr-3.1.0-87.2.ppc.rpm</filename>
        </package>
        <package name="pidgin-otr" arch="x86_64" version="3.1.0" release="87.2">
          <filename>pidgin-otr-3.1.0-87.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f163ac675d1517e1d7c5f27bfe9ff37f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2011">
  <id>libnetpbm-devel</id>
  <title>netpbm security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1266337153"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=579903" id="579903" title="bug number 579903" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4274" id="CVE-2009-4274" title="CVE-2009-4274" type="cve"/>
  </references>
  <description>This update of netpbm fxes a stack-based buffer overflow
that could be triggered while processing the contents of
XPM headers in image files. (CVE-2009-4274: CVSS v2 Base
Score: 5.8 (moderate) (AV:N/AC:M/Au:N/C:N/I:P/A:P): Buffer
Errors (CWE-119))
</description>
  <pkglist>
    <collection>
        <package name="libnetpbm-devel" arch="i586" version="10.26.44" release="62.2">
          <filename>libnetpbm-devel-10.26.44-62.2.i586.rpm</filename>
        </package>
        <package name="libnetpbm-devel" arch="ppc" version="10.26.44" release="62.2">
          <filename>libnetpbm-devel-10.26.44-62.2.ppc.rpm</filename>
        </package>
        <package name="libnetpbm-devel" arch="x86_64" version="10.26.44" release="62.2">
          <filename>libnetpbm-devel-10.26.44-62.2.x86_64.rpm</filename>
        </package>
        <package name="libnetpbm10" arch="i586" version="10.26.44" release="62.2">
          <filename>libnetpbm10-10.26.44-62.2.i586.rpm</filename>
        </package>
        <package name="libnetpbm10" arch="ppc" version="10.26.44" release="62.2">
          <filename>libnetpbm10-10.26.44-62.2.ppc.rpm</filename>
        </package>
        <package name="libnetpbm10" arch="x86_64" version="10.26.44" release="62.2">
          <filename>libnetpbm10-10.26.44-62.2.x86_64.rpm</filename>
        </package>
        <package name="libnetpbm10-32bit" arch="x86_64" version="10.26.44" release="62.2">
          <filename>libnetpbm10-32bit-10.26.44-62.2.x86_64.rpm</filename>
        </package>
        <package name="libnetpbm10-64bit" arch="ppc" version="10.26.44" release="62.2">
          <filename>libnetpbm10-64bit-10.26.44-62.2.ppc.rpm</filename>
        </package>
        <package name="netpbm" arch="i586" version="10.26.44" release="62.2">
          <filename>netpbm-10.26.44-62.2.i586.rpm</filename>
        </package>
        <package name="netpbm" arch="ppc" version="10.26.44" release="62.2">
          <filename>netpbm-10.26.44-62.2.ppc.rpm</filename>
        </package>
        <package name="netpbm" arch="x86_64" version="10.26.44" release="62.2">
          <filename>netpbm-10.26.44-62.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c1757606ae86a07a67461e4c313fea11"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2083">
  <id>sudo</id>
  <title>sudo: security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1267444351"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=582555" id="582555" title="bug number 582555" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=582556" id="582556" title="bug number 582556" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0426" id="CVE-2010-0426" title="CVE-2010-0426" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0427" id="CVE-2010-0427" title="CVE-2010-0427" type="cve"/>
  </references>
  <description>This update fixes two security issues:
- CVE-2010-0427:CVSS v2 Base Score: 6.6 Sudo failed to
  properly reset group permissions, when 'runas_default'
  option was used. If a local, unprivileged user was
  authorized by sudoers file to perform their sudo commands
  under default user account, it could lead to privilege
  escalation  CVE-2010-0426:CVSS v2 Base Score: 6.6 A
  privilege escalation flaw was found in the way sudo used
  to check file paths for pseudocommands. If local,
  unprivileged user was authorized by sudoers file to edit
  one or more files, it could lead to execution of
  arbitrary code, with the privileges of privileged system
  user (root).
</description>
  <pkglist>
    <collection>
        <package name="sudo" arch="i586" version="1.6.9p15" release="13.6">
          <filename>sudo-1.6.9p15-13.6.i586.rpm</filename>
        </package>
        <package name="sudo" arch="ppc" version="1.6.9p15" release="13.6">
          <filename>sudo-1.6.9p15-13.6.ppc.rpm</filename>
        </package>
        <package name="sudo" arch="x86_64" version="1.6.9p15" release="13.6">
          <filename>sudo-1.6.9p15-13.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f06fffc056ad923327ff45e272add140"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2089">
  <id>kernel</id>
  <title>Linux Kernel update</title>
  <release>openSUSE 11.0</release>
  <issued date="1267486853"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=564374" id="564374" title="bug number 564374" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=581718" id="581718" title="bug number 581718" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=575644" id="575644" title="bug number 575644" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=579439" id="579439" title="bug number 579439" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=576927" id="576927" title="bug number 576927" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=577753" id="577753" title="bug number 577753" type="bugzilla"/>
  </references>
  <description>The openSUSE 11.0 kernel was updated to fix following
security issues:

CVE-2009-4020: Stack-based buffer overflow in the hfs
subsystem in the Linux kernel 2.6.32 allows remote
attackers to have an unspecified impact via a crafted
Hierarchical File System (HFS) filesystem, related to the
hfs_readdir function in fs/hfs/dir.c.

CVE-2010-0307: The load_elf_binary function in
fs/binfmt_elf.c in the Linux kernel before 2.6.32.8 on the
x86_64 platform does not ensure that the ELF interpreter is
available before a call to the SET_PERSONALITY macro, which
allows local users to cause a denial of service (system
crash) via a 32-bit application that attempts to execute a
64-bit application and then triggers a segmentation fault,
as demonstrated by amd64_killer, related to the
flush_old_exec function.

CVE-2010-0622: The wake_futex_pi function in kernel/futex.c
in the Linux kernel before 2.6.33-rc7 does not properly
handle certain unlock operations for a Priority Inheritance
(PI) futex, which allows local users to cause a denial of
service (OOPS) and possibly have unspecified other impact
via vectors involving modification of the futex value from
user space.

CVE-2010-0410: drivers/connector/connector.c in the Linux
kernel before 2.6.32.8 allows local users to cause a denial
of service (memory consumption and system crash) by sending
the kernel many NETLINK_CONNECTOR messages.

CVE-2010-0415: The do_pages_move function in mm/migrate.c
in the Linux kernel before 2.6.33-rc7 does not validate
node values, which allows local users to read arbitrary
kernel memory locations, cause a denial of service (OOPS),
and possibly have unspecified other impact by specifying a
node that is not part of the kernel's node set.
</description>
  <pkglist>
    <collection>
        <package name="acerhk-kmp-debug" arch="i586" version="0.5.35_2.6.25.20_0.7" release="98.1">
          <filename>acerhk-kmp-debug-0.5.35_2.6.25.20_0.7-98.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="acx-kmp-debug" arch="i586" version="20080210_2.6.25.20_0.7" release="4.1">
          <filename>acx-kmp-debug-20080210_2.6.25.20_0.7-4.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="acx-kmp-debug" arch="x86_64" version="20080210_2.6.25.20_0.7" release="4.1">
          <filename>acx-kmp-debug-20080210_2.6.25.20_0.7-4.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="appleir-kmp-debug" arch="i586" version="1.1_2.6.25.20_0.7" release="108.1">
          <filename>appleir-kmp-debug-1.1_2.6.25.20_0.7-108.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="appleir-kmp-debug" arch="x86_64" version="1.1_2.6.25.20_0.7" release="108.1">
          <filename>appleir-kmp-debug-1.1_2.6.25.20_0.7-108.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="at76_usb-kmp-debug" arch="i586" version="0.17_2.6.25.20_0.7" release="2.1">
          <filename>at76_usb-kmp-debug-0.17_2.6.25.20_0.7-2.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="at76_usb-kmp-debug" arch="x86_64" version="0.17_2.6.25.20_0.7" release="2.1">
          <filename>at76_usb-kmp-debug-0.17_2.6.25.20_0.7-2.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="atl2-kmp-debug" arch="i586" version="2.0.4_2.6.25.20_0.7" release="4.1">
          <filename>atl2-kmp-debug-2.0.4_2.6.25.20_0.7-4.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="atl2-kmp-debug" arch="x86_64" version="2.0.4_2.6.25.20_0.7" release="4.1">
          <filename>atl2-kmp-debug-2.0.4_2.6.25.20_0.7-4.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="aufs-kmp-debug" arch="i586" version="cvs20080429_2.6.25.20_0.7" release="13.3">
          <filename>aufs-kmp-debug-cvs20080429_2.6.25.20_0.7-13.3.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="aufs-kmp-debug" arch="x86_64" version="cvs20080429_2.6.25.20_0.7" release="13.3">
          <filename>aufs-kmp-debug-cvs20080429_2.6.25.20_0.7-13.3.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="dazuko-kmp-debug" arch="i586" version="2.3.4.4_2.6.25.20_0.7" release="42.1">
          <filename>dazuko-kmp-debug-2.3.4.4_2.6.25.20_0.7-42.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="dazuko-kmp-debug" arch="x86_64" version="2.3.4.4_2.6.25.20_0.7" release="42.1">
          <filename>dazuko-kmp-debug-2.3.4.4_2.6.25.20_0.7-42.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="drbd-kmp-debug" arch="i586" version="8.2.6_2.6.25.20_0.7" release="0.2">
          <filename>drbd-kmp-debug-8.2.6_2.6.25.20_0.7-0.2.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="drbd-kmp-debug" arch="x86_64" version="8.2.6_2.6.25.20_0.7" release="0.2">
          <filename>drbd-kmp-debug-8.2.6_2.6.25.20_0.7-0.2.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="gspcav-kmp-debug" arch="i586" version="01.00.20_2.6.25.20_0.7" release="1.1">
          <filename>gspcav-kmp-debug-01.00.20_2.6.25.20_0.7-1.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="gspcav-kmp-debug" arch="x86_64" version="01.00.20_2.6.25.20_0.7" release="1.1">
          <filename>gspcav-kmp-debug-01.00.20_2.6.25.20_0.7-1.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="iscsitarget-kmp-debug" arch="i586" version="0.4.15_2.6.25.20_0.7" release="63.1">
          <filename>iscsitarget-kmp-debug-0.4.15_2.6.25.20_0.7-63.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="iscsitarget-kmp-debug" arch="x86_64" version="0.4.15_2.6.25.20_0.7" release="63.1">
          <filename>iscsitarget-kmp-debug-0.4.15_2.6.25.20_0.7-63.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="ivtv-kmp-debug" arch="i586" version="1.0.3_2.6.25.20_0.7" release="66.1">
          <filename>ivtv-kmp-debug-1.0.3_2.6.25.20_0.7-66.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="ivtv-kmp-debug" arch="x86_64" version="1.0.3_2.6.25.20_0.7" release="66.1">
          <filename>ivtv-kmp-debug-1.0.3_2.6.25.20_0.7-66.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="i586" version="2.6.25.20" release="0.7">
          <filename>kernel-debug-2.6.25.20-0.7.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-debug" arch="x86_64" version="2.6.25.20" release="0.7">
          <filename>kernel-debug-2.6.25.20-0.7.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="i586" version="2.6.25.20" release="0.7">
          <filename>kernel-default-2.6.25.20-0.7.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="ppc" version="2.6.25.20" release="0.7">
          <filename>kernel-default-2.6.25.20-0.7.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-default" arch="x86_64" version="2.6.25.20" release="0.7">
          <filename>kernel-default-2.6.25.20-0.7.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-docs" arch="noarch" version="2.6.25.20" release="0.7">
          <filename>kernel-docs-2.6.25.20-0.7.noarch.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-kdump" arch="ppc" version="2.6.25.20" release="0.7">
          <filename>kernel-kdump-2.6.25.20-0.7.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-pae" arch="i586" version="2.6.25.20" release="0.7">
          <filename>kernel-pae-2.6.25.20-0.7.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ppc64" arch="ppc" version="2.6.25.20" release="0.7">
          <filename>kernel-ppc64-2.6.25.20-0.7.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-ps3" arch="ppc" version="2.6.25.20" release="0.7">
          <filename>kernel-ps3-2.6.25.20-0.7.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="i586" version="2.6.25.20" release="0.7">
          <filename>kernel-source-2.6.25.20-0.7.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="ppc" version="2.6.25.20" release="0.7">
          <filename>kernel-source-2.6.25.20-0.7.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-source" arch="x86_64" version="2.6.25.20" release="0.7">
          <filename>kernel-source-2.6.25.20-0.7.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="i586" version="2.6.25.20" release="0.7">
          <filename>kernel-syms-2.6.25.20-0.7.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="ppc" version="2.6.25.20" release="0.7">
          <filename>kernel-syms-2.6.25.20-0.7.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-syms" arch="x86_64" version="2.6.25.20" release="0.7">
          <filename>kernel-syms-2.6.25.20-0.7.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="i586" version="2.6.25.20" release="0.7">
          <filename>kernel-vanilla-2.6.25.20-0.7.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="ppc" version="2.6.25.20" release="0.7">
          <filename>kernel-vanilla-2.6.25.20-0.7.ppc.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-vanilla" arch="x86_64" version="2.6.25.20" release="0.7">
          <filename>kernel-vanilla-2.6.25.20-0.7.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="i586" version="2.6.25.20" release="0.7">
          <filename>kernel-xen-2.6.25.20-0.7.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kernel-xen" arch="x86_64" version="2.6.25.20" release="0.7">
          <filename>kernel-xen-2.6.25.20-0.7.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kqemu-kmp-debug" arch="i586" version="1.3.0pre11_2.6.25.20_0.7" release="7.1">
          <filename>kqemu-kmp-debug-1.3.0pre11_2.6.25.20_0.7-7.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="kqemu-kmp-debug" arch="x86_64" version="1.3.0pre11_2.6.25.20_0.7" release="7.1">
          <filename>kqemu-kmp-debug-1.3.0pre11_2.6.25.20_0.7-7.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="nouveau-kmp-debug" arch="i586" version="0.10.1.20081112_2.6.25.20_0.7" release="0.4">
          <filename>nouveau-kmp-debug-0.10.1.20081112_2.6.25.20_0.7-0.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="nouveau-kmp-debug" arch="x86_64" version="0.10.1.20081112_2.6.25.20_0.7" release="0.4">
          <filename>nouveau-kmp-debug-0.10.1.20081112_2.6.25.20_0.7-0.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="omnibook-kmp-debug" arch="i586" version="20080313_2.6.25.20_0.7" release="1.1">
          <filename>omnibook-kmp-debug-20080313_2.6.25.20_0.7-1.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="omnibook-kmp-debug" arch="x86_64" version="20080313_2.6.25.20_0.7" release="1.1">
          <filename>omnibook-kmp-debug-20080313_2.6.25.20_0.7-1.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcc-acpi-kmp-debug" arch="i586" version="0.9_2.6.25.20_0.7" release="4.1">
          <filename>pcc-acpi-kmp-debug-0.9_2.6.25.20_0.7-4.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcc-acpi-kmp-debug" arch="x86_64" version="0.9_2.6.25.20_0.7" release="4.1">
          <filename>pcc-acpi-kmp-debug-0.9_2.6.25.20_0.7-4.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcfclock-kmp-debug" arch="i586" version="0.44_2.6.25.20_0.7" release="207.1">
          <filename>pcfclock-kmp-debug-0.44_2.6.25.20_0.7-207.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="pcfclock-kmp-debug" arch="x86_64" version="0.44_2.6.25.20_0.7" release="207.1">
          <filename>pcfclock-kmp-debug-0.44_2.6.25.20_0.7-207.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="tpctl-kmp-debug" arch="i586" version="4.17_2.6.25.20_0.7" release="189.1">
          <filename>tpctl-kmp-debug-4.17_2.6.25.20_0.7-189.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="uvcvideo-kmp-debug" arch="i586" version="r200_2.6.25.20_0.7" release="2.4">
          <filename>uvcvideo-kmp-debug-r200_2.6.25.20_0.7-2.4.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="uvcvideo-kmp-debug" arch="x86_64" version="r200_2.6.25.20_0.7" release="2.4">
          <filename>uvcvideo-kmp-debug-r200_2.6.25.20_0.7-2.4.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="virtualbox-ose-kmp-debug" arch="i586" version="1.5.6_2.6.25.20_0.7" release="33.5">
          <filename>virtualbox-ose-kmp-debug-1.5.6_2.6.25.20_0.7-33.5.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="virtualbox-ose-kmp-debug" arch="x86_64" version="1.5.6_2.6.25.20_0.7" release="33.5">
          <filename>virtualbox-ose-kmp-debug-1.5.6_2.6.25.20_0.7-33.5.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="vmware-kmp-debug" arch="i586" version="2008.04.14_2.6.25.20_0.7" release="21.1">
          <filename>vmware-kmp-debug-2008.04.14_2.6.25.20_0.7-21.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="vmware-kmp-debug" arch="x86_64" version="2008.04.14_2.6.25.20_0.7" release="21.1">
          <filename>vmware-kmp-debug-2008.04.14_2.6.25.20_0.7-21.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="wlan-ng-kmp-debug" arch="i586" version="0.2.8_2.6.25.20_0.7" release="107.1">
          <filename>wlan-ng-kmp-debug-0.2.8_2.6.25.20_0.7-107.1.i586.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
        <package name="wlan-ng-kmp-debug" arch="x86_64" version="0.2.8_2.6.25.20_0.7" release="107.1">
          <filename>wlan-ng-kmp-debug-0.2.8_2.6.25.20_0.7-107.1.x86_64.rpm</filename>
          <reboot_suggested>1</reboot_suggested>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b45d77eea2e7cc4063f464c2c1f6ae3c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1979">
  <id>OpenOffice_org</id>
  <title>OpenOffice security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1265871951"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=564497" id="564497" title="bug number 564497" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=564503" id="564503" title="bug number 564503" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=566030" id="566030" title="bug number 566030" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=521564" id="521564" title="bug number 521564" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2949" id="CVE-2009-2949" title="CVE-2009-2949" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2950" id="CVE-2009-2950" title="CVE-2009-2950" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0136" id="CVE-2010-0136" title="CVE-2010-0136" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3301" id="CVE-2009-3301" title="CVE-2009-3301" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3302" id="CVE-2009-3302" title="CVE-2009-3302" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0217" id="CVE-2009-0217" title="CVE-2009-0217" type="cve"/>
  </references>
  <description>This update of OpenOffice_org includes fixes for the
following vulnerabilities:
- CVE-2009-0217: XML signature weakness
- CVE-2009-2949: XPM Import Integer Overflow
- CVE-2009-2950: GIF Import Heap Overflow
- CVE-2009-3301: MS Word sprmTDefTable Memory Corruption
- CVE-2009-3302: MS Word sprmTDefTable Memory Corruption
- CVE-2010-0136: In the ooo-build variant of OpenOffice_org
  VBA Macro support does not honor Macro security settings.
</description>
  <pkglist>
    <collection>
        <package name="OpenOffice_org" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-base-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-base-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-base-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-calc-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-calc-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-calc-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-devel-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-devel-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-devel-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-draw-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-draw-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-draw-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-filters-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-filters-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-filters-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-impress-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-impress-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-impress-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-kde-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-kde-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-kde-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-math-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-math-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-math-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-mono-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-mono-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-mono-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="i586" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-writer-2.4.0.14-1.6.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="ppc" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-writer-2.4.0.14-1.6.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="x86_64" version="2.4.0.14" release="1.6">
          <filename>OpenOffice_org-writer-2.4.0.14-1.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="57e7b64bcac302bbc9cfacbb58f14860"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1900">
  <id>wireshark</id>
  <title>wireshark security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1265159655"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=565902" id="565902" title="bug number 565902" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4377" id="CVE-2009-4377" title="CVE-2009-4377" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4376" id="CVE-2009-4376" title="CVE-2009-4376" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0304" id="CVE-2010-0304" title="CVE-2010-0304" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2563" id="CVE-2009-2563" title="CVE-2009-2563" type="cve"/>
  </references>
  <description>This update of wireshark fixes:
- CVE-2009-4376: Remote attackers could potentially trigger
  a buffer overflow in the Daintree SNA file parser.
- CVE-2009-4377: Specially crafted packets could cause the
  SMB and SMB2 dissector to crash wireshark.
- CVE-2009-2563: Unspecified vulnerability in the
  Infiniband dissector allows remote attackers to cause a
  denial of service.
- CVE-2010-0304: Several buffer overflows in the LWRES
  dissector.
</description>
  <pkglist>
    <collection>
        <package name="wireshark" arch="i586" version="1.0.0" release="17.21">
          <filename>wireshark-1.0.0-17.21.i586.rpm</filename>
        </package>
        <package name="wireshark" arch="ppc" version="1.0.0" release="17.21">
          <filename>wireshark-1.0.0-17.21.ppc.rpm</filename>
        </package>
        <package name="wireshark" arch="x86_64" version="1.0.0" release="17.21">
          <filename>wireshark-1.0.0-17.21.x86_64.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="i586" version="1.0.0" release="17.21">
          <filename>wireshark-devel-1.0.0-17.21.i586.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="ppc" version="1.0.0" release="17.21">
          <filename>wireshark-devel-1.0.0-17.21.ppc.rpm</filename>
        </package>
        <package name="wireshark-devel" arch="x86_64" version="1.0.0" release="17.21">
          <filename>wireshark-devel-1.0.0-17.21.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fff0a1fbb5bd5d1953627ebdeab7fa65"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2026">
  <id>cron</id>
  <title>cron: fix race condition</title>
  <release>openSUSE 11.0</release>
  <issued date="1266593204"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=580800" id="580800" title="bug number 580800" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0424" id="CVE-2010-0424" title="CVE-2010-0424" type="cve"/>
  </references>
  <description>This update of cron fixes a race condition in crontab that
can be used to change the time-stamp of arbitrary files
while editing the crontab entry. CVE-2010-0424: CVSS v2
Base Score: 3.6 Additionally the return value of
initgroups() is verified now.
</description>
  <pkglist>
    <collection>
        <package name="cron" arch="i586" version="4.1" release="172.2">
          <filename>cron-4.1-172.2.i586.rpm</filename>
        </package>
        <package name="cron" arch="ppc" version="4.1" release="172.2">
          <filename>cron-4.1-172.2.ppc.rpm</filename>
        </package>
        <package name="cron" arch="x86_64" version="4.1" release="172.2">
          <filename>cron-4.1-172.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e1ef8955282f1a32cf0d3c4a50d75a32"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2102">
  <id>cups</id>
  <title>cups security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1265821057"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=574336" id="574336" title="bug number 574336" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=578215" id="578215" title="bug number 578215" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0393" id="CVE-2010-0393" title="CVE-2010-0393" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0302" id="CVE-2010-0302" title="CVE-2010-0302" type="cve"/>
  </references>
  <description>lppasswd when running setuid or setgid still honors
environment variables that specify the location of message
files. Local attackers could exploit that to gather
information by using crafted format strings (CVE-2010-0393).

The previous fix for a use-after-free vulnerability
(CVE-2009-3553) was incomplete (CVE-2010-0302).
</description>
  <pkglist>
    <collection>
        <package name="cups" arch="i586" version="1.3.7" release="25.17">
          <filename>cups-1.3.7-25.17.i586.rpm</filename>
        </package>
        <package name="cups" arch="ppc" version="1.3.7" release="25.17">
          <filename>cups-1.3.7-25.17.ppc.rpm</filename>
        </package>
        <package name="cups" arch="x86_64" version="1.3.7" release="25.17">
          <filename>cups-1.3.7-25.17.x86_64.rpm</filename>
        </package>
        <package name="cups-client" arch="i586" version="1.3.7" release="25.17">
          <filename>cups-client-1.3.7-25.17.i586.rpm</filename>
        </package>
        <package name="cups-client" arch="ppc" version="1.3.7" release="25.17">
          <filename>cups-client-1.3.7-25.17.ppc.rpm</filename>
        </package>
        <package name="cups-client" arch="x86_64" version="1.3.7" release="25.17">
          <filename>cups-client-1.3.7-25.17.x86_64.rpm</filename>
        </package>
        <package name="cups-devel" arch="i586" version="1.3.7" release="25.17">
          <filename>cups-devel-1.3.7-25.17.i586.rpm</filename>
        </package>
        <package name="cups-devel" arch="ppc" version="1.3.7" release="25.17">
          <filename>cups-devel-1.3.7-25.17.ppc.rpm</filename>
        </package>
        <package name="cups-devel" arch="x86_64" version="1.3.7" release="25.17">
          <filename>cups-devel-1.3.7-25.17.x86_64.rpm</filename>
        </package>
        <package name="cups-libs" arch="i586" version="1.3.7" release="25.17">
          <filename>cups-libs-1.3.7-25.17.i586.rpm</filename>
        </package>
        <package name="cups-libs" arch="ppc" version="1.3.7" release="25.17">
          <filename>cups-libs-1.3.7-25.17.ppc.rpm</filename>
        </package>
        <package name="cups-libs" arch="x86_64" version="1.3.7" release="25.17">
          <filename>cups-libs-1.3.7-25.17.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-32bit" arch="x86_64" version="1.3.7" release="25.17">
          <filename>cups-libs-32bit-1.3.7-25.17.x86_64.rpm</filename>
        </package>
        <package name="cups-libs-64bit" arch="ppc" version="1.3.7" release="25.17">
          <filename>cups-libs-64bit-1.3.7-25.17.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f4a975e46fa974665f0b69b19ac43148"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2129">
  <id>libpulse-browse0</id>
  <title>pulseaudio security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1268357388"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=584938" id="584938" title="bug number 584938" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1299" id="CVE-2009-1299" title="CVE-2009-1299" type="cve"/>
  </references>
  <description>Due to a race condition in pulseaudio a local attacker
could make pulseaudio change ownership and permissions of
arbitrary files. The problem is only security relevant if
pulseaudio is run in &quot;system mode&quot; which is not the case by
default (CVE-2009-1299).
</description>
  <pkglist>
    <collection>
        <package name="libpulse-browse0" arch="i586" version="0.9.10" release="26.7">
          <filename>libpulse-browse0-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="libpulse-browse0" arch="ppc" version="0.9.10" release="26.7">
          <filename>libpulse-browse0-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="libpulse-browse0" arch="x86_64" version="0.9.10" release="26.7">
          <filename>libpulse-browse0-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="libpulse-devel" arch="i586" version="0.9.10" release="26.7">
          <filename>libpulse-devel-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="libpulse-devel" arch="ppc" version="0.9.10" release="26.7">
          <filename>libpulse-devel-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="libpulse-devel" arch="x86_64" version="0.9.10" release="26.7">
          <filename>libpulse-devel-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="libpulse-mainloop-glib0" arch="i586" version="0.9.10" release="26.7">
          <filename>libpulse-mainloop-glib0-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="libpulse-mainloop-glib0" arch="ppc" version="0.9.10" release="26.7">
          <filename>libpulse-mainloop-glib0-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="libpulse-mainloop-glib0" arch="x86_64" version="0.9.10" release="26.7">
          <filename>libpulse-mainloop-glib0-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="libpulse0" arch="i586" version="0.9.10" release="26.7">
          <filename>libpulse0-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="libpulse0" arch="ppc" version="0.9.10" release="26.7">
          <filename>libpulse0-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="libpulse0" arch="x86_64" version="0.9.10" release="26.7">
          <filename>libpulse0-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="libpulse0-32bit" arch="x86_64" version="0.9.10" release="26.7">
          <filename>libpulse0-32bit-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="libpulse0-64bit" arch="ppc" version="0.9.10" release="26.7">
          <filename>libpulse0-64bit-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="libpulsecore4" arch="i586" version="0.9.10" release="26.7">
          <filename>libpulsecore4-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="libpulsecore4" arch="ppc" version="0.9.10" release="26.7">
          <filename>libpulsecore4-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="libpulsecore4" arch="x86_64" version="0.9.10" release="26.7">
          <filename>libpulsecore4-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio" arch="i586" version="0.9.10" release="26.7">
          <filename>pulseaudio-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="pulseaudio" arch="ppc" version="0.9.10" release="26.7">
          <filename>pulseaudio-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="pulseaudio" arch="x86_64" version="0.9.10" release="26.7">
          <filename>pulseaudio-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-esound-compat" arch="i586" version="0.9.10" release="26.7">
          <filename>pulseaudio-esound-compat-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="pulseaudio-esound-compat" arch="ppc" version="0.9.10" release="26.7">
          <filename>pulseaudio-esound-compat-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-esound-compat" arch="x86_64" version="0.9.10" release="26.7">
          <filename>pulseaudio-esound-compat-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-bluetooth" arch="i586" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-bluetooth-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-bluetooth" arch="ppc" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-bluetooth-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-bluetooth" arch="x86_64" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-bluetooth-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-gconf" arch="i586" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-gconf-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-gconf" arch="ppc" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-gconf-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-gconf" arch="x86_64" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-gconf-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-jack" arch="i586" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-jack-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-jack" arch="ppc" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-jack-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-jack" arch="x86_64" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-jack-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-lirc" arch="i586" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-lirc-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-lirc" arch="ppc" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-lirc-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-lirc" arch="x86_64" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-lirc-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-x11" arch="i586" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-x11-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-x11" arch="ppc" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-x11-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-x11" arch="x86_64" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-x11-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-module-zeroconf" arch="i586" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-zeroconf-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="pulseaudio-module-zeroconf" arch="ppc" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-zeroconf-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-module-zeroconf" arch="x86_64" version="0.9.10" release="26.7">
          <filename>pulseaudio-module-zeroconf-0.9.10-26.7.x86_64.rpm</filename>
        </package>
        <package name="pulseaudio-utils" arch="i586" version="0.9.10" release="26.7">
          <filename>pulseaudio-utils-0.9.10-26.7.i586.rpm</filename>
        </package>
        <package name="pulseaudio-utils" arch="ppc" version="0.9.10" release="26.7">
          <filename>pulseaudio-utils-0.9.10-26.7.ppc.rpm</filename>
        </package>
        <package name="pulseaudio-utils" arch="x86_64" version="0.9.10" release="26.7">
          <filename>pulseaudio-utils-0.9.10-26.7.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="70ac0a790fa150209a81f8b3b175d02f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2144">
  <id>squid</id>
  <title>squid: fixed several DoS conditions (CVE-2009-2855,CVE-2010-0308,CVE-2009-2622,CVE-2009-2621)</title>
  <release>openSUSE 11.0</release>
  <issued date="1268756299"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=577347" id="577347" title="bug number 577347" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=576087" id="576087" title="bug number 576087" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=525774" id="525774" title="bug number 525774" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2855" id="CVE-2009-2855" title="CVE-2009-2855" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0308" id="CVE-2010-0308" title="CVE-2010-0308" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2621" id="CVE-2009-2621" title="CVE-2009-2621" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2622" id="CVE-2009-2622" title="CVE-2009-2622" type="cve"/>
  </references>
  <description>The following vulnerabilities have been fixed in squid:
- CVE-2009-2855: DoS via special crafted auth header
- CVE-2010-0308: DoS via invalid DoS header
- CVE-2009-2622: DoS in squid3 via broken HTTP handling
- CVE-2009-2621: DoS in squid3 via not enforced &quot;buffer
  limits and related bound checks&quot;
</description>
  <pkglist>
    <collection>
        <package name="squid" arch="i586" version="2.6.STABLE20" release="12.3">
          <filename>squid-2.6.STABLE20-12.3.i586.rpm</filename>
        </package>
        <package name="squid" arch="ppc" version="2.6.STABLE20" release="12.3">
          <filename>squid-2.6.STABLE20-12.3.ppc.rpm</filename>
        </package>
        <package name="squid" arch="x86_64" version="2.6.STABLE20" release="12.3">
          <filename>squid-2.6.STABLE20-12.3.x86_64.rpm</filename>
        </package>
        <package name="squid-beta" arch="i586" version="3.0" release="419.2">
          <filename>squid-beta-3.0-419.2.i586.rpm</filename>
        </package>
        <package name="squid-beta" arch="ppc" version="3.0" release="419.2">
          <filename>squid-beta-3.0-419.2.ppc.rpm</filename>
        </package>
        <package name="squid-beta" arch="x86_64" version="3.0" release="419.2">
          <filename>squid-beta-3.0-419.2.x86_64.rpm</filename>
        </package>
        <package name="squid3" arch="i586" version="3.0.STABLE5" release="11.3">
          <filename>squid3-3.0.STABLE5-11.3.i586.rpm</filename>
        </package>
        <package name="squid3" arch="ppc" version="3.0.STABLE5" release="11.3">
          <filename>squid3-3.0.STABLE5-11.3.ppc.rpm</filename>
        </package>
        <package name="squid3" arch="x86_64" version="3.0.STABLE5" release="11.3">
          <filename>squid3-3.0.STABLE5-11.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="22c3b43e5e6a873742b51b8f02c7160e"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2128">
  <id>cifs-mount</id>
  <title>samba security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1268357459"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=577868" id="577868" title="bug number 577868" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=577925" id="577925" title="bug number 577925" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0547" id="CVE-2010-0547" title="CVE-2010-0547" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0926" id="CVE-2010-0926" title="CVE-2010-0926" type="cve"/>
  </references>
  <description>With enabled &quot;wide links&quot; samba follows symbolic links on
the server side, therefore allowing clients to overwrite
arbitrary files (CVE-2010-0926). This update changes the
default setting to have &quot;wide links&quot; disabled by default.
The new default only works if &quot;wide links&quot; is not set
explicitly in smb.conf.

