Modified RPM Packages from RHEL 5.2

Check Point modified the RPM packages listed below that are part of the RHEL 5.2 distribution.

Check Point removed the manual files (man pages) and the language localization files.

List of modified RPM packages:

#

RPM

Changes

1

bind-utils

The 'libs' package is not installed.

The Development SDK is not installed.

Added fixes for several CVEs from RHEL 5.11 distribution.

2

cracklib

Fixed a "password" bug.

3

db1

Required by RPM.

The Development SDK is not installed.

4

ftp:(ftp client)

Passive FTP client ('pftp') is not installed.

5

gdbm

Required by RPM.

The Development SDK is not installed.

6

glib

Only the necessary component ('libglib') is installed.

The Development SDK is not installed.

7

grub

Changes for an automatic serial console support.

Some GUI changes.

Added a patch to support SHA-2.

Added a patch for performance enhancement.

8

initscripts

"Pretty" boot with progress dots on the VGA console (no graphical boot).

Removed the Red Hat network configuration scripts.

A different shell reads a password.

Added a control for the LED to show the machine state.

Configures the Logical Volume Management (LVM2) at startup.

9

kudzu

Fixed bugs with installation and configuration on some devices (SCSI bus crash, network interfaces recognition, Adaptec NIC configuration, and other bugs).

Fixed bugs related to Ethernet number for NIC.

Fixed bugs related to interface names.

Added support for VirtIO disk driver.

10

linux-firmware

Added the 'esp-ah.pkg' for the i40e driver.

11

MAKEDEV

Changes to contain only supported devices in /dev/ (no entries for graphical cards, sound cards, mouse, and so on).

12

microcode_ctl

Removed the 'modeprobe' of the microcode (because it is built-in into the kernel).

13

mkinitrd

Support for Check Point boot menu.

Root device on an LVM volume is handled directly from 'nash'.

Removed the 'strip' command, which does not support the 64-bit *.ko files.

14

ncusers

Reduced the size of the 'terminfo' database to several useful entries.

The development components are not installed.

15

net-tools

Fixed bugs related to configuration of netmask and of NIC states.

16

openlldp

Fixed bugs related to memory allocation.

Fixed bugs that cause crashes.

17

openssl

Check Point packages only the 'libcrypto' because it is required for SSH.

KerberosClosed An authentication server for Microsoft Windows Active Directory Federation Services (ADFS). is not packaged.

No compilation of the OpenSSL thread test.

Fixed the Oracle Timing/Side Channel padding vulnerability

18

ppp

Fixed CVE-2020-8597 (a buffer overflow vulnerability).

19

pptp-client

Not a Red Hat RPM.

Imported from the Mandrake Linux.

20

rp-pppoe

Removed configuration settings.

21

rpm

Excluded the 'libs' package that contains RPM shared libraries.

Added the POPT Development SDK.

If Python can use the RPM libraries, the POSIX Mutexes are disabled.

Excluded the RPM build package.

Patch to enable installation of 32-bit and 64-bit RPMs.

Output enhancement to show the CPU architecture.

22

setup

Removed some user accounts from the /etc/passwd and /etc/groups files.

Log out the user after three minutes of unattended prompt (in Bash).

Generation of core dump files is enabled by default.

Added aliases for the 'll' and 'take.info' commands.

23

shadow-utils

Added a patch to support a period "." character in a user/group name.

24

sharutils

Includes only the 'uuencode' and 'uudecode'.

25

sysklogd

Excluded the syslog 'local5' facility.

26

telnet

The telnet server is installed by default.

If the telnet server is installed, then it is disabled by default.

27

Vi

Included the 'nvi' editor (as an alternative to a much larger 'vim').

28

vixiecron

Uses the 'logger' as an alternative to sending a mail.

29

xinetd

No services by default.

30

zlib

No services by default.