<?xml version="1.0" encoding="UTF-8"?>
<oval xsi:schemaLocation="http://oval.mitre.org/XMLSchema/oval#redhat redhat-schema.xsd http://oval.mitre.org/XMLSchema/oval#unix unix-schema.xsd http://oval.mitre.org/XMLSchema/oval#independent independent-schema.xsd http://oval.mitre.org/XMLSchema/oval oval-schema.xsd" xmlns:oval="http://oval.mitre.org/XMLSchema/oval" xmlns="http://oval.mitre.org/XMLSchema/oval" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:redhat="http://oval.mitre.org/XMLSchema/oval#redhat">
  <generator>
    <schema_version>4.1</schema_version>
    <timestamp>20051116211159</timestamp>
  </generator>
  <definitions>
    <definition id="OVAL2" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Mutt</product>
      </affected>
      <dates>
        <submitted date="2003-08-18-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in Mutt 1.4.0 and possibly earlier versions, 1.5.x up to 1.5.3, and other programs that use Mutt code such as Balsa before 2.0.10, allows a remote malicious IMAP server to cause a denial of service (crash) and possibly execute arbitrary code via a crafted folder.</description>
      <reference source="CVE">CVE-2003-0140</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-201" comment="balsa version is less than 2.0.6-2" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-201" comment="/usr/bin/balsa is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL6" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>CUPS</product>
      </affected>
      <dates>
        <submitted date="2003-08-19-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>CUPS before 1.1.19 allows remote attackers to cause a denial of service via a partial printing request to the IPP port (631), which does not time out.</description>
      <reference source="CVE">CVE-2003-0195</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-202" comment="cups version is less than 1.1.17-13.3" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-201" comment="cupsd listens on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL28" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>skk</product>
      </affected>
      <dates>
        <submitted date="2003-09-04-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>skk (Simple Kana to Kanji conversion program) 12.1 and earlier, and the ddskk package which is based on skk, creates temporary files insecurely, which allows local users to overwrite arbitrary files.</description>
      <reference source="CVE">CVE-2003-0539</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-216" comment="Vulnerable config" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL52" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>EOG</product>
      </affected>
      <dates>
        <submitted date="2003-08-14-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Format string vulnerability in Eye Of Gnome (EOG) allows attackers to execute arbitrary code via format string specifiers in a command line argument for the file to display.</description>
      <reference source="CVE">CVE-2003-0165</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-205" comment="eog version is less than 2.2.0-2" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-232" comment="eog is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL54" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ethereal</product>
      </affected>
      <dates>
        <submitted date="2003-08-17-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Format string vulnerability in packet-socks.c of the SOCKS dissector for Ethereal 0.8.7 through 0.9.9 allows remote attackers to execute arbitrary code via SOCKS packets containing format string specifiers.</description>
      <reference source="CVE">CVE-2003-0081</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-206" comment="ethereal version is less than 0.9.11-0.90.1" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL55" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ethereal</product>
      </affected>
      <dates>
        <submitted date="2003-08-17-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Heap-based buffer overflow in the NTLMSSP code for Ethereal 0.9.9 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code.</description>
      <reference source="CVE">CVE-2003-0159</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-206" comment="ethereal version is less than 0.9.11-0.90.1" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL69" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ethereal</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple off-by-one vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) AIM, (2) GIOP Gryphon, (3) OSPF, (4) PPTP, (5) Quake, (6) Quake2, (7) Quake3, (8) Rsync, (9) SMB, (10) SMPP, and (11) TSP dissectors, which do not properly use the tvb_get_nstringz and tvb_get_nstringz0 functions.</description>
      <reference source="CVE">CVE-2003-0356</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-238" comment="Vulnerable Config" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL73" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ethereal</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple integer overflow vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) Mount and (2) PPP dissectors.</description>
      <reference source="CVE">CVE-2003-0357</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-238" comment="Vulnerable Config" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL75" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ethereal</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Unknown vulnerability in the DCERPC (DCE/RPC) dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (memory consumption) via a certain NDR string.</description>
      <reference source="CVE">CVE-2003-0428</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-238" comment="Vulnerable Config" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL84" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ethereal</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The OSI dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via invalid IPv4 or IPv6 prefix lengths, possibly triggering a buffer overflow.</description>
      <reference source="CVE">CVE-2003-0429</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-238" comment="Vulnerable Config" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL88" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ethereal</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The SPNEGO dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (crash) via an invalid ASN.1 value.</description>
      <reference source="CVE">CVE-2003-0430</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-238" comment="Vulnerable Config" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL101" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ethereal</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The tvb_get_nstringz0 function in Ethereal 0.9.12 and earlier does not properly handle a zero-length buffer size, with unknown consequences.</description>
      <reference source="CVE">CVE-2003-0431</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-238" comment="Vulnerable Config" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL106" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ethereal</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Ethereal 0.9.12 and earlier does not handle certain strings properly, with unknown consequences, in the (1) BGP, (2) WTP, (3) DNS, (4) 802.11, (5) ISAKMP, (6) WSP, (7) CLNP, (8) ISIS, and (9) RMI dissectors.</description>
      <reference source="CVE">CVE-2003-0432</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-238" comment="Vulnerable Config" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL107" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ximian Evolution</product>
      </affected>
      <dates>
        <submitted date="2003-08-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The try_uudecoding function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a malicious uuencoded (UUE) header, possibly triggering a heap-based buffer overflow.</description>
      <reference source="CVE">CVE-2003-0128</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-209" comment="evolution version is less than 1.2.2-5" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL108" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ximian Evolution</product>
      </affected>
      <dates>
        <submitted date="2003-08-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (memory consumption) via a mail message that is uuencoded multiple times.</description>
      <reference source="CVE">CVE-2003-0129</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-209" comment="evolution version is less than 1.2.2-5" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL111" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ximian Evolution</product>
      </affected>
      <dates>
        <submitted date="2003-08-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly escape HTML characters, which allows remote attackers inject arbitrary data and HTML via a MIME Content-ID header in a MIME-encoded image.</description>
      <reference source="CVE">CVE-2003-0130</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-209" comment="evolution version is less than 1.2.2-5" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL112" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>GDM</product>
      </affected>
      <dates>
        <submitted date="2003-09-04-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>GDM before 2.4.1.6, when using the "examine session errors" feature, allows local users to read arbitrary files via a symlink attack on the ~/.xsession-errors file.</description>
      <reference source="CVE">CVE-2003-0547</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-210" comment="gdm version is less than 2.4.1.3-5.1" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL113" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>GDM</product>
      </affected>
      <dates>
        <submitted date="2003-09-04-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>The X Display Manager Control Protocol (XDMCP) support for GDM before 2.4.1.6 allows attackers to cause a denial of service (daemon crash) when a chosen host expires, a different issue than CVE-2003-0549.</description>
      <reference source="CVE">CVE-2003-0548</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-210" comment="gdm version is less than 2.4.1.3-5.1" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL129" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>GDM</product>
      </affected>
      <dates>
        <submitted date="2003-09-04-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>The X Display Manager Control Protocol (XDMCP) support for GDM before 2.4.1.6 allows attackers to cause a denial of service (daemon crash) via a short authorization key name.</description>
      <reference source="CVE">CVE-2003-0549</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-210" comment="gdm version is less than 2.4.1.3-5.1" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL133" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>GNU Ghostscript</product>
      </affected>
      <dates>
        <submitted date="2003-08-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Unknown vulnerability in GNU Ghostscript before 7.07 allows attackers to execute arbitrary commands, even when -dSAFER is enabled, via a PostScript file that causes the commands to be executed from a malicious print job.</description>
      <reference source="CVE">CVE-2003-0354</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-211" comment="ghostscript version is less than 7.05-32.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-262" comment="/usr/bin/gs is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL135" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>GnuPG</product>
      </affected>
      <dates>
        <submitted date="2003-08-19-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The key validation code in GnuPG before 1.2.2 does not properly determine the validity of keys with multiple user IDs and assigns the greatest validity of the most valid user ID, which prevents GnuPG from warning the encrypting user when a user ID does not have a trusted path.</description>
      <reference source="CVE">CVE-2003-0255</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-212" comment="gnupg version is less than 1.2.1-4" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-263" comment="/usr/bin/gnupg is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL138" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>GtkHTML</product>
      </affected>
      <dates>
        <submitted date="2003-09-02-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>GtkHTML, as included in Evolution before 1.2.4, allows remote attackers to cause a denial of service (crash) via certain malformed messages.</description>
      <reference source="CVE">CVE-2003-0133</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-213" comment="gtkhtml version is less than 1.1.9-0.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL148" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>GtkHTML</product>
      </affected>
      <dates>
        <submitted date="2003-09-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>gtkhtml before 1.1.10, as used in Evolution, allows remote attackers to cause a denial of service (crash) via a malformed message that causes a null pointer dereference.</description>
      <reference source="CVE">CVE-2003-0541</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-214" comment="gtkhtml version is less than 1.1.9-0.9.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-266" comment="/usr/bin/evolution is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL150" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Apache</product>
      </affected>
      <dates>
        <submitted date="2003-08-17-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Apache does not filter terminal escape sequences from its error logs, which could make it easier for attackers to insert those sequences into terminal emulators containing vulnerabilities related to escape sequences.</description>
      <reference source="CVE">CVE-2003-0020</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-215" comment="httpd version is less than 2.0.40-21.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-202" comment="httpd listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL151" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Apache</product>
      </affected>
      <dates>
        <submitted date="2003-08-17-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Apache 1.3 before 1.3.25 and Apache 2.0 before version 2.0.46 does not filter terminal escape sequences from its access logs, which could make it easier for attackers to insert those sequences into terminal emulators containing vulnerabilities related to escape sequences, a different vulnerability than CVE-2003-0020.</description>
      <reference source="CVE">CVE-2003-0083</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-215" comment="httpd version is less than 2.0.40-21.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-202" comment="httpd listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL156" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Apache</product>
      </affected>
      <dates>
        <submitted date="2003-08-17-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via large chunks of linefeed characters, which causes Apache to allocate 80 bytes for each linefeed.</description>
      <reference source="CVE">CVE-2003-0132</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-215" comment="httpd version is less than 2.0.40-21.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-202" comment="httpd listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL164" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>OpenSSL</product>
      </affected>
      <dates>
        <submitted date="2005-06-14-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-15-09:48">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>The der_chop script in the openssl package in Trustix Secure Linux 1.5 through 2.1 and other operating systems allows local users to overwrite files via a symlink attack on temporary files.</description>
      <reference source="CVE">CVE-2004-0975</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-22" comment="openssl, openssl-devel, OR openssl-perl older than 0.9.7a-33.15 or openssl096b older than 0.9.6b-16.22.3" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-1" comment="/tmp is writable by everyone" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL169" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Apache</product>
      </affected>
      <dates>
        <submitted date="2003-09-05-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Apache 2 before 2.0.47, and certain versions of mod_ssl for Apache 1.3, do not properly handle "certain sequences of per-directory renegotiations and the SSLCipherSuite directive being used to upgrade from a weak ciphersuite to a strong one," which could cause Apache to use the weak ciphersuite.</description>
      <reference source="CVE">CVE-2003-0192</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-216" comment="httpd version is less than 2.0.40-21.5" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-203" comment="httpd.worker is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL173" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Apache</product>
      </affected>
      <dates>
        <submitted date="2003-09-05-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The prefork MPM in Apache 2 before 2.0.47 does not properly handle certain errors from accept, which could lead to a denial of service.</description>
      <reference source="CVE">CVE-2003-0253</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-216" comment="httpd version is less than 2.0.40-21.5" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-202" comment="httpd listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL183" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Apache</product>
      </affected>
      <dates>
        <submitted date="2003-09-05-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Apache 2 before 2.0.47, when running on an IPv6 host, allows attackers to cause a denial of service (CPU consumption by infinite loop) when the FTP proxy server fails to create an IPv6 socket.</description>
      <reference source="CVE">CVE-2003-0254</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-216" comment="httpd version is less than 2.0.40-21.5" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-202" comment="httpd listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL193" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>KDM</product>
      </affected>
      <dates>
        <submitted date="2003-09-21-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>KDM in KDE 3.1.3 and earlier does not verify whether the pam_setcred function call succeeds, which may allow attackers to gain root privileges by triggering error conditions within PAM modules, as demonstrated in certain configurations of the MIT pam_krb5 module.</description>
      <reference source="CVE">CVE-2003-0690</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-217" comment="kdebase version is less than 3.1-15" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-278" comment="/usr/bin/kdm is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL215" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>KDM</product>
      </affected>
      <dates>
        <submitted date="2003-09-21-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>KDM in KDE 3.1.3 and earlier uses a weak session cookie generation algorithm that does not provide 128 bits of entropy, which allows attackers to guess session cookies via brute force methods and gain access to the user session.</description>
      <reference source="CVE">CVE-2003-0692</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-217" comment="kdebase version is less than 3.1-15" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-278" comment="/usr/bin/kdm is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL230" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>krb5</product>
      </affected>
      <dates>
        <submitted date="2003-08-14-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability than CVE-2002-0391.</description>
      <reference source="CVE">CVE-2003-0028</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-218" comment="krb5-server version is less than 1.2.7-14" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL244" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>krb5</product>
      </affected>
      <dates>
        <submitted date="2003-08-14-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) on KDCs within the same realm using a certain protocol request that causes the KDC to corrupt its heap (aka "buffer underrun").</description>
      <reference source="CVE">CVE-2003-0082</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-218" comment="krb5-server version is less than 1.2.7-14" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL248" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>krb5</product>
      </affected>
      <dates>
        <submitted date="2003-08-14-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Version 4 of the Kerberos protocol (krb4), as used in Heimdal and other packages, allows an attacker to impersonate any principal in a realm via a chosen-plaintext attack.</description>
      <reference source="CVE">CVE-2003-0138</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-219" comment="krb5-libs version is less than 1.2.7-14" negate="false"/>
          <criterion test_ref="cmp-289" comment="krb5-server or krb5-workstation installed" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL250" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>krb5</product>
      </affected>
      <dates>
        <submitted date="2003-08-14-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Certain weaknesses in the implementation of version 4 of the Kerberos protocol (krb4) in the krb5 distribution, when triple-DES keys are used to key krb4 services, allow an attacker to create krb4 tickets for unauthorized principals using a cut-and-paste attack and "ticket splicing."</description>
      <reference source="CVE">CVE-2003-0139</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-219" comment="krb5-libs version is less than 1.2.7-14" negate="false"/>
          <criterion test_ref="cmp-289" comment="krb5-server or krb5-workstation installed" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL254" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-25-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root privileges by using ptrace to attach to a child process that is spawned by the kernel.</description>
      <reference source="CVE">CVE-2003-0127</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rrt-202" comment="kernel version = 2.4.20-6" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="uut-2" comment="kernel 2.4.20-6 or earlier is running" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL260" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Netfilter</product>
      </affected>
      <dates>
        <submitted date="2003-09-25-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The connection tracking core of Netfilter for Linux 2.4.20, with CONFIG_IP_NF_CONNTRACK enabled or the ip_conntrack module loaded, allows remote attackers to cause a denial of service (resource consumption) due to an inconsistency with Linux 2.4.20's support of linked lists, which causes Netfilter to fail to identify connections with an UNCONFIRMED status and use large timeouts.</description>
      <reference source="CVE">CVE-2003-0187</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-221" comment="kernel version is less than 2.4.20-13.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL261" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Netfilter</product>
      </affected>
      <dates>
        <submitted date="2003-09-25-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The route cache implementation in Linux 2.4, and the Netfilter IP conntrack module, allows remote attackers to cause a denial of service (CPU consumption) via packets with forged source addresses that cause a large number of hash table collisions.</description>
      <reference source="CVE">CVE-2003-0244</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-221" comment="kernel version is less than 2.4.20-13.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL263" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Gaim</product>
      </affected>
      <dates>
        <submitted date="2005-07-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>Gaim before 1.3.1 allows remote attackers to cause a denial of service (crash) via a malformed MSN message that leads to a memory allocation of a large size, possibly due to an integer signedness error.</description>
      <reference source="CVE">CVE-2005-1934</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-21" comment="gaim RPM earlier than 1:1.3.1-0.el3" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-56" comment="/usr/bin/gaim is executable by any user" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL278" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-25-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The ioperm system call in Linux kernel 2.4.20 and earlier does not properly restrict privileges, which allows local users to gain read or write access to certain I/O ports.</description>
      <reference source="CVE">CVE-2003-0246</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-221" comment="kernel version is less than 2.4.20-13.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL284" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Unknown vulnerability in the TTY layer of the Linux kernel 2.4 allows attackers to cause a denial of service ("kernel oops").</description>
      <reference source="CVE">CVE-2003-0247</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-222" comment="kernel version is less than 2.4.20-18.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL292" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The mxcsr code in Linux kernel 2.4 allows attackers to modify CPU state registers via a malformed address.</description>
      <reference source="CVE">CVE-2003-0248</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-222" comment="kernel version is less than 2.4.20-18.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL295" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The TCP/IP fragment reassembly handling in the Linux kernel 2.4 allows remote attackers to cause a denial of service (CPU consumption) via certain packets that cause a large number of hash table collisions.</description>
      <reference source="CVE">CVE-2003-0364</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-222" comment="kernel version is less than 2.4.20-18.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL304" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>/proc/tty/driver/serial</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>/proc/tty/driver/serial in Linux 2.4.x reveals the exact number of characters used in serial links, which could allow local users to obtain potentially sensitive information such as the length of passwords.</description>
      <reference source="CVE">CVE-2003-0461</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-223" comment="kernel version is less than 2.4.20-19.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL309" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>A race condition in the way env_start and env_end pointers are initialized in the execve system call and used in fs/proc/base.c on Linux 2.4 allows local users to cause a denial of service (crash).</description>
      <reference source="CVE">CVE-2003-0462</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-223" comment="kernel version is less than 2.4.20-19.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL311" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The RPC code in Linux kernel 2.4 sets the reuse flag when sockets are created, which could allow local users to bind to UDP ports that are used by privileged services such as nfsd.</description>
      <reference source="CVE">CVE-2003-0464</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-223" comment="kernel version is less than 2.4.20-19.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL327" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The execve system call in Linux 2.4.x records the file descriptor of the executable process in the file table of the calling process, which allows local users to gain read access to restricted file descriptors.</description>
      <reference source="CVE">CVE-2003-0476</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-223" comment="kernel version is less than 2.4.20-19.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL328" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The /proc filesystem in Linux allows local users to obtain sensitive information by opening various entries in /proc/self before executing a setuid program, which causes the program to fail to change the ownership and permissions of those entries.</description>
      <reference source="CVE">CVE-2003-0501</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-223" comment="kernel version is less than 2.4.20-19.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL345" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>php</product>
      </affected>
      <dates>
        <submitted date="2005-07-19-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>Race condition in shtool 2.0.1 and earlier allows local users to create or modify arbitrary files via a symlink attack on the .shtool.$$ temporary file, a different vulnerability than CVE-2005-1759.</description>
      <reference source="CVE">CVE-2005-1751</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-27" comment="php RPM prior to  0:4.3.2-24.ent" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-1" comment="/tmp is writable by everyone" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL350" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>php</product>
      </affected>
      <dates>
        <submitted date="2005-07-19-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2) Serendipity, (3) Drupal, (4) egroupware, (5) MailWatch, (6) TikiWiki, (7) phpWebSite, (8) Ampache, and others, allows remote attackers to execute arbitrary PHP code via an XML file, which is not properly sanitized before being used in an eval statement.</description>
      <reference source="CVE">CVE-2005-1921</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-27" comment="php RPM prior to  0:4.3.2-24.ent" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="uft-4" comment="/etc/httpd/conf.d/php.conf exists" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL358" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>cpio</product>
      </affected>
      <dates>
        <submitted date="2005-08-08-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-09-07:56">DRAFT</status_change>
        <status_change date="2005-08-24-09:56">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>Race condition in cpio 2.6 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by cpio after the decompression is complete.</description>
      <reference source="CVE">CVE-2005-1111</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-28" comment="cpio rpm is older than 0:2.5-4.RHEL3" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-61" comment="/bin/cpio is executable by all" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL380" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The STP protocol, as enabled in Linux 2.4.x, does not provide sufficient security by design, which allows attackers to modify the bridge topology.</description>
      <reference source="CVE">CVE-2003-0550</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-223" comment="kernel version is less than 2.4.20-19.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL382" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>gzip</product>
      </affected>
      <dates>
        <submitted date="2005-06-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-22-12:38">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>Directory traversal vulnerability in gunzip -N in gzip 1.2.4 through 1.3.5 allows remote attackers to write to arbitrary directories via a .. (dot dot) in the original filename within a compressed file.</description>
      <reference source="CVE">CVE-2005-1228</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-7" comment="gzip RPM earlier than 0:1.3.3-12rhel3" negate="false"/>
        </software>
        <configuration operation="OR">
          <criterion test_ref="upt-529" comment="/usr/bin/gzip is executable" negate="false"/>
          <criterion test_ref="upt-428" comment="/usr/bin/gunzip is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL384" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The STP protocol implementation in Linux 2.4.x does not properly verify certain lengths, which could allow attackers to cause a denial of service.</description>
      <reference source="CVE">CVE-2003-0551</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-223" comment="kernel version is less than 2.4.20-19.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL385" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Linux 2.4.x allows remote attackers to spoof the bridge Forwarding table via forged packets whose source addresses are the same as the target.</description>
      <reference source="CVE">CVE-2003-0552</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-223" comment="kernel version is less than 2.4.20-19.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL386" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-25-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Integer signedness error in the decode_fh function of nfs3xdr.c in Linux kernel before 2.4.21 allows remote attackers to cause a denial of service (kernel panic) via a negative size value within XDR data of an NFSv3 procedure call.</description>
      <reference source="CVE">CVE-2003-0619</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-221" comment="kernel version is less than 2.4.20-13.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL387" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The C-Media PCI sound driver in Linux before 2.4.21 does not use the get_user function to access userspace, which crosses security boundaries and may facilitate the exploitation of vulnerabilities, a different vulnerability than CVE-2003-0700.</description>
      <reference source="CVE">CVE-2003-0699</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-223" comment="kernel version is less than 2.4.20-19.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL401" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2003-09-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The C-Media PCI sound driver in Linux before 2.4.22 does not use the get_user function to access userspace in certain conditions, which crosses security boundaries and may facilitate the exploitation of vulnerabilities, a different vulnerability than CVE-2003-0699.</description>
      <reference source="CVE">CVE-2003-0700</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-223" comment="kernel version is less than 2.4.20-19.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL411" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Konqueror</product>
      </affected>
      <dates>
        <submitted date="2003-09-04-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication credentials from URLs of the "user:password@host" form in the HTTP-Referer header, which could allow remote web sites to steal the credentials for pages that link to the sites.</description>
      <reference source="CVE">CVE-2003-0459</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-224" comment="kdelibs version is less than 3.1-12" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-304" comment="/usr/bin/konqueror is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL417" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 4</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 allows remote attackers to cause a denial of service (access violation and crash), and possibly execute arbitrary code, by calling InstallVersion.compareTo with an object instead of a string.</description>
      <reference source="CVE">CVE-2005-2265</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-1" comment="Red Hat Enterprise 4 is installed" negate="false"/>
          <criterion test_ref="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL423" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>LPRng</product>
      </affected>
      <dates>
        <submitted date="2003-08-17-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>psbanner in the LPRng package allows local users to overwrite arbitrary files via a symbolic link attack on the /tmp/before file.</description>
      <reference source="CVE">CVE-2003-0136</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-225" comment="lprng version is less than 3.8.19-3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-83" comment="psbanner is world-executable" negate="false"/>