Due to a race condition in mount.cifs a local attacker
could corrupt /etc/mtab if mount.cifs is installed setuid
root. mount.cifs is not setuid root by default and it's not
recommended to change that (CVE-2010-0547).
</description>
  <pkglist>
    <collection>
        <package name="cifs-mount" arch="i586" version="3.2.4" release="4.9">
          <filename>cifs-mount-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="cifs-mount" arch="ppc" version="3.2.4" release="4.9">
          <filename>cifs-mount-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="cifs-mount" arch="x86_64" version="3.2.4" release="4.9">
          <filename>cifs-mount-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="ldapsmb" arch="i586" version="1.34b" release="195.14">
          <filename>ldapsmb-1.34b-195.14.i586.rpm</filename>
        </package>
        <package name="ldapsmb" arch="ppc" version="1.34b" release="195.14">
          <filename>ldapsmb-1.34b-195.14.ppc.rpm</filename>
        </package>
        <package name="ldapsmb" arch="x86_64" version="1.34b" release="195.14">
          <filename>ldapsmb-1.34b-195.14.x86_64.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="i586" version="3.2.4" release="4.9">
          <filename>libnetapi-devel-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="ppc" version="3.2.4" release="4.9">
          <filename>libnetapi-devel-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libnetapi-devel-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libnetapi0" arch="i586" version="3.2.4" release="4.9">
          <filename>libnetapi0-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libnetapi0" arch="ppc" version="3.2.4" release="4.9">
          <filename>libnetapi0-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libnetapi0" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libnetapi0-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="i586" version="3.2.4" release="4.9">
          <filename>libsmbclient-devel-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="ppc" version="3.2.4" release="4.9">
          <filename>libsmbclient-devel-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libsmbclient-devel-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="i586" version="3.2.4" release="4.9">
          <filename>libsmbclient0-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="ppc" version="3.2.4" release="4.9">
          <filename>libsmbclient0-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libsmbclient0-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-32bit" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libsmbclient0-32bit-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-64bit" arch="ppc" version="3.2.4" release="4.9">
          <filename>libsmbclient0-64bit-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="i586" version="3.2.4" release="4.9">
          <filename>libsmbsharemodes-devel-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="ppc" version="3.2.4" release="4.9">
          <filename>libsmbsharemodes-devel-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libsmbsharemodes-devel-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="i586" version="3.2.4" release="4.9">
          <filename>libsmbsharemodes0-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="ppc" version="3.2.4" release="4.9">
          <filename>libsmbsharemodes0-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libsmbsharemodes0-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="i586" version="3.2.4" release="4.9">
          <filename>libtalloc-devel-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="ppc" version="3.2.4" release="4.9">
          <filename>libtalloc-devel-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libtalloc-devel-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1" arch="i586" version="3.2.4" release="4.9">
          <filename>libtalloc1-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libtalloc1" arch="ppc" version="3.2.4" release="4.9">
          <filename>libtalloc1-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libtalloc1" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libtalloc1-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-32bit" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libtalloc1-32bit-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-64bit" arch="ppc" version="3.2.4" release="4.9">
          <filename>libtalloc1-64bit-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="i586" version="3.2.4" release="4.9">
          <filename>libtdb-devel-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="ppc" version="3.2.4" release="4.9">
          <filename>libtdb-devel-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libtdb-devel-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libtdb1" arch="i586" version="3.2.4" release="4.9">
          <filename>libtdb1-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libtdb1" arch="ppc" version="3.2.4" release="4.9">
          <filename>libtdb1-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libtdb1" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libtdb1-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-32bit" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libtdb1-32bit-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-64bit" arch="ppc" version="3.2.4" release="4.9">
          <filename>libtdb1-64bit-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="i586" version="3.2.4" release="4.9">
          <filename>libwbclient-devel-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="ppc" version="3.2.4" release="4.9">
          <filename>libwbclient-devel-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libwbclient-devel-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0" arch="i586" version="3.2.4" release="4.9">
          <filename>libwbclient0-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="libwbclient0" arch="ppc" version="3.2.4" release="4.9">
          <filename>libwbclient0-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="libwbclient0" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libwbclient0-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-32bit" arch="x86_64" version="3.2.4" release="4.9">
          <filename>libwbclient0-32bit-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-64bit" arch="ppc" version="3.2.4" release="4.9">
          <filename>libwbclient0-64bit-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="samba" arch="i586" version="3.2.4" release="4.9">
          <filename>samba-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="samba" arch="ppc" version="3.2.4" release="4.9">
          <filename>samba-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="samba" arch="x86_64" version="3.2.4" release="4.9">
          <filename>samba-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="samba-32bit" arch="x86_64" version="3.2.4" release="4.9">
          <filename>samba-32bit-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="samba-64bit" arch="ppc" version="3.2.4" release="4.9">
          <filename>samba-64bit-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="i586" version="3.2.4" release="4.9">
          <filename>samba-client-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="samba-client" arch="ppc" version="3.2.4" release="4.9">
          <filename>samba-client-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="x86_64" version="3.2.4" release="4.9">
          <filename>samba-client-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="samba-client-32bit" arch="x86_64" version="3.2.4" release="4.9">
          <filename>samba-client-32bit-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="samba-client-64bit" arch="ppc" version="3.2.4" release="4.9">
          <filename>samba-client-64bit-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="i586" version="3.2.4" release="4.9">
          <filename>samba-devel-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="samba-devel" arch="ppc" version="3.2.4" release="4.9">
          <filename>samba-devel-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="x86_64" version="3.2.4" release="4.9">
          <filename>samba-devel-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="i586" version="3.2.4" release="4.9">
          <filename>samba-krb-printing-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="ppc" version="3.2.4" release="4.9">
          <filename>samba-krb-printing-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="x86_64" version="3.2.4" release="4.9">
          <filename>samba-krb-printing-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind" arch="i586" version="3.2.4" release="4.9">
          <filename>samba-winbind-3.2.4-4.9.i586.rpm</filename>
        </package>
        <package name="samba-winbind" arch="ppc" version="3.2.4" release="4.9">
          <filename>samba-winbind-3.2.4-4.9.ppc.rpm</filename>
        </package>
        <package name="samba-winbind" arch="x86_64" version="3.2.4" release="4.9">
          <filename>samba-winbind-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-32bit" arch="x86_64" version="3.2.4" release="4.9">
          <filename>samba-winbind-32bit-3.2.4-4.9.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-64bit" arch="ppc" version="3.2.4" release="4.9">
          <filename>samba-winbind-64bit-3.2.4-4.9.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="51edae6ec5879ccc5cfc28307acb489b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2147">
  <id>viewvc</id>
  <title>Fixed a XSS in viewvc (CVE-2010-0736).</title>
  <release>openSUSE 11.0</release>
  <issued date="1268906627"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=587357" id="587357" title="bug number 587357" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0736" id="CVE-2010-0736" title="CVE-2010-0736" type="cve"/>
  </references>
  <description>Query forms didn't escape user provided input, therefore
allowing cross-site-scripting (XSS) attacks. CVE-2010-0736
has been assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="viewvc" arch="i586" version="1.0.10" release="0.1">
          <filename>viewvc-1.0.10-0.1.i586.rpm</filename>
        </package>
        <package name="viewvc" arch="ppc" version="1.0.10" release="0.1">
          <filename>viewvc-1.0.10-0.1.ppc.rpm</filename>
        </package>
        <package name="viewvc" arch="x86_64" version="1.0.10" release="0.1">
          <filename>viewvc-1.0.10-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="831b6641ffa4f219393941fcbce13b64"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1990">
  <id>compiz-fusion-plugins-main</id>
  <title>compiz fusion expo plugin security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1266280376"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=457937" id="457937" title="bug number 457937" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-6514" id="CVE-2008-6514" title="CVE-2008-6514" type="cve"/>
  </references>
  <description>The expo plugin in Compiz Fusion allowed local users with
physical access to bypass the screen-saver by just dragging
it aside. (CVE-2008-6514: CVSS v2 Base Score: 6.2)
</description>
  <pkglist>
    <collection>
        <package name="compiz-fusion-plugins-main" arch="i586" version="0.7.4" release="28.2">
          <filename>compiz-fusion-plugins-main-0.7.4-28.2.i586.rpm</filename>
        </package>
        <package name="compiz-fusion-plugins-main" arch="ppc" version="0.7.4" release="28.2">
          <filename>compiz-fusion-plugins-main-0.7.4-28.2.ppc.rpm</filename>
        </package>
        <package name="compiz-fusion-plugins-main" arch="x86_64" version="0.7.4" release="28.2">
          <filename>compiz-fusion-plugins-main-0.7.4-28.2.x86_64.rpm</filename>
        </package>
        <package name="compiz-fusion-plugins-main-devel" arch="i586" version="0.7.4" release="28.2">
          <filename>compiz-fusion-plugins-main-devel-0.7.4-28.2.i586.rpm</filename>
        </package>
        <package name="compiz-fusion-plugins-main-devel" arch="ppc" version="0.7.4" release="28.2">
          <filename>compiz-fusion-plugins-main-devel-0.7.4-28.2.ppc.rpm</filename>
        </package>
        <package name="compiz-fusion-plugins-main-devel" arch="x86_64" version="0.7.4" release="28.2">
          <filename>compiz-fusion-plugins-main-devel-0.7.4-28.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="3911462b3f68f3f2a965113f5b360cd7"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2189">
  <id>MozillaThunderbird</id>
  <title>MozillaThunderbird: Security update to 2.0.0.14 release</title>
  <release>openSUSE 11.0</release>
  <issued date="1269453282"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=576969" id="576969" title="bug number 576969" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3077" id="CVE-2009-3077" title="CVE-2009-3077" type="cve"/>
  </references>
  <description>Mozilla Thunderbird was updated to 2.0.0.14 fixing several
security issues and bugs.

MFSA 2010-07:  Mozilla developers took fixes from
previously fixed memory safety bugs in newer Mozilla-based
products and ported them to the Mozilla 1.8.1 branch so
they can be utilized by Thunderbird 2 and SeaMonkey 1.1.

Paul Fisher reported a crash when joined to an Active
Directory server under Vista or Windows 7 and using SSPI
authentication. (CVE-2010-0161) Ludovic Hirlimann reported
a crash indexing some messages with attachments
(CVE-2010-0163) Carsten Book reported a crash in the
JavaScript engine (CVE-2009-3075) Josh Soref reported a
crash in the BinHex decoder used on non-Mac platforms.
(CVE-2009-3072) monarch2000 reported an integer overflow in
a base64 decoding function (CVE-2009-2463)

MFSA 2009-68 / CVE-2009-3983: Security researcher Takehiro
Takahashi of the IBM X-Force reported that Mozilla's NTLM
implementation was vulnerable to reflection attacks in
which NTLM credentials from one application could be
forwarded to another arbitary application via the browser.
If an attacker could get a user to visit a web page he
controlled he could force NTLM authenticated requests to be
forwarded to another application on behalf of the user.

MFSA 2009-62 / CVE-2009-3376: Mozilla security researchers
Jesse Ruderman and Sid Stamm reported that when downloading
a file containing a right-to-left override character (RTL)
in the filename, the name displayed in the dialog title bar
conflicts with the name of the file shown in the dialog
body. An attacker could use this vulnerability to obfuscate
the name and file extension of a file to be downloaded and
opened, potentially causing a user to run an executable
file when they expected to open a non-executable file.

MFSA 2009-59 / CVE-2009-0689: Security researcher Alin Rad
Pop of Secunia Research reported a heap-based buffer
overflow in Mozilla's string to floating point number
conversion routines. Using this vulnerability an attacker
could craft some malicious JavaScript code containing a
very long string to be converted to a floating point number
which would result in improper memory allocation and the
execution of an arbitrary memory location. This
vulnerability could thus be leveraged by the attacker to
run arbitrary code on a victim's computer.

Update: The underlying flaw in the dtoa routines used by
Mozilla appears to be essentially the same as that reported
against the libc gdtoa routine by Maksymilian Arciemowicz.

MFSA 2009-49 / CVE-2009-3077: An anonymous security
researcher, via TippingPoint's Zero Day Initiative,
reported that the columns of a XUL tree element could be
manipulated in a particular way which would leave a pointer
owned by the column pointing to freed memory. An attacker
could potentially use this vulnerability to crash a
victim's browser and run arbitrary code on the victim's
computer.

Please see
http://www.mozilla.org/security/known-vulnerabilities/thunde
rbird20.html
</description>
  <pkglist>
    <collection>
        <package name="MozillaThunderbird" arch="i586" version="2.0.0.24" release="0.1">
          <filename>MozillaThunderbird-2.0.0.24-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="ppc" version="2.0.0.24" release="0.1">
          <filename>MozillaThunderbird-2.0.0.24-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird" arch="x86_64" version="2.0.0.24" release="0.1">
          <filename>MozillaThunderbird-2.0.0.24-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="i586" version="2.0.0.24" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.24-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="ppc" version="2.0.0.24" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.24-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-devel" arch="x86_64" version="2.0.0.24" release="0.1">
          <filename>MozillaThunderbird-devel-2.0.0.24-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="i586" version="2.0.0.24" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.24-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="ppc" version="2.0.0.24" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.24-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaThunderbird-translations" arch="x86_64" version="2.0.0.24" release="0.1">
          <filename>MozillaThunderbird-translations-2.0.0.24-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ba2e18ef377fe14e5fe00c563b069e04"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2152">
  <id>gnome-screensaver</id>
  <title>gnome-screensaver security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1268932430"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=579250" id="579250" title="bug number 579250" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0732" id="CVE-2010-0732" title="CVE-2010-0732" type="cve"/>
  </references>
  <description>Pressing the &quot;Return&quot; key repeatedly caused an X error that
terminated gnome-screensaver (CVE-2010-0732).
</description>
  <pkglist>
    <collection>
        <package name="gnome-screensaver" arch="i586" version="2.22.2" release="24.2">
          <filename>gnome-screensaver-2.22.2-24.2.i586.rpm</filename>
        </package>
        <package name="gnome-screensaver" arch="ppc" version="2.22.2" release="24.2">
          <filename>gnome-screensaver-2.22.2-24.2.ppc.rpm</filename>
        </package>
        <package name="gnome-screensaver" arch="x86_64" version="2.22.2" release="24.2">
          <filename>gnome-screensaver-2.22.2-24.2.x86_64.rpm</filename>
        </package>
        <package name="gnome-screensaver-lang" arch="i586" version="2.22.2" release="24.2">
          <filename>gnome-screensaver-lang-2.22.2-24.2.i586.rpm</filename>
        </package>
        <package name="gnome-screensaver-lang" arch="ppc" version="2.22.2" release="24.2">
          <filename>gnome-screensaver-lang-2.22.2-24.2.ppc.rpm</filename>
        </package>
        <package name="gnome-screensaver-lang" arch="x86_64" version="2.22.2" release="24.2">
          <filename>gnome-screensaver-lang-2.22.2-24.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ae6dc5fb8a3bf26b02f4bbb5ea5d37df"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2069">
  <id>libtheora</id>
  <title>libtheora: integer overflow vulnerability fixed</title>
  <release>openSUSE 11.0</release>
  <issued date="1267012031"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=581722" id="581722" title="bug number 581722" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3389" id="CVE-2009-3389" title="CVE-2009-3389" type="cve"/>
  </references>
  <description>An integer overflow was fixed in libtheora. It could be
exploited remotely to execute arbitrary code.
CVE-2009-3389: CVSS v2 Base Score: 9.3 (HIGH)
(AV:N/AC:M/Au:N/C:C/I:C/A:C): Numeric Errors (CWE-189)
</description>
  <pkglist>
    <collection>
        <package name="libtheora-devel" arch="i586" version="1.0.beta2" release="4.2">
          <filename>libtheora-devel-1.0.beta2-4.2.i586.rpm</filename>
        </package>
        <package name="libtheora-devel" arch="ppc" version="1.0.beta2" release="4.2">
          <filename>libtheora-devel-1.0.beta2-4.2.ppc.rpm</filename>
        </package>
        <package name="libtheora-devel" arch="x86_64" version="1.0.beta2" release="4.2">
          <filename>libtheora-devel-1.0.beta2-4.2.x86_64.rpm</filename>
        </package>
        <package name="libtheora0" arch="i586" version="1.0.beta2" release="4.2">
          <filename>libtheora0-1.0.beta2-4.2.i586.rpm</filename>
        </package>
        <package name="libtheora0" arch="ppc" version="1.0.beta2" release="4.2">
          <filename>libtheora0-1.0.beta2-4.2.ppc.rpm</filename>
        </package>
        <package name="libtheora0" arch="x86_64" version="1.0.beta2" release="4.2">
          <filename>libtheora0-1.0.beta2-4.2.x86_64.rpm</filename>
        </package>
        <package name="libtheora0-32bit" arch="x86_64" version="1.0.beta2" release="4.2">
          <filename>libtheora0-32bit-1.0.beta2-4.2.x86_64.rpm</filename>
        </package>
        <package name="libtheora0-64bit" arch="ppc" version="1.0.beta2" release="4.2">
          <filename>libtheora0-64bit-1.0.beta2-4.2.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a45b56e9c38a3a86f3f974daddf9d90d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2228">
  <id>java-1_6_0-sun</id>
  <title>java-1_6_0-sun: Sun Java 6 Update 19</title>
  <release>openSUSE 11.0</release>
  <issued date="1270048744"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=592589" id="592589" title="bug number 592589" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=578877" id="578877" title="bug number 578877" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3555" id="CVE-2009-3555" title="CVE-2009-3555" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0082" id="CVE-2010-0082" title="CVE-2010-0082" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0084" id="CVE-2010-0084" title="CVE-2010-0084" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0085" id="CVE-2010-0085" title="CVE-2010-0085" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0087" id="CVE-2010-0087" title="CVE-2010-0087" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0088" id="CVE-2010-0088" title="CVE-2010-0088" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0089" id="CVE-2010-0089" title="CVE-2010-0089" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0090" id="CVE-2010-0090" title="CVE-2010-0090" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0091" id="CVE-2010-0091" title="CVE-2010-0091" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0092" id="CVE-2010-0092" title="CVE-2010-0092" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0093" id="CVE-2010-0093" title="CVE-2010-0093" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0094" id="CVE-2010-0094" title="CVE-2010-0094" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0095" id="CVE-2010-0095" title="CVE-2010-0095" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0837" id="CVE-2010-0837" title="CVE-2010-0837" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0838" id="CVE-2010-0838" title="CVE-2010-0838" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0839" id="CVE-2010-0839" title="CVE-2010-0839" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0840" id="CVE-2010-0840" title="CVE-2010-0840" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0841" id="CVE-2010-0841" title="CVE-2010-0841" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0842" id="CVE-2010-0842" title="CVE-2010-0842" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0843" id="CVE-2010-0843" title="CVE-2010-0843" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0844" id="CVE-2010-0844" title="CVE-2010-0844" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0845" id="CVE-2010-0845" title="CVE-2010-0845" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0846" id="CVE-2010-0846" title="CVE-2010-0846" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0847" id="CVE-2010-0847" title="CVE-2010-0847" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0848" id="CVE-2010-0848" title="CVE-2010-0848" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0849" id="CVE-2010-0849" title="CVE-2010-0849" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0850" id="CVE-2010-0850" title="CVE-2010-0850" type="cve"/>
  </references>
  <description>Sun Java 6 was updated to Update 19, fixing a large number
of security issues.

CVE-2009-3555 CVE-2010-0082 CVE-2010-0084 CVE-2010-0085
CVE-2010-0087 CVE-2010-0088 CVE-2010-0089 CVE-2010-0090
CVE-2010-0091 CVE-2010-0092 CVE-2010-0093 CVE-2010-0094
CVE-2010-0095 CVE-2010-0837 CVE-2010-0838 CVE-2010-0839
CVE-2010-0840 CVE-2010-0841 CVE-2010-0842 CVE-2010-0843
CVE-2010-0844 CVE-2010-0845 CVE-2010-0846 CVE-2010-0847
CVE-2010-0848 CVE-2010-0849 CVE-2010-0850
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u19-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u19-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u19-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u19-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u19-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="x86_64" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u19-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="i586" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-src-1.6.0.u19-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="x86_64" version="1.6.0.u19" release="0.1">
          <filename>java-1_6_0-sun-src-1.6.0.u19-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7e1e6b6f70f7446f288f1801380c41c1"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2000">
  <id>tomcat6</id>
  <title>tomcat: fix for several security bugs</title>
  <release>openSUSE 11.0</release>
  <issued date="1266362660"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=575083" id="575083" title="bug number 575083" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2693" id="CVE-2009-2693" title="CVE-2009-2693" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2901" id="CVE-2009-2901" title="CVE-2009-2901" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2902" id="CVE-2009-2902" title="CVE-2009-2902" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5515" id="CVE-2008-5515" title="CVE-2008-5515" type="cve"/>
  </references>
  <description>This update of tomcat5/6 fixes:
- CVE-2009-2693: CVSS v2 Base Score: 5.8 CVE-2009-2902:
  CVSS v2 Base Score: 4.3 Directory traversal vulnerability
  allowed remote attackers to create or overwrite arbitrary
  files/dirs with a specially crafted WAR file.
- CVE-2009-2901: CVSS v2 Base Score: 4.3 When autoDeploy is
  enabled the autodeployment process deployed appBase files
  that remain from a failed undeploy, which might allow
  remote attackers to bypass intended authentication
  requirements via HTTP requests.
- CVE-2008-5515: CVSS v2 Base Score: 5.0 When using the
  RequestDispatcher method, i was possible for remote
  attackers to bypass intended access restrictions and
  conduct directory traversal attacks.
</description>
  <pkglist>
    <collection>
        <package name="tomcat6" arch="noarch" version="6.0.16" release="6.7">
          <filename>tomcat6-6.0.16-6.7.noarch.rpm</filename>
        </package>
        <package name="tomcat6-admin-webapps" arch="noarch" version="6.0.16" release="6.7">
          <filename>tomcat6-admin-webapps-6.0.16-6.7.noarch.rpm</filename>
        </package>
        <package name="tomcat6-docs-webapp" arch="noarch" version="6.0.16" release="6.7">
          <filename>tomcat6-docs-webapp-6.0.16-6.7.noarch.rpm</filename>
        </package>
        <package name="tomcat6-javadoc" arch="noarch" version="6.0.16" release="6.7">
          <filename>tomcat6-javadoc-6.0.16-6.7.noarch.rpm</filename>
        </package>
        <package name="tomcat6-jsp-2_1-api" arch="noarch" version="6.0.16" release="6.7">
          <filename>tomcat6-jsp-2_1-api-6.0.16-6.7.noarch.rpm</filename>
        </package>
        <package name="tomcat6-lib" arch="noarch" version="6.0.16" release="6.7">
          <filename>tomcat6-lib-6.0.16-6.7.noarch.rpm</filename>
        </package>
        <package name="tomcat6-servlet-2_5-api" arch="noarch" version="6.0.16" release="6.7">
          <filename>tomcat6-servlet-2_5-api-6.0.16-6.7.noarch.rpm</filename>
        </package>
        <package name="tomcat6-webapps" arch="noarch" version="6.0.16" release="6.7">
          <filename>tomcat6-webapps-6.0.16-6.7.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="acf5e585ed710ea962f4fe78e194f187"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2256">
  <id>transmission</id>
  <title>transmission: fixing data corruption issue</title>
  <release>openSUSE 11.0</release>
  <issued date="1270552305"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=589268" id="589268" title="bug number 589268" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0748" id="CVE-2010-0748" title="CVE-2010-0748" type="cve"/>
  </references>
  <description>A data corruption issue has been fixed in transmission.
CVE-2010-0748 has been assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="transmission" arch="i586" version="1.11" release="18.4">
          <filename>transmission-1.11-18.4.i586.rpm</filename>
        </package>
        <package name="transmission" arch="ppc" version="1.11" release="18.4">
          <filename>transmission-1.11-18.4.ppc.rpm</filename>
        </package>
        <package name="transmission" arch="x86_64" version="1.11" release="18.4">
          <filename>transmission-1.11-18.4.x86_64.rpm</filename>
        </package>
        <package name="transmission-gtk" arch="i586" version="1.11" release="18.4">
          <filename>transmission-gtk-1.11-18.4.i586.rpm</filename>
        </package>
        <package name="transmission-gtk" arch="ppc" version="1.11" release="18.4">
          <filename>transmission-gtk-1.11-18.4.ppc.rpm</filename>
        </package>
        <package name="transmission-gtk" arch="x86_64" version="1.11" release="18.4">
          <filename>transmission-gtk-1.11-18.4.x86_64.rpm</filename>
        </package>
        <package name="transmission-lang" arch="i586" version="1.11" release="18.4">
          <filename>transmission-lang-1.11-18.4.i586.rpm</filename>
        </package>
        <package name="transmission-lang" arch="ppc" version="1.11" release="18.4">
          <filename>transmission-lang-1.11-18.4.ppc.rpm</filename>
        </package>
        <package name="transmission-lang" arch="x86_64" version="1.11" release="18.4">
          <filename>transmission-lang-1.11-18.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="732486202975a3d18d17f123a30beb20"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2240">
  <id>viewvc</id>
  <title>viewvc security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1270144754"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=592932" id="592932" title="bug number 592932" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0132" id="CVE-2010-0132" title="CVE-2010-0132" type="cve"/>
  </references>
  <description>The regular expression search feature didn't properly
sanitize user input, therefore allowing attackers to
conduct cross-site-scripting (XSS) attacks (CVE-2010-0132).
</description>
  <pkglist>
    <collection>
        <package name="viewvc" arch="i586" version="1.0.11" release="0.1">
          <filename>viewvc-1.0.11-0.1.i586.rpm</filename>
        </package>
        <package name="viewvc" arch="ppc" version="1.0.11" release="0.1">
          <filename>viewvc-1.0.11-0.1.ppc.rpm</filename>
        </package>
        <package name="viewvc" arch="x86_64" version="1.0.11" release="0.1">
          <filename>viewvc-1.0.11-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8b258b6a0002e65b1185b20c06e25cd3"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="1958">
  <id>vsftpd</id>
  <title>vsftpd: ipv6 link local address doesn't work. This bug is fixed by this update.</title>
  <release>openSUSE 11.0</release>
  <issued date="1265820937"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=574366" id="574366" title="bug number 574366" type="bugzilla"/>
  </references>
  <description>vsftpd was updated to fix the following bug:
- #574366: vsftpd doesn't work with ipv6 link local address
</description>
  <pkglist>
    <collection>
        <package name="vsftpd" arch="i586" version="2.0.6" release="25.4">
          <filename>vsftpd-2.0.6-25.4.i586.rpm</filename>
        </package>
        <package name="vsftpd" arch="ppc" version="2.0.6" release="25.4">
          <filename>vsftpd-2.0.6-25.4.ppc.rpm</filename>
        </package>
        <package name="vsftpd" arch="x86_64" version="2.0.6" release="25.4">
          <filename>vsftpd-2.0.6-25.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="71794721b7e5e7cb2642c7ce25f4c5ef"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2268">
  <id>viewvc</id>
  <title>viewvc security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1270821197"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=592932" id="592932" title="bug number 592932" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0132" id="CVE-2010-0132" title="CVE-2010-0132" type="cve"/>
  </references>
  <description>CVS support got broken by the previous viewvc update for
CVE-2010-0132. This release fixes that again.
</description>
  <pkglist>
    <collection>
        <package name="viewvc" arch="i586" version="1.0.11" release="0.3">
          <filename>viewvc-1.0.11-0.3.i586.rpm</filename>
        </package>
        <package name="viewvc" arch="ppc" version="1.0.11" release="0.3">
          <filename>viewvc-1.0.11-0.3.ppc.rpm</filename>
        </package>
        <package name="viewvc" arch="x86_64" version="1.0.11" release="0.3">
          <filename>viewvc-1.0.11-0.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="00569126168069617e8dcf9d7e3abc78"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2258">
  <id>libfreebl3</id>
  <title>mozilla-nss: Update to 3.12.6</title>
  <release>openSUSE 11.0</release>
  <issued date="1270648064"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=554085" id="554085" title="bug number 554085" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3555" id="CVE-2009-3555" title="CVE-2009-3555" type="cve"/>
  </references>
  <description>Mozilla NSS was updated to version 3.12.6.

