第2章 跟踪安全更新
RHBA是 bug advisory (关于BUG的更新)
RHSA是 security advisory (关于安全的更新)
RHEA是 enhancement advisory (关于性能增强的更新)
1、执行yum updateinfo 需要一个插件包
rpm -qa|grep yum-plugin-security (查看插件包是否安装)
默认情况是没有安装的
2、使用yum命令生成更新报告,并且对bug修复公告和增强性公告进行计数
[root@student yum.repos.d]# yum updateinfo
Loaded plugins: product-id, refresh-packagekit, security, subscription-manager
This system is not registered to Red Hat Subscription Management. You can use subscription-manager to register.
Updates Information Summary: available
36 Security notice(s)
9 Critical Security notice(s)
11 Important Security notice(s)
16 Moderate Security notice(s)
22 Bugfix notice(s)
3 Enhancement notice(s)
updateinfo summary done
3、使用yum命令生成rpm包的更新报告
[root@student yum.repos.d]# yum updateinfo list
Loaded plugins: product-id, refresh-packagekit, security, subscription-manager
This system is not registered to Red Hat Subscription Management. You can use subscription-manager to register.
RHBA-2013:0659 bugfix autofs-1:5.0.5-74.el6_4.x86_64
RHSA-2013:0550 Moderate/Sec. bind-libs-32:9.8.2-0.17.rc1.el6.3.x86_64
RHSA-2013:0689 Important/Sec. bind-libs-32:9.8.2-0.17.rc1.el6_4.4.x86_64
RHSA-2013:0550 Moderate/Sec. bind-utils-32:9.8.2-0.17.rc1.el6.3.x86_64
RHSA-2013:0689 Important/Sec. bind-utils-32:9.8.2-0.17.rc1.el6_4.4.x86_64
RHSA-2013:0668 Moderate/Sec. boost-filesystem-1.41.0-15.el6_4.x86_64
RHBA-2013:0692 bugfix boost-filesystem-1.41.0-17.el6_4.x86_64
RHSA-2013:0668 Moderate/Sec. boost-system-1.41.0-15.el6_4.x86_64
RHBA-2013:0692 bugfix boost-system-1.41.0-17.el6_4.x86_64
RHBA-2013:0703 bugfix coreutils-8.4-19.el6_4.1.x86_64
RHBA-2013:0703 bugfix coreutils-libs-8.4-19.el6_4.1.x86_64
RHSA-2013:0580 Moderate/Sec. cups-1:1.4.2-50.el6_4.4.x86_64
RHSA-2013:0580 Moderate/Sec. cups-libs-1:1.4.2-50.el6_4.4.x86_64
RHSA-2013:0771 Moderate/Sec. curl-7.19.7-36.el6_4.x86_64
RHSA-2013:0568 Important/Sec. dbus-glib-0.86-6.el6_4.x86_64
RHBA-2011:1395 bugfix dmidecode-1:2.11-2.el6_1.x86_64
RHSA-2013:0271 Critical/Sec. firefox-17.0.3-1.el6_3.x86_64
RHSA-2013:0696 Critical/Sec. firefox-17.0.5-1.el6_4.x86_64
4、使用yum命令查看指定安全公告
[root@student yum.repos.d]# yum updateinfo RHSA-2013:0815
Loaded plugins: product-id, refresh-packagekit, security, subscription-manager
This system is not registered to Red Hat Subscription Management. You can use subscription-manager to register.
===============================================================================
Moderate: httpd security update
===============================================================================
Update ID : RHSA-2013:0815
Release :
Type : security
Status : final
Issued : 2013-05-13 00:00:00
Bugs : 915883 - CVE-2012-3499 httpd: multiple XSS flaws due to unescaped hostnames
: 915884 - CVE-2012-4558