          <criterion test_ref="rlt-204" comment="lpd listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL430" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>lv</product>
      </affected>
      <dates>
        <submitted date="2003-08-19-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>lv reads a .lv file from the current working directory, which allows local users to execute arbitrary commands as other lv users by placing malicious .lv files into other directories.</description>
      <reference source="CVE">CVE-2003-0188</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-226" comment="lv version is less than 4.49.4-9.9.1" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL434" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Mutt</product>
      </affected>
      <dates>
        <submitted date="2003-08-18-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in Mutt 1.4.0 and possibly earlier versions, 1.5.x up to 1.5.3, and other programs that use Mutt code such as Balsa before 2.0.10, allows a remote malicious IMAP server to cause a denial of service (crash) and possibly execute arbitrary code via a crafted folder.</description>
      <reference source="CVE">CVE-2003-0140</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-227" comment="mutt version is less than 1.4.1-1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-305" comment="/usr/bin/mutt is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL436" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>MySQL</product>
      </affected>
      <dates>
        <submitted date="2003-08-18-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Double-free vulnerability in mysqld for MySQL before 3.23.55 allows attackers with MySQL access to cause a denial of service (crash) via mysql_change_user.</description>
      <reference source="CVE">CVE-2003-0073</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-228" comment="mysql-server version is less than 3.23.56-1.9" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-205" comment="mysqld is listening to the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL442" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>MySQL</product>
      </affected>
      <dates>
        <submitted date="2003-08-18-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>MySQL 3.23.55 and earlier creates world-writeable files and allows mysql users to gain root privileges by using the "SELECT * INFO OUTFILE" operator to overwrite a configuration file and cause mysql to run as root upon restart, as demonstrated by modifying my.cnf.</description>
      <reference source="CVE">CVE-2003-0150</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-228" comment="mysql-server version is less than 3.23.56-1.9" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-205" comment="mysqld is listening to the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL443" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>nfs-utils</product>
      </affected>
      <dates>
        <submitted date="2003-09-02-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain RPC requests to mountd that do not contain newlines.</description>
      <reference source="CVE">CVE-2003-0252</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-229" comment="nfs-utils version is less than 1.0.1-3.9" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-206" comment="rpc.mountd listens on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL445" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>OpenSSH</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>OpenSSH-portable (OpenSSH) 3.6.1p1 and earlier with PAM support enabled immediately sends an error message when a user does not exist, which allows remote attackers to determine valid usernames via a timing attack.</description>
      <reference source="CVE">CVE-2003-0190</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-230" comment="openssh-server version is less than 3.5p1-6.9" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-207" comment="sshd listens on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL446" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>OpenSSH</product>
      </affected>
      <dates>
        <submitted date="2003-09-21-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>"Memory bugs" in OpenSSH 3.7.1 and earlier, with unknown impact, a different set of vulnerabilities than CVE-2003-0693 and CVE-2003-0695.</description>
      <reference source="CVE">CVE-2003-0682</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-231" comment="openssh-server version is less than 3.5p1-11" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-207" comment="sshd listens on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL447" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>OpenSSH</product>
      </affected>
      <dates>
        <submitted date="2003-09-21-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>A "buffer management error" in buffer_append_space of buffer.c for OpenSSH before 3.7 may allow remote attackers to execute arbitrary code by causing an incorrect amount of memory to be freed and corrupting the heap, a different vulnerability than CVE-2003-0695.</description>
      <reference source="CVE">CVE-2003-0693</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-231" comment="openssh-server version is less than 3.5p1-11" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-207" comment="sshd listens on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL452" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>OpenSSH</product>
      </affected>
      <dates>
        <submitted date="2003-09-21-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple "buffer management errors" in OpenSSH before 3.7.1 may allow attackers to cause a denial of service or execute arbitrary code using (1) buffer_init in buffer.c, (2) buffer_free in buffer.c, or (3) a separate function in channels.c, a different vulnerability than CVE-2003-0693.</description>
      <reference source="CVE">CVE-2003-0695</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-231" comment="openssh-server version is less than 3.5p1-11" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-207" comment="sshd listens on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL461" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>OpenSSL</product>
      </affected>
      <dates>
        <submitted date="2003-08-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Added cmp-914 which uses an or to combine the 5 version tests. Previously the tests had been combined with an and.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The SSL and TLS components for OpenSSL 0.9.6i and earlier, 0.9.7, and 0.9.7a allow remote attackers to perform an unauthorized RSA private key operation via a modified Bleichenbacher attack that uses a large number of SSL or TLS connections using PKCS #1 v1.5 padding that cause OpenSSL to leak information regarding the relationship between ciphertext and the associated plaintext, aka the "Klima-Pokorny-Rosa attack."</description>
      <reference source="CVE">CVE-2003-0131</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-914" comment="affected version of SSL and TLS components for OpenSSL" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL466" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>OpenSSL</product>
      </affected>
      <dates>
        <submitted date="2003-08-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Added cmp-914 which uses an or to combine the 5 version tests. Previously the tests had been combined with an and.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>OpenSSL does not use RSA blinding by default, which allows local and remote attackers to obtain the server's private key by determining factors using timing differences on (1) the number of extra reductions during Montgomery reduction, and (2) the use of different integer multiplication algorithms ("Karatsuba" and normal).</description>
      <reference source="CVE">CVE-2003-0147</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-914" comment="affected version of SSL and TLS components for OpenSSL" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL469" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>pam_smb</product>
      </affected>
      <dates>
        <submitted date="2003-09-05-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in PAM SMB module (pam_smb) 1.1.6 and earlier, when authenticating to a remote service, allows remote attackers to execute arbitrary code.</description>
      <reference source="CVE">CVE-2003-0686</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-237" comment="pam_smb version is less than 1.1.6-9.9" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL470" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>CGI.pm</product>
      </affected>
      <dates>
        <submitted date="2003-09-25-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>Cross-site scripting (XSS) vulnerability in start_form() of CGI.pm allows remote attackers to insert web script via a URL that is fed into the form's action parameter.</description>
      <reference source="CVE">CVE-2003-0615</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-238" comment="perl-CGI version is less than 2.81-88.3" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL485" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>php</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter.</description>
      <reference source="CVE">CVE-2003-0442</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-239" comment="php version is less than 4.2.2-17.2" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL499" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>pine</product>
      </affected>
      <dates>
        <submitted date="2003-09-12-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in PINE before 4.58 allows remote attackers to execute arbitrary code via a malformed message/external-body MIME type.</description>
      <reference source="CVE">CVE-2003-0720</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-240" comment="pine version is less than 4.44-19.90.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-314" comment="/usr/bin/pine is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL503" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>pine</product>
      </affected>
      <dates>
        <submitted date="2003-09-12-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Integer signedness error in rfc2231_get_param from strings.c in PINE before 4.58 allows remote attackers to execute arbitrary code via an email that causes an out-of-bounds array access using a negative number.</description>
      <reference source="CVE">CVE-2003-0721</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-240" comment="pine version is less than 4.44-19.90.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-314" comment="/usr/bin/pine is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL522" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Postfix</product>
      </affected>
      <dates>
        <submitted date="2003-09-02-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>Postfix 1.1.11 and earlier allows remote attackers to use Postfix to conduct "bounce scans" or DDos attacks of other hosts via an email address to the local host containing the target IP address and service name followed by a "!" string, which causes Postfix to attempt to use SMTP to communicate with the target on the associated port.</description>
      <reference source="CVE">CVE-2003-0468</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-241" comment="postfix version is less than 1.1.12-1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-208" comment="smtpd listens on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL544" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Postfix</product>
      </affected>
      <dates>
        <submitted date="2003-09-02-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>The address parser code in Postfix 1.1.12 and earlier allows remote attackers to cause a denial of service (lock) via (1) a malformed envelope address to a local host that would generate a bounce and contains the ".!" string in the MAIL FROM or Errors-To headers, which causes nqmgr to lock up, or (2) via a valid MAIL FROM with a RCPT TO containing a ".!" string, which causes an instance of the SMTP listener to lock up.</description>
      <reference source="CVE">CVE-2003-0540</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-241" comment="postfix version is less than 1.1.12-1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-208" comment="smtpd listens on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL550" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 4</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone base objects, which allows remote attackers to execute arbitrary code by navigating the prototype chain to reach a privileged object.</description>
      <reference source="CVE">CVE-2005-2270</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-1" comment="Red Hat Enterprise 4 is installed" negate="false"/>
          <criterion test_ref="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL552" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>smbd</product>
      </affected>
      <dates>
        <submitted date="2003-08-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, allows remote attackers to execute arbitrary code.</description>
      <reference source="CVE">CVE-2003-0085</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-242" comment="samba version is less than 2.2.7a-7.9.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-209" comment="smbd listens on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL554" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Samba</product>
      </affected>
      <dates>
        <submitted date="2003-08-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The code for writing reg files in Samba before 2.2.8 allows local users to overwrite arbitrary files via a race condition involving chown.</description>
      <reference source="CVE">CVE-2003-0086</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-242" comment="samba version is less than 2.2.7a-7.9.0" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL564" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Samba</product>
      </affected>
      <dates>
        <submitted date="2003-08-17-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple buffer overflows in Samba before 2.2.8a may allow remote attackers to execute arbitrary code or cause a denial of service, as discovered by the Samba team and a different vulnerability than CVE-2003-0201.</description>
      <reference source="CVE">CVE-2003-0196</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-243" comment="samba version is less than 2.2.7a-8.9.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-210" comment="smbd is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL567" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Samba, Samba-TNG</product>
      </affected>
      <dates>
        <submitted date="2003-08-17-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to execute arbitrary code.</description>
      <reference source="CVE">CVE-2003-0201</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-243" comment="samba version is less than 2.2.7a-8.9.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-210" comment="smbd is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL569" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>semi MIME library</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files.</description>
      <reference source="CVE">CVE-2003-0440</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-319" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-320" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL572" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Sendmail</product>
      </affected>
      <dates>
        <submitted date="2003-08-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.</description>
      <reference source="CVE">CVE-2003-0694</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-246" comment="sendmail version is less than 8.12.8-5.90" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-323" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL595" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Sendmail</product>
      </affected>
      <dates>
        <submitted date="2003-09-21-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences.</description>
      <reference source="CVE">CVE-2003-0681</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-247" comment="sendmail version is less than 8.12.8-9.90" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-323" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL597" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Sendmail</product>
      </affected>
      <dates>
        <submitted date="2003-09-05-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data.</description>
      <reference source="CVE">CVE-2003-0688</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-248" comment="sendmail version is less than 8.12.8-6.90" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-212" comment="sendmail is listening to the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL603" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Sendmail</product>
      </affected>
      <dates>
        <submitted date="2003-09-21-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.</description>
      <reference source="CVE">CVE-2003-0694</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-247" comment="sendmail version is less than 8.12.8-9.90" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-323" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL614" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>SquirrelMail</product>
      </affected>
      <dates>
        <submitted date="2003-08-17-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail before 1.2.11 allow remote attackers to inject arbitrary HTML code and steal information from a client's web browser.</description>
      <reference source="CVE">CVE-2003-0160</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-249" comment="squirrelmail version is less than 1.2.11-1" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL619" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>unzip</product>
      </affected>
      <dates>
        <submitted date="2003-09-04-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Directory traversal vulnerability in UnZip 5.50 allows attackers to overwrite arbitrary files via invalid characters between two . (dot) characters, which are filtered and result in a ".." sequence.</description>
      <reference source="CVE">CVE-2003-0282</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-250" comment="unzip version is less than 5.50-33" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-335" comment="/usr/bin/unzip is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL623" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>sysreport</product>
      </affected>
      <dates>
        <submitted date="2005-07-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>sysreport 1.3.15 and earlier includes contents of the up2date file in a report, which leaks the password for a proxy server in plaintext and allows local users to gain privileges.</description>
      <reference source="CVE">CVE-2005-1760</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-24" comment="sysreport RPM earlier than 0:1.3.7.2-6" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-58" comment="/tmp is world-writable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL631" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>up2date</product>
      </affected>
      <dates>
        <submitted date="2003-09-03-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>up2date 3.0.7 and 3.1.23 does not properly verify RPM GPG signatures, which could allow remote attackers to cause unsigned packages to be installed from the Red Hat Network, if that network is compromised.</description>
      <reference source="CVE">CVE-2003-0546</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-251" comment="up2date version is less than 3.1.23.1-5" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="uct-2" comment="rhnsd is running" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL634" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>vsftpd</product>
      </affected>
      <dates>
        <submitted date="2003-08-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>vsftpd FTP daemon in Red Hat Linux 9 is not compiled against TCP wrappers (tcp_wrappers) but is installed as a standalone service, which inadvertently prevents vsftpd from restricting access as intended.</description>
      <reference source="CVE">CVE-2003-0135</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-252" comment="vsftpd version is less than 1.1.3-8" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-213" comment="vsftpd is listening to the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL637" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>A regression error in Firefox 1.0.3 and Mozilla 1.7.7 allows remote attackers to inject arbitrary Javascript from one page into the frameset of another site, aka the frame injection spoofing vulnerability, a re-introduction of a vulnerability that was originally identified and addressed by CVE-2004-0718.</description>
      <reference source="CVE">CVE-2005-1937</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-31" comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL647" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mikmod</product>
      </affected>
      <dates>
        <submitted date="2005-06-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-22-12:38">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in mikmod 3.1.6 and earlier allows remote attackers to execute arbitrary code via an archive file that contains a file with a long filename.</description>
      <reference source="CVE">CVE-2003-0427</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-8" comment="mikmod RPM prior to 0:3.1.6-22.EL3" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-730" comment="/usr/bin/mikmod is executable by any user" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL657" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>xinetd</product>
      </affected>
      <dates>
        <submitted date="2003-08-18-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <modified date="2004-05-17-12:00" comment="Changed tested epoch in xinetd test rvt-253 to 2, based on testing.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Memory leak in xinetd 2.3.10 allows remote attackers to cause a denial of service (memory consumption) via a large number of rejected connections.</description>
      <reference source="CVE">CVE-2003-0211</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-253" comment="xinetd version is less than 2:2.3.11-1.9.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-214" comment="xinetd is listening to the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL664" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>xpdf</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.</description>
      <reference source="CVE">CVE-2003-0434</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-254" comment="xpdf version is less than 2.0.1-11" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-338" comment="xpdf is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL667" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>ypserv</product>
      </affected>
      <dates>
        <submitted date="2003-08-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-03-25-12:00">INTERIM</status_change>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>ypserv NIS server before 2.7 allows remote attackers to cause a denial of service via a TCP client request that does not respond to the server, which causes ypserv to block.</description>
      <reference source="CVE">CVE-2003-0251</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-255" comment="ypserv version is less than 2.8-0.9E" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-215" comment="ypserv is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL676" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>postgresql</product>
      </affected>
      <dates>
        <submitted date="2005-06-27-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-29-06:49">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>PostgreSQL 7.3.x through 8.0.x gives public EXECUTE access to certain character conversion functions, which allows unprivileged users to call those functions with malicious values, with unknown impact, aka the "Character conversion vulnerability."</description>
      <reference source="CVE">CVE-2005-1409</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-9" comment="rh-postgresql-server is earlier than 0:7.3.10-1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="uct-1" comment="postmaster (the PostgreSQL master daemon) is running" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL711" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>ImageMagick</product>
      </affected>
      <dates>
        <submitted date="2005-06-28-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-29-06:49">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>Heap-based buffer overflow in the ReadPNMImage function in pnm.c for ImageMagick 6.2.1 and earlier allows remote attackers to cause a denial of service (application crash) via a PNM file with a small colors value.</description>
      <reference source="CVE">CVE-2005-1275</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-16" comment="ImageMagick RPM earlier than 0:5.5.6-14" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL717" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>gftp</product>
      </affected>
      <dates>
        <submitted date="2005-06-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-22-12:38">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>Directory traversal vulnerability in gftp before 2.0.18 for GTK+ allows remote malicious FTP servers to read arbitrary files via .. (dot dot) sequences in filenames returned from a LIST command.</description>
      <reference source="CVE">CVE-2005-0372</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rvt-6" comment="gftp rpm is earlier than 1:2.0.14-4" negate="false"/>
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-62" comment="gftp is executeable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL729" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 4</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing").</description>
      <reference source="CVE">CVE-2005-2269</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-1" comment="Red Hat Enterprise 4 is installed" negate="false"/>
          <criterion test_ref="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL742" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user.</description>
      <reference source="CVE">CVE-2005-2260</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-31" comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL744" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Gaim</product>
      </affected>
      <dates>
        <submitted date="2005-07-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>Gaim before 1.3.1 allows remote attackers to cause a denial of service (application crash) via a Yahoo! message with non-ASCII characters in a file name.</description>
      <reference source="CVE">CVE-2005-1269</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-21" comment="gaim RPM earlier than 1:1.3.1-0.el3" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-56" comment="/usr/bin/gaim is executable by any user" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL749" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>bzip2</product>
      </affected>
      <dates>
        <submitted date="2005-07-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>bzip2 allows remote attackers to cause a denial of service (hard drive consumption) via a crafted bzip2 file that causes an infinite loop (a.k.a "decompression bomb").</description>
      <reference source="CVE">CVE-2005-1260</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-20" comment="bzip2 RPM earlier than 0:1.0.2-11.EL3.4" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-55" comment="/usr/bin/bzip2 is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL759" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 4</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>A regression error in Firefox 1.0.3 and Mozilla 1.7.7 allows remote attackers to inject arbitrary Javascript from one page into the frameset of another site, aka the frame injection spoofing vulnerability, a re-introduction of a vulnerability that was originally identified and addressed by CVE-2004-0718.</description>
      <reference source="CVE">CVE-2005-1937</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-1" comment="Red Hat Enterprise 4 is installed" negate="false"/>
          <criterion test_ref="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL773" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to call top.focus and other methods in a parent frame, even when the parent is in a different domain, which violates the same origin policy and allows remote attackers to steal sensitive information such as cookies and passwords from web sites whose child frames do not verify that they are in the same domain as their parents.</description>
      <reference source="CVE">CVE-2005-2266</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-31" comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL781" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 allows remote attackers to cause a denial of service (access violation and crash), and possibly execute arbitrary code, by calling InstallVersion.compareTo with an object instead of a string.</description>
      <reference source="CVE">CVE-2005-2265</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-31" comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL803" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>PWLib</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Added a program_name element to rlt-217">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple vulnerabilities in PWLib before 1.6.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.</description>
      <reference source="CVE">CVE-2004-0097</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-257" comment="pwlib version is less than 1.4.7-4.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-217" comment="a program is listening on TCP or UDP port 1720" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL804" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>netpbm</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>netpbm 9.25 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files.</description>
      <reference source="CVE">CVE-2003-0924</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-341" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-342" comment="Vulnerable configuration" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL806" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>XFree86</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in ReadFontAlias from dirfile.c of XFree86 4.1.0 through 4.3.0 allows local users and remote attackers to execute arbitrary code via a font alias file (font.alias) with a long token, a different vulnerability than CVE-2004-0084 and CVE-2004-0106.</description>
      <reference source="CVE">CVE-2004-0083</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-261" comment="XFree86 version is less than 4.3.0-2.90.55" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-568" comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL807" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>XFree86</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the ReadFontAlias function in XFree86 4.1.0 to 4.3.0, when using the CopyISOLatin1Lowered function, allows local or remote authenticated users to execute arbitrary code via a malformed entry in the font alias (font.alias) file, a different vulnerability than CVE-2004-0083 and CVE-2004-0106.</description>
      <reference source="CVE">CVE-2004-0084</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-261" comment="XFree86 version is less than 4.3.0-2.90.55" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-568" comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL808" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 4</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5, Thunderbird before 1.0.5, Mozilla before 1.7.9, Netscape 8.0.2, and K-Meleon 0.9 runs XBL scripts even when Javascript has been disabled, which makes it easier for remote attackers to bypass such protection.</description>
      <reference source="CVE">CVE-2005-2261</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-1" comment="Red Hat Enterprise 4 is installed" negate="false"/>
          <criterion test_ref="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL809" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>XFree86</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple unknown vulnerabilities in XFree86 4.1.0 to 4.3.0, related to improper handling of font files, a different set of vulnerabilities than CVE-2004-0083 and CVE-2004-0084.</description>
      <reference source="CVE">CVE-2004-0106</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-261" comment="XFree86 version is less than 4.3.0-2.90.55" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-568" comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL810" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>netpbm</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>netpbm 9.25 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files.</description>
      <reference source="CVE">CVE-2003-0924</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-574" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-342" comment="Vulnerable configuration" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL811" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Mutt</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.</description>
      <reference source="CVE">CVE-2004-0078</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-265" comment="mutt version is less than 1.4.1-3.3" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-305" comment="/usr/bin/mutt is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL813" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Mailman</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>Cross-site scripting (XSS) vulnerability in the admin CGI script for Mailman before 2.1.4 allows remote attackers to steal session cookies and conduct unauthorized activities.</description>
      <reference source="CVE">CVE-2003-0965</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-266" comment="mailman version is less than 2.1.1-5" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-218" comment="httpd is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL815" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Mailman</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>Cross-site scripting (XSS) vulnerability in the create CGI script for Mailman before 2.1.3 allows remote attackers to steal cookies of other users.</description>
      <reference source="CVE">CVE-2003-0992</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-266" comment="mailman version is less than 2.1.1-5" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-218" comment="httpd is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL817" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone base objects, which allows remote attackers to execute arbitrary code by navigating the prototype chain to reach a privileged object.</description>
      <reference source="CVE">CVE-2005-2270</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-31" comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL818" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Gaim</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple buffer overflows in Gaim 0.75 and earlier, and Ultramagnetic before 0.81, allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) cookies in a Yahoo web connection, (2) a long name parameter in the Yahoo login web page, (3) a long value parameter in the Yahoo login page, (4) a YMSG packet, (5) the URL parser, and (6) HTTP proxy connect.</description>
      <reference source="CVE">CVE-2004-0006</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-267" comment="gaim version is less than 0.75-0.9.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-802" comment="/usr/bin/gaim is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL819" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Gaim</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the Extract Info Field Function for (1) MSN and (2) YMSG protocol handlers in Gaim 0.74 and earlier, and Ultramagnetic before 0.81, allows remote attackers to cause a denial of service and possibly execute arbitrary code.</description>
      <reference source="CVE">CVE-2004-0007</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-267" comment="gaim version is less than 0.75-0.9.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-802" comment="/usr/bin/gaim is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL820" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Gaim</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>Integer overflow in Gaim 0.74 and earlier, and Ultramagnetic before 0.81, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a directIM packet that triggers a heap-based buffer overflow.</description>