This fixes all currently known issues in mozilla-nss, and
also implements the new TLS/SSL renegotiation handling
(CVE-2009-3555).
</description>
  <pkglist>
    <collection>
        <package name="libfreebl3" arch="i586" version="3.12.6" release="3.1">
          <filename>libfreebl3-3.12.6-3.1.i586.rpm</filename>
        </package>
        <package name="libfreebl3" arch="ppc" version="3.12.6" release="3.1">
          <filename>libfreebl3-3.12.6-3.1.ppc.rpm</filename>
        </package>
        <package name="libfreebl3" arch="x86_64" version="3.12.6" release="3.1">
          <filename>libfreebl3-3.12.6-3.1.x86_64.rpm</filename>
        </package>
        <package name="libfreebl3-32bit" arch="x86_64" version="3.12.6" release="3.1">
          <filename>libfreebl3-32bit-3.12.6-3.1.x86_64.rpm</filename>
        </package>
        <package name="libfreebl3-64bit" arch="ppc" version="3.12.6" release="3.1">
          <filename>libfreebl3-64bit-3.12.6-3.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="i586" version="3.12.6" release="3.1">
          <filename>mozilla-nss-3.12.6-3.1.i586.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="ppc" version="3.12.6" release="3.1">
          <filename>mozilla-nss-3.12.6-3.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss" arch="x86_64" version="3.12.6" release="3.1">
          <filename>mozilla-nss-3.12.6-3.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-32bit" arch="x86_64" version="3.12.6" release="3.1">
          <filename>mozilla-nss-32bit-3.12.6-3.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-64bit" arch="ppc" version="3.12.6" release="3.1">
          <filename>mozilla-nss-64bit-3.12.6-3.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="i586" version="3.12.6" release="3.1">
          <filename>mozilla-nss-devel-3.12.6-3.1.i586.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="ppc" version="3.12.6" release="3.1">
          <filename>mozilla-nss-devel-3.12.6-3.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss-devel" arch="x86_64" version="3.12.6" release="3.1">
          <filename>mozilla-nss-devel-3.12.6-3.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="i586" version="3.12.6" release="3.1">
          <filename>mozilla-nss-tools-3.12.6-3.1.i586.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="ppc" version="3.12.6" release="3.1">
          <filename>mozilla-nss-tools-3.12.6-3.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-nss-tools" arch="x86_64" version="3.12.6" release="3.1">
          <filename>mozilla-nss-tools-3.12.6-3.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="99c2190371e2d0ca8fbffda76ea89281"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2267">
  <id>krb5</id>
  <title>krb5 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1270116741"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=591049" id="591049" title="bug number 591049" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0629" id="CVE-2010-0629" title="CVE-2010-0629" type="cve"/>
  </references>
  <description>Authenticated users could crash the kadmind process by
referencing freed memory (CVE-2010-0629).
</description>
  <pkglist>
    <collection>
        <package name="krb5" arch="i586" version="1.6.3" release="50.9">
          <filename>krb5-1.6.3-50.9.i586.rpm</filename>
        </package>
        <package name="krb5" arch="ppc" version="1.6.3" release="50.9">
          <filename>krb5-1.6.3-50.9.ppc.rpm</filename>
        </package>
        <package name="krb5" arch="x86_64" version="1.6.3" release="50.9">
          <filename>krb5-1.6.3-50.9.x86_64.rpm</filename>
        </package>
        <package name="krb5-32bit" arch="x86_64" version="1.6.3" release="50.9">
          <filename>krb5-32bit-1.6.3-50.9.x86_64.rpm</filename>
        </package>
        <package name="krb5-64bit" arch="ppc" version="1.6.3" release="50.9">
          <filename>krb5-64bit-1.6.3-50.9.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="i586" version="1.6.3" release="50.9">
          <filename>krb5-apps-clients-1.6.3-50.9.i586.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="ppc" version="1.6.3" release="50.9">
          <filename>krb5-apps-clients-1.6.3-50.9.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="x86_64" version="1.6.3" release="50.9">
          <filename>krb5-apps-clients-1.6.3-50.9.x86_64.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="i586" version="1.6.3" release="50.9">
          <filename>krb5-apps-servers-1.6.3-50.9.i586.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="ppc" version="1.6.3" release="50.9">
          <filename>krb5-apps-servers-1.6.3-50.9.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="x86_64" version="1.6.3" release="50.9">
          <filename>krb5-apps-servers-1.6.3-50.9.x86_64.rpm</filename>
        </package>
        <package name="krb5-client" arch="i586" version="1.6.3" release="50.9">
          <filename>krb5-client-1.6.3-50.9.i586.rpm</filename>
        </package>
        <package name="krb5-client" arch="ppc" version="1.6.3" release="50.9">
          <filename>krb5-client-1.6.3-50.9.ppc.rpm</filename>
        </package>
        <package name="krb5-client" arch="x86_64" version="1.6.3" release="50.9">
          <filename>krb5-client-1.6.3-50.9.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel" arch="i586" version="1.6.3" release="50.9">
          <filename>krb5-devel-1.6.3-50.9.i586.rpm</filename>
        </package>
        <package name="krb5-devel" arch="ppc" version="1.6.3" release="50.9">
          <filename>krb5-devel-1.6.3-50.9.ppc.rpm</filename>
        </package>
        <package name="krb5-devel" arch="x86_64" version="1.6.3" release="50.9">
          <filename>krb5-devel-1.6.3-50.9.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel-32bit" arch="x86_64" version="1.6.3" release="50.9">
          <filename>krb5-devel-32bit-1.6.3-50.9.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel-64bit" arch="ppc" version="1.6.3" release="50.9">
          <filename>krb5-devel-64bit-1.6.3-50.9.ppc.rpm</filename>
        </package>
        <package name="krb5-server" arch="i586" version="1.6.3" release="50.9">
          <filename>krb5-server-1.6.3-50.9.i586.rpm</filename>
        </package>
        <package name="krb5-server" arch="ppc" version="1.6.3" release="50.9">
          <filename>krb5-server-1.6.3-50.9.ppc.rpm</filename>
        </package>
        <package name="krb5-server" arch="x86_64" version="1.6.3" release="50.9">
          <filename>krb5-server-1.6.3-50.9.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5fc9dc30115cae9ac4de2fbff8371b33"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2262">
  <id>firefox35upgrade</id>
  <title>MozillaFirefox: Update to version 3.5.9</title>
  <release>openSUSE 11.0</release>
  <issued date="1270653257"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=586567" id="586567" title="bug number 586567" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0173" id="CVE-2010-0173" title="CVE-2010-0173" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0174" id="CVE-2010-0174" title="CVE-2010-0174" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0175" id="CVE-2010-0175" title="CVE-2010-0175" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0176" id="CVE-2010-0176" title="CVE-2010-0176" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0177" id="CVE-2010-0177" title="CVE-2010-0177" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0178" id="CVE-2010-0178" title="CVE-2010-0178" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0179" id="CVE-2010-0179" title="CVE-2010-0179" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3555" id="CVE-2009-3555" title="CVE-2009-3555" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0181" id="CVE-2010-0181" title="CVE-2010-0181" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0182" id="CVE-2010-0182" title="CVE-2010-0182" type="cve"/>
  </references>
  <description>This patch updates Mozilla Firefox from the 3.0 stable
branch to the 3.5.9 release.

It includes also following security fixes: MFSA 2010-16:
Mozilla developers identified and fixed several stability
bugs in the browser engine used in Firefox and other
Mozilla-based products. Some of these crashes showed
evidence of memory corruption under certain circumstances,
and we presume that with enough effort at least some of
these could be exploited to run arbitrary code. References

Martijn Wargers, Josh Soref, and Jesse Ruderman reported
crashes in the browser engine that affected Firefox 3.5 and
Firefox 3.6. (CVE-2010-0173)

Jesse Ruderman and Ehsan Akhgari reported crashes that
affected all supported versions of the browser engine.
(CVE-2010-0174)


MFSA 2010-17 / CVE-2010-0175: Security researcher
regenrecht reported via TippingPoint's Zero Day Initiative
that a select event handler for XUL tree items could be
called after the tree item was deleted. This results in the
execution of previously freed memory which an attacker
could use to crash a victim's browser and run arbitrary
code on the victim's computer.


MFSA 2010-18 / CVE-2010-0176: Security researcher
regenrecht reported via TippingPoint's Zero Day Initiative
an error in the way &lt;option&gt; elements are inserted into a
XUL tree &lt;optgroup&gt;. In certain cases, the number of
references to an &lt;option&gt; element is under-counted so that
when the element is deleted, a live pointer to its old
location is kept around and may later be used. An attacker
could potentially use these conditions to run arbitrary
code on a victim's computer.


MFSA 2010-19 / CVE-2010-0177: Security researcher
regenrecht reported via TippingPoint's Zero Day Initiative
an error in the implementation of the
window.navigator.plugins object. When a page reloads, the
plugins array would reallocate all of its members without
checking for existing references to each member. This could
result in the deletion of objects for which valid pointers
still exist. An attacker could use this vulnerability to
crash a victim's browser and run arbitrary code on the
victim's machine.

MFSA 2010-20 / CVE-2010-0178: Security researcher Paul
Stone reported that a browser applet could be used to turn
a simple mouse click into a drag-and-drop action,
potentially resulting in the unintended loading of
resources in a user's browser. This behavior could be used
twice in succession to first load a privileged chrome: URL
in a victim's browser, then load a malicious javascript:
URL on top of the same document resulting in arbitrary
script execution with chrome privileges.


MFSA 2010-21 / CVE-2010-0179: Mozilla security researcher
moz_bug_r_a4 reported that the XMLHttpRequestSpy module in
the Firebug add-on was exposing an underlying chrome
privilege escalation vulnerability. When the
XMLHttpRequestSpy object was created, it would attach
various properties of itself to objects defined in web
content, which were not being properly wrapped to prevent
their exposure to chrome privileged objects. This could
result in an attacker running arbitrary JavaScript on a
victim's machine, though it required the victim to have
Firebug installed, so the overall severity of the issue was
determined to be High.


MFSA 2010-22 / CVE-2009-3555: Mozilla developers added
support in the Network Security Services module for
preventing a type of man-in-the-middle attack against TLS
using forced renegotiation.

Note that to benefit from the fix, Firefox 3.6 and Firefox
3.5 users will need to set their
security.ssl.require_safe_negotiation preference to true.
Firefox 3 does not contain the fix for this issue.


MFSA 2010-23 / CVE-2010-0181: phpBB developer Henry Sudhof
reported that when an image tag points to a resource that
redirects to a mailto: URL, the external mail handler
application is launched. This issue poses no security
threat to users but could create an annoyance when browsing
a site that allows users to post arbitrary images.


MFSA 2010-24 / CVE-2010-0182: Mozilla community member
Wladimir Palant reported that XML documents were failing to
call certain security checks when loading new content. This
could result in certain resources being loaded that would
otherwise violate security policies set by the browser or
installed add-ons.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-3.5.9-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-3.5.9-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-3.5.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-branding-upstream" arch="i586" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-branding-upstream-3.5.9-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-branding-upstream" arch="ppc" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-branding-upstream-3.5.9-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-branding-upstream" arch="x86_64" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-branding-upstream-3.5.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-common" arch="i586" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-translations-common-3.5.9-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-common" arch="ppc" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-translations-common-3.5.9-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-common" arch="x86_64" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-translations-common-3.5.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-other" arch="i586" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-translations-other-3.5.9-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-other" arch="ppc" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-translations-other-3.5.9-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-other" arch="x86_64" version="3.5.9" release="0.1">
          <filename>MozillaFirefox-translations-other-3.5.9-0.1.x86_64.rpm</filename>
        </package>
        <package name="autoconf213" arch="noarch" version="2.13" release="3.1">
          <filename>autoconf213-2.13-3.1.noarch.rpm</filename>
        </package>
        <package name="autoconf213" arch="noarch" version="2.13" release="3.1">
          <filename>autoconf213-2.13-3.1.noarch.rpm</filename>
        </package>
        <package name="autoconf213" arch="noarch" version="2.13" release="3.1">
          <filename>autoconf213-2.13-3.1.noarch.rpm</filename>
        </package>
        <package name="beagle" arch="i586" version="0.3.7" release="22.2">
          <filename>beagle-0.3.7-22.2.i586.rpm</filename>
        </package>
        <package name="beagle" arch="ppc" version="0.3.7" release="22.2">
          <filename>beagle-0.3.7-22.2.ppc.rpm</filename>
        </package>
        <package name="beagle" arch="x86_64" version="0.3.7" release="22.2">
          <filename>beagle-0.3.7-22.2.x86_64.rpm</filename>
        </package>
        <package name="beagle-devel" arch="i586" version="0.3.7" release="22.2">
          <filename>beagle-devel-0.3.7-22.2.i586.rpm</filename>
        </package>
        <package name="beagle-devel" arch="ppc" version="0.3.7" release="22.2">
          <filename>beagle-devel-0.3.7-22.2.ppc.rpm</filename>
        </package>
        <package name="beagle-devel" arch="x86_64" version="0.3.7" release="22.2">
          <filename>beagle-devel-0.3.7-22.2.x86_64.rpm</filename>
        </package>
        <package name="beagle-epiphany" arch="i586" version="0.3.7" release="22.2">
          <filename>beagle-epiphany-0.3.7-22.2.i586.rpm</filename>
        </package>
        <package name="beagle-epiphany" arch="ppc" version="0.3.7" release="22.2">
          <filename>beagle-epiphany-0.3.7-22.2.ppc.rpm</filename>
        </package>
        <package name="beagle-epiphany" arch="x86_64" version="0.3.7" release="22.2">
          <filename>beagle-epiphany-0.3.7-22.2.x86_64.rpm</filename>
        </package>
        <package name="beagle-evolution" arch="i586" version="0.3.7" release="22.2">
          <filename>beagle-evolution-0.3.7-22.2.i586.rpm</filename>
        </package>
        <package name="beagle-evolution" arch="ppc" version="0.3.7" release="22.2">
          <filename>beagle-evolution-0.3.7-22.2.ppc.rpm</filename>
        </package>
        <package name="beagle-evolution" arch="x86_64" version="0.3.7" release="22.2">
          <filename>beagle-evolution-0.3.7-22.2.x86_64.rpm</filename>
        </package>
        <package name="beagle-firefox" arch="i586" version="0.3.7" release="22.2">
          <filename>beagle-firefox-0.3.7-22.2.i586.rpm</filename>
        </package>
        <package name="beagle-firefox" arch="ppc" version="0.3.7" release="22.2">
          <filename>beagle-firefox-0.3.7-22.2.ppc.rpm</filename>
        </package>
        <package name="beagle-firefox" arch="x86_64" version="0.3.7" release="22.2">
          <filename>beagle-firefox-0.3.7-22.2.x86_64.rpm</filename>
        </package>
        <package name="beagle-google" arch="i586" version="0.3.7" release="22.2">
          <filename>beagle-google-0.3.7-22.2.i586.rpm</filename>
        </package>
        <package name="beagle-google" arch="ppc" version="0.3.7" release="22.2">
          <filename>beagle-google-0.3.7-22.2.ppc.rpm</filename>
        </package>
        <package name="beagle-google" arch="x86_64" version="0.3.7" release="22.2">
          <filename>beagle-google-0.3.7-22.2.x86_64.rpm</filename>
        </package>
        <package name="beagle-gui" arch="i586" version="0.3.7" release="22.2">
          <filename>beagle-gui-0.3.7-22.2.i586.rpm</filename>
        </package>
        <package name="beagle-gui" arch="ppc" version="0.3.7" release="22.2">
          <filename>beagle-gui-0.3.7-22.2.ppc.rpm</filename>
        </package>
        <package name="beagle-gui" arch="x86_64" version="0.3.7" release="22.2">
          <filename>beagle-gui-0.3.7-22.2.x86_64.rpm</filename>
        </package>
        <package name="beagle-lang" arch="i586" version="0.3.7" release="22.2">
          <filename>beagle-lang-0.3.7-22.2.i586.rpm</filename>
        </package>
        <package name="beagle-lang" arch="ppc" version="0.3.7" release="22.2">
          <filename>beagle-lang-0.3.7-22.2.ppc.rpm</filename>
        </package>
        <package name="beagle-lang" arch="x86_64" version="0.3.7" release="22.2">
          <filename>beagle-lang-0.3.7-22.2.x86_64.rpm</filename>
        </package>
        <package name="beagle-thunderbird" arch="i586" version="0.3.7" release="22.2">
          <filename>beagle-thunderbird-0.3.7-22.2.i586.rpm</filename>
        </package>
        <package name="beagle-thunderbird" arch="ppc" version="0.3.7" release="22.2">
          <filename>beagle-thunderbird-0.3.7-22.2.ppc.rpm</filename>
        </package>
        <package name="beagle-thunderbird" arch="x86_64" version="0.3.7" release="22.2">
          <filename>beagle-thunderbird-0.3.7-22.2.x86_64.rpm</filename>
        </package>
        <package name="mhtml-firefox" arch="i586" version="0.5" release="2.1">
          <filename>mhtml-firefox-0.5-2.1.i586.rpm</filename>
        </package>
        <package name="mhtml-firefox" arch="ppc" version="0.5" release="2.1">
          <filename>mhtml-firefox-0.5-2.1.ppc.rpm</filename>
        </package>
        <package name="mhtml-firefox" arch="x86_64" version="0.5" release="2.1">
          <filename>mhtml-firefox-0.5-2.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191" arch="i586" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-1.9.1.9-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191" arch="ppc" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-1.9.1.9-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191" arch="x86_64" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-1.9.1.9-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-32bit" arch="x86_64" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-32bit-1.9.1.9-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-64bit" arch="ppc" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-64bit-1.9.1.9-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-devel" arch="i586" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-devel-1.9.1.9-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-devel" arch="ppc" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-devel-1.9.1.9-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-devel" arch="x86_64" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-devel-1.9.1.9-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-gnomevfs" arch="i586" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-gnomevfs-1.9.1.9-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-gnomevfs" arch="ppc" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-gnomevfs-1.9.1.9-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-gnomevfs" arch="x86_64" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-gnomevfs-1.9.1.9-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-gnomevfs-32bit" arch="x86_64" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-gnomevfs-32bit-1.9.1.9-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-gnomevfs-64bit" arch="ppc" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-gnomevfs-64bit-1.9.1.9-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-common" arch="i586" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-translations-common-1.9.1.9-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-common" arch="ppc" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-translations-common-1.9.1.9-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-common" arch="x86_64" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-translations-common-1.9.1.9-1.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-other" arch="i586" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-translations-other-1.9.1.9-1.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-other" arch="ppc" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-translations-other-1.9.1.9-1.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-other" arch="x86_64" version="1.9.1.9" release="1.1">
          <filename>mozilla-xulrunner191-translations-other-1.9.1.9-1.1.x86_64.rpm</filename>
        </package>
        <package name="python-xpcom191" arch="i586" version="1.9.1.9" release="1.1">
          <filename>python-xpcom191-1.9.1.9-1.1.i586.rpm</filename>
        </package>
        <package name="python-xpcom191" arch="ppc" version="1.9.1.9" release="1.1">
          <filename>python-xpcom191-1.9.1.9-1.1.ppc.rpm</filename>
        </package>
        <package name="python-xpcom191" arch="x86_64" version="1.9.1.9" release="1.1">
          <filename>python-xpcom191-1.9.1.9-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="346a49e9bb17a1f69b59369ffc7a7196"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2261">
  <id>mozilla-xulrunner190</id>
  <title>mozilla-xulrunner190: Update to version 1.9.0.19</title>
  <release>openSUSE 11.0</release>
  <issued date="1270682982"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=586567" id="586567" title="bug number 586567" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0173" id="CVE-2010-0173" title="CVE-2010-0173" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0174" id="CVE-2010-0174" title="CVE-2010-0174" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0175" id="CVE-2010-0175" title="CVE-2010-0175" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0176" id="CVE-2010-0176" title="CVE-2010-0176" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0177" id="CVE-2010-0177" title="CVE-2010-0177" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0178" id="CVE-2010-0178" title="CVE-2010-0178" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0179" id="CVE-2010-0179" title="CVE-2010-0179" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3555" id="CVE-2009-3555" title="CVE-2009-3555" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0181" id="CVE-2010-0181" title="CVE-2010-0181" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0182" id="CVE-2010-0182" title="CVE-2010-0182" type="cve"/>
  </references>
  <description>This patch updates Mozilla XULRunner 3.0 engine the
1.9.0.19 release.

It includes also following security fixes: MFSA 2010-16:
Mozilla developers identified and fixed several stability
bugs in the browser engine used in Firefox and other
Mozilla-based products. Some of these crashes showed
evidence of memory corruption under certain circumstances,
and we presume that with enough effort at least some of
these could be exploited to run arbitrary code. References

Martijn Wargers, Josh Soref, and Jesse Ruderman reported
crashes in the browser engine that affected Firefox 3.5 and
Firefox 3.6. (CVE-2010-0173)

Jesse Ruderman and Ehsan Akhgari reported crashes that
affected all supported versions of the browser engine.
(CVE-2010-0174)


MFSA 2010-17 / CVE-2010-0175: Security researcher
regenrecht reported via TippingPoint's Zero Day Initiative
that a select event handler for XUL tree items could be
called after the tree item was deleted. This results in the
execution of previously freed memory which an attacker
could use to crash a victim's browser and run arbitrary
code on the victim's computer.


MFSA 2010-18 / CVE-2010-0176: Security researcher
regenrecht reported via TippingPoint's Zero Day Initiative
an error in the way &lt;option&gt; elements are inserted into a
XUL tree &lt;optgroup&gt;. In certain cases, the number of
references to an &lt;option&gt; element is under-counted so that
when the element is deleted, a live pointer to its old
location is kept around and may later be used. An attacker
could potentially use these conditions to run arbitrary
code on a victim's computer.


MFSA 2010-19 / CVE-2010-0177: Security researcher
regenrecht reported via TippingPoint's Zero Day Initiative
an error in the implementation of the
window.navigator.plugins object. When a page reloads, the
plugins array would reallocate all of its members without
checking for existing references to each member. This could
result in the deletion of objects for which valid pointers
still exist. An attacker could use this vulnerability to
crash a victim's browser and run arbitrary code on the
victim's machine.

MFSA 2010-20 / CVE-2010-0178: Security researcher Paul
Stone reported that a browser applet could be used to turn
a simple mouse click into a drag-and-drop action,
potentially resulting in the unintended loading of
resources in a user's browser. This behavior could be used
twice in succession to first load a privileged chrome: URL
in a victim's browser, then load a malicious javascript:
URL on top of the same document resulting in arbitrary
script execution with chrome privileges.


MFSA 2010-21 / CVE-2010-0179: Mozilla security researcher
moz_bug_r_a4 reported that the XMLHttpRequestSpy module in
the Firebug add-on was exposing an underlying chrome
privilege escalation vulnerability. When the
XMLHttpRequestSpy object was created, it would attach
various properties of itself to objects defined in web
content, which were not being properly wrapped to prevent
their exposure to chrome privileged objects. This could
result in an attacker running arbitrary JavaScript on a
victim's machine, though it required the victim to have
Firebug installed, so the overall severity of the issue was
determined to be High.


MFSA 2010-22 / CVE-2009-3555: Mozilla developers added
support in the Network Security Services module for
preventing a type of man-in-the-middle attack against TLS
using forced renegotiation.

Note that to benefit from the fix, Firefox 3.6 and Firefox
3.5 users will need to set their
security.ssl.require_safe_negotiation preference to true.
Firefox 3 does not contain the fix for this issue.


MFSA 2010-23 / CVE-2010-0181: phpBB developer Henry Sudhof
reported that when an image tag points to a resource that
redirects to a mailto: URL, the external mail handler
application is launched. This issue poses no security
threat to users but could create an annoyance when browsing
a site that allows users to post arbitrary images.


