Modified RPM Packages from RHEL 5.2

Check Point modified the RPM packages listed below that are part of the RHEL 5.2 distribution.

Note - Check Point removed the manual files (man pages) and the language localization files.

List of modified RPM packages:

#

RPM

Changes

1

bind-utils

  • The 'libs' package is not installed.

  • The Development SDK is not installed.

  • Added fixes for several CVEs from RHEL 5.11 distribution.

2

cracklib

Fixed a "password" bug.

3

ftp:(ftp client)

Passive FTP client ('pftp') is not installed.

4

gdbm

  • Required by RPM.

  • The Development SDK is not installed.

5

glib

  • Only the necessary component ('libglib') is installed.

  • The Development SDK is not installed.

6

initscripts

  • "Pretty" boot with progress dots on the VGA console (no graphical boot).

  • Removed the Red Hat network configuration scripts.

  • A different shell reads a password.

  • Added a control for the LED to show the machine state.

  • Configured the Logical Volume Management (LVM2) at startup.

  • Configured GRUB2 at start-up.

  • Adaption to support new Check Point hardware.

  • Suppressed irrelevant messages.

  • Added support for new network cards.

  • DPDK support.

  • Network stack bug fixes.

  • UDEV rules for VirtIO update.

  • Changed names of core dump files.

7

kexec-tools

The kdump process creates the dmesg file together with the core dump file.

8

kudzu

  • Fixed bugs with installation and configuration on some devices (SCSI bus crash, network interfaces recognition, Adaptec NIC configuration, and other bugs).

  • Fixed bugs related to Ethernet number for NIC.

  • Fixed bugs related to interface names.

  • Added support for VirtIO disk driver.

9

linux-firmware

Added the 'esp-ah.pkg' for the I40E driver.

10

MAKEDEV

Changes to contain only supported devices in /dev/ (no entries for graphical cards, sound cards, mouse, and so on).

11

microcode_ctl

Removed the 'modeprobe' of the microcode (because it is built-in into the kernel).

12

mkinitrd

  • Support for Check Point boot menu.

  • Root device on an LVM volume is handled directly from 'nash'.

  • Removed the 'strip' command that does not support the 64-bit *.ko files.

  • Cloud support.

  • Adjusted for SCSI driver.

13

ncusers

  • Reduced the size of the 'terminfo' database to several useful entries.

  • The development components are not installed.

14

net-tools

Fixed bugs related to configuration of netmask and of NIC states.

15

openlldp

  • Fixed bugs related to memory allocation.

  • Fixed bugs that cause crashes.

  • Adaptions to Check Point products.

16

ppp

Fixed CVE-2020-8597 (a buffer overflow vulnerability).

17

pptp-client

  • Not a Red Hat RPM.

  • Imported from the Mandrake Linux.

18

rp-pppoe

Removed configuration settings.

19

rpm

  • Excluded the 'libs' package that contains RPM shared libraries.

  • Added the POPT Development SDK.

  • If Python can use the RPM libraries, the POSIX Mutexes are disabled.

  • Excluded the RPM build package.

  • Patch to enable installation of 32-bit and 64-bit RPMs.

  • Output enhancement to show the CPU architecture.

20

setup

  • Removed some user accounts from the /etc/passwd and /etc/groups files.

  • Log out the user after three minutes of unattended prompt (in Bash).

  • Generation of core dump files is enabled by default.

  • Added aliases for the 'll' and 'take.info' commands.

  • DPDK support.

  • Added warning when signing-in to the Expert mode (Bash shell) if GRUB2 password was not changed.

  • Bug fixes in MDPS feature.

21

shadow-utils

Added a patch to support a period "." character in a user / group name.

22

sharutils

Includes only the 'uuencode' and 'uudecode'.

23

telnet

  • The telnet server is not installed by default.

  • If the telnet server is installed, then it is disabled by default.

24

udev

  • Adaption to new Check Point hardware.

  • Bug fix in interface naming.

25

vixiecron

Uses the 'logger' as an alternative to sending a mail.

26

xinetd

No services by default.

27

zlib

No services by default.