      <reference source="CVE">CVE-2004-0008</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-267" comment="gaim version is less than 0.75-0.9.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-802" comment="/usr/bin/gaim is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL821" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>slocate</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Heap-based buffer overflow in main.c of slocate 2.6, and possibly other versions, may allow local users to gain privileges via a modified slocate database that causes a negative "pathlen" value to be used.</description>
      <reference source="CVE">CVE-2003-0848</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-268" comment="slocate version is less than 2.7-2" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-805" comment="/usr/bin/slocate is setgid" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL822" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Midnight Commander</product>
      </affected>
      <dates>
        <submitted date="2004-03-21-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Stack-based buffer overflow in vfs_s_resolve_symlink of vfs/direntry.c for Midnight Commander (mc) 4.6.0 and earlier, and possibly later versions, allows remote attackers to execute arbitrary code during symlink conversion.</description>
      <reference source="CVE">CVE-2003-1023</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-269" comment="mc version is less than 4.6.0-7.9" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-806" comment="/usr/bin/mc is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL823" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>KDE</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">INTERIM</status_change>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Konqueror in KDE 3.1.3 and earlier (kdelibs) allows remote attackers to bypass intended cookie access restrictions on a web application via "%2e%2e" (encoded dot dot) directory traversal sequences in a URL, which causes Konqueror to send the cookie outside the specified URL subsets, e.g. to a vulnerable application that runs on the same server as the target application.</description>
      <reference source="CVE">CVE-2003-0592</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-270" comment="kdelibs version is less than 3.1-13" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-304" comment="/usr/bin/konqueror is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL825" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mremap</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not properly check the return value from the do_munmap function when the maximum number of VMA descriptors is exceeded, which allows local users to gain root privileges, a different vulnerability than CAN-2003-0985.</description>
      <reference source="CVE">CVE-2004-0077</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-808" comment="Vulnerable Config" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL826" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>PWLib</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Added a program_name element to rlt-217">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple vulnerabilities in PWLib before 1.6.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.</description>
      <reference source="CVE">CVE-2004-0097</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-274" comment="pwlib version is less than 1.4.7-7.EL" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-217" comment="a program is listening on TCP or UDP port 1720" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL827" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Samba 3.0.0 and 3.0.1</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The mksmbpasswd shell script (mksmbpasswd.sh) in Samba 3.0.0 and 3.0.1, when creating an account but marking it as disabled, may overwrite the user password with an uninitialized buffer, which could enable the account with a more easily guessable password.</description>
      <reference source="CVE">CVE-2004-0082</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-275" comment="samba version is less than 3.0.2-6.3E" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-210" comment="smbd is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL828" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>mod_python</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Unknown vulnerability in mod_python 3.0.x before 3.0.4, and 2.7.x before 2.7.9, allows remote attackers to cause a denial of service (httpd crash) via a certain query string.</description>
      <reference source="CVE">CVE-2003-0973</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-276" comment="mod_python version is less than 3.0.1-4" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-220" comment="httpd is listening to the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL830" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>XFree86</product>
      </affected>
      <dates>
        <submitted date="2004-02-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in ReadFontAlias from dirfile.c of XFree86 4.1.0 through 4.3.0 allows local users and remote attackers to execute arbitrary code via a font alias file (font.alias) with a long token, a different vulnerability than CVE-2004-0084 and CVE-2004-0106.</description>
      <reference source="CVE">CVE-2004-0083</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-277" comment="XFree86 version is less than 4.3.0-55.EL" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-568" comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL831" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>XFree86</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the ReadFontAlias function in XFree86 4.1.0 to 4.3.0, when using the CopyISOLatin1Lowered function, allows local or remote authenticated users to execute arbitrary code via a malformed entry in the font alias (font.alias) file, a different vulnerability than CVE-2004-0083 and CVE-2004-0106.</description>
      <reference source="CVE">CVE-2004-0084</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-277" comment="XFree86 version is less than 4.3.0-55.EL" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-568" comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL832" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>XFree86</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple unknown vulnerabilities in XFree86 4.1.0 to 4.3.0, related to improper handling of font files, a different set of vulnerabilities than CVE-2004-0083 and CVE-2004-0084.</description>
      <reference source="CVE">CVE-2004-0106</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-277" comment="XFree86 version is less than 4.3.0-55.EL" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-568" comment="/usr/X11R6/bin/XFree86 is SUID and executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL833" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>XMLSoft Libxml2</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the (1) nanohttp or (2) nanoftp modules in XMLSoft Libxml 2 (Libxml2) 2.6.0 through 2.6.5 allow remote attackers to execute arbitrary code via a long URL.</description>
      <reference source="CVE">CVE-2004-0110</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-815" comment="Vulnerable Config" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL834" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Unknown vulnerability in Linux kernel before 2.4.22 allows local users to gain privileges, related to "R128 DRI limits checking."</description>
      <reference source="CVE">CVE-2004-0003</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-816" comment="Vulnerable Configuration" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL835" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Stack-based buffer overflow in the ncp_lookup function for ncpfs in Linux kernel 2.4.x allows local users to gain privileges.</description>
      <reference source="CVE">CVE-2004-0010</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-816" comment="Vulnerable Configuration" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL836" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Vicam USB driver</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The Vicam USB driver in Linux before 2.4.25 does not use the copy_from_user function when copying data from userspace to kernel space, which crosses security boundaries and allows local users to cause a denial of service.</description>
      <reference source="CVE">CVE-2004-0075</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-816" comment="Vulnerable Configuration" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL837" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>mremap</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not properly check the return value from the do_munmap function when the maximum number of VMA descriptors is exceeded, which allows local users to gain root privileges, a different vulnerability than CAN-2003-0985.</description>
      <reference source="CVE">CVE-2004-0077</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-816" comment="Vulnerable Configuration" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL838" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Mutt</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
      </dates>
      <description>Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.</description>
      <reference source="CVE">CVE-2004-0078</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-284" comment="mutt version is less than 1.4.1-3.4" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-305" comment="/usr/bin/mutt is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL839" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>mod_python</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Unknown vulnerability in mod_python 3.0.x before 3.0.4, and 2.7.x before 2.7.9, allows remote attackers to cause a denial of service (httpd crash) via a certain query string.</description>
      <reference source="CVE">CVE-2003-0973</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-276" comment="mod_python version is less than 3.0.1-4" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-220" comment="httpd is listening to the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL845" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>gdk-pixbuf</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">INTERIM</status_change>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>gdk-pixbuf before 0.20 allows attackers to cause a denial of service (crash) via a malformed bitmap (BMP) file.</description>
      <reference source="CVE">CVE-2004-0111</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-821" comment="Vulnerable configuration" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL846" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>gdk-pixbuf</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">INTERIM</status_change>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>gdk-pixbuf before 0.20 allows attackers to cause a denial of service (crash) via a malformed bitmap (BMP) file.</description>
      <reference source="CVE">CVE-2004-0111</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-822" comment="Vulnerable configuration" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL847" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>tcpdump</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certain ISAKMP packets, a different vulnerability than CVE-2004-0057.</description>
      <reference source="CVE">CVE-2003-0989</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-291" comment="tcpdump version is less than 3.7.2-7.9.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-823" comment="/usr/sbin/tcpdump is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL849" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>sysstat</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>The (1) post and (2) trigger scripts in sysstat 4.0.7 and earlier allow local users to overwrite arbitrary files via symlink attacks on temporary files, a different vulnerability than CVE-2004-0108.</description>
      <reference source="CVE">CVE-2004-0107</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-292" comment="sysstat version is less than 4.0.7-4.rhl9.1" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL850" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>tcpdump</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>The print_attr_string function in print-radius.c for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a RADIUS attribute with a large length value.</description>
      <reference source="CVE">CVE-2004-0055</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-291" comment="tcpdump version is less than 3.7.2-7.9.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-823" comment="/usr/sbin/tcpdump is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL851" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>tcpdump</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>The rawprint function in the ISAKMP decoding routines (print-isakmp.c) for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via malformed ISAKMP packets that cause invalid "len" or "loc" values to be used in a loop, a different vulnerability than CVE-2003-0989.</description>
      <reference source="CVE">CVE-2004-0057</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-291" comment="tcpdump version is less than 3.7.2-7.9.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-823" comment="/usr/sbin/tcpdump is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL852" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>tcpdump</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certain ISAKMP packets, a different vulnerability than CVE-2004-0057.</description>
      <reference source="CVE">CVE-2003-0989</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-293" comment="tcpdump version is less than 3.7.2-7.E3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-823" comment="/usr/sbin/tcpdump is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL853" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>tcpdump</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>The print_attr_string function in print-radius.c for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a RADIUS attribute with a large length value.</description>
      <reference source="CVE">CVE-2004-0055</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-293" comment="tcpdump version is less than 3.7.2-7.E3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-823" comment="/usr/sbin/tcpdump is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL854" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>tcpdump</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
      </dates>
      <description>The rawprint function in the ISAKMP decoding routines (print-isakmp.c) for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via malformed ISAKMP packets that cause invalid "len" or "loc" values to be used in a loop, a different vulnerability than CVE-2003-0989.</description>
      <reference source="CVE">CVE-2004-0057</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-293" comment="tcpdump version is less than 3.7.2-7.E3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-823" comment="/usr/sbin/tcpdump is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL855" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>CVS server</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.</description>
      <reference source="CVE">CVE-2003-0977</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-294" comment="cvs version is less than 1.11.2-13" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-799" comment="/ is world-writable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL856" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Ethereal</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The SMB dissector in Ethereal before 0.10.0 allows remote attackers to cause a denial of service via a malformed SMB packet that triggers a segmentation fault during processing of Selected packets.</description>
      <reference source="CVE">CVE-2003-1012</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-829" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-830" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL857" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Tethereal</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The Q.931 dissector in Ethereal before 0.10.0, and Tethereal, allows remote attackers to cause a denial of service (crash) via a malformed Q.931, which triggers a null dereference.</description>
      <reference source="CVE">CVE-2003-1013</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-829" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-830" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL858" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>KDE Personal Information Management (kdepim)</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the VCF file information reader for KDE Personal Information Management (kdepim) suite in KDE 3.1.0 through 3.1.4 allows attackers to execute arbitrary code via a VCF file.</description>
      <reference source="CVE">CVE-2003-0988</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-297" comment="kdepim version is less than 3.1-6" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-839" comment="/usr/share/services/kfile_vcf.desktop is readable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL859" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Real time clock (RTC) routines in Linux kernel 2.4.23 and earlier do not properly initialize their structures, which could leak kernel data to user space.</description>
      <reference source="CVE">CVE-2003-0984</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-840" comment="Vulnerable Configuration" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL860" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21 does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.</description>
      <reference source="CVE">CVE-2003-0985</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-840" comment="Vulnerable Configuration" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL861" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>nfs-utils packages</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>rpc.mountd in nfs-utils after 1.0.3 and before 1.0.6 allows attackers to cause a denial of service (crash) via an NFS mount of a directory from a client whose reverse DNS lookup name is different from the forward lookup name.</description>
      <reference source="CVE">CVE-2004-0154</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-301" comment="nfs-utils version is less than 1.0.6-7.EL" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-221" comment="rpc.mountd is listening to the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL862" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Sysstat</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>The (1) post and (2) trigger scripts in sysstat 4.0.7 and earlier allow local users to overwrite arbitrary files via symlink attacks on temporary files, a different vulnerability than CVE-2004-0108.</description>
      <reference source="CVE">CVE-2004-0107</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-302" comment="sysstat version is less than 4.0.7-4.EL3.2" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL863" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>httpd</product>
      </affected>
      <dates>
        <submitted date="2004-03-17-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple stack-based buffer overflows in (1) mod_alias and (2) mod_rewrite for Apache before 1.3.29 allow attackers to create configuration files to cause a denial of service (crash) or execute arbitrary code via a regular expression with more than 9 captures.</description>
      <reference source="CVE">CVE-2003-0542</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-303" comment="httpd version is less than 2.0.40-21.9" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-203" comment="httpd.worker is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL864" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Apache</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple stack-based buffer overflows in (1) mod_alias and (2) mod_rewrite for Apache before 1.3.29 allow attackers to create configuration files to cause a denial of service (crash) or execute arbitrary code via a regular expression with more than 9 captures.</description>
      <reference source="CVE">CVE-2003-0542</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-304" comment="httpd version is less than 2.0.46-26.ent" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-203" comment="httpd.worker is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL865" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>KDE Personal Information Management (kdepim)</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">INTERIM</status_change>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the VCF file information reader for KDE Personal Information Management (kdepim) suite in KDE 3.1.0 through 3.1.4 allows attackers to execute arbitrary code via a VCF file.</description>
      <reference source="CVE">CVE-2003-0988</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-305" comment="kdepim version is less than 3.1.3-3.3" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-839" comment="/usr/share/services/kfile_vcf.desktop is readable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL866" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>CVS server</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.</description>
      <reference source="CVE">CVE-2003-0977</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-306" comment="cvs version is less than 1.11.2-14" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-799" comment="/ is world-writable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL867" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21 does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.</description>
      <reference source="CVE">CVE-2003-0985</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-843" comment="Vulnerable Configuration" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL868" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Unknown vulnerability in the eflags checking in the 32-bit ptrace emulation for the Linux kernel on AMD64 systems allows local users to gain privileges.</description>
      <reference source="CVE">CVE-2004-0001</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-3" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-310" comment="kernel version is less than 2.4.21-9.EL" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL869" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Net-SNMP</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Net-SNMP before 5.0.9 allows a user or community to access data in MIB objects, even if that data is not allowed to be viewed.</description>
      <reference source="CVE">CVE-2003-0935</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-311" comment="net-snmp version is less than 5.0.9-2.30E.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-223" comment="snmpd is listening to the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL870" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>OpenSSL</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.</description>
      <reference source="CVE">CVE-2004-0079</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-312" comment="openssl version is less than 0.9.7a-33.4" negate="false"/>
          <criterion test_ref="rvt-313" comment="openssl-devel version is less than 0.9.7a-33.4" negate="false"/>
          <criterion test_ref="rvt-314" comment="openssl-perl version is less than 0.9.7a-33.4" negate="false"/>
          <criterion test_ref="rvt-315" comment="openssl096b version is less than 0.9.6b-16" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL871" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>OpenSSL</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool.</description>
      <reference source="CVE">CVE-2004-0081</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-312" comment="openssl version is less than 0.9.7a-33.4" negate="false"/>
          <criterion test_ref="rvt-313" comment="openssl-devel version is less than 0.9.7a-33.4" negate="false"/>
          <criterion test_ref="rvt-314" comment="openssl-perl version is less than 0.9.7a-33.4" negate="false"/>
          <criterion test_ref="rvt-315" comment="openssl096b version is less than 0.9.6b-16" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL872" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2004-03-18-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">INTERIM</status_change>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple vulnerabilities in multiple vendor implementations of the Secure/Multipurpose Internet Mail Extensions (S/MIME) protocol allow remote attackers to cause a denial of service and possibly execute arbitrary code via an S/MIME email message containing certain unexpected ASN.1 constructs, as demonstrated using the NISSC test suite.</description>
      <reference source="CVE">CVE-2003-0564</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-316" comment="mozilla-nss version is less than 1.4.2-0.9.0" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL873" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2004-03-18-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">INTERIM</status_change>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Mozilla allows remote attackers to bypass intended cookie access restrictions on a web application via "%2e%2e" (encoded dot dot) directory traversal sequences in a URL, which causes Mozilla to send the cookie outside the specified URL subsets, e.g. to a vulnerable application that runs on the same server as the target application.</description>
      <reference source="CVE">CVE-2003-0594</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-317" comment="mozilla version is less than 1.4.2-0.9.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-844" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL874" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2004-03-18-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">INTERIM</status_change>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Mozilla before 1.4.2 executes Javascript events in the context of a new page while it is being loaded, allowing it to interact with the previous page (zombie document) and enable cross-domain and cross-site scripting (XSS) attacks, as demonstrated using onmousemove events.</description>
      <reference source="CVE">CVE-2004-0191</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-317" comment="mozilla version is less than 1.4.2-0.9.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-844" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL875" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>libxml2</product>
      </affected>
      <dates>
        <submitted date="2004-02-22-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the (1) nanohttp or (2) nanoftp modules in XMLSoft Libxml 2 (Libxml2) 2.6.0 through 2.6.5 allow remote attackers to execute arbitrary code via a long URL.</description>
      <reference source="CVE">CVE-2004-0110</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-815" comment="Vulnerable Config" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL876" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>httpd</product>
      </affected>
      <dates>
        <submitted date="2004-03-26-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Memory leak in ssl_engine_io.c for mod_ssl in Apache 2 before 2.0.49 allows remote attackers to cause a denial of service (memory consumption) via plain HTTP requests to the SSL port of an SSL-enabled server.</description>
      <reference source="CVE">CVE-2004-0113</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-323" comment="mod_ssl version is less than 2.0.46-32.ent" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-220" comment="httpd is listening to the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL877" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Red Hat 9</product>
      </affected>
      <dates>
        <submitted date="2004-04-07-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">INTERIM</status_change>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>The "%xx" URL decoding function in Squid 2.5STABLE4 and earlier allows remote attackers to bypass url_regex ACLs via a URL with a NULL ("%00") characterm, which causes Squid to use only a portion of the requested URL when comparing it against the access control lists.</description>
      <reference source="CVE">CVE-2004-0189</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-325" comment="squid version is less than 2.5STABLE1-3.9" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-225" comment="squid is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL878" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Red Hat 9</product>
      </affected>
      <dates>
        <submitted date="2004-04-07-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple buffer overflows in Ethereal 0.8.13 to 0.10.2 allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) NetFlow, (2) IGAP, (3) EIGRP, (4) PGM, (5) IrDA, (6) BGP, (7) ISUP, or (8) TCAP dissectors.</description>
      <reference source="CVE">CVE-2004-0176</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-848" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-849" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL879" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Red Hat 9</product>
      </affected>
      <dates>
        <submitted date="2004-04-07-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>The dissect_attribute_value_pairs function in packet-radius.c for Ethereal 0.8.13 to 0.10.2 allows remote attackers to cause a denial of service (crash) via a malformed RADIUS packet that triggers a null dereference.</description>
      <reference source="CVE">CVE-2004-0365</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-848" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-849" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL880" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>Red Hat 9</product>
      </affected>
      <dates>
        <submitted date="2004-04-07-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Ethereal 0.10.1 to 0.10.2 allows remote attackers to cause a denial of service (crash) via a zero-length Presentation protocol selector.</description>
      <reference source="CVE">CVE-2004-0367</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-848" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-849" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL887" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-04-08-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple buffer overflows in Ethereal 0.8.13 to 0.10.2 allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) NetFlow, (2) IGAP, (3) EIGRP, (4) PGM, (5) IrDA, (6) BGP, (7) ISUP, or (8) TCAP dissectors.</description>
      <reference source="CVE">CVE-2004-0176</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-863" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-849" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL891" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-04-08-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>The dissect_attribute_value_pairs function in packet-radius.c for Ethereal 0.8.13 to 0.10.2 allows remote attackers to cause a denial of service (crash) via a malformed RADIUS packet that triggers a null dereference.</description>
      <reference source="CVE">CVE-2004-0365</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-863" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-849" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL902" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>OpenSSL</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool.</description>
      <reference source="CVE">CVE-2004-0081</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-318" comment="openssl version is less than 0.9.7a-20" negate="false"/>
          <criterion test_ref="rvt-319" comment="openssl-devel version is less than 0.9.7a-20" negate="false"/>
          <criterion test_ref="rvt-320" comment="openssl-perl version is less than 0.9.7a-20" negate="false"/>
          <criterion test_ref="rvt-321" comment="openssl096 version is less than 0.9.6-25.9" negate="false"/>
          <criterion test_ref="rvt-322" comment="openssl096b version is less than 0.9.6b-15" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL905" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-04-08-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Ethereal 0.10.1 to 0.10.2 allows remote attackers to cause a denial of service (crash) via a zero-length Presentation protocol selector.</description>
      <reference source="CVE">CVE-2004-0367</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-863" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-849" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL914" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-04-08-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">INTERIM</status_change>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple vulnerabilities in multiple vendor implementations of the Secure/Multipurpose Internet Mail Extensions (S/MIME) protocol allow remote attackers to cause a denial of service and possibly execute arbitrary code via an S/MIME email message containing certain unexpected ASN.1 constructs, as demonstrated using the NISSC test suite.</description>
      <reference source="CVE">CVE-2003-0564</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-330" comment="mozilla-nss version is less than 1.4.2-3.0.2" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL917" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-04-08-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">INTERIM</status_change>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Mozilla allows remote attackers to bypass intended cookie access restrictions on a web application via "%2e%2e" (encoded dot dot) directory traversal sequences in a URL, which causes Mozilla to send the cookie outside the specified URL subsets, e.g. to a vulnerable application that runs on the same server as the target application.</description>
      <reference source="CVE">CVE-2003-0594</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-330" comment="mozilla-nss version is less than 1.4.2-3.0.2" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL928" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>OpenSSL</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an out-of-bounds read.</description>
      <reference source="CVE">CVE-2004-0112</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-312" comment="openssl version is less than 0.9.7a-33.4" negate="false"/>
          <criterion test_ref="rvt-313" comment="openssl-devel version is less than 0.9.7a-33.4" negate="false"/>
          <criterion test_ref="rvt-314" comment="openssl-perl version is less than 0.9.7a-33.4" negate="false"/>
          <criterion test_ref="rvt-315" comment="openssl096b version is less than 0.9.6b-16" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL937" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-04-08-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-05-12:00">INTERIM</status_change>
        <modified date="2004-05-11-12:00" comment="Corrected pattern used in rrt-206">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">ACCEPTED</status_change>
      </dates>
      <description>Mozilla before 1.4.2 executes Javascript events in the context of a new page while it is being loaded, allowing it to interact with the previous page (zombie document) and enable cross-domain and cross-site scripting (XSS) attacks, as demonstrated using onmousemove events.</description>
      <reference source="CVE">CVE-2004-0191</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-330" comment="mozilla-nss version is less than 1.4.2-3.0.2" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL939" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Integer overflow in the ip_setsockopt function in Linux kernel 2.4.22 through 2.4.25 and 2.6.1 through 2.6.3 allows local users to cause a denial of service (crash) or execute arbitrary code via the MCAST_MSFILTER socket option.</description>
      <reference source="CVE">CVE-2004-0424</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-921" comment="kernel versions" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL940" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the ISO9660 file system component for Linux kernel 2.4.x, 2.5.x and 2.6.x , allows local users with physical access to overflow kernel memory and execute arbitrary code via a malformed CD containing a long symbolic link entry.</description>