MFSA 2010-24 / CVE-2010-0182: Mozilla community member
Wladimir Palant reported that XML documents were failing to
call certain security checks when loading new content. This
could result in certain resources being loaded that would
otherwise violate security policies set by the browser or
installed add-ons.
</description>
  <pkglist>
    <collection>
        <package name="mozilla-xulrunner190" arch="i586" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.19-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="ppc" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.19-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190" arch="x86_64" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-1.9.0.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-32bit" arch="x86_64" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-32bit-1.9.0.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-64bit" arch="ppc" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-64bit-1.9.0.19-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="i586" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.19-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="ppc" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.19-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-devel" arch="x86_64" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-devel-1.9.0.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="i586" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.19-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="ppc" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.19-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs" arch="x86_64" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-1.9.0.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-32bit" arch="x86_64" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-32bit-1.9.0.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-gnomevfs-64bit" arch="ppc" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-gnomevfs-64bit-1.9.0.19-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="i586" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.19-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="ppc" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.19-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations" arch="x86_64" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-translations-1.9.0.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-32bit" arch="x86_64" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-translations-32bit-1.9.0.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner190-translations-64bit" arch="ppc" version="1.9.0.19" release="0.1">
          <filename>mozilla-xulrunner190-translations-64bit-1.9.0.19-0.1.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b73457fe524d9f52fde0c72f00106362"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2134">
  <id>kde4-kdm</id>
  <title>KDE KDM local root exploit (CVE-2010-0436)</title>
  <release>openSUSE 11.0</release>
  <issued date="1268675987"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=584223" id="584223" title="bug number 584223" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0436" id="CVE-2010-0436" title="CVE-2010-0436" type="cve"/>
  </references>
  <description>The KDE KDM contains a local race condition which allows to
make arbitrary files world writable. CVE-2010-0436 has been
assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="kde4-kdm" arch="i586" version="4.0.4" release="24.8">
          <filename>kde4-kdm-4.0.4-24.8.i586.rpm</filename>
        </package>
        <package name="kde4-kdm" arch="ppc" version="4.0.4" release="24.8">
          <filename>kde4-kdm-4.0.4-24.8.ppc.rpm</filename>
        </package>
        <package name="kde4-kdm" arch="x86_64" version="4.0.4" release="24.8">
          <filename>kde4-kdm-4.0.4-24.8.x86_64.rpm</filename>
        </package>
        <package name="kde4-kdm-branding-upstream" arch="i586" version="4.0.4" release="24.8">
          <filename>kde4-kdm-branding-upstream-4.0.4-24.8.i586.rpm</filename>
        </package>
        <package name="kde4-kdm-branding-upstream" arch="ppc" version="4.0.4" release="24.8">
          <filename>kde4-kdm-branding-upstream-4.0.4-24.8.ppc.rpm</filename>
        </package>
        <package name="kde4-kdm-branding-upstream" arch="x86_64" version="4.0.4" release="24.8">
          <filename>kde4-kdm-branding-upstream-4.0.4-24.8.x86_64.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="i586" version="4.0.4" release="24.8">
          <filename>kde4-kwin-4.0.4-24.8.i586.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="ppc" version="4.0.4" release="24.8">
          <filename>kde4-kwin-4.0.4-24.8.ppc.rpm</filename>
        </package>
        <package name="kde4-kwin" arch="x86_64" version="4.0.4" release="24.8">
          <filename>kde4-kwin-4.0.4-24.8.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="i586" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-4.0.4-24.8.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="ppc" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-4.0.4-24.8.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace" arch="x86_64" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-4.0.4-24.8.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace-branding-upstream" arch="i586" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-branding-upstream-4.0.4-24.8.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-branding-upstream" arch="ppc" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-branding-upstream-4.0.4-24.8.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace-branding-upstream" arch="x86_64" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-branding-upstream-4.0.4-24.8.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="i586" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-devel-4.0.4-24.8.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="ppc" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-devel-4.0.4-24.8.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace-devel" arch="x86_64" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-devel-4.0.4-24.8.x86_64.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="i586" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.8.i586.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="ppc" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.8.ppc.rpm</filename>
        </package>
        <package name="kdebase4-workspace-ksysguardd" arch="x86_64" version="4.0.4" release="24.8">
          <filename>kdebase4-workspace-ksysguardd-4.0.4-24.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0a7b7d1ced5d668e0f14d2ba352182d4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2204">
  <id>fileshareset</id>
  <title>KDE KDM local root exploit (CVE-2010-0436)</title>
  <release>openSUSE 11.0</release>
  <issued date="1269454466"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=584223" id="584223" title="bug number 584223" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0436" id="CVE-2010-0436" title="CVE-2010-0436" type="cve"/>
  </references>
  <description>The KDE KDM contains a local race condition which allows to
make arbitrary files world writable. CVE-2010-0436 has been
assigned to this issue.
</description>
  <pkglist>
    <collection>
        <package name="fileshareset" arch="i586" version="2.0" release="501.4">
          <filename>fileshareset-2.0-501.4.i586.rpm</filename>
        </package>
        <package name="fileshareset" arch="ppc" version="2.0" release="501.4">
          <filename>fileshareset-2.0-501.4.ppc.rpm</filename>
        </package>
        <package name="fileshareset" arch="x86_64" version="2.0" release="501.4">
          <filename>fileshareset-2.0-501.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase3" arch="i586" version="3.5.9" release="65.4">
          <filename>kdebase3-3.5.9-65.4.i586.rpm</filename>
        </package>
        <package name="kdebase3" arch="ppc" version="3.5.9" release="65.4">
          <filename>kdebase3-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="kdebase3" arch="x86_64" version="3.5.9" release="65.4">
          <filename>kdebase3-3.5.9-65.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-32bit" arch="x86_64" version="3.5.9" release="65.4">
          <filename>kdebase3-32bit-3.5.9-65.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-64bit" arch="ppc" version="3.5.9" release="65.4">
          <filename>kdebase3-64bit-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="kdebase3-beagle" arch="i586" version="3.5.9" release="65.4">
          <filename>kdebase3-beagle-3.5.9-65.4.i586.rpm</filename>
        </package>
        <package name="kdebase3-beagle" arch="ppc" version="3.5.9" release="65.4">
          <filename>kdebase3-beagle-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="kdebase3-beagle" arch="x86_64" version="3.5.9" release="65.4">
          <filename>kdebase3-beagle-3.5.9-65.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-devel" arch="i586" version="3.5.9" release="65.4">
          <filename>kdebase3-devel-3.5.9-65.4.i586.rpm</filename>
        </package>
        <package name="kdebase3-devel" arch="ppc" version="3.5.9" release="65.4">
          <filename>kdebase3-devel-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="kdebase3-devel" arch="x86_64" version="3.5.9" release="65.4">
          <filename>kdebase3-devel-3.5.9-65.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-extra" arch="i586" version="3.5.9" release="65.4">
          <filename>kdebase3-extra-3.5.9-65.4.i586.rpm</filename>
        </package>
        <package name="kdebase3-extra" arch="ppc" version="3.5.9" release="65.4">
          <filename>kdebase3-extra-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="kdebase3-extra" arch="x86_64" version="3.5.9" release="65.4">
          <filename>kdebase3-extra-3.5.9-65.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-kdm" arch="i586" version="3.5.9" release="65.4">
          <filename>kdebase3-kdm-3.5.9-65.4.i586.rpm</filename>
        </package>
        <package name="kdebase3-kdm" arch="ppc" version="3.5.9" release="65.4">
          <filename>kdebase3-kdm-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="kdebase3-kdm" arch="x86_64" version="3.5.9" release="65.4">
          <filename>kdebase3-kdm-3.5.9-65.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-nsplugin" arch="i586" version="3.5.9" release="65.4">
          <filename>kdebase3-nsplugin-3.5.9-65.4.i586.rpm</filename>
        </package>
        <package name="kdebase3-nsplugin" arch="ppc" version="3.5.9" release="65.4">
          <filename>kdebase3-nsplugin-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="kdebase3-runtime" arch="i586" version="3.5.9" release="65.4">
          <filename>kdebase3-runtime-3.5.9-65.4.i586.rpm</filename>
        </package>
        <package name="kdebase3-runtime" arch="ppc" version="3.5.9" release="65.4">
          <filename>kdebase3-runtime-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="kdebase3-runtime" arch="x86_64" version="3.5.9" release="65.4">
          <filename>kdebase3-runtime-3.5.9-65.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-runtime-32bit" arch="x86_64" version="3.5.9" release="65.4">
          <filename>kdebase3-runtime-32bit-3.5.9-65.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-runtime-64bit" arch="ppc" version="3.5.9" release="65.4">
          <filename>kdebase3-runtime-64bit-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="kdebase3-samba" arch="i586" version="3.5.9" release="65.4">
          <filename>kdebase3-samba-3.5.9-65.4.i586.rpm</filename>
        </package>
        <package name="kdebase3-samba" arch="ppc" version="3.5.9" release="65.4">
          <filename>kdebase3-samba-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="kdebase3-samba" arch="x86_64" version="3.5.9" release="65.4">
          <filename>kdebase3-samba-3.5.9-65.4.x86_64.rpm</filename>
        </package>
        <package name="kdebase3-session" arch="i586" version="3.5.9" release="65.4">
          <filename>kdebase3-session-3.5.9-65.4.i586.rpm</filename>
        </package>
        <package name="kdebase3-session" arch="ppc" version="3.5.9" release="65.4">
          <filename>kdebase3-session-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="kdebase3-session" arch="x86_64" version="3.5.9" release="65.4">
          <filename>kdebase3-session-3.5.9-65.4.x86_64.rpm</filename>
        </package>
        <package name="misc-console-font" arch="i586" version="3.5.9" release="65.4">
          <filename>misc-console-font-3.5.9-65.4.i586.rpm</filename>
        </package>
        <package name="misc-console-font" arch="ppc" version="3.5.9" release="65.4">
          <filename>misc-console-font-3.5.9-65.4.ppc.rpm</filename>
        </package>
        <package name="misc-console-font" arch="x86_64" version="3.5.9" release="65.4">
          <filename>misc-console-font-3.5.9-65.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d9ced75ed838693487dccecda1c31139"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2154">
  <id>gimp</id>
  <title>gimp security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1268932773"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=555144" id="555144" title="bug number 555144" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1570" id="CVE-2009-1570" title="CVE-2009-1570" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3909" id="CVE-2009-3909" title="CVE-2009-3909" type="cve"/>
  </references>
  <description>Integer overflows in the BMP plug-in potentially allowed
attackers to execute arbitrary code on the victim's system
by tricking the victim to open specially crafted files
(CVE-2009-1570).
</description>
  <pkglist>
    <collection>
        <package name="gimp" arch="i586" version="2.4.5" release="41.2">
          <filename>gimp-2.4.5-41.2.i586.rpm</filename>
        </package>
        <package name="gimp" arch="ppc" version="2.4.5" release="41.2">
          <filename>gimp-2.4.5-41.2.ppc.rpm</filename>
        </package>
        <package name="gimp" arch="x86_64" version="2.4.5" release="41.2">
          <filename>gimp-2.4.5-41.2.x86_64.rpm</filename>
        </package>
        <package name="gimp-branding-upstream" arch="i586" version="2.4.5" release="41.2">
          <filename>gimp-branding-upstream-2.4.5-41.2.i586.rpm</filename>
        </package>
        <package name="gimp-branding-upstream" arch="ppc" version="2.4.5" release="41.2">
          <filename>gimp-branding-upstream-2.4.5-41.2.ppc.rpm</filename>
        </package>
        <package name="gimp-branding-upstream" arch="x86_64" version="2.4.5" release="41.2">
          <filename>gimp-branding-upstream-2.4.5-41.2.x86_64.rpm</filename>
        </package>
        <package name="gimp-devel" arch="i586" version="2.4.5" release="41.2">
          <filename>gimp-devel-2.4.5-41.2.i586.rpm</filename>
        </package>
        <package name="gimp-devel" arch="ppc" version="2.4.5" release="41.2">
          <filename>gimp-devel-2.4.5-41.2.ppc.rpm</filename>
        </package>
        <package name="gimp-devel" arch="x86_64" version="2.4.5" release="41.2">
          <filename>gimp-devel-2.4.5-41.2.x86_64.rpm</filename>
        </package>
        <package name="gimp-doc" arch="i586" version="2.4.5" release="41.2">
          <filename>gimp-doc-2.4.5-41.2.i586.rpm</filename>
        </package>
        <package name="gimp-doc" arch="ppc" version="2.4.5" release="41.2">
          <filename>gimp-doc-2.4.5-41.2.ppc.rpm</filename>
        </package>
        <package name="gimp-doc" arch="x86_64" version="2.4.5" release="41.2">
          <filename>gimp-doc-2.4.5-41.2.x86_64.rpm</filename>
        </package>
        <package name="gimp-plugins-python" arch="i586" version="2.4.5" release="41.2">
          <filename>gimp-plugins-python-2.4.5-41.2.i586.rpm</filename>
        </package>
        <package name="gimp-plugins-python" arch="ppc" version="2.4.5" release="41.2">
          <filename>gimp-plugins-python-2.4.5-41.2.ppc.rpm</filename>
        </package>
        <package name="gimp-plugins-python" arch="x86_64" version="2.4.5" release="41.2">
          <filename>gimp-plugins-python-2.4.5-41.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b48330104d95a8ab429cf334c3477cd9"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="2300">
  <id>parted</id>
  <title>parted: Fixed /proc/partitions might be left outdated after modification of partition table</title>
  <release>openSUSE 11.0</release>
  <issued date="1271259502"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=539521" id="539521" title="bug number 539521" type="bugzilla"/>
  </references>
  <description>Race condition in parted might cause /proc/partitions being
outdated after modification of partition table. Mismatches
between partition layouts &quot;on disk&quot; and &quot;in kernel data&quot;
can lead to data loss. Fixed by this update.
</description>
  <pkglist>
    <collection>
        <package name="parted" arch="i586" version="1.8.8" release="46.5">
          <filename>parted-1.8.8-46.5.i586.rpm</filename>
        </package>
        <package name="parted" arch="ppc" version="1.8.8" release="46.5">
          <filename>parted-1.8.8-46.5.ppc.rpm</filename>
        </package>
        <package name="parted" arch="x86_64" version="1.8.8" release="46.5">
          <filename>parted-1.8.8-46.5.x86_64.rpm</filename>
        </package>
        <package name="parted-32bit" arch="x86_64" version="1.8.8" release="46.5">
          <filename>parted-32bit-1.8.8-46.5.x86_64.rpm</filename>
        </package>
        <package name="parted-64bit" arch="ppc" version="1.8.8" release="46.5">
          <filename>parted-64bit-1.8.8-46.5.ppc.rpm</filename>
        </package>
        <package name="parted-devel" arch="i586" version="1.8.8" release="46.5">
          <filename>parted-devel-1.8.8-46.5.i586.rpm</filename>
        </package>
        <package name="parted-devel" arch="ppc" version="1.8.8" release="46.5">
          <filename>parted-devel-1.8.8-46.5.ppc.rpm</filename>
        </package>
        <package name="parted-devel" arch="x86_64" version="1.8.8" release="46.5">
          <filename>parted-devel-1.8.8-46.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a6d44afaaae2fed54820d3fb574ca5e5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2321">
  <id>acroread</id>
  <title>acroread security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1271634138"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=595108" id="595108" title="bug number 595108" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0190" id="CVE-2010-0190" title="CVE-2010-0190" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0191" id="CVE-2010-0191" title="CVE-2010-0191" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0192" id="CVE-2010-0192" title="CVE-2010-0192" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0193" id="CVE-2010-0193" title="CVE-2010-0193" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0194" id="CVE-2010-0194" title="CVE-2010-0194" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0195" id="CVE-2010-0195" title="CVE-2010-0195" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0196" id="CVE-2010-0196" title="CVE-2010-0196" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0197" id="CVE-2010-0197" title="CVE-2010-0197" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0198" id="CVE-2010-0198" title="CVE-2010-0198" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0199" id="CVE-2010-0199" title="CVE-2010-0199" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0201" id="CVE-2010-0201" title="CVE-2010-0201" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0202" id="CVE-2010-0202" title="CVE-2010-0202" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0203" id="CVE-2010-0203" title="CVE-2010-0203" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0204" id="CVE-2010-0204" title="CVE-2010-0204" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1241" id="CVE-2010-1241" title="CVE-2010-1241" type="cve"/>
  </references>
  <description>Specially crafted PDF documents could crash acroread or
even lead to execution of arbitrary code (CVE-2010-0190,
CVE-2010-0191, CVE-2010-0192, CVE-2010-0193 CVE-2010-0194,
CVE-2010-0195, CVE-2010-0196, CVE-2010-0197 CVE-2010-0198,
CVE-2010-0199, CVE-2010-0201, CVE-2010-0202 CVE-2010-0203,
CVE-2010-0204, CVE-2010-1241).
</description>
  <pkglist>
    <collection>
        <package name="acroread" arch="i586" version="9.3.2" release="0.1">
          <filename>acroread-9.3.2-0.1.i586.rpm</filename>
        </package>
        <package name="acroread-cmaps" arch="noarch" version="9.3.2" release="0.1">
          <filename>acroread-cmaps-9.3.2-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-ja" arch="noarch" version="9.3.2" release="0.1">
          <filename>acroread-fonts-ja-9.3.2-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-ko" arch="noarch" version="9.3.2" release="0.1">
          <filename>acroread-fonts-ko-9.3.2-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-zh_CN" arch="noarch" version="9.3.2" release="0.1">
          <filename>acroread-fonts-zh_CN-9.3.2-0.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-zh_TW" arch="noarch" version="9.3.2" release="0.1">
          <filename>acroread-fonts-zh_TW-9.3.2-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="aba1c4f6a52f47d353e3fa5bad5c5063"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2345">
  <id>java-1_6_0-sun</id>
  <title>SUN Java security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1271779204"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=596010" id="596010" title="bug number 596010" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0887" id="CVE-2010-0887" title="CVE-2010-0887" type="cve"/>
  </references>
  <description>Oracle has released JRE 6 Update 20 in order to fix
potential remote code execution vulnerabilities
(CVE-2010-0887). Please refer to Oracle's site for more
information:
http://www.oracle.com/technology/deploy/security/alerts/aler
t-cve-2010-0886.html
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-sun" arch="i586" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun" arch="x86_64" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-1.6.0.u20-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="i586" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-alsa" arch="x86_64" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-alsa-1.6.0.u20-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="i586" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-demo" arch="x86_64" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-demo-1.6.0.u20-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="i586" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-devel" arch="x86_64" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-devel-1.6.0.u20-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="i586" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-jdbc" arch="x86_64" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-jdbc-1.6.0.u20-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="i586" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-plugin" arch="x86_64" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-plugin-1.6.0.u20-0.1.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="i586" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-src-1.6.0.u20-0.1.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-sun-src" arch="x86_64" version="1.6.0.u20" release="0.1">
          <filename>java-1_6_0-sun-src-1.6.0.u20-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="798ab0028cf2401c709977c57c07bc07"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2263">
  <id>clamav</id>
  <title>clamav update</title>
  <release>openSUSE 11.0</release>
  <issued date="1271263639"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=587363" id="587363" title="bug number 587363" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0098" id="CVE-2010-0098" title="CVE-2010-0098" type="cve"/>
  </references>
  <description>clamav has been updated to version 0.96.

Citing freshmeat.net:

This Release introduces new malware detection mechanisms
and other significant improvements to the scan engine. Key
features include the bytecode interpreter, heuristic
improvements, signature improvements, support for new
archives, support for new executable file formats, support
for UPX 3.0, performance improvements and memory
optimizations.
</description>
  <pkglist>
    <collection>
        <package name="clamav" arch="i586" version="0.96" release="0.3">
          <filename>clamav-0.96-0.3.i586.rpm</filename>
        </package>
        <package name="clamav" arch="ppc" version="0.96" release="0.3">
          <filename>clamav-0.96-0.3.ppc.rpm</filename>
        </package>
        <package name="clamav" arch="x86_64" version="0.96" release="0.3">
          <filename>clamav-0.96-0.3.x86_64.rpm</filename>
        </package>
        <package name="clamav-db" arch="i586" version="0.96" release="0.3">
          <filename>clamav-db-0.96-0.3.i586.rpm</filename>
        </package>
        <package name="clamav-db" arch="ppc" version="0.96" release="0.3">
          <filename>clamav-db-0.96-0.3.ppc.rpm</filename>
        </package>
        <package name="clamav-db" arch="x86_64" version="0.96" release="0.3">
          <filename>clamav-db-0.96-0.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="2ddde48a4a88daf336fce73ec13d242f"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="2350">
  <id>lighttpd</id>
  <title>lighttpd: It doesn't start after the last openssl update when &quot;ssl.use-sslv2&quot; is disabled. Fixed by this update.</title>
  <release>openSUSE 11.0</release>
  <issued date="1271861655"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=597765" id="597765" title="bug number 597765" type="bugzilla"/>
  </references>
  <description>bnc #597765: lighttpd doesn't start after the last openssl
update when &quot;ssl.use-sslv2&quot; is disabled. Fixed by this
update.
</description>
  <pkglist>
    <collection>
        <package name="lighttpd" arch="i586" version="1.4.19" release="6.8">
          <filename>lighttpd-1.4.19-6.8.i586.rpm</filename>
        </package>
        <package name="lighttpd" arch="ppc" version="1.4.19" release="6.8">
          <filename>lighttpd-1.4.19-6.8.ppc.rpm</filename>
        </package>
        <package name="lighttpd" arch="x86_64" version="1.4.19" release="6.8">
          <filename>lighttpd-1.4.19-6.8.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="i586" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_cml-1.4.19-6.8.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="ppc" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_cml-1.4.19-6.8.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_cml" arch="x86_64" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_cml-1.4.19-6.8.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="i586" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_magnet-1.4.19-6.8.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="ppc" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_magnet-1.4.19-6.8.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_magnet" arch="x86_64" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_magnet-1.4.19-6.8.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="i586" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.8.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="ppc" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.8.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_mysql_vhost" arch="x86_64" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_mysql_vhost-1.4.19-6.8.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="i586" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.8.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="ppc" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.8.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_rrdtool" arch="x86_64" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_rrdtool-1.4.19-6.8.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="i586" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.8.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="ppc" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.8.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_trigger_b4_dl" arch="x86_64" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_trigger_b4_dl-1.4.19-6.8.x86_64.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="i586" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_webdav-1.4.19-6.8.i586.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="ppc" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_webdav-1.4.19-6.8.ppc.rpm</filename>
        </package>
        <package name="lighttpd-mod_webdav" arch="x86_64" version="1.4.19" release="6.8">
          <filename>lighttpd-mod_webdav-1.4.19-6.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e0d564ec800e0de98cb37c05f9f6a861"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2356">
  <id>mediawiki</id>
  <title>mediawiki security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1272040606"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=592574" id="592574" title="bug number 592574" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1189" id="CVE-2010-1189" title="CVE-2010-1189" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1190" id="CVE-2010-1190" title="CVE-2010-1190" type="cve"/>
  </references>
  <description>MediaWiki was prone to a CSS validation flaw and data
leakage vulnerability (CVE-2010-1189, CVE-2010-1190).
</description>
  <pkglist>
    <collection>
        <package name="mediawiki" arch="i586" version="1.11.2" release="36.4">
          <filename>mediawiki-1.11.2-36.4.i586.rpm</filename>
        </package>
        <package name="mediawiki" arch="ppc" version="1.11.2" release="36.4">
          <filename>mediawiki-1.11.2-36.4.ppc.rpm</filename>
        </package>
        <package name="mediawiki" arch="x86_64" version="1.11.2" release="36.4">
          <filename>mediawiki-1.11.2-36.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d884110bc589ef4244e0c3a969981761"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1822">
  <id>glib2</id>
  <title>glib2 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1263919718"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=538005" id="538005" title="bug number 538005" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3289" id="CVE-2009-3289" title="CVE-2009-3289" type="cve"/>
  </references>
  <description>The when copying symbolic links the g_file_copy function
set the target of the link to mode 0777 therefore exposing
potentially sensitive information or allowing other user to
modify files they should not have access to (CVE-2009-3289).
</description>
  <pkglist>
    <collection>
        <package name="glib2" arch="i586" version="2.16.3" release="20.8">
          <filename>glib2-2.16.3-20.8.i586.rpm</filename>
        </package>
        <package name="glib2" arch="ppc" version="2.16.3" release="20.8">
          <filename>glib2-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="glib2" arch="x86_64" version="2.16.3" release="20.8">
          <filename>glib2-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="glib2-branding-upstream" arch="i586" version="2.16.3" release="20.8">
          <filename>glib2-branding-upstream-2.16.3-20.8.i586.rpm</filename>
        </package>
        <package name="glib2-branding-upstream" arch="ppc" version="2.16.3" release="20.8">
          <filename>glib2-branding-upstream-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="glib2-branding-upstream" arch="x86_64" version="2.16.3" release="20.8">
          <filename>glib2-branding-upstream-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="glib2-devel" arch="i586" version="2.16.3" release="20.8">
          <filename>glib2-devel-2.16.3-20.8.i586.rpm</filename>
        </package>
        <package name="glib2-devel" arch="ppc" version="2.16.3" release="20.8">
          <filename>glib2-devel-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="glib2-devel" arch="x86_64" version="2.16.3" release="20.8">
          <filename>glib2-devel-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="glib2-devel-64bit" arch="ppc" version="2.16.3" release="20.8">
          <filename>glib2-devel-64bit-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="glib2-doc" arch="i586" version="2.16.3" release="20.8">
          <filename>glib2-doc-2.16.3-20.8.i586.rpm</filename>
        </package>
        <package name="glib2-doc" arch="ppc" version="2.16.3" release="20.8">
          <filename>glib2-doc-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="glib2-doc" arch="x86_64" version="2.16.3" release="20.8">
          <filename>glib2-doc-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="i586" version="2.16.3" release="20.8">
          <filename>libgio-2_0-0-2.16.3-20.8.i586.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="ppc" version="2.16.3" release="20.8">
          <filename>libgio-2_0-0-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="libgio-2_0-0" arch="x86_64" version="2.16.3" release="20.8">
          <filename>libgio-2_0-0-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.8">
          <filename>libgio-2_0-0-32bit-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libgio-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.8">
          <filename>libgio-2_0-0-64bit-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="libgio-fam" arch="i586" version="2.16.3" release="20.8">
          <filename>libgio-fam-2.16.3-20.8.i586.rpm</filename>
        </package>
        <package name="libgio-fam" arch="ppc" version="2.16.3" release="20.8">
          <filename>libgio-fam-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="libgio-fam" arch="x86_64" version="2.16.3" release="20.8">
          <filename>libgio-fam-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="i586" version="2.16.3" release="20.8">
          <filename>libglib-2_0-0-2.16.3-20.8.i586.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="ppc" version="2.16.3" release="20.8">
          <filename>libglib-2_0-0-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="libglib-2_0-0" arch="x86_64" version="2.16.3" release="20.8">
          <filename>libglib-2_0-0-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.8">
          <filename>libglib-2_0-0-32bit-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libglib-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.8">
          <filename>libglib-2_0-0-64bit-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="i586" version="2.16.3" release="20.8">
          <filename>libgmodule-2_0-0-2.16.3-20.8.i586.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="ppc" version="2.16.3" release="20.8">
          <filename>libgmodule-2_0-0-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0" arch="x86_64" version="2.16.3" release="20.8">
          <filename>libgmodule-2_0-0-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.8">
          <filename>libgmodule-2_0-0-32bit-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libgmodule-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.8">
          <filename>libgmodule-2_0-0-64bit-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="i586" version="2.16.3" release="20.8">
          <filename>libgobject-2_0-0-2.16.3-20.8.i586.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="ppc" version="2.16.3" release="20.8">
          <filename>libgobject-2_0-0-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="libgobject-2_0-0" arch="x86_64" version="2.16.3" release="20.8">
          <filename>libgobject-2_0-0-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libgobject-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.8">
          <filename>libgobject-2_0-0-32bit-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libgobject-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.8">
          <filename>libgobject-2_0-0-64bit-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="i586" version="2.16.3" release="20.8">
          <filename>libgthread-2_0-0-2.16.3-20.8.i586.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="ppc" version="2.16.3" release="20.8">
          <filename>libgthread-2_0-0-2.16.3-20.8.ppc.rpm</filename>
        </package>
        <package name="libgthread-2_0-0" arch="x86_64" version="2.16.3" release="20.8">
          <filename>libgthread-2_0-0-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libgthread-2_0-0-32bit" arch="x86_64" version="2.16.3" release="20.8">
          <filename>libgthread-2_0-0-32bit-2.16.3-20.8.x86_64.rpm</filename>
        </package>
        <package name="libgthread-2_0-0-64bit" arch="ppc" version="2.16.3" release="20.8">
          <filename>libgthread-2_0-0-64bit-2.16.3-20.8.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="f7fcabaa2eeb8dc603b7487bf3bf2e1d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2292">
  <id>apache2</id>
  <title>apache2 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1271178781"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=586572" id="586572" title="bug number 586572" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=570127" id="570127" title="bug number 570127" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0408" id="CVE-2010-0408" title="CVE-2010-0408" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0434" id="CVE-2010-0434" title="CVE-2010-0434" type="cve"/>
  </references>
  <description>When using a multithreaded MPM apache could leak memory of
requests handled by a different thread when processing
subrequests (CVE-2010-0434).

Specially crafted requests could crash mod_proxy_ajp
(CVE-2010-0408).
</description>
  <pkglist>
    <collection>
        <package name="apache2" arch="i586" version="2.2.8" release="28.10">
          <filename>apache2-2.2.8-28.10.i586.rpm</filename>
        </package>
        <package name="apache2" arch="ppc" version="2.2.8" release="28.10">
          <filename>apache2-2.2.8-28.10.ppc.rpm</filename>
        </package>
        <package name="apache2" arch="x86_64" version="2.2.8" release="28.10">
          <filename>apache2-2.2.8-28.10.x86_64.rpm</filename>
        </package>
        <package name="apache2-devel" arch="i586" version="2.2.8" release="28.10">
          <filename>apache2-devel-2.2.8-28.10.i586.rpm</filename>
        </package>
        <package name="apache2-devel" arch="ppc" version="2.2.8" release="28.10">
          <filename>apache2-devel-2.2.8-28.10.ppc.rpm</filename>
        </package>
        <package name="apache2-devel" arch="x86_64" version="2.2.8" release="28.10">
          <filename>apache2-devel-2.2.8-28.10.x86_64.rpm</filename>
        </package>
        <package name="apache2-doc" arch="i586" version="2.2.8" release="28.10">
          <filename>apache2-doc-2.2.8-28.10.i586.rpm</filename>
        </package>
        <package name="apache2-doc" arch="ppc" version="2.2.8" release="28.10">
          <filename>apache2-doc-2.2.8-28.10.ppc.rpm</filename>
        </package>
        <package name="apache2-doc" arch="x86_64" version="2.2.8" release="28.10">
          <filename>apache2-doc-2.2.8-28.10.x86_64.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="i586" version="2.2.8" release="28.10">
          <filename>apache2-example-pages-2.2.8-28.10.i586.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="ppc" version="2.2.8" release="28.10">
          <filename>apache2-example-pages-2.2.8-28.10.ppc.rpm</filename>
        </package>
        <package name="apache2-example-pages" arch="x86_64" version="2.2.8" release="28.10">
          <filename>apache2-example-pages-2.2.8-28.10.x86_64.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="i586" version="2.2.8" release="28.10">
          <filename>apache2-prefork-2.2.8-28.10.i586.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="ppc" version="2.2.8" release="28.10">
          <filename>apache2-prefork-2.2.8-28.10.ppc.rpm</filename>
        </package>
        <package name="apache2-prefork" arch="x86_64" version="2.2.8" release="28.10">
          <filename>apache2-prefork-2.2.8-28.10.x86_64.rpm</filename>
        </package>
        <package name="apache2-utils" arch="i586" version="2.2.8" release="28.10">
          <filename>apache2-utils-2.2.8-28.10.i586.rpm</filename>
        </package>
        <package name="apache2-utils" arch="ppc" version="2.2.8" release="28.10">
          <filename>apache2-utils-2.2.8-28.10.ppc.rpm</filename>
        </package>
        <package name="apache2-utils" arch="x86_64" version="2.2.8" release="28.10">
          <filename>apache2-utils-2.2.8-28.10.x86_64.rpm</filename>
        </package>
        <package name="apache2-worker" arch="i586" version="2.2.8" release="28.10">
          <filename>apache2-worker-2.2.8-28.10.i586.rpm</filename>
        </package>
        <package name="apache2-worker" arch="ppc" version="2.2.8" release="28.10">
          <filename>apache2-worker-2.2.8-28.10.ppc.rpm</filename>
        </package>
        <package name="apache2-worker" arch="x86_64" version="2.2.8" release="28.10">
          <filename>apache2-worker-2.2.8-28.10.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a1565462a235cc552f23676ffe83bfaa"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="2276">
  <id>timezone</id>
  <title>timezone: Data update</title>
  <release>openSUSE 11.0</release>
  <issued date="1271086347"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=583745" id="583745" title="bug number 583745" type="bugzilla"/>
  </references>
  <description>Updated tzdata version to 2010h:

  * DST changes: Asia/Dhaka, Asia/Karachi, Asia/Gaza,
    Asia/Damascus, Pacific/Apia, Pacific/Fiji, Africa/Tunis
    America/Santiago, Pacific/Easter, America/Asuncion
  * New zones: America/Matamoros, America/Ojinaga,
    America/Santa_Isabel
  * GMT offset changes: Europe/Samara, Asia/Kamchatka,
    Asia/Anadyr
  * Various Antarctica timezone changes
  * Number of Time Zones used in Russia were reduced to 9
    and several regions changed timezones.
</description>
  <pkglist>
    <collection>
        <package name="timezone" arch="i586" version="2010h" release="1.1">
          <filename>timezone-2010h-1.1.i586.rpm</filename>
        </package>
        <package name="timezone" arch="ppc" version="2010h" release="1.1">
          <filename>timezone-2010h-1.1.ppc.rpm</filename>
        </package>
        <package name="timezone" arch="x86_64" version="2010h" release="1.1">
          <filename>timezone-2010h-1.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="15c5b22bca4bf85196203c346e14d69d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2365">
  <id>cacti</id>
  <title>cacti security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1272384148"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=599239" id="599239" title="bug number 599239" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1431" id="CVE-2010-1431" title="CVE-2010-1431" type="cve"/>
  </references>
  <description>Missing input sanitation in the template export feature
allowed for SQL injection attacks (CVE-2010-1431).
</description>
  <pkglist>
    <collection>
        <package name="cacti" arch="noarch" version="0.8.7e" release="0.3">
          <filename>cacti-0.8.7e-0.3.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="510977c184838b0b4605f7172fb7276f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2368">
  <id>irssi</id>
  <title>irssi security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1272384204"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=596005" id="596005" title="bug number 596005" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1155" id="CVE-2010-1155" title="CVE-2010-1155" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1156" id="CVE-2010-1156" title="CVE-2010-1156" type="cve"/>
  </references>
  <description>irssi did not check the identity information of a remote
hosts's certificate. Attackers could exploit that for a
man-in-the-middle attack (CVE-2010-1155).

irssi could crash if someone changed nick while the victim
was leaving the channel (CVE-2010-1156).
</description>
  <pkglist>
    <collection>
        <package name="irssi" arch="i586" version="0.8.12" release="49.4">
          <filename>irssi-0.8.12-49.4.i586.rpm</filename>
        </package>
        <package name="irssi" arch="ppc" version="0.8.12" release="49.4">
          <filename>irssi-0.8.12-49.4.ppc.rpm</filename>
        </package>
        <package name="irssi" arch="x86_64" version="0.8.12" release="49.4">
          <filename>irssi-0.8.12-49.4.x86_64.rpm</filename>
        </package>
        <package name="irssi-devel" arch="i586" version="0.8.12" release="49.4">
          <filename>irssi-devel-0.8.12-49.4.i586.rpm</filename>
        </package>
        <package name="irssi-devel" arch="ppc" version="0.8.12" release="49.4">
          <filename>irssi-devel-0.8.12-49.4.ppc.rpm</filename>
        </package>
        <package name="irssi-devel" arch="x86_64" version="0.8.12" release="49.4">
          <filename>irssi-devel-0.8.12-49.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1e44020beba82366d00f30078455bb06"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2362">
  <id>java-1_6_0-openjdk</id>
  <title>java-1_6_0-openjdk security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1272457524"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=594415" id="594415" title="bug number 594415" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0837" id="CVE-2010-0837" title="CVE-2010-0837" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0845" id="CVE-2010-0845" title="CVE-2010-0845" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0838" id="CVE-2010-0838" title="CVE-2010-0838" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0082" id="CVE-2010-0082" title="CVE-2010-0082" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0095" id="CVE-2010-0095" title="CVE-2010-0095" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0085" id="CVE-2010-0085" title="CVE-2010-0085" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0091" id="CVE-2010-0091" title="CVE-2010-0091" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0088" id="CVE-2010-0088" title="CVE-2010-0088" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0084" id="CVE-2010-0084" title="CVE-2010-0084" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0092" id="CVE-2010-0092" title="CVE-2010-0092" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0094" id="CVE-2010-0094" title="CVE-2010-0094" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0093" id="CVE-2010-0093" title="CVE-2010-0093" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0840" id="CVE-2010-0840" title="CVE-2010-0840" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0848" id="CVE-2010-0848" title="CVE-2010-0848" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0847" id="CVE-2010-0847" title="CVE-2010-0847" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3555" id="CVE-2009-3555" title="CVE-2009-3555" type="cve"/>
  </references>
  <description>java-1_6_0-openjdk version 1.7.3 fixes serveral security
issues:

  - CVE-2010-0837: JAR 'unpack200' must verify input
    parameters
  - CVE-2010-0845: No ClassCastException for
    HashAttributeSet constructors if run with -Xcomp
  - CVE-2010-0838: CMM readMabCurveData Buffer Overflow
    Vulnerability
  - CVE-2010-0082: Loader-constraint table allows arrays
    instead of only the base-classes
  - CVE-2010-0095: Subclasses of InetAddress may
    incorrectly interpret network addresses
  - CVE-2010-0085: File TOCTOU deserialization vulnerability
  - CVE-2010-0091: Unsigned applet can retrieve the dragged
    information before drop action occurs
  - CVE-2010-0088: Inflater/Deflater clone issues
  - CVE-2010-0084: Policy/PolicyFile leak dynamic
    ProtectionDomains.
  - CVE-2010-0092: AtomicReferenceArray causes SIGSEGV -&gt;
    SEGV_MAPERR error
  - CVE-2010-0094: Deserialization of RMIConnectionImpl
    objects should enforce stricter checks
  - CVE-2010-0093: System.arraycopy unable to reference
    elements beyond Integer.MAX_VALUE bytes
  - CVE-2010-0840: Applet Trusted Methods Chaining
    Privilege Escalation Vulnerability
  - CVE-2010-0848: AWT Library Invalid Index Vulnerability
  - CVE-2010-0847: ImagingLib arbitrary code execution
    vulnerability
  - CVE-2009-3555: TLS: MITM attacks via session
    renegotiation
</description>
  <pkglist>
    <collection>
        <package name="java-1_6_0-openjdk" arch="i586" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-1.6.0.0_b17-2.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="ppc" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-1.6.0.0_b17-2.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk" arch="x86_64" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-1.6.0.0_b17-2.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="i586" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-demo-1.6.0.0_b17-2.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="ppc" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-demo-1.6.0.0_b17-2.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-demo" arch="x86_64" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-demo-1.6.0.0_b17-2.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="i586" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-devel-1.6.0.0_b17-2.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="ppc" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-devel-1.6.0.0_b17-2.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-devel" arch="x86_64" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-devel-1.6.0.0_b17-2.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="i586" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-javadoc-1.6.0.0_b17-2.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="ppc" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-javadoc-1.6.0.0_b17-2.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-javadoc" arch="x86_64" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-javadoc-1.6.0.0_b17-2.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="i586" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-plugin-1.6.0.0_b17-2.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="ppc" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-plugin-1.6.0.0_b17-2.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-plugin" arch="x86_64" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-plugin-1.6.0.0_b17-2.3.x86_64.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="i586" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-src-1.6.0.0_b17-2.3.i586.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="ppc" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-src-1.6.0.0_b17-2.3.ppc.rpm</filename>
        </package>
        <package name="java-1_6_0-openjdk-src" arch="x86_64" version="1.6.0.0_b17" release="2.3">
          <filename>java-1_6_0-openjdk-src-1.6.0.0_b17-2.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="39579e9ce0aa6d6f621ab5cf47e314e5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2370">
  <id>fuse</id>
  <title>fuse security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1272450025"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=582725" id="582725" title="bug number 582725" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0789" id="CVE-2010-0789" title="CVE-2010-0789" type="cve"/>
  </references>
  <description>A race condition in fusermount allows non-privileged users
to umount any file system (CVE-2010-0789). 