      <reference source="CVE">CVE-2004-0109</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-921" comment="kernel versions" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-923" comment="/bin/mount is world-executable AND Set-UID" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL941" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>The "%xx" URL decoding function in Squid 2.5STABLE4 and earlier allows remote attackers to bypass url_regex ACLs via a URL with a NULL ("%00") characterm, which causes Squid to use only a portion of the requested URL when comparing it against the access control lists.</description>
      <reference source="CVE">CVE-2004-0189</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-337" comment="squid version is less than 2.5.STABLE3-5.3E" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-225" comment="squid is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL945" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-12-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-16-12:00">INTERIM</status_change>
        <status_change date="2004-06-30-12:00">ACCEPTED</status_change>
      </dates>
      <description>The KAME IKE Daemon Racoon, when authenticating a peer during Phase 1, validates the X.509 certificate but does not verify the RSA signature authentication, which allows remote attackers to establish unauthorized IP connections or conduct man-in-the-middle attacks using a valid, trusted X.509 certificate.</description>
      <reference source="CVE">CVE-2004-0155</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-338" comment="ipsec-tools version is less than 0.2.5-0.4" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-230" comment="racoon is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL947" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-12-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-16-12:00">INTERIM</status_change>
        <status_change date="2004-06-30-12:00">ACCEPTED</status_change>
      </dates>
      <description>KAME IKE daemon (racoon) does not properly handle hash values, which allows remote attackers to delete certificates via (1) a certain delete message that is not properly handled in isakmp.c or isakmp_inf.c, or (2) a certain INITIAL-CONTACT message that is not properly handled in isakmp_inf.c.</description>
      <reference source="CVE">CVE-2004-0164</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-338" comment="ipsec-tools version is less than 0.2.5-0.4" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-230" comment="racoon is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL954" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-19-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-16-12:00">INTERIM</status_change>
        <status_change date="2004-06-30-12:00">ACCEPTED</status_change>
      </dates>
      <description>The URI handlers in Konqueror for KDE 3.2.2 and earlier do not properly filter "-" characters that begin a hostname in a (1) telnet, (2) rlogin, (3) ssh, or (4) mailto URI, which allows remote attackers to manipulate the options that are passed to the associated programs, possibly to read arbitrary files or execute arbitrary code.</description>
      <reference source="CVE">CVE-2004-0411</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-339" comment="kdelibs version is less than 3.1.3-6.4" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-924" comment="telnet, rlogin, ssh or kmail is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL960" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>ImageMagick</product>
      </affected>
      <dates>
        <submitted date="2005-07-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>The XWD Decoder in ImageMagick before 6.2.2.3, and GraphicsMagick before 1.1.6-r1, allows remote attackers to cause a denial of service (infinite loop) via an image with a zero color mask.</description>
      <reference source="CVE">CVE-2005-1739</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-23" comment="ImageMagick RPM earlier than 0:5.5.6-15" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL967" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-19-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-16-12:00">INTERIM</status_change>
        <status_change date="2004-06-30-12:00">ACCEPTED</status_change>
      </dates>
      <description>rsync before 2.6.1 does not properly sanitize paths when running a read/write daemon without using chroot, which allows remote attackers to write files outside of the module's path.</description>
      <reference source="CVE">CVE-2004-0426</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-340" comment="rsync version is less than 2.5.7-4.3E" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL970" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-16-12:00">INTERIM</status_change>
        <status_change date="2004-06-30-12:00">ACCEPTED</status_change>
      </dates>
      <description>Heap-based buffer overflow in CVS 1.11.x up to 1.11.15, and 1.12.x up to 1.12.7, when using the pserver mechanism allows remote attackers to execute arbitrary code via Entry lines.</description>
      <reference source="CVE">CVE-2004-0396</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-341" comment="cvs version is less than 1.11.2-22" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-931" comment="/usr/bin/cvs is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL971" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-16-12:00">INTERIM</status_change>
        <status_change date="2004-06-30-12:00">ACCEPTED</status_change>
      </dates>
      <description>The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG image file that triggers an error that causes an out-of-bounds read when creating the error message.</description>
      <reference source="CVE">CVE-2004-0421</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="cmp-932" comment="libpng/libpng-devel is less than 1.2.2-21 or libpng10/libpng-devel less than 1.0.13 is installed" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL972" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-06-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-30-12:00">INTERIM</status_change>
        <status_change date="2004-07-12-12:00">ACCEPTED</status_change>
      </dates>
      <description>TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via ISAKMP packets containing a Delete payload with a large number of SPI's, which causes an out-of-bounds read, as demonstrated by the Striker ISAKMP Protocol Test Suite.</description>
      <reference source="CVE">CVE-2004-0183</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-353" comment="tcpdump version is less than 3.7.2-7.E3.2" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-1017" comment="/usr/sbin/tcpdump is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL975" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>OpenSSL</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.</description>
      <reference source="CVE">CVE-2004-0079</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-318" comment="openssl version is less than 0.9.7a-20" negate="false"/>
          <criterion test_ref="rvt-319" comment="openssl-devel version is less than 0.9.7a-20" negate="false"/>
          <criterion test_ref="rvt-320" comment="openssl-perl version is less than 0.9.7a-20" negate="false"/>
          <criterion test_ref="rvt-321" comment="openssl096 version is less than 0.9.6-25.9" negate="false"/>
          <criterion test_ref="rvt-322" comment="openssl096b version is less than 0.9.6b-15" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL976" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-06-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-30-12:00">INTERIM</status_change>
        <status_change date="2004-07-12-12:00">ACCEPTED</status_change>
      </dates>
      <description>Integer underflow in the isakmp_id_print for TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with an Identification payload with a length that becomes less than 8 during byte order conversion, which causes an out-of-bounds read, as demonstrated by the Striker ISAKMP Protocol Test Suite.</description>
      <reference source="CVE">CVE-2004-0184</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-353" comment="tcpdump version is less than 3.7.2-7.E3.2" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-1017" comment="/usr/sbin/tcpdump is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL977" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-06-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-30-12:00">INTERIM</status_change>
        <status_change date="2004-07-12-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14 allow remote attackers or local users to execute arbitrary code via long directory or file names in an LHA archive, which triggers the overflow when testing or extracting the archive.</description>
      <reference source="CVE">CVE-2004-0234</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-354" comment="lha version is less than 1.14i-10.2" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-1019" comment="/usr/bin/lha is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL978" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-06-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-30-12:00">INTERIM</status_change>
        <status_change date="2004-07-12-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple directory traversal vulnerabilities in LHA 1.14 allow remote attackers or local users to create arbitrary files via an LHA archive containing filenames with (1) .. sequences or (2) absolute pathnames with double leading slashes ("//absolute/path").</description>
      <reference source="CVE">CVE-2004-0235</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-354" comment="lha version is less than 1.14i-10.2" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-1019" comment="/usr/bin/lha is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL979" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-06-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-30-12:00">INTERIM</status_change>
        <status_change date="2004-07-12-12:00">ACCEPTED</status_change>
      </dates>
      <description>Utempter allows device names that contain .. (dot dot) directory traversal sequences, which allows local users to overwrite arbitrary files via a symlink attack on device names in combination with an application that trusts the utmp or wtmp files.</description>
      <reference source="CVE">CVE-2004-0233</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-355" comment="utempter version is less than 0.5.5-1.3EL.0" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-1020" comment="/usr/sbin/utempter is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL980" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-06-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-30-12:00">INTERIM</status_change>
        <status_change date="2004-07-12-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the ntlm_check_auth (NTLM authentication) function for Squid Web Proxy Cache 2.5.x and 3.x, when compiled with NTLM handlers enabled, allows remote attackers to execute arbitrary code via a long password ("pass" variable).</description>
      <reference source="CVE">CVE-2004-0541</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-356" comment="squid version is less than 2.5.STABLE3-6.3E" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-233" comment="squid is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL982" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-06-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-30-12:00">INTERIM</status_change>
        <status_change date="2004-07-12-12:00">ACCEPTED</status_change>
      </dates>
      <description>Ethereal 0.10.3 allows remote attackers to cause a denial of service (crash) via certain SIP messages between Hotsip servers and clients.</description>
      <reference source="CVE">CVE-2004-0504</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-1022" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-849" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL984" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-12-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-16-12:00">INTERIM</status_change>
        <status_change date="2004-06-30-12:00">ACCEPTED</status_change>
      </dates>
      <description>Racoon before 20040408a allows remote attackers to cause a denial of service (memory consumption) via an ISAKMP packet with a large length field.</description>
      <reference source="CVE">CVE-2004-0403</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-338" comment="ipsec-tools version is less than 0.2.5-0.4" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-230" comment="racoon is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL986" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-06-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-30-12:00">INTERIM</status_change>
        <status_change date="2004-07-12-12:00">ACCEPTED</status_change>
      </dates>
      <description>The AIM dissector in Ethereal 0.10.3 allows remote attackers to cause a denial of service (assert error) via unknown attack vectors.</description>
      <reference source="CVE">CVE-2004-0505</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-1022" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-849" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL987" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-06-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-30-12:00">INTERIM</status_change>
        <status_change date="2004-07-12-12:00">ACCEPTED</status_change>
      </dates>
      <description>The SPNEGO dissector in Ethereal 0.9.8 to 0.10.3 allows remote attackers to cause a denial of service (crash) via unknown attack vectors that cause a null pointer dereference.</description>
      <reference source="CVE">CVE-2004-0506</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-1022" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-849" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL988" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-06-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-30-12:00">INTERIM</status_change>
        <status_change date="2004-07-12-12:00">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the MMSE dissector for Ethereal 0.10.1 to 0.10.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code.</description>
      <reference source="CVE">CVE-2004-0507</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-1022" comment="Vulnerable Config" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-849" comment="Vulnerable Config" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL991" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>MIT Kerberos 5 (krb5)</product>
      </affected>
      <dates>
        <submitted date="2004-06-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-07-21-12:00">INTERIM</status_change>
        <status_change date="2004-08-04-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.</description>
      <reference source="CVE">CVE-2004-0523</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-361" comment="krb5-libs rpm version prior to 1.2.7-24 is installed" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL993" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>CVS</product>
      </affected>
      <dates>
        <submitted date="2004-06-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-07-21-12:00">INTERIM</status_change>
        <status_change date="2004-08-04-12:00">ACCEPTED</status_change>
      </dates>
      <description>CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed "Entry" lines, which prevents a NULL terminator from being used and may lead to a denial of service (crash), modification of critical program data, or arbitrary code execution.</description>
      <reference source="CVE">CVE-2004-0414</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-362" comment="cvs rpm version prior to 1.11.2-24 is installed" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-931" comment="/usr/bin/cvs is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL994" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>CVS</product>
      </affected>
      <dates>
        <submitted date="2004-06-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-07-21-12:00">INTERIM</status_change>
        <status_change date="2004-08-04-12:00">ACCEPTED</status_change>
      </dates>
      <description>Double-free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code.</description>
      <reference source="CVE">CVE-2004-0416</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-362" comment="cvs rpm version prior to 1.11.2-24 is installed" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-931" comment="/usr/bin/cvs is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL997" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-12-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-16-12:00">INTERIM</status_change>
        <status_change date="2004-06-30-12:00">INTERIM</status_change>
        <status_change date="2004-07-12-12:00">ACCEPTED</status_change>
      </dates>
      <description>/proc/tty/driver/serial in Linux 2.4.x reveals the exact number of characters used in serial links, which could allow local users to obtain potentially sensitive information such as the length of passwords.</description>
      <reference source="CVE">CVE-2003-0461</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-346" comment="kernel version is less than 2.4.21-15.EL" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-26" comment="/proc/tty/driver/serial is world-readable" negate="false"/>
          <criterion test_ref="upt-27" comment="/proc/tty/driver/ is world-executable" negate="false"/>
          <criterion test_ref="upt-28" comment="/proc/tty/ is world-executable" negate="false"/>
          <criterion test_ref="upt-29" comment="/proc/ is world-executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1001" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>CVS</product>
      </affected>
      <dates>
        <submitted date="2004-06-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-07-21-12:00">INTERIM</status_change>
        <status_change date="2004-08-04-12:00">ACCEPTED</status_change>
      </dates>
      <description>Integer overflow in the "Max-dotdot" CVS protocol command (serve_max_dotdot) for CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to cause a server crash, which could cause temporary data to remain undeleted and consume disk space.</description>
      <reference source="CVE">CVE-2004-0417</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-362" comment="cvs rpm version prior to 1.11.2-24 is installed" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-931" comment="/usr/bin/cvs is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1003" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>CVS</product>
      </affected>
      <dates>
        <submitted date="2004-06-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-07-21-12:00">INTERIM</status_change>
        <status_change date="2004-08-04-12:00">ACCEPTED</status_change>
      </dates>
      <description>serve_notify in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle empty data lines, which may allow remote attackers to perform an "out-of-bounds" write for a single byte to execute arbitrary code or modify critical program data.</description>
      <reference source="CVE">CVE-2004-0418</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-362" comment="cvs rpm version prior to 1.11.2-24 is installed" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-931" comment="/usr/bin/cvs is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1006" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>SquirrelMail</product>
      </affected>
      <dates>
        <submitted date="2004-06-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-07-21-12:00">INTERIM</status_change>
        <status_change date="2004-08-11-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.2 allow remote attackers to execute arbitrary script as other users and possibly steal authentication information via multiple attack vectors, including the mailbox parameter in compose.php.</description>
      <reference source="CVE">CVE-2004-0519</reference>
      <status>ACCEPTED</status>
      <version>0</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-363" comment="squirrelmail rpm version prior to 1.4.3-0.e3.1 is installed" negate="false"/>
          <criterion test_ref="rrt-217" comment="php rpm is installed" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-218" comment="httpd is listening on the network" negate="false"/>
          <criterion test_ref="uft-1" comment="/etc/httpd/modules/libphp4.so exists" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1012" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>SquirrelMail</product>
      </affected>
      <dates>
        <submitted date="2004-06-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-07-21-12:00">INTERIM</status_change>
        <status_change date="2004-08-11-12:00">ACCEPTED</status_change>
      </dates>
      <description>Cross-site scripting (XSS) vulnerability in mime.php for SquirrelMail before 1.4.3 allows remote attackers to insert arbitrary HTML and script via the content-type mail header, as demonstrated using read_body.php.</description>
      <reference source="CVE">CVE-2004-0520</reference>
      <status>ACCEPTED</status>
      <version>0</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-363" comment="squirrelmail rpm version prior to 1.4.3-0.e3.1 is installed" negate="false"/>
          <criterion test_ref="rrt-217" comment="php rpm is installed" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-218" comment="httpd is listening on the network" negate="false"/>
          <criterion test_ref="uft-1" comment="/etc/httpd/modules/libphp4.so exists" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1013" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-12-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-16-12:00">INTERIM</status_change>
        <status_change date="2004-06-30-12:00">ACCEPTED</status_change>
      </dates>
      <description>Real time clock (RTC) routines in Linux kernel 2.4.23 and earlier do not properly initialize their structures, which could leak kernel data to user space.</description>
      <reference source="CVE">CVE-2003-0984</reference>
      <status>ACCEPTED</status>
      <version>2</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-346" comment="kernel version is less than 2.4.21-15.EL" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL1017" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-12-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-16-12:00">INTERIM</status_change>
        <status_change date="2004-06-30-12:00">ACCEPTED</status_change>
      </dates>
      <description>Unknown vulnerability in Linux kernel before 2.4.22 allows local users to gain privileges, related to "R128 DRI limits checking."</description>
      <reference source="CVE">CVE-2004-0003</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-347" comment="kernel version is less than 2.4.21-15.EL" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL1033" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>SquirrelMail</product>
      </affected>
      <dates>
        <submitted date="2004-06-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-07-21-12:00">INTERIM</status_change>
        <status_change date="2004-08-11-12:00">ACCEPTED</status_change>
      </dates>
      <description>SQL injection vulnerability in SquirrelMail before 1.4.3 RC1 allows remote attackers to execute unauthorized SQL statements, with unknown impact, probably via abook_database.php.</description>
      <reference source="CVE">CVE-2004-0521</reference>
      <status>ACCEPTED</status>
      <version>0</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-363" comment="squirrelmail rpm version prior to 1.4.3-0.e3.1 is installed" negate="false"/>
          <criterion test_ref="rrt-217" comment="php rpm is installed" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-218" comment="httpd is listening on the network" negate="false"/>
          <criterion test_ref="uft-1" comment="/etc/httpd/modules/libphp4.so exists" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1035" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-12-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-06-16-12:00">INTERIM</status_change>
        <status_change date="2004-06-30-12:00">ACCEPTED</status_change>
      </dates>
      <description>Stack-based buffer overflow in the ncp_lookup function for ncpfs in Linux kernel 2.4.x allows local users to gain privileges.</description>
      <reference source="CVE">CVE-2004-0010</reference>
      <status>ACCEPTED</status>
      <version>2</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-347" comment="kernel version is less than 2.4.21-15.EL" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL1038" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>fetchmail</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the POP3 client in Fetchmail before 6.2.5.2 allows remote POP3 servers to cause a denial of service and possibly execute arbitrary code via long UIDL responses.  NOTE: a typo in an advisory accidentally used the wrong CVE identifier for the Fetchmail issue. This is the correct identifier.</description>
      <reference source="CVE">CVE-2005-2335</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-29" comment="fetchmail RPM older than 0:6.2.0-3.el3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-858" comment="/usr/bin/fetchmail is executable by any user" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1042" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>The client for CVS before 1.11 allows a remote malicious CVS server to create arbitrary files using certain RCS diff files that use absolute pathnames during checkouts or updates, a different vulnerability than CVE-2004-0405.</description>
      <reference source="CVE">CVE-2004-0180</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-348" comment="cvs version is less than 1.11.2-18" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-931" comment="/usr/bin/cvs is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1049" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Linux 9</redhat:platform>
        <product>OpenSSL</product>
      </affected>
      <dates>
        <submitted date="2004-03-20-12:00">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </submitted>
        <modified date="2004-05-05-12:00" comment="Corrected syntax errors in sql verion of the definition.">
          <contributor organization="The MITRE Corporation">Matt Busby</contributor>
        </modified>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an out-of-bounds read.</description>
      <reference source="CVE">CVE-2004-0112</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-201" comment="Red Hat 9 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-318" comment="openssl version is less than 0.9.7a-20" negate="false"/>
          <criterion test_ref="rvt-319" comment="openssl-devel version is less than 0.9.7a-20" negate="false"/>
          <criterion test_ref="rvt-320" comment="openssl-perl version is less than 0.9.7a-20" negate="false"/>
          <criterion test_ref="rvt-321" comment="openssl096 version is less than 0.9.6-25.9" negate="false"/>
          <criterion test_ref="rvt-322" comment="openssl096b version is less than 0.9.6b-15" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL1060" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-10-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-25-12:00">INTERIM</status_change>
        <status_change date="2004-06-16-12:00">ACCEPTED</status_change>
      </dates>
      <description>CVS before 1.11 allows CVS clients to read arbitrary files via .. (dot dot) sequences in filenames via CVS client requests, a different vulnerability than CVE-2004-0180.</description>
      <reference source="CVE">CVE-2004-0405</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-348" comment="cvs version is less than 1.11.2-18" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-931" comment="/usr/bin/cvs is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1065" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Red Hat Enteprise Linux 3</product>
      </affected>
      <dates>
        <submitted date="2004-05-10-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-05-25-04:00">INTERIM</status_change>
        <status_change date="2004-06-16-04:00">ACCEPTED</status_change>
        <modified date="2005-09-20-04:00" comment="modified upt-36 - Fixed typo: oofice should have been ooffice">
          <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
        </modified>
        <modified date="2005-09-20-04:01" comment="modified upt-37 - Fixed typo--oofice should have been ooffice">
          <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
        </modified>
        <modified date="2005-09-20-04:02" comment="modified upt-38 - Fixed typo--oofice should have been ooffice">
          <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
        </modified>
        <modified date="2005-09-20-04:03" comment="modified cmp-940 - Fixed comment typo--oofice should have been ooffice">
          <contributor organization="The MITRE Corporation">Matthew Wojcik</contributor>
        </modified>
        <status_change date="2005-09-21-01:27">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversion, and (4) OpenOffice, allow remote malicious WebDAV servers to execute arbitrary code.</description>
      <reference source="CVE">CVE-2004-0179</reference>
      <status>ACCEPTED</status>
      <version>2</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="uut-1" comment="ix86 architecture" negate="false"/>
          <criterion test_ref="rvt-349" comment="openoffice version is less than 1.1.0-15.EL" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="cmp-937" comment="OpenOffice Permissions" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1073" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 4</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5 allows remote attackers to steal information and possibly execute arbitrary code by using standalone applications such as Flash and QuickTime to open a javascript: URL, which is run in the context of the previous page, and may lead to code execution if the standalone application loads a privileged chrome: URL.</description>
      <reference source="CVE">CVE-2005-2267</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false"/>
          <criterion test_ref="rrt-1" comment="Red Hat Enterprise 4 is installed" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1081" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>zgrep</product>
      </affected>
      <dates>
        <submitted date="2005-07-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.</description>
      <reference source="CVE">CVE-2005-0758</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-20" comment="bzip2 RPM earlier than 0:1.0.2-11.EL3.4" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-2" comment="/usr/bin/bzgrep is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1086" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>postgresql</product>
      </affected>
      <dates>
        <submitted date="2005-06-27-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-29-06:49">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>The tsearch2 module in PostgreSQL 7.4 through 8.0.x declares the (1) dex_init, (2) snb_en_init, (3) snb_ru_init, (4) spell_init, and (5) syn_init functions as "internal" even when they do not take an internal argument, which allows attackers to cause a denial of service (application crash) and possibly have other impacts via SQL commands that call other functions that accept internal arguments.</description>
      <reference source="CVE">CVE-2005-1410</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-10" comment="rh-postgresql-contrib rpm is earlier than 0:7.3.10-1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="uct-1" comment="postmaster (the PostgreSQL master daemon) is running" negate="false"/>
          <criterion test_ref="uft-2" comment="/usr/lib/pgsql/tsearch.so (PostgreSQL's tsearch module) exists as a regular file" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1107" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>gzip</product>
      </affected>
      <dates>
        <submitted date="2005-06-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-22-12:38">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.</description>
      <reference source="CVE">CVE-2005-0758</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-7" comment="gzip RPM earlier than 0:1.3.3-12rhel3" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-227" comment="/usr/bin/zgrep is executable by any user" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1117" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2005-06-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-29-06:49">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>The linux-2.4.21-mlock.patch in Red Hat Enterprise Linux 3 does not properly maintain the mlock page count when one process unlocks pages that belong to another process, which allows local users to mlock more memory than specified by the rlimit.</description>
      <reference source="CVE">CVE-2004-0491</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-268" comment="kernel, kernel-smp or kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL1122" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2005-06-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-29-06:49">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>The elf_core_dump function in binfmt_elf.c for Linux kernel 2.x.x to 2.2.27-rc2, 2.4.x to 2.4.31-pre1, and 2.6.x to 2.6.12-rc4 allows local users to execute arbitrary code via an ELF binary that, in certain conditions involving the create_elf_tables function, causes a negative length argument to pass a signed integer comparison, leading to a buffer overflow.</description>
      <reference source="CVE">CVE-2005-1263</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-268" comment="kernel, kernel-smp or kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL1124" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 4</redhat:platform>
        <product>fetchmail</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Buffer overflow in the POP3 client in Fetchmail before 6.2.5.2 allows remote POP3 servers to cause a denial of service and possibly execute arbitrary code via long UIDL responses.  NOTE: a typo in an advisory accidentally used the wrong CVE identifier for the Fetchmail issue. This is the correct identifier.</description>
      <reference source="CVE">CVE-2005-2335</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-1" comment="Red Hat Enterprise 4 is installed" negate="false"/>
          <criterion test_ref="rvt-30" comment="fetchmail RPM earlier than 0:6.2.5-6.el4.2" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-858" comment="/usr/bin/fetchmail is executable by any user" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1139" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>telnet</product>
      </affected>
      <dates>
        <submitted date="2005-07-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>Certain BSD-based Telnet clients, including those used on Solaris and SuSE Linux, allow remote malicious Telnet servers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command.</description>
      <reference source="CVE">CVE-2005-0488</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-22" comment="telnet RPM earlier than 1:0.17-20.EL3.3" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-57" comment="/usr/bin/telnet is executable by any user" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1154" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>bzip2</product>
      </affected>
      <dates>
        <submitted date="2005-07-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>Race condition in bzip2 1.0.2 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by bzip2 after the decompression is complete.</description>
      <reference source="CVE">CVE-2005-0953</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-20" comment="bzip2 RPM earlier than 0:1.0.2-11.EL3.4" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-55" comment="/usr/bin/bzip2 is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1169" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>gzip</product>
      </affected>
      <dates>
        <submitted date="2005-06-20-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-22-12:38">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by gzip after the decompression is complete.</description>
      <reference source="CVE">CVE-2005-0988</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-7" comment="gzip RPM earlier than 0:1.3.3-12rhel3" negate="false"/>
        </software>
        <configuration operation="OR">
          <criterion test_ref="upt-428" comment="/usr/bin/gunzip is executable" negate="false"/>
          <criterion test_ref="upt-529" comment="/usr/bin/gzip is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1172" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5 allows remote attackers to steal information and possibly execute arbitrary code by using standalone applications such as Flash and QuickTime to open a javascript: URL, which is run in the context of the previous page, and may lead to code execution if the standalone application loads a privileged chrome: URL.</description>
      <reference source="CVE">CVE-2005-2267</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1173" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>libxml2</product>
      </affected>
      <dates>
        <submitted date="2005-06-27-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-29-06:49">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrary code via (1) a long FTP URL that is not properly handled by the xmlNanoFTPScanURL function, (2) a long proxy URL containing FTP data that is not properly handled by the xmlNanoFTPScanProxy function, and other overflows related to manipulation of DNS length values, including (3) xmlNanoFTPConnect, (4) xmlNanoHTTPConnectHost, and (5) xmlNanoHTTPConnectHost.</description>
      <reference source="CVE">CVE-2004-0989</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-261" comment="libxml or libxml-devel RPM is earlier than 1:1.8.17-9.2" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL1195" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>libgd</product>
      </affected>
      <dates>
        <submitted date="2005-06-27-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-29-06:49">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via malformed image files that trigger the overflows due to improper calls to the gdMalloc function, a different set of vulnerabilities than CVE-2004-0990.</description>
      <reference source="CVE">CVE-2004-0941</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-260" comment="libgd or libgd-devel RPM is earlier than 0:1.8.4-12.3.1" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL1225" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2005-06-29-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-29-06:49">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>The shmctl function in Linux 2.6.9 and earlier allows local users to unlock the memory of other processes, which could cause sensitive memory to be swapped to disk, which could allow it to be read by other users once it has been released.</description>
      <reference source="CVE">CVE-2005-0176</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-268" comment="kernel, kernel-smp or kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL1226" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 4</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user.</description>
      <reference source="CVE">CVE-2005-2260</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-1" comment="Red Hat Enterprise 4 is installed" negate="false"/>
          <criterion test_ref="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1242" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>sudo</product>
      </affected>
      <dates>
        <submitted date="2005-07-18-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>Race condition in sudo 1.3.1 up to 1.6.8p8, when the ALL pseudo-command is used after a user entry in the sudoers file, allows local users to gain privileges via a symlink attack.</description>
      <reference source="CVE">CVE-2005-1993</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <notes>
        <note>It appears that we can't parse the vulnerable configuration condition (an ALL in the second field of a line after a line that has no ALL in the second field) with our existing regexp.</note>
      </notes>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-26" comment="sudo RPM earlier than 0:1.6.7p5-1.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="uft-3" comment="/etc/sudoers exists" negate="false"/>
          <criterion test_ref="upt-60" comment="/usr/bin/sudo is executable by everyone" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1245" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>gedit</product>
      </affected>
      <dates>
        <submitted date="2005-07-11-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-07-27-10:36">DRAFT</status_change>
        <status_change date="2005-08-18-07:37">INTERIM</status_change>
        <status_change date="2005-09-21-01:33">ACCEPTED</status_change>
      </dates>
      <description>Format string vulnerability in gedit 2.10.2 may allow attackers to cause a denial of service (application crash) via a bin file with format string specifiers in the filename.  NOTE: while this issue is triggered on the command line by the gedit user, it has been reported that web browsers and email clients could be configured to provide a file name as an argument to gedit, so there is a valid attack that crosses security boundaries.</description>
      <reference source="CVE">CVE-2005-1686</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-25" comment="gedit RPM earlier than 1:2.2.2-4rhel3" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-59" comment="/usr/bin/gedit is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1258" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing").</description>
      <reference source="CVE">CVE-2005-2269</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-31" comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1260" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>libgd</product>
      </affected>
      <dates>
        <submitted date="2005-06-27-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-06-29-06:49">DRAFT</status_change>
        <status_change date="2005-07-27-10:37">INTERIM</status_change>
        <status_change date="2005-08-18-07:37">ACCEPTED</status_change>
      </dates>
      <description>Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx function, a different set of vulnerabilities than CVE-2004-0941.</description>
      <reference source="CVE">CVE-2004-0990</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-260" comment="libgd or libgd-devel RPM is earlier than 0:1.8.4-12.3.1" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL1268" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."</description>
      <reference source="CVE">CVE-2005-2268</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-31" comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1281" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a callback function in the context of another domain by forcing a page navigation after the install method has been called, which causes the callback to be run in the context of the new page and results in a same origin violation.</description>
      <reference source="CVE">CVE-2005-2263</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-31" comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1311" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 4</redhat:platform>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a callback function in the context of another domain by forcing a page navigation after the install method has been called, which causes the callback to be run in the context of the new page and results in a same origin violation.</description>
      <reference source="CVE">CVE-2005-2263</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-1" comment="Red Hat Enterprise 4 is installed" negate="false"/>
          <criterion test_ref="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1313" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 4</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."</description>
      <reference source="CVE">CVE-2005-2268</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-1" comment="Red Hat Enterprise 4 is installed" negate="false"/>
          <criterion test_ref="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1347" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>FreeRADIUS</product>
      </affected>
      <dates>
        <submitted date="2004-11-22-12:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-01-12-12:41">DRAFT</status_change>
        <status_change date="2005-02-02-12:00">INTERIM</status_change>
        <status_change date="2005-02-23-09:25">ACCEPTED</status_change>
      </dates>
      <description>FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (server crash) by sending an Ascend-Send-Secret attribute without the required leading packet.</description>
      <reference source="CVE">CVE-2004-0938</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rvt-2" comment="FreeRADIUS rpm older than 1.0.1-1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="rlt-5" comment="radiusd is listening on the network" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1348" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5, Thunderbird before 1.0.5, Mozilla before 1.7.9, Netscape 8.0.2, and K-Meleon 0.9 runs XBL scripts even when Javascript has been disabled, which makes it easier for remote attackers to bypass such protection.</description>
      <reference source="CVE">CVE-2005-2261</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-216" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="rvt-31" comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL1415" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 4</redhat:platform>
        <product>mozilla</product>
      </affected>
      <dates>
        <submitted date="2005-08-15-04:00">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2005-08-19-10:05">DRAFT</status_change>
        <status_change date="2005-09-21-01:33">INTERIM</status_change>
        <status_change date="2005-10-12-05:49">ACCEPTED</status_change>
      </dates>
      <description>Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to call top.focus and other methods in a parent frame, even when the parent is in a different domain, which violates the same origin policy and allows remote attackers to steal sensitive information such as cookies and passwords from web sites whose child frames do not verify that they are in the same domain as their parents.</description>
      <reference source="CVE">CVE-2005-2266</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-1" comment="Red Hat Enterprise 4 is installed" negate="false"/>
          <criterion test_ref="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" negate="false"/>
        </software>
        <configuration operation="AND">
          <criterion test_ref="upt-859" comment="/usr/bin/mozilla is executable" negate="false"/>
        </configuration>
      </criteria>
    </definition>
    <definition id="OVAL2819" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2004-09-01-11:51">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-09-08-10:41">DRAFT</status_change>
        <status_change date="2004-09-22-12:00">INTERIM</status_change>
        <status_change date="2004-10-06-12:00">ACCEPTED</status_change>
      </dates>
      <description>The do_fork function in Linux 2.4.x before 2.4.26, and 2.6.x before 2.6.6, does not properly decrement the mm_count counter when an error occurs after the mm_struct for a child process has been activated, which triggers a memory leak that allows local users to cause a denial of service (memory exhaustion) via the clone (CLONE_VM) system call.</description>
      <reference source="CVE">CVE-2004-0427</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="cmp-1100" comment="kernel, kernel-hugemem or kernel-smp rpm older than 2.4.21-15.0.2EL Epoch 0" negate="false"/>
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL2915" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2004-09-02-12:10">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-09-08-10:41">DRAFT</status_change>
        <status_change date="2004-09-22-12:00">INTERIM</status_change>
        <status_change date="2004-10-06-12:00">ACCEPTED</status_change>
      </dates>
      <description>Linux kernel 2.4.x and 2.6.x for x86 allows local users to cause a denial of service (system crash), possibly via an infinite loop that triggers a signal handler with a certain sequence of fsave and frstor instructions, as originally demonstrated using a "crash.c" program.</description>
      <reference source="CVE">CVE-2004-0554</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-1100" comment="kernel, kernel-hugemem or kernel-smp rpm older than 2.4.21-15.0.2EL Epoch 0" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL2961" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>Linux kernel</product>
      </affected>
      <dates>
        <submitted date="2004-09-02-12:06">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-09-08-10:41">DRAFT</status_change>
        <status_change date="2004-09-22-12:00">INTERIM</status_change>
        <status_change date="2004-10-06-12:00">ACCEPTED</status_change>
      </dates>
      <description>Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool.</description>
      <reference source="CVE">CVE-2004-0495</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-1100" comment="kernel, kernel-hugemem or kernel-smp rpm older than 2.4.21-15.0.2EL Epoch 0" negate="false"/>
        </software>
      </criteria>
    </definition>
    <definition id="OVAL3657" class="vulnerability">
      <affected family="redhat">
        <redhat:platform>Red Hat Enterprise Linux 3</redhat:platform>
        <product>libpng</product>
      </affected>
      <dates>
        <submitted date="2004-09-03-04:26">
          <contributor organization="The MITRE Corporation">Jay Beale</contributor>
        </submitted>
        <status_change date="2004-09-08-10:41">DRAFT</status_change>
        <status_change date="2004-09-22-12:00">INTERIM</status_change>
        <status_change date="2004-10-06-12:00">ACCEPTED</status_change>
      </dates>
      <description>Portable Network Graphics (PNG) library libpng 1.2.5 and earlier does not correctly calculate offsets, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a buffer overflow attack on the row buffers.</description>
      <reference source="CVE">CVE-2002-1363</reference>
      <status>ACCEPTED</status>
      <version>1</version>
      <criteria>
        <software operation="AND">
          <criterion test_ref="rrt-206" comment="Red Hat Enterprise 3 is installed" negate="false"/>
          <criterion test_ref="cmp-1101" comment="libpng or libpng-devel rpm older than 1.2.2-24, Epoch 2 OR libpng10or libpng10-devel rpm older than 1.0.13-14, Epoch 0" negate="false"/>
        </software>
      </criteria>
    </definition>
  </definitions>
  <tests>
    <rpmversioncompare_test id="rvt-371" comment="libpng10 rpm older than 1.0.13-14, Epoch 0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">libpng10</name>
        <tested_epoch datatype="string" operator="equals">0</tested_epoch>
        <tested_version datatype="string" operator="equals">1.0.13</tested_version>
        <tested_release datatype="string" operator="equals">14</tested_release>
      </object>
      <data operation="AND">
        <installed_version datatype="string" operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-370" comment="libpng10-devel rpm older than 1.0.13-14, Epoch 0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">libpng10-devel</name>
        <tested_epoch datatype="string" operator="equals">0</tested_epoch>
        <tested_version datatype="string" operator="equals">1.0.13</tested_version>
        <tested_release datatype="string" operator="equals">14</tested_release>
      </object>
      <data operation="AND">
        <installed_version datatype="string" operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-369" comment="libpng-devel rpm older than 1.2.2-24, Epoch 2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">libpng-devel</name>
        <tested_epoch datatype="string" operator="equals">2</tested_epoch>
        <tested_version datatype="string" operator="equals">1.2.2</tested_version>
        <tested_release datatype="string" operator="equals">24</tested_release>
      </object>
      <data operation="AND">
        <installed_version datatype="string" operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-368" comment="libpng rpm older than 1.2.2-24, Epoch 2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">libpng</name>
        <tested_epoch datatype="string" operator="equals">2</tested_epoch>
        <tested_version datatype="string" operator="equals">1.2.2</tested_version>
        <tested_release datatype="string" operator="equals">24</tested_release>
      </object>
      <data operation="AND">
        <installed_version datatype="string" operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-1101" comment="libpng or libpng-devel rpm older than 1.2.2-24, Epoch 2 OR libpng10or libpng10-devel rpm older than 1.0.13-14, Epoch 0" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-368"/>
      <subtest negate="false" test_ref="rvt-369"/>
      <subtest negate="false" test_ref="rvt-370"/>
      <subtest negate="false" test_ref="rvt-371"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-367" comment="kernel-smp rpm older than 2.4.21-15.0.2.EL Epoch 0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-smp</name>
        <tested_epoch datatype="string" operator="equals">0</tested_epoch>
        <tested_version datatype="string" operator="equals">2.4.21</tested_version>
        <tested_release datatype="string" operator="equals">15.0.2.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version datatype="string" operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-366" comment="kernel-hugemem rpm older than 2.4.21-15.0.2.EL Epoch 0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-hugemem</name>
        <tested_epoch datatype="string" operator="equals">0</tested_epoch>
        <tested_version datatype="string" operator="equals">2.4.21</tested_version>
        <tested_release datatype="string" operator="equals">15.0.2.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version datatype="string" operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-364" comment="kernel rpm older than 2.4.21-15.0.2.EL Epoch 0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name>kernel</name>
        <tested_epoch>0</tested_epoch>
        <tested_version>2.4.21</tested_version>
        <tested_release>15.0.2.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version>earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-1100" comment="kernel, kernel-hugemem or kernel-smp rpm older than 2.4.21-15.0.2EL Epoch 0" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-364"/>
      <subtest negate="false" test_ref="rvt-366"/>
      <subtest negate="false" test_ref="rvt-367"/>
    </compound_test>
    <inetlisteningservers_test id="rlt-5" comment="radiusd is listening on the network" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name operator="pattern match">.*/radiusd</program_name>
      </object>
      <data operation="AND">
        <local_port operator="equals">1812</local_port>
        <protocol operator="equals">udp</protocol>
      </data>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-2" comment="FreeRADIUS rpm older than 1.0.1-1" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="binary" operator="equals">FreeRADIUS</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.0.1</tested_version>
        <tested_release operator="equals">1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-59" comment="/usr/bin/gedit is executable" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gedit</component>
        </path>
      </object>
      <data operation="OR">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-25" comment="gedit RPM earlier than 1:2.2.2-4rhel3" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">gedit</name>
        <tested_epoch operator="equals">1</tested_epoch>
        <tested_version operator="equals">2.2.2</tested_version>
        <tested_release operator="equals">4rhel3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-60" comment="/usr/bin/sudo is executable by everyone" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sudo</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="boolean" operator="equals">1</oexec>
      </data>
    </permission_test>
    <file_test id="uft-3" comment="/etc/sudoers exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/etc/sudoers</component>
        </path>
      </object>
    </file_test>
    <rpmversioncompare_test id="rvt-26" comment="sudo RPM earlier than 0:1.6.7p5-1.1" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">sudo</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">1.6.7p5</tested_version>
        <tested_release operator="equals">1.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-12" comment="libgd-devel RPM is earlier than 0:1.8.4-12.3.1" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">libgd-devel</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">1.8.4</tested_version>
        <tested_release operator="equals">12.3.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-11" comment="libgd RPM is earlier than 0:1.8.4-12.3.1" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">libgd</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">1.8.4</tested_version>
        <tested_release operator="equals">12.3.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-260" comment="libgd or libgd-devel RPM is earlier than 0:1.8.4-12.3.1" operation="AND" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-11"/>
      <subtest negate="false" test_ref="rvt-12"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-14" comment="libxml-devel RPM is earlier than 1:1.8.17-9.2" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">libxml-devel</name>
        <tested_epoch operator="equals">1</tested_epoch>
        <tested_version operator="equals">1.8.17</tested_version>
        <tested_release operator="equals">9.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-13" comment="libxml RPM is earlier than 1:1.8.17-9.2" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">libxml</name>
        <tested_epoch operator="equals">1</tested_epoch>
        <tested_version operator="equals">1.8.17</tested_version>
        <tested_release operator="equals">9.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-261" comment="libxml or libxml-devel RPM is earlier than 1:1.8.17-9.2" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-13"/>
      <subtest negate="false" test_ref="rvt-14"/>
    </compound_test>
    <permission_test id="upt-57" comment="/usr/bin/telnet is executable by any user" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/telnet</component>
        </path>
      </object>
      <data operation="OR">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-22" comment="telnet RPM earlier than 1:0.17-20.EL3.3" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">telnet</name>
        <tested_epoch operator="equals">1</tested_epoch>
        <tested_version operator="equals">0.17</tested_version>
        <tested_release operator="equals">20.EL3.3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-30" comment="fetchmail RPM earlier than 0:6.2.5-6.el4.2" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">fetchmail</name>
        <tested_epoch datatype="string" operator="equals">0</tested_epoch>
        <tested_version datatype="string" operator="equals">6.2.5</tested_version>
        <tested_release datatype="string" operator="equals">6.el4.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version datatype="string" operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-19" comment="kernel-smp RPM earlier than 0:2.4.21-32.0.1.EL" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">kernel-smp</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">32.0.1.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-18" comment="kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">kernel-hugemem</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">32.0.1.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-17" comment="kernel RPM earlier than 0:2.4.21-32.0.1.EL" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">kernel</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">32.0.1.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-268" comment="kernel, kernel-smp or kernel-hugemem RPM earlier than 0:2.4.21-32.0.1.EL" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-17"/>
      <subtest negate="false" test_ref="rvt-18"/>
      <subtest negate="false" test_ref="rvt-19"/>
    </compound_test>
    <permission_test id="upt-227" comment="/usr/bin/zgrep is executable by any user" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/zgrep</component>
        </path>
      </object>
      <data operation="OR">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <file_test id="uft-2" comment="/usr/lib/pgsql/tsearch.so (PostgreSQL's tsearch module) exists as a regular file" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/lib/pgsql/tsearch.so</component>
        </path>
      </object>
      <data operation="AND">
        <type operator="equals">regular</type>
      </data>
    </file_test>
    <rpmversioncompare_test id="rvt-10" comment="rh-postgresql-contrib rpm is earlier than 0:7.3.10-1" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">rh-postgresql-contrib</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">7.3.10</tested_version>
        <tested_release operator="equals">1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-2" comment="/usr/bin/bzgrep is executable" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/bzgrep</component>
        </path>
      </object>
      <data operation="OR">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <permission_test id="upt-44" comment="/usr/bin/oowriter is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/oowriter</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-43" comment="/usr/bin/oowriter is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/oowriter</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-42" comment="/usr/bin/oowriter is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/oowriter</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-942" comment="/usr/bin/oowriter is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-42"/>
      <subtest negate="false" test_ref="upt-43"/>
      <subtest negate="false" test_ref="upt-44"/>
    </compound_test>
    <permission_test id="upt-41" comment="/usr/bin/ooimpress is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ooimpress</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-40" comment="/usr/bin/ooimpress is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ooimpress</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-39" comment="/usr/bin/ooimpress is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ooimpress</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-941" comment="/usr/bin/ooimpress is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-39"/>
      <subtest negate="false" test_ref="upt-40"/>
      <subtest negate="false" test_ref="upt-41"/>
    </compound_test>
    <permission_test id="upt-38" comment="/usr/bin/ooffice is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ooffice</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-37" comment="/usr/bin/ooffice is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ooffice</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-36" comment="/usr/bin/ooffice is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ooffice</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-940" comment="/usr/bin/ooffice is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-36"/>
      <subtest negate="false" test_ref="upt-37"/>
      <subtest negate="false" test_ref="upt-38"/>
    </compound_test>
    <permission_test id="upt-35" comment="/usr/bin/oodraw is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/oodraw</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-34" comment="/usr/bin/oodraw is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/oodraw</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-33" comment="/usr/bin/oodraw is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/oodraw</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-939" comment="/usr/bin/oodraw is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-33"/>
      <subtest negate="false" test_ref="upt-34"/>
      <subtest negate="false" test_ref="upt-35"/>
    </compound_test>
    <permission_test id="upt-32" comment="/usr/bin/oocalc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/oocalc</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-31" comment="/usr/bin/oocalc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/oocalc</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-30" comment="/usr/bin/oocalc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/oocalc</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-938" comment="/usr/bin/oocalc is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-30"/>
      <subtest negate="false" test_ref="upt-31"/>
      <subtest negate="false" test_ref="upt-32"/>
    </compound_test>
    <compound_test id="cmp-937" comment="OpenOffice Permissions" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="cmp-938"/>
      <subtest negate="false" test_ref="cmp-939"/>
      <subtest negate="false" test_ref="cmp-940"/>
      <subtest negate="false" test_ref="cmp-941"/>
      <subtest negate="false" test_ref="cmp-942"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-349" comment="openoffice version is less than 1.1.0-15.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openoffice</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.1.0</tested_version>
        <tested_release operator="equals">15.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-348" comment="cvs version is less than 1.11.2-18" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">cvs</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.11.2</tested_version>
        <tested_release datatype="int" operator="equals">18</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-858" comment="/usr/bin/fetchmail is executable by any user" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/fetchmail</component>
        </path>
      </object>
      <data operation="OR">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-29" comment="fetchmail RPM older than 0:6.2.0-3.el3.1" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">fetchmail</name>
        <tested_epoch datatype="string" operator="equals">0</tested_epoch>
        <tested_version datatype="string" operator="equals">6.2.0</tested_version>
        <tested_release datatype="string" operator="equals">3.el3.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version datatype="string" operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-347" comment="kernel version is less than 2.4.21-15.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-unsupported</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">15.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <file_test id="uft-1" comment="/etc/httpd/modules/libphp4.so exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/etc/httpd/modules/libphp4.so</component>
        </path>
      </object>
    </file_test>
    <rpminfo_test id="rrt-217" comment="php rpm is installed" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">php</name>
      </object>
    </rpminfo_test>
    <rpmversioncompare_test id="rvt-363" comment="squirrelmail rpm version prior to 1.4.3-0.e3.1 is installed" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">squirrelmail</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.4.3</tested_version>
        <tested_release operator="equals">0.e3.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-29" comment="/proc/ is world-executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/proc/</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-28" comment="/proc/tty/ is world-executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/proc/tty/</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-27" comment="/proc/tty/driver/ is world-executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/proc/tty/driver/</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-26" comment="/proc/tty/driver/serial is world-readable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/proc/tty/driver/serial</component>
        </path>
      </object>
      <data operation="AND">
        <oread datatype="int" operator="equals">1</oread>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-346" comment="kernel version is less than 2.4.21-15.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">15.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-362" comment="cvs rpm version prior to 1.11.2-24 is installed" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">cvs</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.11.2</tested_version>
        <tested_release operator="equals">24</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-361" comment="krb5-libs rpm version prior to 1.2.7-24 is installed" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">krb5-libs</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.2.7</tested_version>
        <tested_release operator="equals">24</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-358" comment="ethereal-gnome version is less than 0.10.3-0.30E.2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ethereal-gnome</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.10.3</tested_version>
        <tested_release operator="equals">0.30E.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-357" comment="ethereal version is less than 0.10.3-0.30E.2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ethereal</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.10.3</tested_version>
        <tested_release operator="equals">0.30E.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-1022" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-357"/>
      <subtest negate="false" test_ref="rvt-358"/>
    </compound_test>
    <inetlisteningservers_test id="rlt-233" comment="squid is listening on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*squid</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-356" comment="squid version is less than 2.5.STABLE3-6.3E" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">squid</name>
        <tested_epoch datatype="int" operator="equals">7</tested_epoch>
        <tested_version operator="equals">2.5.STABLE3</tested_version>
        <tested_release operator="equals">6.3E</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-54" comment="/usr/sbin/utempter is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/utempter</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-53" comment="/usr/sbin/utempter is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/utempter</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-52" comment="/usr/sbin/utempter is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/utempter</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-1021" comment="/usr/sbin/utempter is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-52"/>
      <subtest negate="false" test_ref="upt-53"/>
      <subtest negate="false" test_ref="upt-54"/>
    </compound_test>
    <permission_test id="upt-51" comment="/usr/sbin/utempter is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/utempter</component>
        </path>
      </object>
      <data operation="AND">
        <sgid datatype="int" operator="equals">1</sgid>
      </data>
    </permission_test>
    <compound_test id="cmp-1020" comment="/usr/sbin/utempter is executable" operation="AND" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-51"/>
      <subtest negate="false" test_ref="cmp-1021"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-355" comment="utempter version is less than 0.5.5-1.3EL.0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">utempter</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.5.5</tested_version>
        <tested_release operator="equals">1.3EL.0</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-50" comment="/usr/bin/lha is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/lha</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-49" comment="/usr/bin/lha is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/lha</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-48" comment="/usr/bin/lha is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/lha</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-1019" comment="/usr/bin/lha is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-48"/>
      <subtest negate="false" test_ref="upt-49"/>
      <subtest negate="false" test_ref="upt-50"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-354" comment="lha version is less than 1.14i-10.2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">lha</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.14i</tested_version>
        <tested_release operator="equals">10.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-47" comment="/usr/sbin/tcpdump is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/tcpdump</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-46" comment="/usr/sbin/tcpdump is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/tcpdump</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-45" comment="/usr/sbin/tcpdump is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/tcpdump</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-1017" comment="/usr/sbin/tcpdump is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-45"/>
      <subtest negate="false" test_ref="upt-46"/>
      <subtest negate="false" test_ref="upt-47"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-353" comment="tcpdump version is less than 3.7.2-7.E3.2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">tcpdump</name>
        <tested_epoch datatype="int" operator="equals">14</tested_epoch>
        <tested_version operator="equals">3.7.2</tested_version>
        <tested_release operator="equals">7.E3.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-345" comment="libpng10-devel version is less than 1.0.13-12" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">libpng-devel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.0.13</tested_version>