Note: this is a re-release of the previous update with a
better patch.
</description>
  <pkglist>
    <collection>
        <package name="fuse" arch="i586" version="2.7.2" release="32.4">
          <filename>fuse-2.7.2-32.4.i586.rpm</filename>
        </package>
        <package name="fuse" arch="ppc" version="2.7.2" release="32.4">
          <filename>fuse-2.7.2-32.4.ppc.rpm</filename>
        </package>
        <package name="fuse" arch="x86_64" version="2.7.2" release="32.4">
          <filename>fuse-2.7.2-32.4.x86_64.rpm</filename>
        </package>
        <package name="fuse-devel" arch="i586" version="2.7.2" release="32.4">
          <filename>fuse-devel-2.7.2-32.4.i586.rpm</filename>
        </package>
        <package name="fuse-devel" arch="ppc" version="2.7.2" release="32.4">
          <filename>fuse-devel-2.7.2-32.4.ppc.rpm</filename>
        </package>
        <package name="fuse-devel" arch="x86_64" version="2.7.2" release="32.4">
          <filename>fuse-devel-2.7.2-32.4.x86_64.rpm</filename>
        </package>
        <package name="libfuse2" arch="i586" version="2.7.2" release="32.4">
          <filename>libfuse2-2.7.2-32.4.i586.rpm</filename>
        </package>
        <package name="libfuse2" arch="ppc" version="2.7.2" release="32.4">
          <filename>libfuse2-2.7.2-32.4.ppc.rpm</filename>
        </package>
        <package name="libfuse2" arch="x86_64" version="2.7.2" release="32.4">
          <filename>libfuse2-2.7.2-32.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="63aee4198c31eb95a13c8b4dce895430"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2127">
  <id>tar</id>
  <title>tar security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1268357221"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=579475" id="579475" title="bug number 579475" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0624" id="CVE-2010-0624" title="CVE-2010-0624" type="cve"/>
  </references>
  <description>A malicious remote tape server could cause a buffer
overflow in tar. In order to exploit that an attacker would
have to trick the victim to extract a file that causes tar
to open a connection to the rmt server (CVE-2010-0624).
It's advisable to always use tar's
--force-local local option to avoid such tricks.
</description>
  <pkglist>
    <collection>
        <package name="tar" arch="i586" version="1.19" release="35.2">
          <filename>tar-1.19-35.2.i586.rpm</filename>
        </package>
        <package name="tar" arch="ppc" version="1.19" release="35.2">
          <filename>tar-1.19-35.2.ppc.rpm</filename>
        </package>
        <package name="tar" arch="x86_64" version="1.19" release="35.2">
          <filename>tar-1.19-35.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="74ffcb3d975f99b39204a9a17088e978"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="1706">
  <id>libmysqlclient-devel</id>
  <title>mysql security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1260986557"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=557669" id="557669" title="bug number 557669" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-7247" id="CVE-2008-7247" title="CVE-2008-7247" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4019" id="CVE-2009-4019" title="CVE-2009-4019" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4028" id="CVE-2009-4028" title="CVE-2009-4028" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4030" id="CVE-2009-4030" title="CVE-2009-4030" type="cve"/>
  </references>
  <description>This update fixes several security issues in mysql:
 - checking server certificates (CVE-2009-4028)
 - error handling in subqueries (CVE-2009-4019)
 - preserving null_value flag in GeomFromWKB (CVE-2009-4019)
 - symlink behavior fixed (CVE-2008-7247)
 - symlink behavior refixed (CVE-2009-4030)
</description>
  <pkglist>
    <collection>
        <package name="libmysqlclient-devel" arch="i586" version="5.0.51a" release="27.6">
          <filename>libmysqlclient-devel-5.0.51a-27.6.i586.rpm</filename>
        </package>
        <package name="libmysqlclient-devel" arch="ppc" version="5.0.51a" release="27.6">
          <filename>libmysqlclient-devel-5.0.51a-27.6.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient-devel" arch="x86_64" version="5.0.51a" release="27.6">
          <filename>libmysqlclient-devel-5.0.51a-27.6.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="i586" version="5.0.51a" release="27.6">
          <filename>libmysqlclient15-5.0.51a-27.6.i586.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="ppc" version="5.0.51a" release="27.6">
          <filename>libmysqlclient15-5.0.51a-27.6.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="x86_64" version="5.0.51a" release="27.6">
          <filename>libmysqlclient15-5.0.51a-27.6.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15-32bit" arch="x86_64" version="5.0.51a" release="27.6">
          <filename>libmysqlclient15-32bit-5.0.51a-27.6.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15-64bit" arch="ppc" version="5.0.51a" release="27.6">
          <filename>libmysqlclient15-64bit-5.0.51a-27.6.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="i586" version="5.0.51a" release="27.6">
          <filename>libmysqlclient_r15-5.0.51a-27.6.i586.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="ppc" version="5.0.51a" release="27.6">
          <filename>libmysqlclient_r15-5.0.51a-27.6.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="x86_64" version="5.0.51a" release="27.6">
          <filename>libmysqlclient_r15-5.0.51a-27.6.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient_r15-32bit" arch="x86_64" version="5.0.51a" release="27.6">
          <filename>libmysqlclient_r15-32bit-5.0.51a-27.6.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient_r15-64bit" arch="ppc" version="5.0.51a" release="27.6">
          <filename>libmysqlclient_r15-64bit-5.0.51a-27.6.ppc.rpm</filename>
        </package>
        <package name="mysql" arch="i586" version="5.0.51a" release="27.6">
          <filename>mysql-5.0.51a-27.6.i586.rpm</filename>
        </package>
        <package name="mysql" arch="ppc" version="5.0.51a" release="27.6">
          <filename>mysql-5.0.51a-27.6.ppc.rpm</filename>
        </package>
        <package name="mysql" arch="ppc64" version="5.0.51a" release="27.6">
          <filename>mysql-5.0.51a-27.6.ppc64.rpm</filename>
        </package>
        <package name="mysql" arch="x86_64" version="5.0.51a" release="27.6">
          <filename>mysql-5.0.51a-27.6.x86_64.rpm</filename>
        </package>
        <package name="mysql-Max" arch="i586" version="5.0.51a" release="27.6">
          <filename>mysql-Max-5.0.51a-27.6.i586.rpm</filename>
        </package>
        <package name="mysql-Max" arch="ppc" version="5.0.51a" release="27.6">
          <filename>mysql-Max-5.0.51a-27.6.ppc.rpm</filename>
        </package>
        <package name="mysql-Max" arch="x86_64" version="5.0.51a" release="27.6">
          <filename>mysql-Max-5.0.51a-27.6.x86_64.rpm</filename>
        </package>
        <package name="mysql-bench" arch="i586" version="5.0.51a" release="27.6">
          <filename>mysql-bench-5.0.51a-27.6.i586.rpm</filename>
        </package>
        <package name="mysql-bench" arch="ppc" version="5.0.51a" release="27.6">
          <filename>mysql-bench-5.0.51a-27.6.ppc.rpm</filename>
        </package>
        <package name="mysql-bench" arch="x86_64" version="5.0.51a" release="27.6">
          <filename>mysql-bench-5.0.51a-27.6.x86_64.rpm</filename>
        </package>
        <package name="mysql-client" arch="i586" version="5.0.51a" release="27.6">
          <filename>mysql-client-5.0.51a-27.6.i586.rpm</filename>
        </package>
        <package name="mysql-client" arch="ppc" version="5.0.51a" release="27.6">
          <filename>mysql-client-5.0.51a-27.6.ppc.rpm</filename>
        </package>
        <package name="mysql-client" arch="x86_64" version="5.0.51a" release="27.6">
          <filename>mysql-client-5.0.51a-27.6.x86_64.rpm</filename>
        </package>
        <package name="mysql-debug" arch="i586" version="5.0.51a" release="27.6">
          <filename>mysql-debug-5.0.51a-27.6.i586.rpm</filename>
        </package>
        <package name="mysql-debug" arch="ppc" version="5.0.51a" release="27.6">
          <filename>mysql-debug-5.0.51a-27.6.ppc.rpm</filename>
        </package>
        <package name="mysql-debug" arch="x86_64" version="5.0.51a" release="27.6">
          <filename>mysql-debug-5.0.51a-27.6.x86_64.rpm</filename>
        </package>
        <package name="mysql-tools" arch="i586" version="5.0.51a" release="27.6">
          <filename>mysql-tools-5.0.51a-27.6.i586.rpm</filename>
        </package>
        <package name="mysql-tools" arch="ppc" version="5.0.51a" release="27.6">
          <filename>mysql-tools-5.0.51a-27.6.ppc.rpm</filename>
        </package>
        <package name="mysql-tools" arch="x86_64" version="5.0.51a" release="27.6">
          <filename>mysql-tools-5.0.51a-27.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c272b849dd8d75feb53cc6f743257e44"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2353">
  <id>libmikmod</id>
  <title>libmikmod security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1271974018"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=577875" id="577875" title="bug number 577875" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3995" id="CVE-2009-3995" title="CVE-2009-3995" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3996" id="CVE-2009-3996" title="CVE-2009-3996" type="cve"/>
  </references>
  <description>Specially crafted &quot;Impulse Tracker&quot; and &quot;Ultratracker&quot;
files could cause a heap based buffer overflow in
libmikmod. Attackers could exploit that to crash or
potentially execute code in applications linking against
libmikmod (CVE-2009-3995, CVE-2009-3996).
</description>
  <pkglist>
    <collection>
        <package name="libmikmod" arch="i586" version="3.1.11a" release="84.5">
          <filename>libmikmod-3.1.11a-84.5.i586.rpm</filename>
        </package>
        <package name="libmikmod" arch="ppc" version="3.1.11a" release="84.5">
          <filename>libmikmod-3.1.11a-84.5.ppc.rpm</filename>
        </package>
        <package name="libmikmod" arch="x86_64" version="3.1.11a" release="84.5">
          <filename>libmikmod-3.1.11a-84.5.x86_64.rpm</filename>
        </package>
        <package name="libmikmod-32bit" arch="x86_64" version="3.1.11a" release="84.5">
          <filename>libmikmod-32bit-3.1.11a-84.5.x86_64.rpm</filename>
        </package>
        <package name="libmikmod-64bit" arch="ppc" version="3.1.11a" release="84.5">
          <filename>libmikmod-64bit-3.1.11a-84.5.ppc.rpm</filename>
        </package>
        <package name="libmikmod-devel" arch="i586" version="3.1.11a" release="84.5">
          <filename>libmikmod-devel-3.1.11a-84.5.i586.rpm</filename>
        </package>
        <package name="libmikmod-devel" arch="ppc" version="3.1.11a" release="84.5">
          <filename>libmikmod-devel-3.1.11a-84.5.ppc.rpm</filename>
        </package>
        <package name="libmikmod-devel" arch="x86_64" version="3.1.11a" release="84.5">
          <filename>libmikmod-devel-3.1.11a-84.5.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0c81eff79776eef909a6ba171e417267"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2387">
  <id>moodle</id>
  <title>moodle security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1272905177"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=591850" id="591850" title="bug number 591850" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1613" id="CVE-2010-1613" title="CVE-2010-1613" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1614" id="CVE-2010-1614" title="CVE-2010-1614" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1615" id="CVE-2010-1615" title="CVE-2010-1615" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1616" id="CVE-2010-1616" title="CVE-2010-1616" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1617" id="CVE-2010-1617" title="CVE-2010-1617" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1618" id="CVE-2010-1618" title="CVE-2010-1618" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1619" id="CVE-2010-1619" title="CVE-2010-1619" type="cve"/>
  </references>
  <description>Moodle version 1.9.8 fixes several security issues
including cross-site-scripting (XSS) and SQL injection bugs
(CVE-2010-1613, CVE-2010-1614, CVE-2010-1615,
CVE-2010-1616, CVE-2010-1617 CVE-2010-1618, CVE-2010-1619).
</description>
  <pkglist>
    <collection>
        <package name="moodle" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-af" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-af-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ar" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-ar-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-be" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-be-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-bg" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-bg-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-bs" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-bs-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ca" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-ca-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-cs" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-cs-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-da" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-da-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-de" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-de-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-de_du" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-de_du-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-el" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-el-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-es" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-es-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-et" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-et-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-eu" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-eu-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-fa" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-fa-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-fi" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-fi-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-fr" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-fr-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ga" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-ga-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-gl" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-gl-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-he" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-he-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-hi" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-hi-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-hr" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-hr-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-hu" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-hu-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-id" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-id-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-is" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-is-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-it" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-it-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ja" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-ja-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ka" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-ka-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-km" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-km-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-kn" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-kn-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ko" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-ko-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-lt" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-lt-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-lv" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-lv-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-mi_tn" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-mi_tn-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ms" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-ms-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-nl" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-nl-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-nn" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-nn-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-no" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-no-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-pl" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-pl-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-pt" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-pt-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ro" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-ro-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ru" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-ru-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sk" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-sk-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sl" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-sl-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-so" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-so-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sq" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-sq-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sr" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-sr-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sv" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-sv-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-th" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-th-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-tl" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-tl-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-tr" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-tr-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-uk" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-uk-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-vi" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-vi-1.9.8-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-zh_cn" arch="noarch" version="1.9.8" release="0.1">
          <filename>moodle-zh_cn-1.9.8-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="12e230ba4d3ac5675fafc99e08709091"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2315">
  <id>libmysqlclient-devel</id>
  <title>mysql security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1272990220"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=557669" id="557669" title="bug number 557669" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-7247" id="CVE-2008-7247" title="CVE-2008-7247" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4019" id="CVE-2009-4019" title="CVE-2009-4019" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4028" id="CVE-2009-4028" title="CVE-2009-4028" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4030" id="CVE-2009-4030" title="CVE-2009-4030" type="cve"/>
  </references>
  <description>Updated mysql packages fix the following bugs:
  - upstream #47320 - checking server certificates
    (CVE-2009-4028)
  - upstream #48291 - error handling in subqueries
    (CVE-2009-4019)
  - upstream #47780 - preserving null_value flag in
    GeomFromWKB() (CVE-2009-4019)
  - upstream #39277 - symlink behaviour fixed
    (CVE-2008-7247)
  - upstream #32167 - symlink behaviour refixed
    (CVE-2009-4030)
</description>
  <pkglist>
    <collection>
        <package name="libmysqlclient-devel" arch="i586" version="5.0.51a" release="27.8">
          <filename>libmysqlclient-devel-5.0.51a-27.8.i586.rpm</filename>
        </package>
        <package name="libmysqlclient-devel" arch="ppc" version="5.0.51a" release="27.8">
          <filename>libmysqlclient-devel-5.0.51a-27.8.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient-devel" arch="x86_64" version="5.0.51a" release="27.8">
          <filename>libmysqlclient-devel-5.0.51a-27.8.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="i586" version="5.0.51a" release="27.8">
          <filename>libmysqlclient15-5.0.51a-27.8.i586.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="ppc" version="5.0.51a" release="27.8">
          <filename>libmysqlclient15-5.0.51a-27.8.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient15" arch="x86_64" version="5.0.51a" release="27.8">
          <filename>libmysqlclient15-5.0.51a-27.8.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15-32bit" arch="x86_64" version="5.0.51a" release="27.8">
          <filename>libmysqlclient15-32bit-5.0.51a-27.8.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient15-64bit" arch="ppc" version="5.0.51a" release="27.8">
          <filename>libmysqlclient15-64bit-5.0.51a-27.8.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="i586" version="5.0.51a" release="27.8">
          <filename>libmysqlclient_r15-5.0.51a-27.8.i586.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="ppc" version="5.0.51a" release="27.8">
          <filename>libmysqlclient_r15-5.0.51a-27.8.ppc.rpm</filename>
        </package>
        <package name="libmysqlclient_r15" arch="x86_64" version="5.0.51a" release="27.8">
          <filename>libmysqlclient_r15-5.0.51a-27.8.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient_r15-32bit" arch="x86_64" version="5.0.51a" release="27.8">
          <filename>libmysqlclient_r15-32bit-5.0.51a-27.8.x86_64.rpm</filename>
        </package>
        <package name="libmysqlclient_r15-64bit" arch="ppc" version="5.0.51a" release="27.8">
          <filename>libmysqlclient_r15-64bit-5.0.51a-27.8.ppc.rpm</filename>
        </package>
        <package name="mysql" arch="i586" version="5.0.51a" release="27.8">
          <filename>mysql-5.0.51a-27.8.i586.rpm</filename>
        </package>
        <package name="mysql" arch="ppc" version="5.0.51a" release="27.8">
          <filename>mysql-5.0.51a-27.8.ppc.rpm</filename>
        </package>
        <package name="mysql" arch="ppc64" version="5.0.51a" release="27.8">
          <filename>mysql-5.0.51a-27.8.ppc64.rpm</filename>
        </package>
        <package name="mysql" arch="x86_64" version="5.0.51a" release="27.8">
          <filename>mysql-5.0.51a-27.8.x86_64.rpm</filename>
        </package>
        <package name="mysql-Max" arch="i586" version="5.0.51a" release="27.8">
          <filename>mysql-Max-5.0.51a-27.8.i586.rpm</filename>
        </package>
        <package name="mysql-Max" arch="ppc" version="5.0.51a" release="27.8">
          <filename>mysql-Max-5.0.51a-27.8.ppc.rpm</filename>
        </package>
        <package name="mysql-Max" arch="x86_64" version="5.0.51a" release="27.8">
          <filename>mysql-Max-5.0.51a-27.8.x86_64.rpm</filename>
        </package>
        <package name="mysql-bench" arch="i586" version="5.0.51a" release="27.8">
          <filename>mysql-bench-5.0.51a-27.8.i586.rpm</filename>
        </package>
        <package name="mysql-bench" arch="ppc" version="5.0.51a" release="27.8">
          <filename>mysql-bench-5.0.51a-27.8.ppc.rpm</filename>
        </package>
        <package name="mysql-bench" arch="x86_64" version="5.0.51a" release="27.8">
          <filename>mysql-bench-5.0.51a-27.8.x86_64.rpm</filename>
        </package>
        <package name="mysql-client" arch="i586" version="5.0.51a" release="27.8">
          <filename>mysql-client-5.0.51a-27.8.i586.rpm</filename>
        </package>
        <package name="mysql-client" arch="ppc" version="5.0.51a" release="27.8">
          <filename>mysql-client-5.0.51a-27.8.ppc.rpm</filename>
        </package>
        <package name="mysql-client" arch="x86_64" version="5.0.51a" release="27.8">
          <filename>mysql-client-5.0.51a-27.8.x86_64.rpm</filename>
        </package>
        <package name="mysql-debug" arch="i586" version="5.0.51a" release="27.8">
          <filename>mysql-debug-5.0.51a-27.8.i586.rpm</filename>
        </package>
        <package name="mysql-debug" arch="ppc" version="5.0.51a" release="27.8">
          <filename>mysql-debug-5.0.51a-27.8.ppc.rpm</filename>
        </package>
        <package name="mysql-debug" arch="x86_64" version="5.0.51a" release="27.8">
          <filename>mysql-debug-5.0.51a-27.8.x86_64.rpm</filename>
        </package>
        <package name="mysql-tools" arch="i586" version="5.0.51a" release="27.8">
          <filename>mysql-tools-5.0.51a-27.8.i586.rpm</filename>
        </package>
        <package name="mysql-tools" arch="ppc" version="5.0.51a" release="27.8">
          <filename>mysql-tools-5.0.51a-27.8.ppc.rpm</filename>
        </package>
        <package name="mysql-tools" arch="x86_64" version="5.0.51a" release="27.8">
          <filename>mysql-tools-5.0.51a-27.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0d906e82683a2f5d322aa0929128ebdd"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2333">
  <id>evolution-data-server</id>
  <title>evolution-data-server security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1271264660"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=475108" id="475108" title="bug number 475108" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=568822" id="568822" title="bug number 568822" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0547" id="CVE-2009-0547" title="CVE-2009-0547" type="cve"/>
  </references>
  <description>evolution considered S/MIME signatures to be valid even for
modified mails (CVE-2009-0547).
</description>
  <pkglist>
    <collection>
        <package name="evolution-data-server" arch="i586" version="2.22.1.1" release="11.6">
          <filename>evolution-data-server-2.22.1.1-11.6.i586.rpm</filename>
        </package>
        <package name="evolution-data-server" arch="ppc" version="2.22.1.1" release="11.6">
          <filename>evolution-data-server-2.22.1.1-11.6.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server" arch="x86_64" version="2.22.1.1" release="11.6">
          <filename>evolution-data-server-2.22.1.1-11.6.x86_64.rpm</filename>
        </package>
        <package name="evolution-data-server-32bit" arch="x86_64" version="2.22.1.1" release="11.6">
          <filename>evolution-data-server-32bit-2.22.1.1-11.6.x86_64.rpm</filename>
        </package>
        <package name="evolution-data-server-64bit" arch="ppc" version="2.22.1.1" release="11.6">
          <filename>evolution-data-server-64bit-2.22.1.1-11.6.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server-devel" arch="i586" version="2.22.1.1" release="11.6">
          <filename>evolution-data-server-devel-2.22.1.1-11.6.i586.rpm</filename>
        </package>
        <package name="evolution-data-server-devel" arch="ppc" version="2.22.1.1" release="11.6">
          <filename>evolution-data-server-devel-2.22.1.1-11.6.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server-devel" arch="x86_64" version="2.22.1.1" release="11.6">
          <filename>evolution-data-server-devel-2.22.1.1-11.6.x86_64.rpm</filename>
        </package>
        <package name="evolution-data-server-doc" arch="i586" version="2.22.1.1" release="11.6">
          <filename>evolution-data-server-doc-2.22.1.1-11.6.i586.rpm</filename>
        </package>
        <package name="evolution-data-server-doc" arch="ppc" version="2.22.1.1" release="11.6">
          <filename>evolution-data-server-doc-2.22.1.1-11.6.ppc.rpm</filename>
        </package>
        <package name="evolution-data-server-doc" arch="x86_64" version="2.22.1.1" release="11.6">
          <filename>evolution-data-server-doc-2.22.1.1-11.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="fe4b91d9447161cc3bb5d59ab676a039"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2389">
  <id>libesmtp</id>
  <title>libesmtp security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1272635908"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=585393" id="585393" title="bug number 585393" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1192" id="CVE-2010-1192" title="CVE-2010-1192" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1194" id="CVE-2010-1194" title="CVE-2010-1194" type="cve"/>
  </references>
  <description>libesmtp did not properly handle wildcards and embedded
null characters in the Common Name of X.509 certificates
(CVE-2010-1192, CVE-2010-1194).
</description>
  <pkglist>
    <collection>
        <package name="libesmtp" arch="i586" version="1.0.4" release="142.2">
          <filename>libesmtp-1.0.4-142.2.i586.rpm</filename>
        </package>
        <package name="libesmtp" arch="ppc" version="1.0.4" release="142.2">
          <filename>libesmtp-1.0.4-142.2.ppc.rpm</filename>
        </package>
        <package name="libesmtp" arch="x86_64" version="1.0.4" release="142.2">
          <filename>libesmtp-1.0.4-142.2.x86_64.rpm</filename>
        </package>
        <package name="libesmtp-devel" arch="i586" version="1.0.4" release="142.2">
          <filename>libesmtp-devel-1.0.4-142.2.i586.rpm</filename>
        </package>
        <package name="libesmtp-devel" arch="ppc" version="1.0.4" release="142.2">
          <filename>libesmtp-devel-1.0.4-142.2.ppc.rpm</filename>
        </package>
        <package name="libesmtp-devel" arch="x86_64" version="1.0.4" release="142.2">
          <filename>libesmtp-devel-1.0.4-142.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="5c917f135cd85598c932bcb871d4557a"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="2399">
  <id>suse-build-key</id>
  <title>suse-build-key: extend key lifetimes.</title>
  <release>openSUSE 11.0</release>
  <issued date="1273068802"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=600157" id="600157" title="bug number 600157" type="bugzilla"/>
  </references>
  <description>This update extends life time of our default included keys
for 4 more years.