        <tested_release datatype="int" operator="equals">12</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-344" comment="libpng10 version is less than 1.0.13-12" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">libpng</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.0.13</tested_version>
        <tested_release datatype="int" operator="equals">12</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-343" comment="libpng-devel version is less than 1.2.2-21" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">libpng-devel</name>
        <tested_epoch datatype="int" operator="equals">2</tested_epoch>
        <tested_version operator="equals">1.2.2</tested_version>
        <tested_release datatype="int" operator="equals">21</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-342" comment="libpng version is less than 1.2.2-21" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">libpng</name>
        <tested_epoch datatype="int" operator="equals">2</tested_epoch>
        <tested_version operator="equals">1.2.2</tested_version>
        <tested_release datatype="int" operator="equals">21</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-932" comment="libpng/libpng-devel is less than 1.2.2-21 or libpng10/libpng-devel less than 1.0.13 is installed" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-342"/>
      <subtest negate="false" test_ref="rvt-343"/>
      <subtest negate="false" test_ref="rvt-344"/>
      <subtest negate="false" test_ref="rvt-345"/>
    </compound_test>
    <permission_test id="upt-25" comment="/usr/bin/cvs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/cvs</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-24" comment="/usr/bin/cvs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/cvs</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-23" comment="/usr/bin/cvs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/cvs</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-931" comment="/usr/bin/cvs is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-23"/>
      <subtest negate="false" test_ref="upt-24"/>
      <subtest negate="false" test_ref="upt-25"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-341" comment="cvs version is less than 1.11.2-22" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">cvs</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.11.2</tested_version>
        <tested_release datatype="int" operator="equals">22</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-340" comment="rsync version is less than 2.5.7-4.3E" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">rsync</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.5.7</tested_version>
        <tested_release operator="equals">4.3E</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-23" comment="ImageMagick RPM earlier than 0:5.5.6-15" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <oval:notes>
        <oval:note>The ImageMagick-* RPMs all require that the main ImageMagick RPM have the same version and release number.</oval:note>
      </oval:notes>
      <object>
        <name operator="equals">ImageMagick</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">5.5.6</tested_version>
        <tested_release operator="equals">15</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-22" comment="/usr/bin/kmail is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/kmail</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-21" comment="/usr/bin/kmail is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/kmail</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-20" comment="/usr/bin/kmail is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/kmail</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-930" comment="/usr/bin/kmail is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-20"/>
      <subtest negate="false" test_ref="upt-21"/>
      <subtest negate="false" test_ref="upt-22"/>
    </compound_test>
    <permission_test id="upt-19" comment="/usr/bin/ssh is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ssh</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-18" comment="/usr/bin/ssh is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ssh</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-17" comment="/usr/bin/ssh is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ssh</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-929" comment="/usr/bin/ssh is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-17"/>
      <subtest negate="false" test_ref="upt-18"/>
      <subtest negate="false" test_ref="upt-19"/>
    </compound_test>
    <permission_test id="upt-16" comment="/usr/kerberos/bin/rlogin is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/kerberos/bin/rlogin</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-15" comment="/usr/kerberos/bin/rlogin is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/kerberos/bin/rlogin</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-14" comment="/usr/kerberos/bin/rlogin is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/kerberos/bin/rlogin</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-928" comment="/usr/kerberos/bin/rlogin is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-14"/>
      <subtest negate="false" test_ref="upt-15"/>
      <subtest negate="false" test_ref="upt-16"/>
    </compound_test>
    <permission_test id="upt-13" comment="/usr/bin/rlogin is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rlogin</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-12" comment="/usr/bin/rlogin is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rlogin</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-11" comment="/usr/bin/rlogin is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rlogin</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-927" comment="/usr/bin/rlogin is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-11"/>
      <subtest negate="false" test_ref="upt-12"/>
      <subtest negate="false" test_ref="upt-13"/>
    </compound_test>
    <permission_test id="upt-10" comment="/usr/kerberos/bin/telnet is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/kerberos/bin/telnet</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-9" comment="/usr/kerberos/bin/telnet is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/kerberos/bin/telnet</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-8" comment="/usr/kerberos/bin/telnet is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/kerberos/bin/telnet</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-926" comment="/usr/kerberos/bin/telnet is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-8"/>
      <subtest negate="false" test_ref="upt-9"/>
      <subtest negate="false" test_ref="upt-10"/>
    </compound_test>
    <permission_test id="upt-7" comment="/usr/bin/telnet is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/telnet</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-6" comment="/usr/bin/telnet is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/telnet</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-5" comment="/usr/bin/telnet is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/telnet</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-925" comment="/usr/bin/telnet is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-5"/>
      <subtest negate="false" test_ref="upt-6"/>
      <subtest negate="false" test_ref="upt-7"/>
    </compound_test>
    <compound_test id="cmp-924" comment="telnet, rlogin, ssh or kmail is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="cmp-925"/>
      <subtest negate="false" test_ref="cmp-926"/>
      <subtest negate="false" test_ref="cmp-927"/>
      <subtest negate="false" test_ref="cmp-928"/>
      <subtest negate="false" test_ref="cmp-929"/>
      <subtest negate="false" test_ref="cmp-930"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-339" comment="kdelibs version is less than 3.1.3-6.4" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kdelibs</name>
        <tested_epoch datatype="int" operator="equals">6</tested_epoch>
        <tested_version operator="equals">3.1.3</tested_version>
        <tested_release operator="equals">6.4</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-230" comment="racoon is listening on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*racoon</program_name>
      </object>
      <data operation="AND">
        <protocol operator="equals">UDP</protocol>
      </data>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-338" comment="ipsec-tools version is less than 0.2.5-0.4" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ipsec-tools</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.2.5</tested_version>
        <tested_release operator="equals">0.4</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-337" comment="squid version is less than 2.5.STABLE3-5.3E" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">squid</name>
        <tested_epoch datatype="int" operator="equals">7</tested_epoch>
        <tested_version operator="equals">2.5.STABLE3</tested_version>
        <tested_release operator="equals">5.3E</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-4" comment="/bin/mount is world-executable AND Set-UID" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/bin/mount</component>
        </path>
      </object>
      <data operation="AND">
        <suid datatype="int" operator="equals">1</suid>
      </data>
    </permission_test>
    <permission_test id="upt-3" comment="/bin/mount is world-executable AND Set-UID" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/bin/mount</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <compound_test id="cmp-923" comment="/bin/mount is world-executable AND Set-UID" operation="AND" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-3"/>
      <subtest negate="false" test_ref="upt-4"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-336" comment="kernel-hugemem version is less than 2.4.21-9.0.3.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-hugemem</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">9.0.3.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-335" comment="kernel-smp version is less than 2.4.21-9.0.3.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-smp</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">9.0.3.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-334" comment="kernel version is less than 2.4.21-9.0.3.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">9.0.3.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-921" comment="kernel versions" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-334"/>
      <subtest negate="false" test_ref="rvt-335"/>
      <subtest negate="false" test_ref="rvt-336"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-330" comment="mozilla-nss version is less than 1.4.2-3.0.2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">mozilla-nss</name>
        <tested_epoch datatype="int" operator="equals">37</tested_epoch>
        <tested_version operator="equals">1.4.2</tested_version>
        <tested_release operator="equals">3.0.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-322" comment="openssl096b version is less than 0.9.6b-15" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl096b</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.6b</tested_version>
        <tested_release datatype="int" operator="equals">15</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-321" comment="openssl096 version is less than 0.9.6-25.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl096</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.6</tested_version>
        <tested_release operator="equals">25.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-320" comment="openssl-perl version is less than 0.9.7a-20" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl-perl</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release operator="equals">20.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-319" comment="openssl-devel version is less than 0.9.7a-20" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl-devel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release operator="equals">20.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-318" comment="openssl version is less than 0.9.7a-20" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release operator="equals">20.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-329" comment="ethereal-gnome version is less than 0.10.3-0.30E.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ethereal-gnome</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.10.3</tested_version>
        <tested_release operator="equals">0.30E.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-328" comment="ethereal version is less than 0.10.3-0.30E.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ethereal</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.10.3</tested_version>
        <tested_release operator="equals">0.30E.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-863" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-328"/>
      <subtest negate="false" test_ref="rvt-329"/>
    </compound_test>
    <permission_test id="upt-823" comment="/usr/bin/tethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/tethereal</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-822" comment="/usr/bin/tethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/tethereal</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-821" comment="/usr/bin/tethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/tethereal</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-852" comment="/usr/bin/tethereal is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-821"/>
      <subtest negate="false" test_ref="upt-822"/>
      <subtest negate="false" test_ref="upt-823"/>
    </compound_test>
    <permission_test id="upt-820" comment="/usr/sbin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-819" comment="/usr/sbin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-818" comment="/usr/sbin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-851" comment="/usr/sbin/ethereal is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-818"/>
      <subtest negate="false" test_ref="upt-819"/>
      <subtest negate="false" test_ref="upt-820"/>
    </compound_test>
    <permission_test id="upt-817" comment="/usr/bin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-816" comment="/usr/bin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-815" comment="/usr/bin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-850" comment="/usr/bin/ethereal is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-815"/>
      <subtest negate="false" test_ref="upt-816"/>
      <subtest negate="false" test_ref="upt-817"/>
    </compound_test>
    <compound_test id="cmp-849" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="cmp-850"/>
      <subtest negate="false" test_ref="cmp-851"/>
      <subtest negate="false" test_ref="cmp-852"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-327" comment="ethereal-gnome version is less than 0.10.3-0.90.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ethereal-gnome</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.10.3</tested_version>
        <tested_release operator="equals">0.90.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-326" comment="ethereal version is less than 0.10.3-0.90.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ethereal</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.10.3</tested_version>
        <tested_release operator="equals">0.90.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-848" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-326"/>
      <subtest negate="false" test_ref="rvt-327"/>
    </compound_test>
    <inetlisteningservers_test id="rlt-225" comment="squid is listening on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*squid.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-325" comment="squid version is less than 2.5STABLE1-3.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">squid</name>
        <tested_epoch datatype="int" operator="equals">7</tested_epoch>
        <tested_version operator="equals">2.5STABLE1</tested_version>
        <tested_release operator="equals">3.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-323" comment="mod_ssl version is less than 2.0.46-32.ent" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">mod_ssl</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.0.46</tested_version>
        <tested_release datatype="int" operator="equals">32.ent</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-814" comment="/usr/bin/mozilla is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mozilla</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-813" comment="/usr/bin/mozilla is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mozilla</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-812" comment="/usr/bin/mozilla is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mozilla</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-844" comment="/usr/bin/mozilla is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-812"/>
      <subtest negate="false" test_ref="upt-813"/>
      <subtest negate="false" test_ref="upt-814"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-317" comment="mozilla version is less than 1.4.2-0.9.0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">mozilla</name>
        <tested_epoch datatype="int" operator="equals">37</tested_epoch>
        <tested_version operator="equals">1.4.2</tested_version>
        <tested_release operator="equals">0.9.0</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-316" comment="mozilla-nss version is less than 1.4.2-0.9.0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">mozilla-nss</name>
        <tested_epoch datatype="int" operator="equals">37</tested_epoch>
        <tested_version operator="equals">1.4.2</tested_version>
        <tested_release operator="equals">0.9.0</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-315" comment="openssl096b version is less than 0.9.6b-16" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl096b</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.6b</tested_version>
        <tested_release datatype="int" operator="equals">16</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-314" comment="openssl-perl version is less than 0.9.7a-33.4" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl-perl</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release operator="equals">33.4</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-313" comment="openssl-devel version is less than 0.9.7a-33.4" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl-devel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release operator="equals">33.4</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-312" comment="openssl version is less than 0.9.7a-33.4" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release operator="equals">33.4</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-223" comment="snmpd is listening to the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*snmpd.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-311" comment="net-snmp version is less than 5.0.9-2.30E.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">net-snmp</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">5.0.9</tested_version>
        <tested_release operator="equals">2.30E.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-310" comment="kernel version is less than 2.4.21-9.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">9.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <uname_test id="uut-3" comment="ix86 architecture" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <data operation="AND">
        <machine_class datatype="string" operator="equals">x86_64</machine_class>
      </data>
    </uname_test>
    <rpmversioncompare_test id="rvt-309" comment="kernel-bigmem version is less than 2.4.21-4.0.2.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-bigmem</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">4.0.2.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-308" comment="kernel-smp version is less than 2.4.21-4.0.2.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-smp</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">4.0.2.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-307" comment="kernel version is less than 2.4.21-4.0.2.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">4.0.2.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-843" comment="Vulnerable Configuration" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-307"/>
      <subtest negate="false" test_ref="rvt-308"/>
      <subtest negate="false" test_ref="rvt-309"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-306" comment="cvs version is less than 1.11.2-14" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">cvs</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.11.2</tested_version>
        <tested_release datatype="int" operator="equals">14</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-305" comment="kdepim version is less than 3.1.3-3.3" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kdepim</name>
        <tested_epoch datatype="int" operator="equals">6</tested_epoch>
        <tested_version operator="equals">3.1.3</tested_version>
        <tested_release operator="equals">3.3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-304" comment="httpd version is less than 2.0.46-26.ent" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">httpd</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.0.46</tested_version>
        <tested_release operator="equals">26.ent</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-303" comment="httpd version is less than 2.0.40-21.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">httpd</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.0.40</tested_version>
        <tested_release operator="equals">21.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-302" comment="sysstat version is less than 4.0.7-4.EL3.2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">sysstat</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">4.0.7</tested_version>
        <tested_release operator="equals">4.EL3.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-221" comment="rpc.mountd is listening to the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*rpc\.mountd</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-301" comment="nfs-utils version is less than 1.0.6-7.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">nfs-utils</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.0.6</tested_version>
        <tested_release operator="equals">7.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-300" comment="kernel-bigmem version is less than 2.4.20-28.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-bigmem</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.20</tested_version>
        <tested_release operator="equals">28.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-299" comment="kernel-smp version is less than 2.4.20-28.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-smp</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.20</tested_version>
        <tested_release operator="equals">28.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-298" comment="kernel version is less than 2.4.20-28.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.20</tested_version>
        <tested_release operator="equals">28.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-840" comment="Vulnerable Configuration" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-298"/>
      <subtest negate="false" test_ref="rvt-299"/>
      <subtest negate="false" test_ref="rvt-300"/>
    </compound_test>
    <permission_test id="upt-811" comment="/usr/share/services/kfile_vcf.desktop is readable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/share/services/kfile_vcf.desktop</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-810" comment="/usr/share/services/kfile_vcf.desktop is readable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/share/services/kfile_vcf.desktop</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-809" comment="/usr/share/services/kfile_vcf.desktop is readable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/share/services/kfile_vcf.desktop</component>
        </path>
      </object>
      <data operation="AND">
        <uread datatype="int" operator="equals">1</uread>
      </data>
    </permission_test>
    <compound_test id="cmp-839" comment="/usr/share/services/kfile_vcf.desktop is readable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-809"/>
      <subtest negate="false" test_ref="upt-810"/>
      <subtest negate="false" test_ref="upt-811"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-297" comment="kdepim version is less than 3.1-6" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kdepim</name>
        <tested_epoch datatype="int" operator="equals">6</tested_epoch>
        <tested_version operator="equals">3.1</tested_version>
        <tested_release datatype="int" operator="equals">6</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-808" comment="/usr/sbin/tethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/tethereal</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-807" comment="/usr/sbin/tethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/tethereal</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-806" comment="/usr/sbin/tethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/tethereal</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-833" comment="/usr/sbin/tethereal is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-806"/>
      <subtest negate="false" test_ref="upt-807"/>
      <subtest negate="false" test_ref="upt-808"/>
    </compound_test>
    <permission_test id="upt-805" comment="/usr/sbin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-804" comment="/usr/sbin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-803" comment="/usr/sbin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-832" comment="/usr/sbin/ethereal is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-803"/>
      <subtest negate="false" test_ref="upt-804"/>
      <subtest negate="false" test_ref="upt-805"/>
    </compound_test>
    <permission_test id="upt-802" comment="/usr/bin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-801" comment="/usr/bin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-800" comment="/usr/bin/ethereal is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ethereal</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-831" comment="/usr/bin/ethereal is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-800"/>
      <subtest negate="false" test_ref="upt-801"/>
      <subtest negate="false" test_ref="upt-802"/>
    </compound_test>
    <compound_test id="cmp-830" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="cmp-831"/>
      <subtest negate="false" test_ref="cmp-832"/>
      <subtest negate="false" test_ref="cmp-833"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-296" comment="ethereal-gnome version is less than 0.10.0a-0.90.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ethereal=gnome</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.10.0a</tested_version>
        <tested_release operator="equals">0.90.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-295" comment="ethereal version is less than 0.10.0a-0.90.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ethereal</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.10.0a</tested_version>
        <tested_release operator="equals">0.90.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-829" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-295"/>
      <subtest negate="false" test_ref="rvt-296"/>
    </compound_test>
    <permission_test id="upt-799" comment="/ is world-writable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/</component>
        </path>
      </object>
      <data operation="AND">
        <owrite datatype="int" operator="equals">1</owrite>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-294" comment="cvs version is less than 1.11.2-13" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">cvs</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.11.2</tested_version>
        <tested_release datatype="int" operator="equals">13</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-293" comment="tcpdump version is less than 3.7.2-7.E3.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">tcpdump</name>
        <tested_epoch datatype="int" operator="equals">14</tested_epoch>
        <tested_version operator="equals">3.7.2</tested_version>
        <tested_release operator="equals">7.E3.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-292" comment="sysstat version is less than 4.0.7-4.rhl9.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">sysstat</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">4.0.7</tested_version>
        <tested_release operator="equals">4.rhl9.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-798" comment="/usr/sbin/tcpdump is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/tcpdump</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-797" comment="/usr/sbin/tcpdump is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/tcpdump</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-796" comment="/usr/sbin/tcpdump is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/tcpdump</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-823" comment="/usr/sbin/tcpdump is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-796"/>
      <subtest negate="false" test_ref="upt-797"/>
      <subtest negate="false" test_ref="upt-798"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-291" comment="tcpdump version is less than 3.7.2-7.9.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">tcpdump</name>
        <tested_epoch datatype="int" operator="equals">14</tested_epoch>
        <tested_version operator="equals">3.7.2</tested_version>
        <tested_release operator="equals">7.9.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-290" comment="gdk-pixbuf-gnome version is less than 0.22.0-6.1.0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">gdk-pixbuf-gnome</name>
        <tested_epoch datatype="int" operator="equals">1</tested_epoch>
        <tested_version operator="equals">0.22.0</tested_version>
        <tested_release operator="equals">6.1.0</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-289" comment="gdk-pixbuf-devel version is less than 0.22.0-6.1.0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">gdk-pixbuf-devel</name>
        <tested_epoch datatype="int" operator="equals">1</tested_epoch>
        <tested_version operator="equals">0.22.0</tested_version>
        <tested_release operator="equals">6.1.0</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-288" comment="gdk-pixbuf version is less than 0.22.0-6.1.0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">gdk-pixbuf</name>
        <tested_epoch datatype="int" operator="equals">1</tested_epoch>
        <tested_version operator="equals">0.22.0</tested_version>
        <tested_release operator="equals">6.1.0</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-822" comment="Vulnerable configuration" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-288"/>
      <subtest negate="false" test_ref="rvt-289"/>
      <subtest negate="false" test_ref="rvt-290"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-287" comment="gdk-pixbuf-gnome version is less than 0.22.0-6.0.3" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">gdk-pixbuf-gnome</name>
        <tested_epoch datatype="int" operator="equals">1</tested_epoch>
        <tested_version operator="equals">0.22.0</tested_version>
        <tested_release operator="equals">6.0.3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-286" comment="gdk-pixbuf-devel version is less than 0.22.0-6.0.3" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">gdk-pixbuf-devel</name>
        <tested_epoch datatype="int" operator="equals">1</tested_epoch>
        <tested_version operator="equals">0.22.0</tested_version>
        <tested_release operator="equals">6.0.3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-285" comment="gdk-pixbuf version is less than 0.22.0-6.0.3" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">gdk-pixbuf</name>
        <tested_epoch datatype="int" operator="equals">1</tested_epoch>
        <tested_version operator="equals">0.22.0</tested_version>
        <tested_release operator="equals">6.0.3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-821" comment="Vulnerable configuration" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-285"/>
      <subtest negate="false" test_ref="rvt-286"/>
      <subtest negate="false" test_ref="rvt-287"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-284" comment="mutt version is less than 1.4.1-3.4" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">mutt</name>
        <tested_epoch datatype="int" operator="equals">5</tested_epoch>
        <tested_version operator="equals">1.4.1</tested_version>
        <tested_release operator="equals">3.4</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-283" comment="kernel-bigmem version is less than 2.4.20-30.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-bigmem</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.20</tested_version>
        <tested_release operator="equals">30.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-282" comment="kernel-smp version is less than 2.4.20-30.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-smp</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.20</tested_version>
        <tested_release operator="equals">30.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-281" comment="kernel version is less than 2.4.20-30.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.20</tested_version>
        <tested_release operator="equals">30.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-816" comment="Vulnerable Configuration" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-281"/>
      <subtest negate="false" test_ref="rvt-282"/>
      <subtest negate="false" test_ref="rvt-283"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-280" comment="libxml2-python version is less than 2.5.10-6" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">libxml2-python</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.5.10</tested_version>
        <tested_release datatype="int" operator="equals">6</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-279" comment="libxml2-devel version is less than 2.5.10-6" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">libxml2-devel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.5.10</tested_version>
        <tested_release datatype="int" operator="equals">6</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-278" comment="libxml2 version is less than 2.5.10-6" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">libxml2</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.5.10</tested_version>
        <tested_release datatype="int" operator="equals">6</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-815" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-278"/>
      <subtest negate="false" test_ref="rvt-279"/>
      <subtest negate="false" test_ref="rvt-280"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-277" comment="XFree86 version is less than 4.3.0-55.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">XFree86</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">4.3.0</tested_version>
        <tested_release operator="equals">55.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-220" comment="httpd is listening to the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*httpd</program_name>
      </object>
      <data operation="AND">
        <protocol operator="equals">TCP</protocol>
      </data>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-276" comment="mod_python version is less than 3.0.1-4" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">mod_python</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">3.0.1</tested_version>
        <tested_release datatype="int" operator="equals">4</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-275" comment="samba version is less than 3.0.2-6.3E" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">samba</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">3.0.2</tested_version>
        <tested_release operator="equals">6.3E</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-274" comment="pwlib version is less than 1.4.7-7.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">pwlib</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.4.7</tested_version>
        <tested_release operator="equals">7.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-273" comment="kernel-hugemem version is less than 2.4.21-9.0.1.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-hugemem</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">9.0.1.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-272" comment="kernel-smp version is less than 2.4.21-9.0.1.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel-smp</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">9.0.1.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-271" comment="kernel version is less than 2.4.21-9.0.1.EL" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.21</tested_version>
        <tested_release operator="equals">9.0.1.EL</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-808" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-271"/>
      <subtest negate="false" test_ref="rvt-272"/>