Updated keys:
  - 307E3D54 build@suse.de &quot;SuSE Package Signing Key&quot;
    (2014-05-03)
  - 9C800ACA build@suse.de &quot;SuSE Package Signing Key&quot;
    (2014-05-03)
  - B37B98A9 support@suse.com &quot;SUSE PTF Signing Key&quot;
    (2014-05-03)
  - 7E2E3B05 novell-provo-build@novell.com &quot;Novell Provo
    Build&quot;   (2014-05-06) Added keys:
  - 1D061A62 support@novell.com &quot;build@novell.com (Novell
    Linux Products)&quot; (2014-05-06)
</description>
  <pkglist>
    <collection>
        <package name="suse-build-key" arch="noarch" version="1.0" release="855.2">
          <filename>suse-build-key-1.0-855.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="63cd604284f0ecefce6f29b0f9c61d30"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2213">
  <id>libpython2_6-1_0</id>
  <title>python: denial of service by proessing malformed XML (&quot;Expat vulnerability&quot;)</title>
  <release>openSUSE 11.0</release>
  <issued date="1269795620"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=581765" id="581765" title="bug number 581765" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2625" id="CVE-2009-2625" title="CVE-2009-2625" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3560" id="CVE-2009-3560" title="CVE-2009-3560" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3720" id="CVE-2009-3720" title="CVE-2009-3720" type="cve"/>
  </references>
  <description>This update of python has a copy of libxmlrpc that is
vulnerable to denial of service bugs that can occur while
processing malformed XML input. CVE-2009-2625: CVSS v2 Base
Score: 5.0 (moderate) (AV:N/AC:L/Au:N/C:N/I:N/A:P):
Permissions, Privileges, and Access Control (CWE-264)
CVE-2009-3720: CVSS v2 Base Score: 5.0 (MEDIUM)
(AV:N/AC:L/Au:N/C:N/I:N/A:P): Insufficient Information
(CWE-noinfo) CVE-2009-3560: CVSS v2 Base Score: 5.0
(MEDIUM) (AV:N/AC:L/Au:N/C:N/I:N/A:P): Buffer Errors
(CWE-119)
</description>
  <pkglist>
    <collection>
        <package name="python" arch="i586" version="2.5.2" release="26.6">
          <filename>python-2.5.2-26.6.i586.rpm</filename>
        </package>
        <package name="python" arch="ppc" version="2.5.2" release="26.6">
          <filename>python-2.5.2-26.6.ppc.rpm</filename>
        </package>
        <package name="python" arch="x86_64" version="2.5.2" release="26.6">
          <filename>python-2.5.2-26.6.x86_64.rpm</filename>
        </package>
        <package name="python-32bit" arch="x86_64" version="2.5.2" release="26.6">
          <filename>python-32bit-2.5.2-26.6.x86_64.rpm</filename>
        </package>
        <package name="python-64bit" arch="ppc" version="2.5.2" release="26.6">
          <filename>python-64bit-2.5.2-26.6.ppc.rpm</filename>
        </package>
        <package name="python-curses" arch="i586" version="2.5.2" release="26.6">
          <filename>python-curses-2.5.2-26.6.i586.rpm</filename>
        </package>
        <package name="python-curses" arch="ppc" version="2.5.2" release="26.6">
          <filename>python-curses-2.5.2-26.6.ppc.rpm</filename>
        </package>
        <package name="python-curses" arch="x86_64" version="2.5.2" release="26.6">
          <filename>python-curses-2.5.2-26.6.x86_64.rpm</filename>
        </package>
        <package name="python-demo" arch="i586" version="2.5.2" release="26.6">
          <filename>python-demo-2.5.2-26.6.i586.rpm</filename>
        </package>
        <package name="python-demo" arch="ppc" version="2.5.2" release="26.6">
          <filename>python-demo-2.5.2-26.6.ppc.rpm</filename>
        </package>
        <package name="python-demo" arch="x86_64" version="2.5.2" release="26.6">
          <filename>python-demo-2.5.2-26.6.x86_64.rpm</filename>
        </package>
        <package name="python-devel" arch="i586" version="2.5.2" release="26.6">
          <filename>python-devel-2.5.2-26.6.i586.rpm</filename>
        </package>
        <package name="python-devel" arch="ppc" version="2.5.2" release="26.6">
          <filename>python-devel-2.5.2-26.6.ppc.rpm</filename>
        </package>
        <package name="python-devel" arch="x86_64" version="2.5.2" release="26.6">
          <filename>python-devel-2.5.2-26.6.x86_64.rpm</filename>
        </package>
        <package name="python-gdbm" arch="i586" version="2.5.2" release="26.6">
          <filename>python-gdbm-2.5.2-26.6.i586.rpm</filename>
        </package>
        <package name="python-gdbm" arch="ppc" version="2.5.2" release="26.6">
          <filename>python-gdbm-2.5.2-26.6.ppc.rpm</filename>
        </package>
        <package name="python-gdbm" arch="x86_64" version="2.5.2" release="26.6">
          <filename>python-gdbm-2.5.2-26.6.x86_64.rpm</filename>
        </package>
        <package name="python-idle" arch="i586" version="2.5.2" release="26.6">
          <filename>python-idle-2.5.2-26.6.i586.rpm</filename>
        </package>
        <package name="python-idle" arch="ppc" version="2.5.2" release="26.6">
          <filename>python-idle-2.5.2-26.6.ppc.rpm</filename>
        </package>
        <package name="python-idle" arch="x86_64" version="2.5.2" release="26.6">
          <filename>python-idle-2.5.2-26.6.x86_64.rpm</filename>
        </package>
        <package name="python-tk" arch="i586" version="2.5.2" release="26.6">
          <filename>python-tk-2.5.2-26.6.i586.rpm</filename>
        </package>
        <package name="python-tk" arch="ppc" version="2.5.2" release="26.6">
          <filename>python-tk-2.5.2-26.6.ppc.rpm</filename>
        </package>
        <package name="python-tk" arch="x86_64" version="2.5.2" release="26.6">
          <filename>python-tk-2.5.2-26.6.x86_64.rpm</filename>
        </package>
        <package name="python-xml" arch="i586" version="2.5.2" release="26.6">
          <filename>python-xml-2.5.2-26.6.i586.rpm</filename>
        </package>
        <package name="python-xml" arch="ppc" version="2.5.2" release="26.6">
          <filename>python-xml-2.5.2-26.6.ppc.rpm</filename>
        </package>
        <package name="python-xml" arch="x86_64" version="2.5.2" release="26.6">
          <filename>python-xml-2.5.2-26.6.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8f419b02777e0b42736482414a54c3e4"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2392">
  <id>texlive</id>
  <title>texlive security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1272906259"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=587794" id="587794" title="bug number 587794" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0827" id="CVE-2010-0827" title="CVE-2010-0827" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0829" id="CVE-2010-0829" title="CVE-2010-0829" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0739" id="CVE-2010-0739" title="CVE-2010-0739" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1440" id="CVE-2010-1440" title="CVE-2010-1440" type="cve"/>
  </references>
  <description>Specially crafted dvi files could cause buffer overflows in
dvips and dvipng (CVE-2010-0827, CVE-2010-0829,
CVE-2010-0739, CVE-2010-1440).
</description>
  <pkglist>
    <collection>
        <package name="texlive" arch="noarch" version="2007" release="177.4">
          <filename>texlive-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-arab" arch="noarch" version="2007" release="177.4">
          <filename>texlive-arab-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-bin" arch="i586" version="2007" release="176.4">
          <filename>texlive-bin-2007-176.4.i586.rpm</filename>
        </package>
        <package name="texlive-bin" arch="ppc" version="2007" release="176.4">
          <filename>texlive-bin-2007-176.4.ppc.rpm</filename>
        </package>
        <package name="texlive-bin" arch="x86_64" version="2007" release="176.4">
          <filename>texlive-bin-2007-176.4.x86_64.rpm</filename>
        </package>
        <package name="texlive-cjk" arch="noarch" version="2007" release="177.4">
          <filename>texlive-cjk-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-context" arch="noarch" version="2007" release="177.4">
          <filename>texlive-context-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-devel" arch="noarch" version="2007" release="177.4">
          <filename>texlive-devel-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-doc" arch="noarch" version="2007" release="177.4">
          <filename>texlive-doc-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-dvilj" arch="noarch" version="2007" release="177.4">
          <filename>texlive-dvilj-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-jadetex" arch="noarch" version="2007" release="177.4">
          <filename>texlive-jadetex-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-latex" arch="noarch" version="2007" release="177.4">
          <filename>texlive-latex-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-latex-doc" arch="noarch" version="2007" release="177.4">
          <filename>texlive-latex-doc-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-metapost" arch="noarch" version="2007" release="177.4">
          <filename>texlive-metapost-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-musictex" arch="noarch" version="2007" release="177.4">
          <filename>texlive-musictex-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-nfs" arch="noarch" version="2007" release="177.4">
          <filename>texlive-nfs-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-omega" arch="noarch" version="2007" release="177.4">
          <filename>texlive-omega-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-ppower4" arch="noarch" version="2007" release="177.4">
          <filename>texlive-ppower4-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-tex4ht" arch="noarch" version="2007" release="177.4">
          <filename>texlive-tex4ht-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-tools" arch="noarch" version="2007" release="177.4">
          <filename>texlive-tools-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-xetex" arch="noarch" version="2007" release="177.4">
          <filename>texlive-xetex-2007-177.4.noarch.rpm</filename>
        </package>
        <package name="texlive-xmltex" arch="noarch" version="2007" release="177.4">
          <filename>texlive-xmltex-2007-177.4.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="17fd27153f1fc495c9813980fd4f0a2a"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2159">
  <id>libpng-devel</id>
  <title>libpng: fixed denial of service while decompressing a highly compressed huge ancillary chunk (CVE-2010-0205)</title>
  <release>openSUSE 11.0</release>
  <issued date="1268880484"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=580484" id="580484" title="bug number 580484" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=none" id="none" title="none" type="cve"/>
  </references>
  <description>Denial of service while decompressing a highly compressed
huge ancillary chunk has been fixed in libpng.
CVE-2010-0205 has been assigned.
</description>
  <pkglist>
    <collection>
        <package name="libpng-devel" arch="i586" version="1.2.26" release="14.12">
          <filename>libpng-devel-1.2.26-14.12.i586.rpm</filename>
        </package>
        <package name="libpng-devel" arch="ppc" version="1.2.26" release="14.12">
          <filename>libpng-devel-1.2.26-14.12.ppc.rpm</filename>
        </package>
        <package name="libpng-devel" arch="x86_64" version="1.2.26" release="14.12">
          <filename>libpng-devel-1.2.26-14.12.x86_64.rpm</filename>
        </package>
        <package name="libpng-devel-32bit" arch="x86_64" version="1.2.26" release="14.12">
          <filename>libpng-devel-32bit-1.2.26-14.12.x86_64.rpm</filename>
        </package>
        <package name="libpng-devel-64bit" arch="ppc" version="1.2.26" release="14.12">
          <filename>libpng-devel-64bit-1.2.26-14.12.ppc.rpm</filename>
        </package>
        <package name="libpng12-0" arch="i586" version="1.2.26" release="14.12">
          <filename>libpng12-0-1.2.26-14.12.i586.rpm</filename>
        </package>
        <package name="libpng12-0" arch="ppc" version="1.2.26" release="14.12">
          <filename>libpng12-0-1.2.26-14.12.ppc.rpm</filename>
        </package>
        <package name="libpng12-0" arch="x86_64" version="1.2.26" release="14.12">
          <filename>libpng12-0-1.2.26-14.12.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-32bit" arch="x86_64" version="1.2.26" release="14.12">
          <filename>libpng12-0-32bit-1.2.26-14.12.x86_64.rpm</filename>
        </package>
        <package name="libpng12-0-64bit" arch="ppc" version="1.2.26" release="14.12">
          <filename>libpng12-0-64bit-1.2.26-14.12.ppc.rpm</filename>
        </package>
        <package name="libpng3" arch="i586" version="1.2.26" release="14.12">
          <filename>libpng3-1.2.26-14.12.i586.rpm</filename>
        </package>
        <package name="libpng3" arch="ppc" version="1.2.26" release="14.12">
          <filename>libpng3-1.2.26-14.12.ppc.rpm</filename>
        </package>
        <package name="libpng3" arch="x86_64" version="1.2.26" release="14.12">
          <filename>libpng3-1.2.26-14.12.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="aaa5fe31a01b4144de5bdb5ff45afa98"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2395">
  <id>ncpfs</id>
  <title>ncpfs: Fixed several security issues</title>
  <release>openSUSE 11.0</release>
  <issued date="1272989596"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550004" id="550004" title="bug number 550004" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=583536" id="583536" title="bug number 583536" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0788" id="CVE-2010-0788" title="CVE-2010-0788" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0790" id="CVE-2010-0790" title="CVE-2010-0790" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0791" id="CVE-2010-0791" title="CVE-2010-0791" type="cve"/>
  </references>
  <description>This update fixes three security issues in ncpfs:

Fixed a information leakage on mount (CVE-2010-0790 /
bnc#583536) Fixed a mtab locking problem (CVE-2010-0791 /
bnc#583536) Fixed a race condition in ncpfs mounts
(CVE-2010-0788 / bnc#550004)
</description>
  <pkglist>
    <collection>
        <package name="ncpfs" arch="i586" version="2.2.6" release="132.4">
          <filename>ncpfs-2.2.6-132.4.i586.rpm</filename>
        </package>
        <package name="ncpfs" arch="ppc" version="2.2.6" release="132.4">
          <filename>ncpfs-2.2.6-132.4.ppc.rpm</filename>
        </package>
        <package name="ncpfs" arch="x86_64" version="2.2.6" release="132.4">
          <filename>ncpfs-2.2.6-132.4.x86_64.rpm</filename>
        </package>
        <package name="ncpfs-32bit" arch="x86_64" version="2.2.6" release="132.4">
          <filename>ncpfs-32bit-2.2.6-132.4.x86_64.rpm</filename>
        </package>
        <package name="ncpfs-64bit" arch="ppc" version="2.2.6" release="132.4">
          <filename>ncpfs-64bit-2.2.6-132.4.ppc.rpm</filename>
        </package>
        <package name="ncpfs-devel" arch="i586" version="2.2.6" release="132.4">
          <filename>ncpfs-devel-2.2.6-132.4.i586.rpm</filename>
        </package>
        <package name="ncpfs-devel" arch="ppc" version="2.2.6" release="132.4">
          <filename>ncpfs-devel-2.2.6-132.4.ppc.rpm</filename>
        </package>
        <package name="ncpfs-devel" arch="x86_64" version="2.2.6" release="132.4">
          <filename>ncpfs-devel-2.2.6-132.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="905ae89bbd71f145a4b2ab6acdd1d659"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2388">
  <id>seamonkey</id>
  <title>seamonkey: 1.1.19 security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1272637524"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=590499" id="590499" title="bug number 590499" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0161" id="CVE-2010-0161" title="CVE-2010-0161" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0163" id="CVE-2010-0163" title="CVE-2010-0163" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3075" id="CVE-2009-3075" title="CVE-2009-3075" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3072" id="CVE-2009-3072" title="CVE-2009-3072" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2463" id="CVE-2009-2463" title="CVE-2009-2463" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3983" id="CVE-2009-3983" title="CVE-2009-3983" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3376" id="CVE-2009-3376" title="CVE-2009-3376" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0689" id="CVE-2009-0689" title="CVE-2009-0689" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3385" id="CVE-2009-3385" title="CVE-2009-3385" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3077" id="CVE-2009-3077" title="CVE-2009-3077" type="cve"/>
  </references>
  <description>This update brings Mozilla Seamonkey to 1.1.19 fixing
various bugs and security issues.

Following security issues are fixed: MFSA 2010-07:  Mozilla
developers took fixes from previously fixed memory safety
bugs in newer Mozilla-based products and ported them to the
Mozilla 1.8.1 branch so they can be utilized by Thunderbird
2 and SeaMonkey 1.1.

Paul Fisher reported a crash when joined to an Active
Directory server under Vista or Windows 7 and using SSPI
authentication. (CVE-2010-0161) Ludovic Hirlimann reported
a crash indexing some messages with attachments
(CVE-2010-0163) Carsten Book reported a crash in the
JavaScript engine (CVE-2009-3075) Josh Soref reported a
crash in the BinHex decoder used on non-Mac platforms.
(CVE-2009-3072) monarch2000 reported an integer overflow in
a base64 decoding function (CVE-2009-2463)

MFSA 2009-68 / CVE-2009-3983: Security researcher Takehiro
Takahashi of the IBM X-Force reported that Mozilla's NTLM
implementation was vulnerable to reflection attacks in
which NTLM credentials from one application could be
forwarded to another arbitary application via the browser.
If an attacker could get a user to visit a web page he
controlled he could force NTLM authenticated requests to be
forwarded to another application on behalf of the user.

MFSA 2009-62 / CVE-2009-3376: Mozilla security researchers
Jesse Ruderman and Sid Stamm reported that when downloading
a file containing a right-to-left override character (RTL)
in the filename, the name displayed in the dialog title bar
conflicts with the name of the file shown in the dialog
body. An attacker could use this vulnerability to obfuscate
the name and file extension of a file to be downloaded and
opened, potentially causing a user to run an executable
file when they expected to open a non-executable file.


MFSA 2009-59 / CVE-2009-0689: Security researcher Alin Rad
Pop of Secunia Research reported a heap-based buffer
overflow in Mozilla's string to floating point number
conversion routines. Using this vulnerability an attacker
could craft some malicious JavaScript code containing a
very long string to be converted to a floating point number
which would result in improper memory allocation and the
execution of an arbitrary memory location. This
vulnerability could thus be leveraged by the attacker to
run arbitrary code on a victim's computer.

Update: The underlying flaw in the dtoa routines used by
Mozilla appears to be essentially the same as that reported
against the libc gdtoa routine by Maksymilian Arciemowicz.

MFSA 2010-06 / CVE-2009-3385: Security researcher Georgi
Guninski reported that scriptable plugin content, such as
Flash objects, could be loaded and executed in SeaMonkey
mail messages by embedding the content in an iframe inside
the message. If a user were to reply to or forward such a
message, malicious JavaScript embedded in the plugin
content could potentially steal the contents of the message
or files from the local filesystem.

MFSA 2009-49 / CVE-2009-3077: An anonymous security
researcher, via TippingPoint's Zero Day Initiative,
reported that the columns of a XUL tree element could be
manipulated in a particular way which would leave a pointer
owned by the column pointing to freed memory. An attacker
could potentially use this vulnerability to crash a
victim's browser and run arbitrary code on the victim's
computer.

Please see
http://www.mozilla.org/security/known-vulnerabilities/seamon
key11.html
</description>
  <pkglist>
    <collection>
        <package name="seamonkey" arch="i586" version="1.1.19" release="0.1">
          <filename>seamonkey-1.1.19-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey" arch="ppc" version="1.1.19" release="0.1">
          <filename>seamonkey-1.1.19-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey" arch="x86_64" version="1.1.19" release="0.1">
          <filename>seamonkey-1.1.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="i586" version="1.1.19" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.19-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="ppc" version="1.1.19" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.19-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="x86_64" version="1.1.19" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="i586" version="1.1.19" release="0.1">
          <filename>seamonkey-irc-1.1.19-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="ppc" version="1.1.19" release="0.1">
          <filename>seamonkey-irc-1.1.19-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="x86_64" version="1.1.19" release="0.1">
          <filename>seamonkey-irc-1.1.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="i586" version="1.1.19" release="0.1">
          <filename>seamonkey-mail-1.1.19-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="ppc" version="1.1.19" release="0.1">
          <filename>seamonkey-mail-1.1.19-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="x86_64" version="1.1.19" release="0.1">
          <filename>seamonkey-mail-1.1.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="i586" version="1.1.19" release="0.1">
          <filename>seamonkey-spellchecker-1.1.19-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="ppc" version="1.1.19" release="0.1">
          <filename>seamonkey-spellchecker-1.1.19-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="x86_64" version="1.1.19" release="0.1">
          <filename>seamonkey-spellchecker-1.1.19-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="i586" version="1.1.19" release="0.1">
          <filename>seamonkey-venkman-1.1.19-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="ppc" version="1.1.19" release="0.1">
          <filename>seamonkey-venkman-1.1.19-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="x86_64" version="1.1.19" release="0.1">
          <filename>seamonkey-venkman-1.1.19-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="adae160af2d9075985d4ff08071cf2f7"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2443">
  <id>krb5</id>
  <title>krb5: security update for remote denial-of-service vulnerability</title>
  <release>openSUSE 11.0</release>
  <issued date="1274400999"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=596826" id="596826" title="bug number 596826" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1321" id="CVE-2010-1321" title="CVE-2010-1321" type="cve"/>
  </references>
  <description>This update fixes a denial-of-service vulnerability in
kadmind. A remote attack can send a malformed GSS-API token
that triggers a NULL pointer dereference. (CVE-2010-1321:
CVSS v2 Base Score: 6.8 (MEDIUM)
(AV:N/AC:L/Au:S/C:N/I:N/A:C))
</description>
  <pkglist>
    <collection>
        <package name="krb5" arch="i586" version="1.6.3" release="50.11">
          <filename>krb5-1.6.3-50.11.i586.rpm</filename>
        </package>
        <package name="krb5" arch="ppc" version="1.6.3" release="50.11">
          <filename>krb5-1.6.3-50.11.ppc.rpm</filename>
        </package>
        <package name="krb5" arch="x86_64" version="1.6.3" release="50.11">
          <filename>krb5-1.6.3-50.11.x86_64.rpm</filename>
        </package>
        <package name="krb5-32bit" arch="x86_64" version="1.6.3" release="50.11">
          <filename>krb5-32bit-1.6.3-50.11.x86_64.rpm</filename>
        </package>
        <package name="krb5-64bit" arch="ppc" version="1.6.3" release="50.11">
          <filename>krb5-64bit-1.6.3-50.11.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="i586" version="1.6.3" release="50.11">
          <filename>krb5-apps-clients-1.6.3-50.11.i586.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="ppc" version="1.6.3" release="50.11">
          <filename>krb5-apps-clients-1.6.3-50.11.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-clients" arch="x86_64" version="1.6.3" release="50.11">
          <filename>krb5-apps-clients-1.6.3-50.11.x86_64.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="i586" version="1.6.3" release="50.11">
          <filename>krb5-apps-servers-1.6.3-50.11.i586.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="ppc" version="1.6.3" release="50.11">
          <filename>krb5-apps-servers-1.6.3-50.11.ppc.rpm</filename>
        </package>
        <package name="krb5-apps-servers" arch="x86_64" version="1.6.3" release="50.11">
          <filename>krb5-apps-servers-1.6.3-50.11.x86_64.rpm</filename>
        </package>
        <package name="krb5-client" arch="i586" version="1.6.3" release="50.11">
          <filename>krb5-client-1.6.3-50.11.i586.rpm</filename>
        </package>
        <package name="krb5-client" arch="ppc" version="1.6.3" release="50.11">
          <filename>krb5-client-1.6.3-50.11.ppc.rpm</filename>
        </package>
        <package name="krb5-client" arch="x86_64" version="1.6.3" release="50.11">
          <filename>krb5-client-1.6.3-50.11.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel" arch="i586" version="1.6.3" release="50.11">
          <filename>krb5-devel-1.6.3-50.11.i586.rpm</filename>
        </package>
        <package name="krb5-devel" arch="ppc" version="1.6.3" release="50.11">
          <filename>krb5-devel-1.6.3-50.11.ppc.rpm</filename>
        </package>
        <package name="krb5-devel" arch="x86_64" version="1.6.3" release="50.11">
          <filename>krb5-devel-1.6.3-50.11.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel-32bit" arch="x86_64" version="1.6.3" release="50.11">
          <filename>krb5-devel-32bit-1.6.3-50.11.x86_64.rpm</filename>
        </package>
        <package name="krb5-devel-64bit" arch="ppc" version="1.6.3" release="50.11">
          <filename>krb5-devel-64bit-1.6.3-50.11.ppc.rpm</filename>
        </package>
        <package name="krb5-plugin-kdb-ldap" arch="i586" version="1.6.3" release="9.8">
          <filename>krb5-plugin-kdb-ldap-1.6.3-9.8.i586.rpm</filename>
        </package>
        <package name="krb5-plugin-kdb-ldap" arch="ppc" version="1.6.3" release="9.8">
          <filename>krb5-plugin-kdb-ldap-1.6.3-9.8.ppc.rpm</filename>
        </package>
        <package name="krb5-plugin-kdb-ldap" arch="x86_64" version="1.6.3" release="9.8">
          <filename>krb5-plugin-kdb-ldap-1.6.3-9.8.x86_64.rpm</filename>
        </package>
        <package name="krb5-plugin-preauth-pkinit" arch="i586" version="1.6.3" release="9.8">
          <filename>krb5-plugin-preauth-pkinit-1.6.3-9.8.i586.rpm</filename>
        </package>
        <package name="krb5-plugin-preauth-pkinit" arch="ppc" version="1.6.3" release="9.8">
          <filename>krb5-plugin-preauth-pkinit-1.6.3-9.8.ppc.rpm</filename>
        </package>
        <package name="krb5-plugin-preauth-pkinit" arch="x86_64" version="1.6.3" release="9.8">
          <filename>krb5-plugin-preauth-pkinit-1.6.3-9.8.x86_64.rpm</filename>
        </package>
        <package name="krb5-server" arch="i586" version="1.6.3" release="50.11">
          <filename>krb5-server-1.6.3-50.11.i586.rpm</filename>
        </package>
        <package name="krb5-server" arch="ppc" version="1.6.3" release="50.11">
          <filename>krb5-server-1.6.3-50.11.ppc.rpm</filename>
        </package>
        <package name="krb5-server" arch="x86_64" version="1.6.3" release="50.11">
          <filename>krb5-server-1.6.3-50.11.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="e85c5420764bcb2c42ea615048a057f6"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2271">
  <id>memcached</id>
  <title>memcached DoS</title>
  <release>openSUSE 11.0</release>
  <issued date="1271081755"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=595117" id="595117" title="bug number 595117" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1152" id="CVE-2010-1152" title="CVE-2010-1152" type="cve"/>
  </references>
  <description>Remote attackers that are allowed to connect to memcached
could crash memcached by sending invalid input
(CVE-2010-1152).
</description>
  <pkglist>
    <collection>
        <package name="memcached" arch="i586" version="1.2.2" release="49.4">
          <filename>memcached-1.2.2-49.4.i586.rpm</filename>
        </package>
        <package name="memcached" arch="ppc" version="1.2.2" release="49.4">
          <filename>memcached-1.2.2-49.4.ppc.rpm</filename>
        </package>
        <package name="memcached" arch="x86_64" version="1.2.2" release="49.4">
          <filename>memcached-1.2.2-49.4.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="16e8d313fc9bc48d65e0edfb97c000df"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2542">
  <id>flash-player</id>
  <title>flash-player: Fixed remote code execution</title>
  <release>openSUSE 11.0</release>
  <issued date="1276251322"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=612063" id="612063" title="bug number 612063" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4546" id="CVE-2008-4546" title="CVE-2008-4546" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3793" id="CVE-2009-3793" title="CVE-2009-3793" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1297" id="CVE-2010-1297" title="CVE-2010-1297" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2160" id="CVE-2010-2160" title="CVE-2010-2160" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2161" id="CVE-2010-2161" title="CVE-2010-2161" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2162" id="CVE-2010-2162" title="CVE-2010-2162" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2163" id="CVE-2010-2163" title="CVE-2010-2163" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2164" id="CVE-2010-2164" title="CVE-2010-2164" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2165" id="CVE-2010-2165" title="CVE-2010-2165" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2166" id="CVE-2010-2166" title="CVE-2010-2166" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2167" id="CVE-2010-2167" title="CVE-2010-2167" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2169" id="CVE-2010-2169" title="CVE-2010-2169" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2170" id="CVE-2010-2170" title="CVE-2010-2170" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2171" id="CVE-2010-2171" title="CVE-2010-2171" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2172" id="CVE-2010-2172" title="CVE-2010-2172" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2173" id="CVE-2010-2173" title="CVE-2010-2173" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2174" id="CVE-2010-2174" title="CVE-2010-2174" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2175" id="CVE-2010-2175" title="CVE-2010-2175" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2176" id="CVE-2010-2176" title="CVE-2010-2176" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2177" id="CVE-2010-2177" title="CVE-2010-2177" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2178" id="CVE-2010-2178" title="CVE-2010-2178" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2179" id="CVE-2010-2179" title="CVE-2010-2179" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2180" id="CVE-2010-2180" title="CVE-2010-2180" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2181" id="CVE-2010-2181" title="CVE-2010-2181" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2182" id="CVE-2010-2182" title="CVE-2010-2182" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2183" id="CVE-2010-2183" title="CVE-2010-2183" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2184" id="CVE-2010-2184" title="CVE-2010-2184" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2185" id="CVE-2010-2185" title="CVE-2010-2185" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2186" id="CVE-2010-2186" title="CVE-2010-2186" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2187" id="CVE-2010-2187" title="CVE-2010-2187" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2188" id="CVE-2010-2188" title="CVE-2010-2188" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2189" id="CVE-2010-2189" title="CVE-2010-2189" type="cve"/>
  </references>
  <description>This Flash Player update fixes multiple critical security
vulnerabilities which allow an attacker to remotely execute
arbitrary code or to cause a denial of service. The
following CVE numbers have been assigned:

CVE-2008-4546, CVE-2009-3793, CVE-2010-1297, CVE-2010-2160,
CVE-2010-2161, CVE-2010-2162, CVE-2010-2163, CVE-2010-2164,
CVE-2010-2165, CVE-2010-2166, CVE-2010-2167, CVE-2010-2169,
CVE-2010-2170, CVE-2010-2171, CVE-2010-2172, CVE-2010-2173,
CVE-2010-2174, CVE-2010-2175, CVE-2010-2176, CVE-2010-2177,
CVE-2010-2178, CVE-2010-2179, CVE-2010-2180, CVE-2010-2181,
CVE-2010-2182, CVE-2010-2183, CVE-2010-2184, CVE-2010-2185,
CVE-2010-2186, CVE-2010-2187, CVE-2010-2188, CVE-2010-2189
</description>
  <pkglist>
    <collection>
        <package name="flash-player" arch="i586" version="10.1.53.64" release="1.1">
          <filename>flash-player-10.1.53.64-1.1.i586.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="561e21d7e0d2db315c3ace938cb0f2a9"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2477">
  <id>libtiff-devel</id>
  <title>libtiff: integer overflow can lead to corrupted heap</title>
  <release>openSUSE 11.0</release>
  <issued date="1274746212"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=605837" id="605837" title="bug number 605837" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1411" id="CVE-2010-1411" title="CVE-2010-1411" type="cve"/>
  </references>
  <description>This update of libtiff fixes several integer overflows that
could lead to a corrupted heap memory. This bug can be
exploited remotely with a crafted TIFF file to cause an
application crash or probably to execute arbitrary code.
(CVE-2010-1411)
</description>
  <pkglist>
    <collection>
        <package name="libtiff-devel" arch="i586" version="3.8.2" release="108.9">
          <filename>libtiff-devel-3.8.2-108.9.i586.rpm</filename>
        </package>
        <package name="libtiff-devel" arch="ppc" version="3.8.2" release="108.9">
          <filename>libtiff-devel-3.8.2-108.9.ppc.rpm</filename>
        </package>
        <package name="libtiff-devel" arch="x86_64" version="3.8.2" release="108.9">
          <filename>libtiff-devel-3.8.2-108.9.x86_64.rpm</filename>
        </package>
        <package name="libtiff-devel-32bit" arch="x86_64" version="3.8.2" release="108.9">
          <filename>libtiff-devel-32bit-3.8.2-108.9.x86_64.rpm</filename>
        </package>
        <package name="libtiff-devel-64bit" arch="ppc" version="3.8.2" release="108.9">
          <filename>libtiff-devel-64bit-3.8.2-108.9.ppc.rpm</filename>
        </package>
        <package name="libtiff3" arch="i586" version="3.8.2" release="108.9">
          <filename>libtiff3-3.8.2-108.9.i586.rpm</filename>
        </package>
        <package name="libtiff3" arch="ppc" version="3.8.2" release="108.9">
          <filename>libtiff3-3.8.2-108.9.ppc.rpm</filename>
        </package>
        <package name="libtiff3" arch="x86_64" version="3.8.2" release="108.9">
          <filename>libtiff3-3.8.2-108.9.x86_64.rpm</filename>
        </package>
        <package name="libtiff3-32bit" arch="x86_64" version="3.8.2" release="108.9">
          <filename>libtiff3-32bit-3.8.2-108.9.x86_64.rpm</filename>
        </package>
        <package name="libtiff3-64bit" arch="ppc" version="3.8.2" release="108.9">
          <filename>libtiff3-64bit-3.8.2-108.9.ppc.rpm</filename>
        </package>
        <package name="tiff" arch="i586" version="3.8.2" release="108.9">
          <filename>tiff-3.8.2-108.9.i586.rpm</filename>
        </package>
        <package name="tiff" arch="ppc" version="3.8.2" release="108.9">
          <filename>tiff-3.8.2-108.9.ppc.rpm</filename>
        </package>
        <package name="tiff" arch="x86_64" version="3.8.2" release="108.9">
          <filename>tiff-3.8.2-108.9.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="348850c847958feac3c8403531f82212"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="2522">
  <id>viewvc</id>
  <title>viewvc: Fix exceptions on various cases</title>
  <release>openSUSE 11.0</release>
  <issued date="1276004130"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=612090" id="612090" title="bug number 612090" type="bugzilla"/>
  </references>
  <description>This updates viewvc to version 1.0.12:

* fix exception caused by trying to HTML-escape non-string
  data
</description>
  <pkglist>
    <collection>
        <package name="viewvc" arch="i586" version="1.0.12" release="0.1">
          <filename>viewvc-1.0.12-0.1.i586.rpm</filename>
        </package>
        <package name="viewvc" arch="ppc" version="1.0.12" release="0.1">
          <filename>viewvc-1.0.12-0.1.ppc.rpm</filename>
        </package>
        <package name="viewvc" arch="x86_64" version="1.0.12" release="0.1">
          <filename>viewvc-1.0.12-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="d149b8184dac12090be8d66efc061f61"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2534">
  <id>lftp</id>
  <title>lftp: fixed a http client unexpected download filename vulnerability</title>
  <release>openSUSE 11.0</release>
  <issued date="1276164608"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=606319" id="606319" title="bug number 606319" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2251" id="CVE-2010-2251" title="CVE-2010-2251" type="cve"/>
  </references>
  <description>This update of lftp improves the filename handling of
downloaded files to avoid downloading arbitrary content to
unexpected locations (like .login). (CVE-2010-2251)
</description>
  <pkglist>
    <collection>
        <package name="lftp" arch="i586" version="3.6.3" release="28.2">
          <filename>lftp-3.6.3-28.2.i586.rpm</filename>
        </package>
        <package name="lftp" arch="ppc" version="3.6.3" release="28.2">
          <filename>lftp-3.6.3-28.2.ppc.rpm</filename>
        </package>
        <package name="lftp" arch="x86_64" version="3.6.3" release="28.2">
          <filename>lftp-3.6.3-28.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="0b70a32cb2a5171eb2b7da8e0d25e4e5"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2384">
  <id>bytefx-data-mysql</id>
  <title>mono security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1271932615"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=592428" id="592428" title="bug number 592428" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1459" id="CVE-2010-1459" title="CVE-2010-1459" type="cve"/>
  </references>
  <description>Mono's ASP.NET implementation did not set the
'EnableViewStateMac' property by default. Attackers could
exploit that to conduct cross-site-scripting (XSS) attacks.
</description>
  <pkglist>
    <collection>
        <package name="bytefx-data-mysql" arch="i586" version="1.9.1" release="6.8">
          <filename>bytefx-data-mysql-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="bytefx-data-mysql" arch="ppc" version="1.9.1" release="6.8">
          <filename>bytefx-data-mysql-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="bytefx-data-mysql" arch="x86_64" version="1.9.1" release="6.8">
          <filename>bytefx-data-mysql-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="ibm-data-db2" arch="i586" version="1.9.1" release="6.8">
          <filename>ibm-data-db2-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="ibm-data-db2" arch="ppc" version="1.9.1" release="6.8">
          <filename>ibm-data-db2-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="ibm-data-db2" arch="x86_64" version="1.9.1" release="6.8">
          <filename>ibm-data-db2-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-complete" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-complete-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-complete" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-complete-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-complete" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-complete-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-core" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-core-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-core" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-core-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-core" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-core-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-core-32bit" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-core-32bit-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-data" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-data-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-data" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-data-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-data" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-data-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-data-firebird" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-data-firebird-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-data-firebird" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-data-firebird-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-data-firebird" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-data-firebird-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-data-oracle" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-data-oracle-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-data-oracle" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-data-oracle-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-data-oracle" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-data-oracle-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-data-postgresql" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-data-postgresql-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-data-postgresql" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-data-postgresql-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-data-postgresql" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-data-postgresql-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-data-sqlite" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-data-sqlite-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-data-sqlite" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-data-sqlite-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-data-sqlite" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-data-sqlite-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-data-sybase" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-data-sybase-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-data-sybase" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-data-sybase-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-data-sybase" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-data-sybase-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-devel" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-devel-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-devel" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-devel-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-devel" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-devel-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-extras" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-extras-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-extras" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-extras-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-extras" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-extras-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-jscript" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-jscript-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-jscript" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-jscript-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-jscript" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-jscript-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-locale-extras" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-locale-extras-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-locale-extras" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-locale-extras-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-locale-extras" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-locale-extras-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-nunit" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-nunit-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-nunit" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-nunit-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-nunit" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-nunit-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-web" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-web-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-web" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-web-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-web" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-web-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="mono-winforms" arch="i586" version="1.9.1" release="6.8">
          <filename>mono-winforms-1.9.1-6.8.i586.rpm</filename>
        </package>
        <package name="mono-winforms" arch="ppc" version="1.9.1" release="6.8">
          <filename>mono-winforms-1.9.1-6.8.ppc.rpm</filename>
        </package>
        <package name="mono-winforms" arch="x86_64" version="1.9.1" release="6.8">
          <filename>mono-winforms-1.9.1-6.8.x86_64.rpm</filename>
        </package>
        <package name="monodoc-core" arch="noarch" version="1.9" release="18.1">
          <filename>monodoc-core-1.9-18.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="7b8947e2bd94417dd3f038ed911cba0b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2543">
  <id>cifs-mount</id>
  <title>samba: Fixed various security issues</title>
  <release>openSUSE 11.0</release>
  <issued date="1276469168"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=611927" id="611927" title="bug number 611927" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=606947" id="606947" title="bug number 606947" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=577868" id="577868" title="bug number 577868" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=605935" id="605935" title="bug number 605935" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=550002" id="550002" title="bug number 550002" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2063" id="CVE-2010-2063" title="CVE-2010-2063" type="cve"/>
  </references>
  <description>This update of the Samba server package fixes security
issues and bugs.

Following security issues were fixed: CVE-2010-2063: A
buffer overrun was possible in chain_reply code in 3.3.x
and below, which could be used to crash the samba server or
potentially execute code.

CVE-2010-0787: Take extra care that a mount point of
mount.cifs isn't changed during mount.

Also the following bugs were fixed:
- Honor &quot;interfaces&quot; list in net ad dns register.
  (bnc#606947)
- An uninitialized variable read could cause an smbd crash;
  (bso#7254); (bnc#605935).
</description>
  <pkglist>
    <collection>
        <package name="cifs-mount" arch="i586" version="3.2.4" release="4.12">
          <filename>cifs-mount-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="cifs-mount" arch="ppc" version="3.2.4" release="4.12">
          <filename>cifs-mount-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="cifs-mount" arch="x86_64" version="3.2.4" release="4.12">
          <filename>cifs-mount-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="ldapsmb" arch="i586" version="1.34b" release="195.17">
          <filename>ldapsmb-1.34b-195.17.i586.rpm</filename>
        </package>
        <package name="ldapsmb" arch="ppc" version="1.34b" release="195.17">
          <filename>ldapsmb-1.34b-195.17.ppc.rpm</filename>
        </package>
        <package name="ldapsmb" arch="x86_64" version="1.34b" release="195.17">
          <filename>ldapsmb-1.34b-195.17.x86_64.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="i586" version="3.2.4" release="4.12">
          <filename>libnetapi-devel-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="ppc" version="3.2.4" release="4.12">
          <filename>libnetapi-devel-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libnetapi-devel" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libnetapi-devel-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libnetapi0" arch="i586" version="3.2.4" release="4.12">
          <filename>libnetapi0-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libnetapi0" arch="ppc" version="3.2.4" release="4.12">
          <filename>libnetapi0-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libnetapi0" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libnetapi0-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="i586" version="3.2.4" release="4.12">
          <filename>libsmbclient-devel-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="ppc" version="3.2.4" release="4.12">
          <filename>libsmbclient-devel-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libsmbclient-devel" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libsmbclient-devel-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="i586" version="3.2.4" release="4.12">
          <filename>libsmbclient0-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="ppc" version="3.2.4" release="4.12">
          <filename>libsmbclient0-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libsmbclient0" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libsmbclient0-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-32bit" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libsmbclient0-32bit-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libsmbclient0-64bit" arch="ppc" version="3.2.4" release="4.12">
          <filename>libsmbclient0-64bit-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="i586" version="3.2.4" release="4.12">
          <filename>libsmbsharemodes-devel-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="ppc" version="3.2.4" release="4.12">
          <filename>libsmbsharemodes-devel-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes-devel" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libsmbsharemodes-devel-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="i586" version="3.2.4" release="4.12">
          <filename>libsmbsharemodes0-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="ppc" version="3.2.4" release="4.12">
          <filename>libsmbsharemodes0-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libsmbsharemodes0" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libsmbsharemodes0-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="i586" version="3.2.4" release="4.12">
          <filename>libtalloc-devel-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="ppc" version="3.2.4" release="4.12">
          <filename>libtalloc-devel-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libtalloc-devel" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libtalloc-devel-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1" arch="i586" version="3.2.4" release="4.12">
          <filename>libtalloc1-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libtalloc1" arch="ppc" version="3.2.4" release="4.12">
          <filename>libtalloc1-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libtalloc1" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libtalloc1-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-32bit" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libtalloc1-32bit-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libtalloc1-64bit" arch="ppc" version="3.2.4" release="4.12">
          <filename>libtalloc1-64bit-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="i586" version="3.2.4" release="4.12">
          <filename>libtdb-devel-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="ppc" version="3.2.4" release="4.12">
          <filename>libtdb-devel-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libtdb-devel" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libtdb-devel-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libtdb1" arch="i586" version="3.2.4" release="4.12">
          <filename>libtdb1-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libtdb1" arch="ppc" version="3.2.4" release="4.12">
          <filename>libtdb1-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libtdb1" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libtdb1-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-32bit" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libtdb1-32bit-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libtdb1-64bit" arch="ppc" version="3.2.4" release="4.12">
          <filename>libtdb1-64bit-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="i586" version="3.2.4" release="4.12">
          <filename>libwbclient-devel-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="ppc" version="3.2.4" release="4.12">
          <filename>libwbclient-devel-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libwbclient-devel" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libwbclient-devel-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0" arch="i586" version="3.2.4" release="4.12">
          <filename>libwbclient0-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="libwbclient0" arch="ppc" version="3.2.4" release="4.12">
          <filename>libwbclient0-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="libwbclient0" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libwbclient0-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-32bit" arch="x86_64" version="3.2.4" release="4.12">
          <filename>libwbclient0-32bit-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="libwbclient0-64bit" arch="ppc" version="3.2.4" release="4.12">
          <filename>libwbclient0-64bit-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="samba" arch="i586" version="3.2.4" release="4.12">
          <filename>samba-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="samba" arch="ppc" version="3.2.4" release="4.12">
          <filename>samba-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="samba" arch="x86_64" version="3.2.4" release="4.12">
          <filename>samba-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="samba-32bit" arch="x86_64" version="3.2.4" release="4.12">
          <filename>samba-32bit-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="samba-64bit" arch="ppc" version="3.2.4" release="4.12">
          <filename>samba-64bit-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="i586" version="3.2.4" release="4.12">
          <filename>samba-client-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="samba-client" arch="ppc" version="3.2.4" release="4.12">
          <filename>samba-client-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="samba-client" arch="x86_64" version="3.2.4" release="4.12">
          <filename>samba-client-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="samba-client-32bit" arch="x86_64" version="3.2.4" release="4.12">
          <filename>samba-client-32bit-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="samba-client-64bit" arch="ppc" version="3.2.4" release="4.12">
          <filename>samba-client-64bit-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="i586" version="3.2.4" release="4.12">
          <filename>samba-devel-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="samba-devel" arch="ppc" version="3.2.4" release="4.12">
          <filename>samba-devel-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="samba-devel" arch="x86_64" version="3.2.4" release="4.12">
          <filename>samba-devel-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="i586" version="3.2.4" release="4.12">
          <filename>samba-krb-printing-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="ppc" version="3.2.4" release="4.12">
          <filename>samba-krb-printing-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="samba-krb-printing" arch="x86_64" version="3.2.4" release="4.12">
          <filename>samba-krb-printing-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind" arch="i586" version="3.2.4" release="4.12">
          <filename>samba-winbind-3.2.4-4.12.i586.rpm</filename>
        </package>
        <package name="samba-winbind" arch="ppc" version="3.2.4" release="4.12">
          <filename>samba-winbind-3.2.4-4.12.ppc.rpm</filename>
        </package>
        <package name="samba-winbind" arch="x86_64" version="3.2.4" release="4.12">
          <filename>samba-winbind-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-32bit" arch="x86_64" version="3.2.4" release="4.12">
          <filename>samba-winbind-32bit-3.2.4-4.12.x86_64.rpm</filename>
        </package>
        <package name="samba-winbind-64bit" arch="ppc" version="3.2.4" release="4.12">
          <filename>samba-winbind-64bit-3.2.4-4.12.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6685d2c578c4715cbdac8c7840bf7447"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2492">
  <id>libvorbis</id>
  <title>libvorbis: memory corruption while parsing ogg files</title>
  <release>openSUSE 11.0</release>
  <issued date="1275043883"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=608192" id="608192" title="bug number 608192" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2663" id="CVE-2009-2663" title="CVE-2009-2663" type="cve"/>
  </references>
  <description>This update of libvorbis fixes a memory corruption while
parsing OGG files. This bug was exploitable by remote
attackers to cause an application crash and could probably
be exploited to execute arbitrary code. CVE-2009-2663: CVSS
v2 Base Score: 6.8 (important)
(AV:N/AC:M/Au:N/C:P/I:P/A:P): Resource Management Errors
(CWE-399)
</description>
  <pkglist>
    <collection>
        <package name="libvorbis" arch="i586" version="1.2.0" release="53.3">
          <filename>libvorbis-1.2.0-53.3.i586.rpm</filename>
        </package>
        <package name="libvorbis" arch="ppc" version="1.2.0" release="53.3">
          <filename>libvorbis-1.2.0-53.3.ppc.rpm</filename>
        </package>
        <package name="libvorbis" arch="x86_64" version="1.2.0" release="53.3">
          <filename>libvorbis-1.2.0-53.3.x86_64.rpm</filename>
        </package>
        <package name="libvorbis-32bit" arch="x86_64" version="1.2.0" release="53.3">
          <filename>libvorbis-32bit-1.2.0-53.3.x86_64.rpm</filename>
        </package>
        <package name="libvorbis-64bit" arch="ppc" version="1.2.0" release="53.3">
          <filename>libvorbis-64bit-1.2.0-53.3.ppc.rpm</filename>
        </package>
        <package name="libvorbis-devel" arch="i586" version="1.2.0" release="53.3">
          <filename>libvorbis-devel-1.2.0-53.3.i586.rpm</filename>
        </package>
        <package name="libvorbis-devel" arch="ppc" version="1.2.0" release="53.3">
          <filename>libvorbis-devel-1.2.0-53.3.ppc.rpm</filename>
        </package>
        <package name="libvorbis-devel" arch="x86_64" version="1.2.0" release="53.3">
          <filename>libvorbis-devel-1.2.0-53.3.x86_64.rpm</filename>
        </package>
        <package name="libvorbis-doc" arch="i586" version="1.2.0" release="53.3">
          <filename>libvorbis-doc-1.2.0-53.3.i586.rpm</filename>
        </package>
        <package name="libvorbis-doc" arch="ppc" version="1.2.0" release="53.3">
          <filename>libvorbis-doc-1.2.0-53.3.ppc.rpm</filename>
        </package>
        <package name="libvorbis-doc" arch="x86_64" version="1.2.0" release="53.3">
          <filename>libvorbis-doc-1.2.0-53.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b632d7404868da391fcf0ea6e910e1e2"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2642">
  <id>kvirc</id>
  <title>KVIrc: format string and directory traversal vulnerability</title>
  <release>openSUSE 11.0</release>
  <issued date="1278086310"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=613163" id="613163" title="bug number 613163" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2451" id="CVE-2010-2451" title="CVE-2010-2451" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2452" id="CVE-2010-2452" title="CVE-2010-2452" type="cve"/>
  </references>
  <description>This update of KVirc fixes a remotely exploitable format
string and directory traversal vulnerability
(CVE-2010-2451, CVE-2010-2452).
</description>
  <pkglist>
    <collection>
        <package name="kvirc" arch="i586" version="3.2.6" release="186.2">
          <filename>kvirc-3.2.6-186.2.i586.rpm</filename>
        </package>
        <package name="kvirc" arch="ppc" version="3.2.6" release="186.2">
          <filename>kvirc-3.2.6-186.2.ppc.rpm</filename>
        </package>
        <package name="kvirc" arch="x86_64" version="3.2.6" release="186.2">
          <filename>kvirc-3.2.6-186.2.x86_64.rpm</filename>
        </package>
        <package name="kvirc-devel" arch="i586" version="3.2.6" release="186.2">
          <filename>kvirc-devel-3.2.6-186.2.i586.rpm</filename>
        </package>
        <package name="kvirc-devel" arch="ppc" version="3.2.6" release="186.2">
          <filename>kvirc-devel-3.2.6-186.2.ppc.rpm</filename>
        </package>
        <package name="kvirc-devel" arch="x86_64" version="3.2.6" release="186.2">
          <filename>kvirc-devel-3.2.6-186.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="53b9f1d7a183738f7384e1ca35aa996b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2595">
  <id>MozillaFirefox</id>
  <title>MozillaFirefox: Security update to version 3.5.10</title>
  <release>openSUSE 11.0</release>
  <issued date="1277477031"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=603356" id="603356" title="bug number 603356" type="bugzilla"/>
  </references>
  <description>Mozilla Firefox was updated to version 3.5.10, fixing
various bugs and security issues.

MFSA 2010-33 / CVE-2008-5913: Security researcher Amit
Klein reported that it was possible to reverse engineer the
value used to seed Math.random(). Since the pseudo-random
number generator was only seeded once per browsing session,
this seed value could be used as a unique token to identify
and track users across different web sites.

MFSA 2010-32 / CVE-2010-1197: Security researcher Ilja van
Sprundel of IOActive reported that the Content-Disposition:
attachment HTTP header was ignored when Content-Type:
multipart was also present. This issue could potentially
lead to XSS problems in sites that allow users to upload
arbitrary files and specify a Content-Type but rely on
Content-Disposition: attachment to prevent the content from
being displayed inline.

MFSA 2010-31 / CVE-2010-1125: Google security researcher
Michal Zalewski reported that focus() could be used to
change a user's cursor focus while they are typing,
potentially directing their keyboard input to an unintended
location. This behaviour was also present across origins
when content from one domain was embedded within another
via an iframe. A malicious web page could use this
behaviour to steal keystrokes from a victim while they were
typing sensitive information such as a password.

MFSA 2010-30 / CVE-2010-1199: Security researcher Martin
Barbella reported via TippingPoint's Zero Day Initiative
that an XSLT node sorting routine contained an integer
overflow vulnerability. In cases where one of the nodes to
be sorted contained a very large text value, the integer
used to allocate a memory buffer to store its value would
overflow, resulting in too small a buffer being created. An
attacker could use this vulnerability to write data past
the end of the buffer, causing the browser to crash and
potentially running arbitrary code on a victim's computer.

MFSA 2010-29 / CVE-2010-1196: Security researcher Nils of
MWR InfoSecurity reported that the routine for setting the
text value for certain types of DOM nodes contained an
integer overflow vulnerability. When a very long string was
passed to this routine, the integer value used in creating
a new memory buffer to hold the string would overflow,
resulting in too small a buffer being allocated. An
attacker could use this vulnerability to write data past
the end of the buffer, causing a crash and potentially
running arbitrary code on a victim's computer.

MFSA 2010-28 / CVE-2010-1198: Microsoft Vulnerability
Research reported that two plugin instances could interact
in a way in which one plugin gets a reference to an object
owned by a second plugin and continues to hold that
reference after the second plugin is unloaded and its
object is destroyed. In these cases, the first plugin would
contain a pointer to freed memory which, if accessed, could
be used by an attacker to execute arbitrary code on a
victim's computer.

MFSA 2010-27 / CVE-2010-0183: Security researcher wushi of
team509 reported that the frame construction process for
certain types of menus could result in a menu containing a
pointer to a previously freed menu item. During the cycle
collection process, this freed item could be accessed,
resulting in the execution of a section of code potentially
controlled by an attacker.

MFSA 2010-26 / CVE-2010-1200 / CVE-2010-1201 /
CVE-2010-1202 / CVE-2010-1203: Mozilla developers
identified and fixed several stability bugs in the browser
engine used in Firefox and other Mozilla-based products.
Some of these crashes showed evidence of memory corruption
under certain circumstances, and we presume that with
enough effort at least some of these could be exploited to
run arbitrary code.

MFSA 2010-25 / CVE-2010-1121: A memory corruption flaw
leading to code execution was reported by security
researcher Nils of MWR InfoSecurity during the 2010 Pwn2Own
contest sponsored by TippingPoint's Zero Day Initiative. By
moving DOM nodes between documents Nils found a case where
the moved node incorrectly retained its old scope. If
garbage collection could be triggered at the right time
then Firefox would later use this freed object. The contest
winning exploit only affects Firefox 3.6 and not earlier
versions. Updated (June 22, 2010): Firefox 3.5, SeaMonkey
2.0, and Thunderbird 3.0 based on earlier versions of the
browser engine were patched just in case there is an
alternate way of triggering the underlying flaw.
</description>
  <pkglist>
    <collection>
        <package name="MozillaFirefox" arch="i586" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-3.5.10-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="ppc" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-3.5.10-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox" arch="x86_64" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-3.5.10-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-branding-upstream" arch="i586" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-branding-upstream-3.5.10-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-branding-upstream" arch="ppc" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-branding-upstream-3.5.10-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-branding-upstream" arch="x86_64" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-branding-upstream-3.5.10-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-common" arch="i586" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-translations-common-3.5.10-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-common" arch="ppc" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-translations-common-3.5.10-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-common" arch="x86_64" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-translations-common-3.5.10-0.1.x86_64.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-other" arch="i586" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-translations-other-3.5.10-0.1.i586.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-other" arch="ppc" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-translations-other-3.5.10-0.1.ppc.rpm</filename>
        </package>
        <package name="MozillaFirefox-translations-other" arch="x86_64" version="3.5.10" release="0.1">
          <filename>MozillaFirefox-translations-other-3.5.10-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191" arch="i586" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-1.9.1.10-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191" arch="ppc" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-1.9.1.10-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191" arch="x86_64" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-1.9.1.10-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-32bit" arch="x86_64" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-32bit-1.9.1.10-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-64bit" arch="ppc" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-64bit-1.9.1.10-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-devel" arch="i586" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-devel-1.9.1.10-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-devel" arch="ppc" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-devel-1.9.1.10-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-devel" arch="x86_64" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-devel-1.9.1.10-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-gnomevfs" arch="i586" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-gnomevfs-1.9.1.10-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-gnomevfs" arch="ppc" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-gnomevfs-1.9.1.10-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-gnomevfs" arch="x86_64" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-gnomevfs-1.9.1.10-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-gnomevfs-32bit" arch="x86_64" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-gnomevfs-32bit-1.9.1.10-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-gnomevfs-64bit" arch="ppc" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-gnomevfs-64bit-1.9.1.10-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-common" arch="i586" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-translations-common-1.9.1.10-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-common" arch="ppc" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-translations-common-1.9.1.10-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-common" arch="x86_64" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-translations-common-1.9.1.10-0.1.x86_64.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-other" arch="i586" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-translations-other-1.9.1.10-0.1.i586.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-other" arch="ppc" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-translations-other-1.9.1.10-0.1.ppc.rpm</filename>
        </package>
        <package name="mozilla-xulrunner191-translations-other" arch="x86_64" version="1.9.1.10" release="0.1">
          <filename>mozilla-xulrunner191-translations-other-1.9.1.10-0.1.x86_64.rpm</filename>
        </package>
        <package name="python-xpcom191" arch="i586" version="1.9.1.10" release="0.1">
          <filename>python-xpcom191-1.9.1.10-0.1.i586.rpm</filename>
        </package>
        <package name="python-xpcom191" arch="ppc" version="1.9.1.10" release="0.1">
          <filename>python-xpcom191-1.9.1.10-0.1.ppc.rpm</filename>
        </package>
        <package name="python-xpcom191" arch="x86_64" version="1.9.1.10" release="0.1">
          <filename>python-xpcom191-1.9.1.10-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="b022c5d4675fec8f6a6f0dbc0d174533"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2664">
  <id>acroread</id>
  <title>acroread: Update to security fix release 9.3.3</title>
  <release>openSUSE 11.0</release>
  <issued date="1278570806"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=612064" id="612064" title="bug number 612064" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1297" id="CVE-2010-1297" title="CVE-2010-1297" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1240" id="CVE-2010-1240" title="CVE-2010-1240" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1285" id="CVE-2010-1285" title="CVE-2010-1285" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1295" id="CVE-2010-1295" title="CVE-2010-1295" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2168" id="CVE-2010-2168" title="CVE-2010-2168" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2201" id="CVE-2010-2201" title="CVE-2010-2201" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2202" id="CVE-2010-2202" title="CVE-2010-2202" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2203" id="CVE-2010-2203" title="CVE-2010-2203" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2204" id="CVE-2010-2204" title="CVE-2010-2204" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2205" id="CVE-2010-2205" title="CVE-2010-2205" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2206" id="CVE-2010-2206" title="CVE-2010-2206" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2207" id="CVE-2010-2207" title="CVE-2010-2207" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2208" id="CVE-2010-2208" title="CVE-2010-2208" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2209" id="CVE-2010-2209" title="CVE-2010-2209" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2210" id="CVE-2010-2210" title="CVE-2010-2210" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2211" id="CVE-2010-2211" title="CVE-2010-2211" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2212" id="CVE-2010-2212" title="CVE-2010-2212" type="cve"/>
  </references>
  <description>Specially crafted PDF documents could crash acroread or
lead to execution of arbitrary code (CVE-2010-1297,
CVE-2010-1240, CVE-2010-1285, CVE-2010-1295, CVE-2010-2168,
CVE-2010-2201, CVE-2010-2202, CVE-2010-2203, CVE-2010-2204,
CVE-2010-2205, CVE-2010-2206, CVE-2010-2207, CVE-2010-2208,
CVE-2010-2209, CVE-2010-2210, CVE-2010-2211, CVE-2010-2212).
</description>
  <pkglist>
    <collection>
        <package name="acroread" arch="i586" version="9.3.3" release="2.1">
          <filename>acroread-9.3.3-2.1.i586.rpm</filename>
        </package>
        <package name="acroread-cmaps" arch="noarch" version="9.3.3" release="2.1">
          <filename>acroread-cmaps-9.3.3-2.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-ja" arch="noarch" version="9.3.3" release="2.1">
          <filename>acroread-fonts-ja-9.3.3-2.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-ko" arch="noarch" version="9.3.3" release="2.1">
          <filename>acroread-fonts-ko-9.3.3-2.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-zh_CN" arch="noarch" version="9.3.3" release="2.1">
          <filename>acroread-fonts-zh_CN-9.3.3-2.1.noarch.rpm</filename>
        </package>
        <package name="acroread-fonts-zh_TW" arch="noarch" version="9.3.3" release="2.1">
          <filename>acroread-fonts-zh_TW-9.3.3-2.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="6a1b83e76c19f1f0ea24434c998950cd"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2691">
  <id>moodle</id>
  <title>moodle security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1278694324"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=616186" id="616186" title="bug number 616186" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2228" id="CVE-2010-2228" title="CVE-2010-2228" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2229" id="CVE-2010-2229" title="CVE-2010-2229" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2230" id="CVE-2010-2230" title="CVE-2010-2230" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2231" id="CVE-2010-2231" title="CVE-2010-2231" type="cve"/>
  </references>
  <description>Moodle was prone to several Cross-Site Scripting (XSS)
vulnerabilities (CVE-2010-2228, CVE-2010-2229,
CVE-2010-2230, CVE-2010-2231).
</description>
  <pkglist>
    <collection>
        <package name="moodle" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-af" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-af-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ar" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-ar-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-be" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-be-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-bg" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-bg-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-bs" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-bs-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ca" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-ca-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-cs" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-cs-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-da" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-da-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-de" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-de-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-de_du" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-de_du-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-el" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-el-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-es" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-es-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-et" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-et-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-eu" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-eu-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-fa" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-fa-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-fi" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-fi-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-fr" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-fr-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ga" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-ga-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-gl" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-gl-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-he" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-he-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-hi" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-hi-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-hr" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-hr-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-hu" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-hu-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-id" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-id-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-is" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-is-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-it" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-it-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ja" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-ja-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ka" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-ka-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-km" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-km-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-kn" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-kn-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ko" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-ko-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-lt" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-lt-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-lv" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-lv-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-mi_tn" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-mi_tn-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ms" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-ms-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-nl" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-nl-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-nn" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-nn-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-no" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-no-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-pl" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-pl-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-pt" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-pt-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ro" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-ro-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-ru" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-ru-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sk" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-sk-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sl" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-sl-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-so" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-so-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sq" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-sq-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sr" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-sr-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-sv" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-sv-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-th" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-th-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-tl" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-tl-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-tr" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-tr-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-uk" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-uk-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-vi" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-vi-1.9.9-0.1.noarch.rpm</filename>
        </package>
        <package name="moodle-zh_cn" arch="noarch" version="1.9.9" release="0.1">
          <filename>moodle-zh_cn-1.9.9-0.1.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c55784a0bd50d969d6cd3ad09187b43b"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2702">
  <id>otrs</id>
  <title>otrs: Fixed a vulnerability in OTRS-Core that allowed SQL-Injection</title>
  <release>openSUSE 11.0</release>
  <issued date="1278635027"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=576066" id="576066" title="bug number 576066" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0438" id="CVE-2010-0438" title="CVE-2010-0438" type="cve"/>
  </references>
  <description>OTRS was prone to multiple SQL-injection vulnerabilities
which could allow remote authenticated attackers to execute
arbitrary SQL code via unspecified vectors.(CVE-2010-0438).
</description>
  <pkglist>
    <collection>
        <package name="otrs" arch="i586" version="2.2.6" release="15.3">
          <filename>otrs-2.2.6-15.3.i586.rpm</filename>
        </package>
        <package name="otrs" arch="ppc" version="2.2.6" release="15.3">
          <filename>otrs-2.2.6-15.3.ppc.rpm</filename>
        </package>
        <package name="otrs" arch="x86_64" version="2.2.6" release="15.3">
          <filename>otrs-2.2.6-15.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="899579e6feb8563f5e72bf79a2b3768c"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2472">
  <id>postgresql</id>
  <title>postgresql: security update to fix four vulnerabilities</title>
  <release>openSUSE 11.0</release>
  <issued date="1274746422"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=607778" id="607778" title="bug number 607778" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=588996" id="588996" title="bug number 588996" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=605845" id="605845" title="bug number 605845" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=605926" id="605926" title="bug number 605926" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1975" id="CVE-2010-1975" title="CVE-2010-1975" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1169" id="CVE-2010-1169" title="CVE-2010-1169" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1170" id="CVE-2010-1170" title="CVE-2010-1170" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0733" id="CVE-2010-0733" title="CVE-2010-0733" type="cve"/>
  </references>
  <description>This update of postgresql was pblished to fix several minor
security vulnerabilities:
- CVE-2010-1975: postgresql does not properly check
  privileges during certain RESET ALL operations, which
  allows remote authenticated users to remove arbitrary
  parameter settings.
- CVE-2010-1170: The PL/Tcl implementation in postgresql
  loads Tcl code from the pltcl_modules table regardless of
  the table's ownership and permissions, which allows
  remote authenticated users, with database-creation
  privileges, to execute arbitrary Tcl code.
- CVE-2010-1169: Postgresql does not properly restrict
  PL/perl procedures, which allows remote authenticated
  users, with database-creation privileges, to execute
  arbitrary Perl code via a crafted script.
- CVE-2010-0733: An integer overflow in postgresql allows
  remote authenticated users to crash the daemon via a
  SELECT statement.
</description>
  <pkglist>
    <collection>
        <package name="postgresql" arch="i586" version="8.3.11" release="0.1">
          <filename>postgresql-8.3.11-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql" arch="ppc" version="8.3.11" release="0.1">
          <filename>postgresql-8.3.11-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql" arch="ppc64" version="8.3.11" release="0.1">
          <filename>postgresql-8.3.11-0.1.ppc64.rpm</filename>
        </package>
        <package name="postgresql" arch="x86_64" version="8.3.11" release="0.1">
          <filename>postgresql-8.3.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="i586" version="8.3.11" release="0.1">
          <filename>postgresql-contrib-8.3.11-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="ppc" version="8.3.11" release="0.1">
          <filename>postgresql-contrib-8.3.11-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-contrib" arch="x86_64" version="8.3.11" release="0.1">
          <filename>postgresql-contrib-8.3.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="i586" version="8.3.11" release="0.1">
          <filename>postgresql-devel-8.3.11-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="ppc" version="8.3.11" release="0.1">
          <filename>postgresql-devel-8.3.11-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-devel" arch="x86_64" version="8.3.11" release="0.1">
          <filename>postgresql-devel-8.3.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="i586" version="8.3.11" release="0.1">
          <filename>postgresql-docs-8.3.11-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="ppc" version="8.3.11" release="0.1">
          <filename>postgresql-docs-8.3.11-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-docs" arch="x86_64" version="8.3.11" release="0.1">
          <filename>postgresql-docs-8.3.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="i586" version="8.3.11" release="0.1">
          <filename>postgresql-libs-8.3.11-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="ppc" version="8.3.11" release="0.1">
          <filename>postgresql-libs-8.3.11-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-libs" arch="x86_64" version="8.3.11" release="0.1">
          <filename>postgresql-libs-8.3.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs-32bit" arch="x86_64" version="8.3.11" release="0.1">
          <filename>postgresql-libs-32bit-8.3.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-libs-64bit" arch="ppc" version="8.3.11" release="0.1">
          <filename>postgresql-libs-64bit-8.3.11-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-plperl" arch="i586" version="8.3.11" release="0.1">
          <filename>postgresql-plperl-8.3.11-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-plperl" arch="ppc" version="8.3.11" release="0.1">
          <filename>postgresql-plperl-8.3.11-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-plperl" arch="x86_64" version="8.3.11" release="0.1">
          <filename>postgresql-plperl-8.3.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-plpython" arch="i586" version="8.3.11" release="0.1">
          <filename>postgresql-plpython-8.3.11-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-plpython" arch="ppc" version="8.3.11" release="0.1">
          <filename>postgresql-plpython-8.3.11-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-plpython" arch="x86_64" version="8.3.11" release="0.1">
          <filename>postgresql-plpython-8.3.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-pltcl" arch="i586" version="8.3.11" release="0.1">
          <filename>postgresql-pltcl-8.3.11-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-pltcl" arch="ppc" version="8.3.11" release="0.1">
          <filename>postgresql-pltcl-8.3.11-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-pltcl" arch="x86_64" version="8.3.11" release="0.1">
          <filename>postgresql-pltcl-8.3.11-0.1.x86_64.rpm</filename>
        </package>
        <package name="postgresql-server" arch="i586" version="8.3.11" release="0.1">
          <filename>postgresql-server-8.3.11-0.1.i586.rpm</filename>
        </package>
        <package name="postgresql-server" arch="ppc" version="8.3.11" release="0.1">
          <filename>postgresql-server-8.3.11-0.1.ppc.rpm</filename>
        </package>
        <package name="postgresql-server" arch="x86_64" version="8.3.11" release="0.1">
          <filename>postgresql-server-8.3.11-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="73fe5fc7ef96164ae38c3be292808ef2"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2673">
  <id>opera</id>
  <title>opera: Upgrade to 10.60 release</title>
  <release>openSUSE 11.0</release>
  <issued date="1278591124"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=583620" id="583620" title="bug number 583620" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=607823" id="607823" title="bug number 607823" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=615942" id="615942" title="bug number 615942" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0653" id="CVE-2010-0653" title="CVE-2010-0653" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1993" id="CVE-2010-1993" title="CVE-2010-1993" type="cve"/>
  </references>
  <description>Opera was upgraded to the 10.60 release. 