      <subtest negate="false" test_ref="rvt-273"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-270" comment="kdelibs version is less than 3.1-13" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kdelibs</name>
        <tested_epoch datatype="int" operator="equals">6</tested_epoch>
        <tested_version operator="equals">3.1</tested_version>
        <tested_release datatype="int" operator="equals">13</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-795" comment="/usr/bin/mc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mc</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-794" comment="/usr/bin/mc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mc</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-793" comment="/usr/bin/mc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mc</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-806" comment="/usr/bin/mc is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-793"/>
      <subtest negate="false" test_ref="upt-794"/>
      <subtest negate="false" test_ref="upt-795"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-269" comment="mc version is less than 4.6.0-7.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">mc</name>
        <tested_epoch datatype="int" operator="equals">1</tested_epoch>
        <tested_version operator="equals">4.6.0</tested_version>
        <tested_release operator="equals">7.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-792" comment="/usr/bin/slocate is setgid" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/slocate</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-791" comment="/usr/bin/slocate is setgid" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/slocate</component>
        </path>
      </object>
      <data operation="AND">
        <sgid datatype="int" operator="equals">1</sgid>
      </data>
    </permission_test>
    <compound_test id="cmp-805" comment="/usr/bin/slocate is setgid" operation="AND" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-791"/>
      <subtest negate="false" test_ref="upt-792"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-268" comment="slocate version is less than 2.7-2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">slocate</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.7</tested_version>
        <tested_release datatype="int" operator="equals">2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-790" comment="/usr/bin/gaim is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gaim</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-789" comment="/usr/bin/gaim is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gaim</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-788" comment="/usr/bin/gaim is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gaim</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-802" comment="/usr/bin/gaim is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-788"/>
      <subtest negate="false" test_ref="upt-789"/>
      <subtest negate="false" test_ref="upt-790"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-267" comment="gaim version is less than 0.75-0.9.0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">gaim</name>
        <tested_epoch datatype="int" operator="equals">1</tested_epoch>
        <tested_version operator="equals">0.75</tested_version>
        <tested_release operator="equals">0.9.0</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-218" comment="httpd is listening on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*httpd.*</program_name>
      </object>
      <data operation="AND">
        <protocol operator="equals">TCP</protocol>
      </data>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-266" comment="mailman version is less than 2.1.1-5" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">mailman</name>
        <tested_epoch datatype="int" operator="equals">3</tested_epoch>
        <tested_version operator="equals">2.1.1</tested_version>
        <tested_release datatype="int" operator="equals">5</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-265" comment="mutt version is less than 1.4.1-3.3" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">mutt</name>
        <tested_epoch datatype="int" operator="equals">5</tested_epoch>
        <tested_version operator="equals">1.4.1</tested_version>
        <tested_release operator="equals">3.3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-264" comment="netpbm-progs version is less than 9.24-11.30.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">netpbm-progs</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">9.24</tested_version>
        <tested_release operator="equals">11.30.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-263" comment="netpbm-devel version is less than 9.24-11.30.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">netpbm-devel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">9.24</tested_version>
        <tested_release operator="equals">11.30.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-262" comment="netpbm version is less than 9.24-11.30.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">netpbm</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">9.24</tested_version>
        <tested_release operator="equals">11.30.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-574" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-262"/>
      <subtest negate="false" test_ref="rvt-263"/>
      <subtest negate="false" test_ref="rvt-264"/>
    </compound_test>
    <permission_test id="upt-787" comment="/usr/X11R6/bin/XFree86 is SUID and executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/X11R6/bin/XFree86</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-786" comment="/usr/X11R6/bin/XFree86 is SUID and executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/X11R6/bin/XFree86</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <compound_test id="cmp-569" comment="/usr/X11R6/bin/XFree86 is SUID and executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-786"/>
      <subtest negate="false" test_ref="upt-787"/>
    </compound_test>
    <permission_test id="upt-785" comment="/usr/X11R6/bin/XFree86 is SUID and executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/X11R6/bin/XFree86</component>
        </path>
      </object>
      <data operation="AND">
        <suid datatype="int" operator="equals">1</suid>
      </data>
    </permission_test>
    <compound_test id="cmp-568" comment="/usr/X11R6/bin/XFree86 is SUID and executable" operation="AND" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-785"/>
      <subtest negate="false" test_ref="cmp-569"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-261" comment="XFree86 version is less than 4.3.0-2.90.55" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">XFree86</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">4.3.0</tested_version>
        <tested_release operator="equals">2.90.55</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-657" comment="/usr/bin/ppmtopi1 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopi1</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-656" comment="/usr/bin/ppmtopi1 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopi1</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-655" comment="/usr/bin/ppmtopi1 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopi1</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-525" comment="/usr/bin/ppmtopi1 is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-655"/>
      <subtest negate="false" test_ref="upt-656"/>
      <subtest negate="false" test_ref="upt-657"/>
    </compound_test>
    <permission_test id="upt-654" comment="/usr/bin/ppmtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-653" comment="/usr/bin/ppmtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-652" comment="/usr/bin/ppmtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-524" comment="/usr/bin/ppmtopgm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-652"/>
      <subtest negate="false" test_ref="upt-653"/>
      <subtest negate="false" test_ref="upt-654"/>
    </compound_test>
    <permission_test id="upt-651" comment="/usr/bin/ppmtopcx is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopcx</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-650" comment="/usr/bin/ppmtopcx is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopcx</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-649" comment="/usr/bin/ppmtopcx is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopcx</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-523" comment="/usr/bin/ppmtopcx is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-649"/>
      <subtest negate="false" test_ref="upt-650"/>
      <subtest negate="false" test_ref="upt-651"/>
    </compound_test>
    <permission_test id="upt-648" comment="/usr/bin/ppmtoneo is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoneo</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-647" comment="/usr/bin/ppmtoneo is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoneo</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-646" comment="/usr/bin/ppmtoneo is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoneo</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-522" comment="/usr/bin/ppmtoneo is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-646"/>
      <subtest negate="false" test_ref="upt-647"/>
      <subtest negate="false" test_ref="upt-648"/>
    </compound_test>
    <permission_test id="upt-645" comment="/usr/bin/ppmtompeg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtompeg</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-644" comment="/usr/bin/ppmtompeg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtompeg</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-643" comment="/usr/bin/ppmtompeg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtompeg</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-521" comment="/usr/bin/ppmtompeg is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-643"/>
      <subtest negate="false" test_ref="upt-644"/>
      <subtest negate="false" test_ref="upt-645"/>
    </compound_test>
    <permission_test id="upt-642" comment="/usr/bin/ppmtomitsu is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtomitsu</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-641" comment="/usr/bin/ppmtomitsu is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtomitsu</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-640" comment="/usr/bin/ppmtomitsu is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtomitsu</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-520" comment="/usr/bin/ppmtomitsu is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-640"/>
      <subtest negate="false" test_ref="upt-641"/>
      <subtest negate="false" test_ref="upt-642"/>
    </compound_test>
    <permission_test id="upt-639" comment="/usr/bin/ppmtolj is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtolj</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-638" comment="/usr/bin/ppmtolj is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtolj</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-637" comment="/usr/bin/ppmtolj is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtolj</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-519" comment="/usr/bin/ppmtolj is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-637"/>
      <subtest negate="false" test_ref="upt-638"/>
      <subtest negate="false" test_ref="upt-639"/>
    </compound_test>
    <permission_test id="upt-636" comment="/usr/bin/ppmtoleaf is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoleaf</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-635" comment="/usr/bin/ppmtoleaf is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoleaf</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-634" comment="/usr/bin/ppmtoleaf is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoleaf</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-518" comment="/usr/bin/ppmtoleaf is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-634"/>
      <subtest negate="false" test_ref="upt-635"/>
      <subtest negate="false" test_ref="upt-636"/>
    </compound_test>
    <permission_test id="upt-633" comment="/usr/bin/ppmtojpeg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtojpeg</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-632" comment="/usr/bin/ppmtojpeg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtojpeg</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-631" comment="/usr/bin/ppmtojpeg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtojpeg</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-517" comment="/usr/bin/ppmtojpeg is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-631"/>
      <subtest negate="false" test_ref="upt-632"/>
      <subtest negate="false" test_ref="upt-633"/>
    </compound_test>
    <permission_test id="upt-630" comment="/usr/bin/ppmtoilbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoilbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-629" comment="/usr/bin/ppmtoilbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoilbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-628" comment="/usr/bin/ppmtoilbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoilbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-516" comment="/usr/bin/ppmtoilbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-628"/>
      <subtest negate="false" test_ref="upt-629"/>
      <subtest negate="false" test_ref="upt-630"/>
    </compound_test>
    <permission_test id="upt-627" comment="/usr/bin/ppmtoicr is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoicr</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-626" comment="/usr/bin/ppmtoicr is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoicr</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-625" comment="/usr/bin/ppmtoicr is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoicr</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-515" comment="/usr/bin/ppmtoicr is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-625"/>
      <subtest negate="false" test_ref="upt-626"/>
      <subtest negate="false" test_ref="upt-627"/>
    </compound_test>
    <permission_test id="upt-624" comment="/usr/bin/ppmtogif is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtogif</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-623" comment="/usr/bin/ppmtogif is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtogif</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-622" comment="/usr/bin/ppmtogif is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtogif</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-514" comment="/usr/bin/ppmtogif is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-622"/>
      <subtest negate="false" test_ref="upt-623"/>
      <subtest negate="false" test_ref="upt-624"/>
    </compound_test>
    <permission_test id="upt-621" comment="/usr/bin/ppmtoeyuv is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoeyuv</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-620" comment="/usr/bin/ppmtoeyuv is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoeyuv</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-619" comment="/usr/bin/ppmtoeyuv is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoeyuv</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-513" comment="/usr/bin/ppmtoeyuv is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-619"/>
      <subtest negate="false" test_ref="upt-620"/>
      <subtest negate="false" test_ref="upt-621"/>
    </compound_test>
    <permission_test id="upt-618" comment="/usr/bin/ppmtobmp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtobmp</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-617" comment="/usr/bin/ppmtobmp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtobmp</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-616" comment="/usr/bin/ppmtobmp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtobmp</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-512" comment="/usr/bin/ppmtobmp is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-616"/>
      <subtest negate="false" test_ref="upt-617"/>
      <subtest negate="false" test_ref="upt-618"/>
    </compound_test>
    <permission_test id="upt-615" comment="/usr/bin/ppmtoacad is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoacad</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-614" comment="/usr/bin/ppmtoacad is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoacad</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-613" comment="/usr/bin/ppmtoacad is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoacad</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-511" comment="/usr/bin/ppmtoacad is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-613"/>
      <subtest negate="false" test_ref="upt-614"/>
      <subtest negate="false" test_ref="upt-615"/>
    </compound_test>
    <permission_test id="upt-612" comment="/usr/bin/ppmspread is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmspread</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-611" comment="/usr/bin/ppmspread is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmspread</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-610" comment="/usr/bin/ppmspread is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmspread</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-510" comment="/usr/bin/ppmspread is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-610"/>
      <subtest negate="false" test_ref="upt-611"/>
      <subtest negate="false" test_ref="upt-612"/>
    </compound_test>
    <permission_test id="upt-609" comment="/usr/bin/ppmshift is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmshift</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-608" comment="/usr/bin/ppmshift is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmshift</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-607" comment="/usr/bin/ppmshift is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmshift</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-509" comment="/usr/bin/ppmshift is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-607"/>
      <subtest negate="false" test_ref="upt-608"/>
      <subtest negate="false" test_ref="upt-609"/>
    </compound_test>
    <permission_test id="upt-606" comment="/usr/bin/ppmrelief is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmrelief</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-605" comment="/usr/bin/ppmrelief is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmrelief</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-604" comment="/usr/bin/ppmrelief is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmrelief</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-508" comment="/usr/bin/ppmrelief is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-604"/>
      <subtest negate="false" test_ref="upt-605"/>
      <subtest negate="false" test_ref="upt-606"/>
    </compound_test>
    <permission_test id="upt-603" comment="/usr/bin/ppmqvga is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmqvga</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-602" comment="/usr/bin/ppmqvga is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmqvga</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-601" comment="/usr/bin/ppmqvga is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmqvga</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-507" comment="/usr/bin/ppmqvga is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-601"/>
      <subtest negate="false" test_ref="upt-602"/>
      <subtest negate="false" test_ref="upt-603"/>
    </compound_test>
    <permission_test id="upt-600" comment="/usr/bin/ppmquant is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmquant</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-599" comment="/usr/bin/ppmquant is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmquant</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-598" comment="/usr/bin/ppmquant is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmquant</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-506" comment="/usr/bin/ppmquant is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-598"/>
      <subtest negate="false" test_ref="upt-599"/>
      <subtest negate="false" test_ref="upt-600"/>
    </compound_test>
    <permission_test id="upt-597" comment="/usr/bin/ppmpat is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmpat</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-596" comment="/usr/bin/ppmpat is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmpat</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-595" comment="/usr/bin/ppmpat is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmpat</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-505" comment="/usr/bin/ppmpat is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-595"/>
      <subtest negate="false" test_ref="upt-596"/>
      <subtest negate="false" test_ref="upt-597"/>
    </compound_test>
    <permission_test id="upt-594" comment="/usr/bin/ppmntsc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmntsc</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-593" comment="/usr/bin/ppmntsc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmntsc</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-592" comment="/usr/bin/ppmntsc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmntsc</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-504" comment="/usr/bin/ppmntsc is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-592"/>
      <subtest negate="false" test_ref="upt-593"/>
      <subtest negate="false" test_ref="upt-594"/>
    </compound_test>
    <permission_test id="upt-591" comment="/usr/bin/ppmnorm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmnorm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-590" comment="/usr/bin/ppmnorm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmnorm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-589" comment="/usr/bin/ppmnorm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmnorm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-503" comment="/usr/bin/ppmnorm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-589"/>
      <subtest negate="false" test_ref="upt-590"/>
      <subtest negate="false" test_ref="upt-591"/>
    </compound_test>
    <permission_test id="upt-588" comment="/usr/bin/ppmmix is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmmix</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-587" comment="/usr/bin/ppmmix is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmmix</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-586" comment="/usr/bin/ppmmix is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmmix</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-502" comment="/usr/bin/ppmmix is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-586"/>
      <subtest negate="false" test_ref="upt-587"/>
      <subtest negate="false" test_ref="upt-588"/>
    </compound_test>
    <permission_test id="upt-585" comment="/usr/bin/ppmmake is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmmake</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-584" comment="/usr/bin/ppmmake is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmmake</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-583" comment="/usr/bin/ppmmake is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmmake</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-501" comment="/usr/bin/ppmmake is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-583"/>
      <subtest negate="false" test_ref="upt-584"/>
      <subtest negate="false" test_ref="upt-585"/>
    </compound_test>
    <permission_test id="upt-582" comment="/usr/bin/ppmlabel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmlabel</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-581" comment="/usr/bin/ppmlabel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmlabel</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-580" comment="/usr/bin/ppmlabel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmlabel</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-500" comment="/usr/bin/ppmlabel is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-580"/>
      <subtest negate="false" test_ref="upt-581"/>
      <subtest negate="false" test_ref="upt-582"/>
    </compound_test>
    <permission_test id="upt-579" comment="/usr/bin/ppmhist is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmhist</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-578" comment="/usr/bin/ppmhist is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmhist</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-577" comment="/usr/bin/ppmhist is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmhist</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-499" comment="/usr/bin/ppmhist is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-577"/>
      <subtest negate="false" test_ref="upt-578"/>
      <subtest negate="false" test_ref="upt-579"/>
    </compound_test>
    <permission_test id="upt-576" comment="/usr/bin/ppmforge is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmforge</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-575" comment="/usr/bin/ppmforge is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmforge</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-574" comment="/usr/bin/ppmforge is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmforge</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-498" comment="/usr/bin/ppmforge is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-574"/>
      <subtest negate="false" test_ref="upt-575"/>
      <subtest negate="false" test_ref="upt-576"/>
    </compound_test>
    <permission_test id="upt-573" comment="/usr/bin/ppmflash is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmflash</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-572" comment="/usr/bin/ppmflash is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmflash</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-571" comment="/usr/bin/ppmflash is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmflash</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-497" comment="/usr/bin/ppmflash is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-571"/>
      <subtest negate="false" test_ref="upt-572"/>
      <subtest negate="false" test_ref="upt-573"/>
    </compound_test>
    <permission_test id="upt-570" comment="/usr/bin/ppmdither is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmdither</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-569" comment="/usr/bin/ppmdither is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmdither</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-568" comment="/usr/bin/ppmdither is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmdither</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-496" comment="/usr/bin/ppmdither is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-568"/>
      <subtest negate="false" test_ref="upt-569"/>
      <subtest negate="false" test_ref="upt-570"/>
    </compound_test>
    <permission_test id="upt-567" comment="/usr/bin/ppmdist is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmdist</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-566" comment="/usr/bin/ppmdist is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmdist</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-565" comment="/usr/bin/ppmdist is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmdist</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-495" comment="/usr/bin/ppmdist is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-565"/>
      <subtest negate="false" test_ref="upt-566"/>
      <subtest negate="false" test_ref="upt-567"/>
    </compound_test>
    <permission_test id="upt-564" comment="/usr/bin/ppmdim is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmdim</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-563" comment="/usr/bin/ppmdim is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmdim</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-562" comment="/usr/bin/ppmdim is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmdim</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-494" comment="/usr/bin/ppmdim is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-562"/>
      <subtest negate="false" test_ref="upt-563"/>
      <subtest negate="false" test_ref="upt-564"/>
    </compound_test>
    <permission_test id="upt-561" comment="/usr/bin/ppmcolors is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmcolors</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-560" comment="/usr/bin/ppmcolors is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmcolors</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-559" comment="/usr/bin/ppmcolors is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmcolors</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-493" comment="/usr/bin/ppmcolors is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-559"/>
      <subtest negate="false" test_ref="upt-560"/>
      <subtest negate="false" test_ref="upt-561"/>
    </compound_test>
    <permission_test id="upt-558" comment="/usr/bin/ppmcolormask is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmcolormask</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-557" comment="/usr/bin/ppmcolormask is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmcolormask</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-556" comment="/usr/bin/ppmcolormask is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmcolormask</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-492" comment="/usr/bin/ppmcolormask is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-556"/>
      <subtest negate="false" test_ref="upt-557"/>
      <subtest negate="false" test_ref="upt-558"/>
    </compound_test>
    <permission_test id="upt-555" comment="/usr/bin/ppmcie is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmcie</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-554" comment="/usr/bin/ppmcie is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmcie</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-553" comment="/usr/bin/ppmcie is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmcie</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-491" comment="/usr/bin/ppmcie is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-553"/>
      <subtest negate="false" test_ref="upt-554"/>
      <subtest negate="false" test_ref="upt-555"/>
    </compound_test>
    <permission_test id="upt-552" comment="/usr/bin/ppmchange is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmchange</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-551" comment="/usr/bin/ppmchange is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmchange</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-550" comment="/usr/bin/ppmchange is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmchange</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-490" comment="/usr/bin/ppmchange is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-550"/>
      <subtest negate="false" test_ref="upt-551"/>
      <subtest negate="false" test_ref="upt-552"/>
    </compound_test>
    <permission_test id="upt-549" comment="/usr/bin/ppmbrighten is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmbrighten</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-548" comment="/usr/bin/ppmbrighten is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmbrighten</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-547" comment="/usr/bin/ppmbrighten is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmbrighten</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-489" comment="/usr/bin/ppmbrighten is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-547"/>
      <subtest negate="false" test_ref="upt-548"/>
      <subtest negate="false" test_ref="upt-549"/>
    </compound_test>
    <permission_test id="upt-546" comment="/usr/bin/ppm3d is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppm3d</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-545" comment="/usr/bin/ppm3d is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppm3d</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-544" comment="/usr/bin/ppm3d is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppm3d</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-488" comment="/usr/bin/ppm3d is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-544"/>
      <subtest negate="false" test_ref="upt-545"/>
      <subtest negate="false" test_ref="upt-546"/>
    </compound_test>
    <permission_test id="upt-543" comment="/usr/bin/pnmtoxwd is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtoxwd</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-542" comment="/usr/bin/pnmtoxwd is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtoxwd</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-541" comment="/usr/bin/pnmtoxwd is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtoxwd</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-487" comment="/usr/bin/pnmtoxwd is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-541"/>
      <subtest negate="false" test_ref="upt-542"/>
      <subtest negate="false" test_ref="upt-543"/>
    </compound_test>
    <permission_test id="upt-540" comment="/usr/bin/pnmtotiffcmyk is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtotiffcmyk</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-539" comment="/usr/bin/pnmtotiffcmyk is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtotiffcmyk</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-538" comment="/usr/bin/pnmtotiffcmyk is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtotiffcmyk</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-486" comment="/usr/bin/pnmtotiffcmyk is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-538"/>
      <subtest negate="false" test_ref="upt-539"/>
      <subtest negate="false" test_ref="upt-540"/>
    </compound_test>
    <permission_test id="upt-537" comment="/usr/bin/pnmtotiff is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtotiff</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-536" comment="/usr/bin/pnmtotiff is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtotiff</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-535" comment="/usr/bin/pnmtotiff is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtotiff</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-485" comment="/usr/bin/pnmtotiff is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-535"/>
      <subtest negate="false" test_ref="upt-536"/>
      <subtest negate="false" test_ref="upt-537"/>
    </compound_test>
    <permission_test id="upt-534" comment="/usr/bin/pnmtosir is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtosir</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-533" comment="/usr/bin/pnmtosir is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtosir</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-532" comment="/usr/bin/pnmtosir is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtosir</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-484" comment="/usr/bin/pnmtosir is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-532"/>
      <subtest negate="false" test_ref="upt-533"/>
      <subtest negate="false" test_ref="upt-534"/>
    </compound_test>
    <permission_test id="upt-531" comment="/usr/bin/pnmtosgi is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtosgi</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-530" comment="/usr/bin/pnmtosgi is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtosgi</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-528" comment="/usr/bin/pnmtosgi is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtosgi</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-483" comment="/usr/bin/pnmtosgi is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-528"/>
      <subtest negate="false" test_ref="upt-530"/>
      <subtest negate="false" test_ref="upt-531"/>
    </compound_test>
    <permission_test id="upt-527" comment="/usr/bin/pnmtorle is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtorle</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-526" comment="/usr/bin/pnmtorle is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtorle</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-525" comment="/usr/bin/pnmtorle is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtorle</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-482" comment="/usr/bin/pnmtorle is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-525"/>
      <subtest negate="false" test_ref="upt-526"/>
      <subtest negate="false" test_ref="upt-527"/>
    </compound_test>
    <permission_test id="upt-524" comment="/usr/bin/pnmtorast is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtorast</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-523" comment="/usr/bin/pnmtorast is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtorast</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-522" comment="/usr/bin/pnmtorast is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtorast</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-481" comment="/usr/bin/pnmtorast is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-522"/>
      <subtest negate="false" test_ref="upt-523"/>
      <subtest negate="false" test_ref="upt-524"/>
    </compound_test>