It brings lots of new features, bugfixes and security fixes.

Security fixes include: CVE-2010-0653: Opera permits
cross-origin loading of CSS style sheets even when the
style sheet download has an incorrect MIME type and the
style sheet document is malformed, which allows remote HTTP
servers to obtain sensitive information via a crafted
document.

CVE-2010-1993: Opera 9.52 does not properly handle an
IFRAME element with a mailto: URL in its SRC attribute,
which allows remote attackers to cause a denial of service
(resource consumption) via an HTML document with many
IFRAME elements.
</description>
  <pkglist>
    <collection>
        <package name="opera" arch="i586" version="10.60" release="0.1">
          <filename>opera-10.60-0.1.i586.rpm</filename>
        </package>
        <package name="opera" arch="ppc" version="10.60" release="0.1">
          <filename>opera-10.60-0.1.ppc.rpm</filename>
        </package>
        <package name="opera" arch="x86_64" version="10.60" release="0.1">
          <filename>opera-10.60-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="c25f3ff8d819f77ea2fc8df702b63585"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="2299">
  <id>ksh</id>
  <title>ksh: Collective update for ksh</title>
  <release>openSUSE 11.0</release>
  <issued date="1271260061"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=520598" id="520598" title="bug number 520598" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=502622" id="502622" title="bug number 502622" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=523212" id="523212" title="bug number 523212" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=548558" id="548558" title="bug number 548558" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=555938" id="555938" title="bug number 555938" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=561405" id="561405" title="bug number 561405" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=564967" id="564967" title="bug number 564967" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=585244" id="585244" title="bug number 585244" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=591248" id="591248" title="bug number 591248" type="bugzilla"/>
  </references>
  <description>Collective update for ksh version 93t, including the
following fixes:

- #502622: ksh: assigning to SECONDS in a subshell causes
  corruption/crash
- #520598: memory leak in ksh
- #523212: ksh error when &quot;~user&quot; is used and NIS is enabled
- #555938: ksh cursor position regression
- #561405: ksh JM 93t+ 2009-01-20 bug
- #564967: Trap does not work on signals over 16 in ksh
- #585244: regression: ksh not detecting exit status
  correctly
- #591248: Unreliable results in ksh when trapping SIGCHILD
</description>
  <pkglist>
    <collection>
        <package name="ksh" arch="i586" version="93t" release="22.1">
          <filename>ksh-93t-22.1.i586.rpm</filename>
        </package>
        <package name="ksh" arch="ppc" version="93t" release="22.1">
          <filename>ksh-93t-22.1.ppc.rpm</filename>
        </package>
        <package name="ksh" arch="x86_64" version="93t" release="22.1">
          <filename>ksh-93t-22.1.x86_64.rpm</filename>
        </package>
        <package name="ksh-devel" arch="i586" version="93t" release="22.1">
          <filename>ksh-devel-93t-22.1.i586.rpm</filename>
        </package>
        <package name="ksh-devel" arch="ppc" version="93t" release="22.1">
          <filename>ksh-devel-93t-22.1.ppc.rpm</filename>
        </package>
        <package name="ksh-devel" arch="x86_64" version="93t" release="22.1">
          <filename>ksh-devel-93t-22.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="8b70f4a4045e31cbd61c0713610c321d"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2581">
  <id>OpenOffice_org</id>
  <title>OpenOffice: Security update  to fix a python macro execution problem</title>
  <release>openSUSE 11.0</release>
  <issued date="1277225649"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=607095" id="607095" title="bug number 607095" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0395" id="CVE-2010-0395" title="CVE-2010-0395" type="cve"/>
  </references>
  <description>This update of OpenOffice_org does not allow macros written
in Python to be executed without permission, CVE-2010-0395.
</description>
  <pkglist>
    <collection>
        <package name="OpenOffice_org" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-base-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-base-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-base" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-base-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-branding-upstream" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-branding-upstream-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-calc-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-calc-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-calc" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-calc-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-devel-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-devel-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-devel" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-devel-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-draw-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-draw-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-draw" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-draw-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-filters-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-filters-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-filters" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-filters-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-gnome" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-gnome-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-icon-themes-prebuilt" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-icon-themes-prebuilt-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-impress-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-impress-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-impress" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-impress-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-kde-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-kde-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-kde" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-kde-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-mailmerge" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-mailmerge-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-math-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-math-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-math" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-math-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-mono-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-mono-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-mono" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-mono-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-officebean" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-officebean-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-pyuno" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-pyuno-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-sdk-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-sdk-doc" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-sdk-doc-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-testtool" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-testtool-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="i586" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-writer-2.4.0.14-1.8.i586.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="ppc" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-writer-2.4.0.14-1.8.ppc.rpm</filename>
        </package>
        <package name="OpenOffice_org-writer" arch="x86_64" version="2.4.0.14" release="1.8">
          <filename>OpenOffice_org-writer-2.4.0.14-1.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="35e27e8ab98374f96a9ade8e7dcf18c7"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="2660">
  <id>libQtWebKit-devel</id>
  <title>libQtWebKit: Update to QtWebKit from 4.5.3</title>
  <release>openSUSE 11.0</release>
  <issued date="1278493835"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=600468" id="600468" title="bug number 600468" type="bugzilla"/>
  </references>
  <description>This update provides an update of QtWebKit rendering engine
to the one shipped in Qt 4.5.3, which fixes:

      Canvas (r40546, r41221 r41355, r42996, r43645) Memory
(r41527, r43764, r43828, r43830) JavaScript (r39882,
r40086, r40131, r40133) Rendering (r41285, r41296, r41659,
r42887) Network (r41664, r42516, r42747) Plugins (r41346,
r43550, r43915, r43917, r43923) Clipboard (r41360) SVG
(r43590, r43795)
  * Backported various security fixes (r41262, r41568,
    r41741, r41854, r42081, r42216, r42223, r42333, r42365,
    r42532, r42533, r44010)
</description>
  <pkglist>
    <collection>
        <package name="libQtWebKit-devel" arch="i586" version="4.4.0" release="12.8">
          <filename>libQtWebKit-devel-4.4.0-12.8.i586.rpm</filename>
        </package>
        <package name="libQtWebKit-devel" arch="ppc" version="4.4.0" release="12.8">
          <filename>libQtWebKit-devel-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libQtWebKit-devel" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libQtWebKit-devel-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libQtWebKit4" arch="i586" version="4.4.0" release="12.8">
          <filename>libQtWebKit4-4.4.0-12.8.i586.rpm</filename>
        </package>
        <package name="libQtWebKit4" arch="ppc" version="4.4.0" release="12.8">
          <filename>libQtWebKit4-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libQtWebKit4" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libQtWebKit4-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="libqt4-devel-doc" arch="i586" version="4.4.0" release="12.8">
          <filename>libqt4-devel-doc-4.4.0-12.8.i586.rpm</filename>
        </package>
        <package name="libqt4-devel-doc" arch="ppc" version="4.4.0" release="12.8">
          <filename>libqt4-devel-doc-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="libqt4-devel-doc" arch="x86_64" version="4.4.0" release="12.8">
          <filename>libqt4-devel-doc-4.4.0-12.8.x86_64.rpm</filename>
        </package>
        <package name="qt4-x11-tools" arch="i586" version="4.4.0" release="12.8">
          <filename>qt4-x11-tools-4.4.0-12.8.i586.rpm</filename>
        </package>
        <package name="qt4-x11-tools" arch="ppc" version="4.4.0" release="12.8">
          <filename>qt4-x11-tools-4.4.0-12.8.ppc.rpm</filename>
        </package>
        <package name="qt4-x11-tools" arch="x86_64" version="4.4.0" release="12.8">
          <filename>qt4-x11-tools-4.4.0-12.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="ff8769e766d1089fd9a64aa5f25ca888"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2559">
  <id>w3m</id>
  <title>w3m security update (CVE-2010-2074) to handle 0 characters in x509 certificates properly.</title>
  <release>openSUSE 11.0</release>
  <issued date="1276729143"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=609451" id="609451" title="bug number 609451" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2074" id="CVE-2010-2074" title="CVE-2010-2074" type="cve"/>
  </references>
  <description>w3m did not handle embedded nul characters in the common
name and in subject alternative names of x509 certificates.
CVE-2010-2074 has been assigned to this issue. This update
also turns on verification of x509 certificates by default
which was not the case before.
</description>
  <pkglist>
    <collection>
        <package name="w3m" arch="i586" version="0.5.2" release="90.2">
          <filename>w3m-0.5.2-90.2.i586.rpm</filename>
        </package>
        <package name="w3m" arch="ppc" version="0.5.2" release="90.2">
          <filename>w3m-0.5.2-90.2.ppc.rpm</filename>
        </package>
        <package name="w3m" arch="x86_64" version="0.5.2" release="90.2">
          <filename>w3m-0.5.2-90.2.x86_64.rpm</filename>
        </package>
        <package name="w3m-inline-image" arch="i586" version="0.5.2" release="90.2">
          <filename>w3m-inline-image-0.5.2-90.2.i586.rpm</filename>
        </package>
        <package name="w3m-inline-image" arch="ppc" version="0.5.2" release="90.2">
          <filename>w3m-inline-image-0.5.2-90.2.ppc.rpm</filename>
        </package>
        <package name="w3m-inline-image" arch="x86_64" version="0.5.2" release="90.2">
          <filename>w3m-inline-image-0.5.2-90.2.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="53dcf86ccf9ceb31c9c34c9897f38f21"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2478">
  <id>clamav</id>
  <title>clamav: remote denial of service</title>
  <release>openSUSE 11.0</release>
  <issued date="1274863636"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=608188" id="608188" title="bug number 608188" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1640" id="CVE-2010-1640" title="CVE-2010-1640" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1639" id="CVE-2010-1639" title="CVE-2010-1639" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2077" id="CVE-2010-2077" title="CVE-2010-2077" type="cve"/>
  </references>
  <description>This update fixes a off-by-one buffer overflow
(CVE-2010-1640) and a crash while parsing PDFs
(CVE-2010-1639, CVE-2010-2077) in clamav that can be used
as a remote denial of service attack.
</description>
  <pkglist>
    <collection>
        <package name="clamav" arch="i586" version="0.96.1" release="0.1">
          <filename>clamav-0.96.1-0.1.i586.rpm</filename>
        </package>
        <package name="clamav" arch="ppc" version="0.96.1" release="0.1">
          <filename>clamav-0.96.1-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav" arch="x86_64" version="0.96.1" release="0.1">
          <filename>clamav-0.96.1-0.1.x86_64.rpm</filename>
        </package>
        <package name="clamav-db" arch="i586" version="0.96.1" release="0.1">
          <filename>clamav-db-0.96.1-0.1.i586.rpm</filename>
        </package>
        <package name="clamav-db" arch="ppc" version="0.96.1" release="0.1">
          <filename>clamav-db-0.96.1-0.1.ppc.rpm</filename>
        </package>
        <package name="clamav-db" arch="x86_64" version="0.96.1" release="0.1">
          <filename>clamav-db-0.96.1-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="da80829c18d43b35cf418f9b90341347"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2705">
  <id>ghostscript-devel</id>
  <title>ghostscript security update</title>
  <release>openSUSE 11.0</release>
  <issued date="1278924803"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=605043" id="605043" title="bug number 605043" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=559122" id="559122" title="bug number 559122" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=608071" id="608071" title="bug number 608071" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1869" id="CVE-2010-1869" title="CVE-2010-1869" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1628" id="CVE-2010-1628" title="CVE-2010-1628" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4270" id="CVE-2009-4270" title="CVE-2009-4270" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2055" id="CVE-2010-2055" title="CVE-2010-2055" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4897" id="CVE-2009-4897" title="CVE-2009-4897" type="cve"/>
  </references>
  <description>Specially crafted postscript (.ps) files could cause buffer
overflows in ghostscript that could potentially be
exploited to execute arbitrary code (CVE-2010-1628,
CVE-2010-1869, CVE-2009-4270)

ghostscript by default read some initialization files from
the current working directory. Local attackers could
potentially exploit that to have other users execute
arbitrary commands by placing such files e.g. in /tmp
(CVE-2010-2055).
</description>
  <pkglist>
    <collection>
        <package name="ghostscript-devel" arch="i586" version="8.62" release="17.8">
          <filename>ghostscript-devel-8.62-17.8.i586.rpm</filename>
        </package>
        <package name="ghostscript-devel" arch="ppc" version="8.62" release="17.8">
          <filename>ghostscript-devel-8.62-17.8.ppc.rpm</filename>
        </package>
        <package name="ghostscript-devel" arch="x86_64" version="8.62" release="17.8">
          <filename>ghostscript-devel-8.62-17.8.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-fonts-other" arch="i586" version="8.62" release="17.8">
          <filename>ghostscript-fonts-other-8.62-17.8.i586.rpm</filename>
        </package>
        <package name="ghostscript-fonts-other" arch="ppc" version="8.62" release="17.8">
          <filename>ghostscript-fonts-other-8.62-17.8.ppc.rpm</filename>
        </package>
        <package name="ghostscript-fonts-other" arch="x86_64" version="8.62" release="17.8">
          <filename>ghostscript-fonts-other-8.62-17.8.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-fonts-rus" arch="i586" version="8.62" release="17.8">
          <filename>ghostscript-fonts-rus-8.62-17.8.i586.rpm</filename>
        </package>
        <package name="ghostscript-fonts-rus" arch="ppc" version="8.62" release="17.8">
          <filename>ghostscript-fonts-rus-8.62-17.8.ppc.rpm</filename>
        </package>
        <package name="ghostscript-fonts-rus" arch="x86_64" version="8.62" release="17.8">
          <filename>ghostscript-fonts-rus-8.62-17.8.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-fonts-std" arch="i586" version="8.62" release="17.8">
          <filename>ghostscript-fonts-std-8.62-17.8.i586.rpm</filename>
        </package>
        <package name="ghostscript-fonts-std" arch="ppc" version="8.62" release="17.8">
          <filename>ghostscript-fonts-std-8.62-17.8.ppc.rpm</filename>
        </package>
        <package name="ghostscript-fonts-std" arch="x86_64" version="8.62" release="17.8">
          <filename>ghostscript-fonts-std-8.62-17.8.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-ijs-devel" arch="i586" version="8.62" release="17.8">
          <filename>ghostscript-ijs-devel-8.62-17.8.i586.rpm</filename>
        </package>
        <package name="ghostscript-ijs-devel" arch="ppc" version="8.62" release="17.8">
          <filename>ghostscript-ijs-devel-8.62-17.8.ppc.rpm</filename>
        </package>
        <package name="ghostscript-ijs-devel" arch="x86_64" version="8.62" release="17.8">
          <filename>ghostscript-ijs-devel-8.62-17.8.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-library" arch="i586" version="8.62" release="17.8">
          <filename>ghostscript-library-8.62-17.8.i586.rpm</filename>
        </package>
        <package name="ghostscript-library" arch="ppc" version="8.62" release="17.8">
          <filename>ghostscript-library-8.62-17.8.ppc.rpm</filename>
        </package>
        <package name="ghostscript-library" arch="x86_64" version="8.62" release="17.8">
          <filename>ghostscript-library-8.62-17.8.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-omni" arch="i586" version="8.62" release="17.8">
          <filename>ghostscript-omni-8.62-17.8.i586.rpm</filename>
        </package>
        <package name="ghostscript-omni" arch="ppc" version="8.62" release="17.8">
          <filename>ghostscript-omni-8.62-17.8.ppc.rpm</filename>
        </package>
        <package name="ghostscript-omni" arch="x86_64" version="8.62" release="17.8">
          <filename>ghostscript-omni-8.62-17.8.x86_64.rpm</filename>
        </package>
        <package name="ghostscript-x11" arch="i586" version="8.62" release="17.8">
          <filename>ghostscript-x11-8.62-17.8.i586.rpm</filename>
        </package>
        <package name="ghostscript-x11" arch="ppc" version="8.62" release="17.8">
          <filename>ghostscript-x11-8.62-17.8.ppc.rpm</filename>
        </package>
        <package name="ghostscript-x11" arch="x86_64" version="8.62" release="17.8">
          <filename>ghostscript-x11-8.62-17.8.x86_64.rpm</filename>
        </package>
        <package name="libgimpprint" arch="i586" version="4.2.7" release="258.8">
          <filename>libgimpprint-4.2.7-258.8.i586.rpm</filename>
        </package>
        <package name="libgimpprint" arch="ppc" version="4.2.7" release="258.8">
          <filename>libgimpprint-4.2.7-258.8.ppc.rpm</filename>
        </package>
        <package name="libgimpprint" arch="x86_64" version="4.2.7" release="258.8">
          <filename>libgimpprint-4.2.7-258.8.x86_64.rpm</filename>
        </package>
        <package name="libgimpprint-devel" arch="i586" version="4.2.7" release="258.8">
          <filename>libgimpprint-devel-4.2.7-258.8.i586.rpm</filename>
        </package>
        <package name="libgimpprint-devel" arch="ppc" version="4.2.7" release="258.8">
          <filename>libgimpprint-devel-4.2.7-258.8.ppc.rpm</filename>
        </package>
        <package name="libgimpprint-devel" arch="x86_64" version="4.2.7" release="258.8">
          <filename>libgimpprint-devel-4.2.7-258.8.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="a44d335788d75bc971bbc2d7d544ba8f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2727">
  <id>openldap2</id>
  <title>openldap: fixed MODRDN DoS, replicating inconsistencies and \0 character-DoS</title>
  <release>openSUSE 11.0</release>
  <issued date="1278932107"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=612430" id="612430" title="bug number 612430" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0211" id="CVE-2010-0211" title="CVE-2010-0211" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0212" id="CVE-2010-0212" title="CVE-2010-0212" type="cve"/>
  </references>
  <description>The following issues have been fixed in OpenLDAP: specially
crafted MODRDN operations can crash the OpenLDAP server
(CVE-2010-0211 and CVE-2010-0212).
</description>
  <pkglist>
    <collection>
        <package name="openldap2" arch="i586" version="2.4.9" release="7.8">
          <filename>openldap2-2.4.9-7.8.i586.rpm</filename>
        </package>
        <package name="openldap2" arch="ppc" version="2.4.9" release="7.8">
          <filename>openldap2-2.4.9-7.8.ppc.rpm</filename>
        </package>
        <package name="openldap2" arch="x86_64" version="2.4.9" release="7.8">
          <filename>openldap2-2.4.9-7.8.x86_64.rpm</filename>
        </package>
        <package name="openldap2-back-meta" arch="i586" version="2.4.9" release="7.8">
          <filename>openldap2-back-meta-2.4.9-7.8.i586.rpm</filename>
        </package>
        <package name="openldap2-back-meta" arch="ppc" version="2.4.9" release="7.8">
          <filename>openldap2-back-meta-2.4.9-7.8.ppc.rpm</filename>
        </package>
        <package name="openldap2-back-meta" arch="x86_64" version="2.4.9" release="7.8">
          <filename>openldap2-back-meta-2.4.9-7.8.x86_64.rpm</filename>
        </package>
        <package name="openldap2-back-perl" arch="i586" version="2.4.9" release="7.8">
          <filename>openldap2-back-perl-2.4.9-7.8.i586.rpm</filename>
        </package>
        <package name="openldap2-back-perl" arch="ppc" version="2.4.9" release="7.8">
          <filename>openldap2-back-perl-2.4.9-7.8.ppc.rpm</filename>
        </package>
        <package name="openldap2-back-perl" arch="x86_64" version="2.4.9" release="7.8">
          <filename>openldap2-back-perl-2.4.9-7.8.x86_64.rpm</filename>
        </package>
        <package name="openldap2-client" arch="i586" version="2.4.9" release="7.8">
          <filename>openldap2-client-2.4.9-7.8.i586.rpm</filename>
        </package>
        <package name="openldap2-client" arch="ppc" version="2.4.9" release="7.8">
          <filename>openldap2-client-2.4.9-7.8.ppc.rpm</filename>
        </package>
        <package name="openldap2-client" arch="x86_64" version="2.4.9" release="7.8">
          <filename>openldap2-client-2.4.9-7.8.x86_64.rpm</filename>
        </package>
        <package name="openldap2-client-32bit" arch="x86_64" version="2.4.9" release="7.8">
          <filename>openldap2-client-32bit-2.4.9-7.8.x86_64.rpm</filename>
        </package>
        <package name="openldap2-client-64bit" arch="ppc" version="2.4.9" release="7.8">
          <filename>openldap2-client-64bit-2.4.9-7.8.ppc.rpm</filename>
        </package>
        <package name="openldap2-devel" arch="i586" version="2.4.9" release="7.8">
          <filename>openldap2-devel-2.4.9-7.8.i586.rpm</filename>
        </package>
        <package name="openldap2-devel" arch="ppc" version="2.4.9" release="7.8">
          <filename>openldap2-devel-2.4.9-7.8.ppc.rpm</filename>
        </package>
        <package name="openldap2-devel" arch="x86_64" version="2.4.9" release="7.8">
          <filename>openldap2-devel-2.4.9-7.8.x86_64.rpm</filename>
        </package>
        <package name="openldap2-devel-32bit" arch="x86_64" version="2.4.9" release="7.8">
          <filename>openldap2-devel-32bit-2.4.9-7.8.x86_64.rpm</filename>
        </package>
        <package name="openldap2-devel-64bit" arch="ppc" version="2.4.9" release="7.8">
          <filename>openldap2-devel-64bit-2.4.9-7.8.ppc.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="701ef103d651749a28f3792c772ffeaf"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2527">
  <id>popt</id>
  <title>rpm: Fix security problem where we miss to clear the SUID/SGID bits during package updates.</title>
  <release>openSUSE 11.0</release>
  <issued date="1276126122"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=610941" id="610941" title="bug number 610941" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=536256" id="536256" title="bug number 536256" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2059" id="CVE-2010-2059" title="CVE-2010-2059" type="cve"/>
  </references>
  <description>This update fixes the problem where RPM misses to clear the
SUID/SGID bit of old files during package updates.
(CVE-2010-2059)

Also the following bug was fixed: do not use glibc for
passwd/group lookups when --root is used [bnc#536256]
</description>
  <pkglist>
    <collection>
        <package name="popt" arch="i586" version="1.7" release="427.3">
          <filename>popt-1.7-427.3.i586.rpm</filename>
        </package>
        <package name="popt" arch="ppc" version="1.7" release="427.3">
          <filename>popt-1.7-427.3.ppc.rpm</filename>
        </package>
        <package name="popt" arch="x86_64" version="1.7" release="427.3">
          <filename>popt-1.7-427.3.x86_64.rpm</filename>
        </package>
        <package name="popt-32bit" arch="x86_64" version="1.7" release="427.3">
          <filename>popt-32bit-1.7-427.3.x86_64.rpm</filename>
        </package>
        <package name="popt-64bit" arch="ppc" version="1.7" release="427.3">
          <filename>popt-64bit-1.7-427.3.ppc.rpm</filename>
        </package>
        <package name="popt-devel" arch="i586" version="1.7" release="427.3">
          <filename>popt-devel-1.7-427.3.i586.rpm</filename>
        </package>
        <package name="popt-devel" arch="ppc" version="1.7" release="427.3">
          <filename>popt-devel-1.7-427.3.ppc.rpm</filename>
        </package>
        <package name="popt-devel" arch="x86_64" version="1.7" release="427.3">
          <filename>popt-devel-1.7-427.3.x86_64.rpm</filename>
        </package>
        <package name="rpm" arch="i586" version="4.4.2" release="199.3">
          <filename>rpm-4.4.2-199.3.i586.rpm</filename>
        </package>
        <package name="rpm" arch="ppc" version="4.4.2" release="199.3">
          <filename>rpm-4.4.2-199.3.ppc.rpm</filename>
        </package>
        <package name="rpm" arch="x86_64" version="4.4.2" release="199.3">
          <filename>rpm-4.4.2-199.3.x86_64.rpm</filename>
        </package>
        <package name="rpm-devel" arch="i586" version="4.4.2" release="199.3">
          <filename>rpm-devel-4.4.2-199.3.i586.rpm</filename>
        </package>
        <package name="rpm-devel" arch="ppc" version="4.4.2" release="199.3">
          <filename>rpm-devel-4.4.2-199.3.ppc.rpm</filename>
        </package>
        <package name="rpm-devel" arch="x86_64" version="4.4.2" release="199.3">
          <filename>rpm-devel-4.4.2-199.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
<!--PATCHINFO id="1c0147ef7d5dcfbb2b86a9ad88ce8ae7"!-->
<update status="stable" from="maint-coord@suse.de" type="recommended" version="2805">
  <id>openSUSE-release</id>
  <title>openSUSE 11.0 security and bugfix support is discontinued</title>
  <release>openSUSE 11.0</release>
  <issued date="1280133803"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=624993" id="624993" title="bug number 624993" type="bugzilla"/>
  </references>
  <description>This patch concludes the openSUSE 11.0 security and bugfix
support cycle after 2 years.

No more updates will be published after this one.
</description>
  <pkglist>
    <collection>
        <package name="openSUSE-release" arch="i586" version="11.0" release="47.3">
          <filename>openSUSE-release-11.0-47.3.i586.rpm</filename>
        </package>
        <package name="openSUSE-release" arch="ppc" version="11.0" release="47.3">
          <filename>openSUSE-release-11.0-47.3.ppc.rpm</filename>
        </package>
        <package name="openSUSE-release" arch="x86_64" version="11.0" release="47.3">
          <filename>openSUSE-release-11.0-47.3.x86_64.rpm</filename>
        </package>
        <package name="openSUSE-release-dvd" arch="i586" version="11.0" release="47.3">
          <filename>openSUSE-release-dvd-11.0-47.3.i586.rpm</filename>
        </package>
        <package name="openSUSE-release-dvd" arch="ppc" version="11.0" release="47.3">
          <filename>openSUSE-release-dvd-11.0-47.3.ppc.rpm</filename>
        </package>
        <package name="openSUSE-release-dvd" arch="x86_64" version="11.0" release="47.3">
          <filename>openSUSE-release-dvd-11.0-47.3.x86_64.rpm</filename>
        </package>
        <package name="openSUSE-release-live" arch="i586" version="11.0" release="47.3">
          <filename>openSUSE-release-live-11.0-47.3.i586.rpm</filename>
        </package>
        <package name="openSUSE-release-live" arch="ppc" version="11.0" release="47.3">
          <filename>openSUSE-release-live-11.0-47.3.ppc.rpm</filename>
        </package>
        <package name="openSUSE-release-live" arch="x86_64" version="11.0" release="47.3">
          <filename>openSUSE-release-live-11.0-47.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
</updates>