    <permission_test id="upt-521" comment="/usr/bin/pnmtops is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtops</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-520" comment="/usr/bin/pnmtops is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtops</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-519" comment="/usr/bin/pnmtops is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtops</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-480" comment="/usr/bin/pnmtops is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-519"/>
      <subtest negate="false" test_ref="upt-520"/>
      <subtest negate="false" test_ref="upt-521"/>
    </compound_test>
    <permission_test id="upt-518" comment="/usr/bin/pnmtopng is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtopng</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-517" comment="/usr/bin/pnmtopng is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtopng</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-516" comment="/usr/bin/pnmtopng is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtopng</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-479" comment="/usr/bin/pnmtopng is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-516"/>
      <subtest negate="false" test_ref="upt-517"/>
      <subtest negate="false" test_ref="upt-518"/>
    </compound_test>
    <permission_test id="upt-515" comment="/usr/bin/pnmtoplainpnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtoplainpnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-514" comment="/usr/bin/pnmtoplainpnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtoplainpnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-513" comment="/usr/bin/pnmtoplainpnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtoplainpnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-478" comment="/usr/bin/pnmtoplainpnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-513"/>
      <subtest negate="false" test_ref="upt-514"/>
      <subtest negate="false" test_ref="upt-515"/>
    </compound_test>
    <permission_test id="upt-512" comment="/usr/bin/pnmtopalm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtopalm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-511" comment="/usr/bin/pnmtopalm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtopalm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-510" comment="/usr/bin/pnmtopalm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtopalm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-477" comment="/usr/bin/pnmtopalm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-510"/>
      <subtest negate="false" test_ref="upt-511"/>
      <subtest negate="false" test_ref="upt-512"/>
    </compound_test>
    <permission_test id="upt-509" comment="/usr/bin/pnmtojpeg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtojpeg</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-508" comment="/usr/bin/pnmtojpeg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtojpeg</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-507" comment="/usr/bin/pnmtojpeg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtojpeg</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-476" comment="/usr/bin/pnmtojpeg is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-507"/>
      <subtest negate="false" test_ref="upt-508"/>
      <subtest negate="false" test_ref="upt-509"/>
    </compound_test>
    <permission_test id="upt-506" comment="/usr/bin/pnmtofits is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtofits</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-505" comment="/usr/bin/pnmtofits is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtofits</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-504" comment="/usr/bin/pnmtofits is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtofits</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-475" comment="/usr/bin/pnmtofits is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-504"/>
      <subtest negate="false" test_ref="upt-505"/>
      <subtest negate="false" test_ref="upt-506"/>
    </compound_test>
    <permission_test id="upt-503" comment="/usr/bin/pnmtofiasco is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtofiasco</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-502" comment="/usr/bin/pnmtofiasco is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtofiasco</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-501" comment="/usr/bin/pnmtofiasco is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtofiasco</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-474" comment="/usr/bin/pnmtofiasco is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-501"/>
      <subtest negate="false" test_ref="upt-502"/>
      <subtest negate="false" test_ref="upt-503"/>
    </compound_test>
    <permission_test id="upt-500" comment="/usr/bin/pnmtoddif is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtoddif</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-499" comment="/usr/bin/pnmtoddif is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtoddif</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-498" comment="/usr/bin/pnmtoddif is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtoddif</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-473" comment="/usr/bin/pnmtoddif is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-498"/>
      <subtest negate="false" test_ref="upt-499"/>
      <subtest negate="false" test_ref="upt-500"/>
    </compound_test>
    <permission_test id="upt-497" comment="/usr/bin/pnmtile is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtile</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-496" comment="/usr/bin/pnmtile is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtile</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-495" comment="/usr/bin/pnmtile is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmtile</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-472" comment="/usr/bin/pnmtile is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-495"/>
      <subtest negate="false" test_ref="upt-496"/>
      <subtest negate="false" test_ref="upt-497"/>
    </compound_test>
    <permission_test id="upt-494" comment="/usr/bin/pnmsplit is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmsplit</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-493" comment="/usr/bin/pnmsplit is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmsplit</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-492" comment="/usr/bin/pnmsplit is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmsplit</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-471" comment="/usr/bin/pnmsplit is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-492"/>
      <subtest negate="false" test_ref="upt-493"/>
      <subtest negate="false" test_ref="upt-494"/>
    </compound_test>
    <permission_test id="upt-491" comment="/usr/bin/pnmsmooth is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmsmooth</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-490" comment="/usr/bin/pnmsmooth is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmsmooth</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-489" comment="/usr/bin/pnmsmooth is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmsmooth</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-470" comment="/usr/bin/pnmsmooth is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-489"/>
      <subtest negate="false" test_ref="upt-490"/>
      <subtest negate="false" test_ref="upt-491"/>
    </compound_test>
    <permission_test id="upt-488" comment="/usr/bin/pnmshear is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmshear</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-487" comment="/usr/bin/pnmshear is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmshear</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-486" comment="/usr/bin/pnmshear is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmshear</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-469" comment="/usr/bin/pnmshear is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-486"/>
      <subtest negate="false" test_ref="upt-487"/>
      <subtest negate="false" test_ref="upt-488"/>
    </compound_test>
    <permission_test id="upt-485" comment="/usr/bin/pnmscalefixed is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmscalefixed</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-484" comment="/usr/bin/pnmscalefixed is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmscalefixed</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-483" comment="/usr/bin/pnmscalefixed is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmscalefixed</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-468" comment="/usr/bin/pnmscalefixed is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-483"/>
      <subtest negate="false" test_ref="upt-484"/>
      <subtest negate="false" test_ref="upt-485"/>
    </compound_test>
    <permission_test id="upt-784" comment="/usr/bin/zeisstopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/zeisstopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-783" comment="/usr/bin/zeisstopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/zeisstopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-782" comment="/usr/bin/zeisstopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/zeisstopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-567" comment="/usr/bin/zeisstopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-782"/>
      <subtest negate="false" test_ref="upt-783"/>
      <subtest negate="false" test_ref="upt-784"/>
    </compound_test>
    <permission_test id="upt-781" comment="/usr/bin/yuvtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/yuvtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-780" comment="/usr/bin/yuvtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/yuvtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-779" comment="/usr/bin/yuvtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/yuvtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-566" comment="/usr/bin/yuvtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-779"/>
      <subtest negate="false" test_ref="upt-780"/>
      <subtest negate="false" test_ref="upt-781"/>
    </compound_test>
    <permission_test id="upt-778" comment="/usr/bin/yuvsplittoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/yuvsplittoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-777" comment="/usr/bin/yuvsplittoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/yuvsplittoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-776" comment="/usr/bin/yuvsplittoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/yuvsplittoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-565" comment="/usr/bin/yuvsplittoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-776"/>
      <subtest negate="false" test_ref="upt-777"/>
      <subtest negate="false" test_ref="upt-778"/>
    </compound_test>
    <permission_test id="upt-775" comment="/usr/bin/ybmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ybmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-774" comment="/usr/bin/ybmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ybmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-773" comment="/usr/bin/ybmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ybmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-564" comment="/usr/bin/ybmtopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-773"/>
      <subtest negate="false" test_ref="upt-774"/>
      <subtest negate="false" test_ref="upt-775"/>
    </compound_test>
    <permission_test id="upt-772" comment="/usr/bin/xwdtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xwdtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-771" comment="/usr/bin/xwdtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xwdtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-770" comment="/usr/bin/xwdtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xwdtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-563" comment="/usr/bin/xwdtopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-770"/>
      <subtest negate="false" test_ref="upt-771"/>
      <subtest negate="false" test_ref="upt-772"/>
    </compound_test>
    <permission_test id="upt-769" comment="/usr/bin/xvminitoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xvminitoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-768" comment="/usr/bin/xvminitoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xvminitoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-767" comment="/usr/bin/xvminitoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xvminitoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-562" comment="/usr/bin/xvminitoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-767"/>
      <subtest negate="false" test_ref="upt-768"/>
      <subtest negate="false" test_ref="upt-769"/>
    </compound_test>
    <permission_test id="upt-766" comment="/usr/bin/xpmtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xpmtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-765" comment="/usr/bin/xpmtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xpmtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-764" comment="/usr/bin/xpmtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xpmtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-561" comment="/usr/bin/xpmtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-764"/>
      <subtest negate="false" test_ref="upt-765"/>
      <subtest negate="false" test_ref="upt-766"/>
    </compound_test>
    <permission_test id="upt-763" comment="/usr/bin/ximtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ximtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-762" comment="/usr/bin/ximtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ximtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-761" comment="/usr/bin/ximtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ximtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-560" comment="/usr/bin/ximtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-761"/>
      <subtest negate="false" test_ref="upt-762"/>
      <subtest negate="false" test_ref="upt-763"/>
    </compound_test>
    <permission_test id="upt-760" comment="/usr/bin/xbmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xbmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-759" comment="/usr/bin/xbmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xbmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-758" comment="/usr/bin/xbmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xbmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-559" comment="/usr/bin/xbmtopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-758"/>
      <subtest negate="false" test_ref="upt-759"/>
      <subtest negate="false" test_ref="upt-760"/>
    </compound_test>
    <permission_test id="upt-757" comment="/usr/bin/winicontoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/winicontoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-756" comment="/usr/bin/winicontoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/winicontoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-755" comment="/usr/bin/winicontoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/winicontoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-558" comment="/usr/bin/winicontoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-755"/>
      <subtest negate="false" test_ref="upt-756"/>
      <subtest negate="false" test_ref="upt-757"/>
    </compound_test>
    <permission_test id="upt-754" comment="/usr/bin/wbmptopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/wbmptopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-753" comment="/usr/bin/wbmptopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/wbmptopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-752" comment="/usr/bin/wbmptopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/wbmptopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-557" comment="/usr/bin/wbmptopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-752"/>
      <subtest negate="false" test_ref="upt-753"/>
      <subtest negate="false" test_ref="upt-754"/>
    </compound_test>
    <permission_test id="upt-751" comment="/usr/bin/tifftopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/tifftopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-750" comment="/usr/bin/tifftopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/tifftopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-749" comment="/usr/bin/tifftopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/tifftopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-556" comment="/usr/bin/tifftopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-749"/>
      <subtest negate="false" test_ref="upt-750"/>
      <subtest negate="false" test_ref="upt-751"/>
    </compound_test>
    <permission_test id="upt-748" comment="/usr/bin/thinkjettopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/thinkjettopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-747" comment="/usr/bin/thinkjettopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/thinkjettopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-746" comment="/usr/bin/thinkjettopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/thinkjettopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-555" comment="/usr/bin/thinkjettopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-746"/>
      <subtest negate="false" test_ref="upt-747"/>
      <subtest negate="false" test_ref="upt-748"/>
    </compound_test>
    <permission_test id="upt-745" comment="/usr/bin/tgatoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/tgatoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-744" comment="/usr/bin/tgatoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/tgatoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-743" comment="/usr/bin/tgatoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/tgatoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-554" comment="/usr/bin/tgatoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-743"/>
      <subtest negate="false" test_ref="upt-744"/>
      <subtest negate="false" test_ref="upt-745"/>
    </compound_test>
    <permission_test id="upt-742" comment="/usr/bin/sputoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sputoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-741" comment="/usr/bin/sputoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sputoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-740" comment="/usr/bin/sputoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sputoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-553" comment="/usr/bin/sputoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-740"/>
      <subtest negate="false" test_ref="upt-741"/>
      <subtest negate="false" test_ref="upt-742"/>
    </compound_test>
    <permission_test id="upt-739" comment="/usr/bin/spottopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/spottopgm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-738" comment="/usr/bin/spottopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/spottopgm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-737" comment="/usr/bin/spottopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/spottopgm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-552" comment="/usr/bin/spottopgm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-737"/>
      <subtest negate="false" test_ref="upt-738"/>
      <subtest negate="false" test_ref="upt-739"/>
    </compound_test>
    <permission_test id="upt-736" comment="/usr/bin/spctoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/spctoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-735" comment="/usr/bin/spctoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/spctoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-734" comment="/usr/bin/spctoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/spctoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-551" comment="/usr/bin/spctoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-734"/>
      <subtest negate="false" test_ref="upt-735"/>
      <subtest negate="false" test_ref="upt-736"/>
    </compound_test>
    <permission_test id="upt-733" comment="/usr/bin/sldtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sldtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-732" comment="/usr/bin/sldtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sldtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-731" comment="/usr/bin/sldtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sldtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-550" comment="/usr/bin/sldtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-731"/>
      <subtest negate="false" test_ref="upt-732"/>
      <subtest negate="false" test_ref="upt-733"/>
    </compound_test>
    <permission_test id="upt-729" comment="/usr/bin/sirtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sirtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-728" comment="/usr/bin/sirtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sirtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-727" comment="/usr/bin/sirtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sirtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-549" comment="/usr/bin/sirtopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-727"/>
      <subtest negate="false" test_ref="upt-728"/>
      <subtest negate="false" test_ref="upt-729"/>
    </compound_test>
    <permission_test id="upt-726" comment="/usr/bin/sgitopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sgitopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-725" comment="/usr/bin/sgitopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sgitopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-724" comment="/usr/bin/sgitopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sgitopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-548" comment="/usr/bin/sgitopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-724"/>
      <subtest negate="false" test_ref="upt-725"/>
      <subtest negate="false" test_ref="upt-726"/>
    </compound_test>
    <permission_test id="upt-723" comment="/usr/bin/sbigtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sbigtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-722" comment="/usr/bin/sbigtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sbigtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-721" comment="/usr/bin/sbigtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/sbigtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-547" comment="/usr/bin/sbigtopgm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-721"/>
      <subtest negate="false" test_ref="upt-722"/>
      <subtest negate="false" test_ref="upt-723"/>
    </compound_test>
    <permission_test id="upt-720" comment="/usr/bin/rletopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rletopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-719" comment="/usr/bin/rletopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rletopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-718" comment="/usr/bin/rletopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rletopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-546" comment="/usr/bin/rletopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-718"/>
      <subtest negate="false" test_ref="upt-719"/>
      <subtest negate="false" test_ref="upt-720"/>
    </compound_test>
    <permission_test id="upt-717" comment="/usr/bin/rgb3toppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rgb3toppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-716" comment="/usr/bin/rgb3toppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rgb3toppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-715" comment="/usr/bin/rgb3toppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rgb3toppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-545" comment="/usr/bin/rgb3toppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-715"/>
      <subtest negate="false" test_ref="upt-716"/>
      <subtest negate="false" test_ref="upt-717"/>
    </compound_test>
    <permission_test id="upt-714" comment="/usr/bin/rawtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rawtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-713" comment="/usr/bin/rawtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rawtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-712" comment="/usr/bin/rawtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rawtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-544" comment="/usr/bin/rawtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-712"/>
      <subtest negate="false" test_ref="upt-713"/>
      <subtest negate="false" test_ref="upt-714"/>
    </compound_test>
    <permission_test id="upt-711" comment="/usr/bin/rawtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rawtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-710" comment="/usr/bin/rawtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rawtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-709" comment="/usr/bin/rawtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rawtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-543" comment="/usr/bin/rawtopgm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-709"/>
      <subtest negate="false" test_ref="upt-710"/>
      <subtest negate="false" test_ref="upt-711"/>
    </compound_test>
    <permission_test id="upt-708" comment="/usr/bin/rasttopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rasttopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-707" comment="/usr/bin/rasttopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rasttopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-706" comment="/usr/bin/rasttopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/rasttopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-542" comment="/usr/bin/rasttopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-706"/>
      <subtest negate="false" test_ref="upt-707"/>
      <subtest negate="false" test_ref="upt-708"/>
    </compound_test>
    <permission_test id="upt-705" comment="/usr/bin/qrttoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/qrttoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-704" comment="/usr/bin/qrttoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/qrttoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-703" comment="/usr/bin/qrttoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/qrttoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-541" comment="/usr/bin/qrttoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-703"/>
      <subtest negate="false" test_ref="upt-704"/>
      <subtest negate="false" test_ref="upt-705"/>
    </compound_test>
    <permission_test id="upt-702" comment="/usr/bin/pstopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pstopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-701" comment="/usr/bin/pstopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pstopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-700" comment="/usr/bin/pstopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pstopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-540" comment="/usr/bin/pstopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-700"/>
      <subtest negate="false" test_ref="upt-701"/>
      <subtest negate="false" test_ref="upt-702"/>
    </compound_test>
    <permission_test id="upt-699" comment="/usr/bin/psidtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/psidtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-698" comment="/usr/bin/psidtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/psidtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-697" comment="/usr/bin/psidtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/psidtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-539" comment="/usr/bin/psidtopgm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-697"/>
      <subtest negate="false" test_ref="upt-698"/>
      <subtest negate="false" test_ref="upt-699"/>
    </compound_test>
    <permission_test id="upt-696" comment="/usr/bin/ppmtv is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtv</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-695" comment="/usr/bin/ppmtv is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtv</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-694" comment="/usr/bin/ppmtv is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtv</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-538" comment="/usr/bin/ppmtv is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-694"/>
      <subtest negate="false" test_ref="upt-695"/>
      <subtest negate="false" test_ref="upt-696"/>
    </compound_test>
    <permission_test id="upt-693" comment="/usr/bin/ppmtoyuvsplit is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoyuvsplit</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-692" comment="/usr/bin/ppmtoyuvsplit is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoyuvsplit</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-691" comment="/usr/bin/ppmtoyuvsplit is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoyuvsplit</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-537" comment="/usr/bin/ppmtoyuvsplit is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-691"/>
      <subtest negate="false" test_ref="upt-692"/>
      <subtest negate="false" test_ref="upt-693"/>
    </compound_test>
    <permission_test id="upt-690" comment="/usr/bin/ppmtoyuv is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoyuv</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-689" comment="/usr/bin/ppmtoyuv is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoyuv</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-688" comment="/usr/bin/ppmtoyuv is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoyuv</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-536" comment="/usr/bin/ppmtoyuv is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-688"/>
      <subtest negate="false" test_ref="upt-689"/>
      <subtest negate="false" test_ref="upt-690"/>
    </compound_test>
    <permission_test id="upt-687" comment="/usr/bin/ppmtoxpm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoxpm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-686" comment="/usr/bin/ppmtoxpm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoxpm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-685" comment="/usr/bin/ppmtoxpm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtoxpm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-535" comment="/usr/bin/ppmtoxpm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-685"/>
      <subtest negate="false" test_ref="upt-686"/>
      <subtest negate="false" test_ref="upt-687"/>
    </compound_test>
    <permission_test id="upt-684" comment="/usr/bin/ppmtowinicon is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtowinicon</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-683" comment="/usr/bin/ppmtowinicon is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtowinicon</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-682" comment="/usr/bin/ppmtowinicon is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtowinicon</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-534" comment="/usr/bin/ppmtowinicon is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-682"/>
      <subtest negate="false" test_ref="upt-683"/>
      <subtest negate="false" test_ref="upt-684"/>
    </compound_test>
    <permission_test id="upt-681" comment="/usr/bin/ppmtouil is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtouil</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-680" comment="/usr/bin/ppmtouil is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtouil</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-679" comment="/usr/bin/ppmtouil is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtouil</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-533" comment="/usr/bin/ppmtouil is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-679"/>
      <subtest negate="false" test_ref="upt-680"/>
      <subtest negate="false" test_ref="upt-681"/>
    </compound_test>
    <permission_test id="upt-678" comment="/usr/bin/ppmtotga is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtotga</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-677" comment="/usr/bin/ppmtotga is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtotga</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-676" comment="/usr/bin/ppmtotga is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtotga</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-532" comment="/usr/bin/ppmtotga is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-676"/>
      <subtest negate="false" test_ref="upt-677"/>
      <subtest negate="false" test_ref="upt-678"/>
    </compound_test>
    <permission_test id="upt-675" comment="/usr/bin/ppmtosixel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtosixel</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-674" comment="/usr/bin/ppmtosixel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtosixel</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-673" comment="/usr/bin/ppmtosixel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtosixel</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-531" comment="/usr/bin/ppmtosixel is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-673"/>
      <subtest negate="false" test_ref="upt-674"/>
      <subtest negate="false" test_ref="upt-675"/>
    </compound_test>
    <permission_test id="upt-672" comment="/usr/bin/ppmtorgb3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtorgb3</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-671" comment="/usr/bin/ppmtorgb3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtorgb3</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-670" comment="/usr/bin/ppmtorgb3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtorgb3</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-530" comment="/usr/bin/ppmtorgb3 is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-670"/>
      <subtest negate="false" test_ref="upt-671"/>
      <subtest negate="false" test_ref="upt-672"/>
    </compound_test>
    <permission_test id="upt-669" comment="/usr/bin/ppmtopuzz is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopuzz</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-668" comment="/usr/bin/ppmtopuzz is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopuzz</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-667" comment="/usr/bin/ppmtopuzz is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopuzz</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-529" comment="/usr/bin/ppmtopuzz is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-667"/>
      <subtest negate="false" test_ref="upt-668"/>
      <subtest negate="false" test_ref="upt-669"/>
    </compound_test>
    <permission_test id="upt-666" comment="/usr/bin/ppmtopjxl is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopjxl</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-665" comment="/usr/bin/ppmtopjxl is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopjxl</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-664" comment="/usr/bin/ppmtopjxl is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopjxl</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-528" comment="/usr/bin/ppmtopjxl is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-664"/>
      <subtest negate="false" test_ref="upt-665"/>
      <subtest negate="false" test_ref="upt-666"/>
    </compound_test>
    <permission_test id="upt-663" comment="/usr/bin/ppmtopj is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopj</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-662" comment="/usr/bin/ppmtopj is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopj</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-661" comment="/usr/bin/ppmtopj is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopj</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-527" comment="/usr/bin/ppmtopj is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-661"/>
      <subtest negate="false" test_ref="upt-662"/>
      <subtest negate="false" test_ref="upt-663"/>
    </compound_test>
    <permission_test id="upt-660" comment="/usr/bin/ppmtopict is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopict</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-659" comment="/usr/bin/ppmtopict is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopict</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-658" comment="/usr/bin/ppmtopict is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ppmtopict</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-526" comment="/usr/bin/ppmtopict is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-658"/>
      <subtest negate="false" test_ref="upt-659"/>
      <subtest negate="false" test_ref="upt-660"/>
    </compound_test>
    <permission_test id="upt-482" comment="/usr/bin/pnmscale is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmscale</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-481" comment="/usr/bin/pnmscale is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmscale</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-480" comment="/usr/bin/pnmscale is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmscale</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-467" comment="/usr/bin/pnmscale is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-480"/>
      <subtest negate="false" test_ref="upt-481"/>
      <subtest negate="false" test_ref="upt-482"/>
    </compound_test>
    <permission_test id="upt-479" comment="/usr/bin/pnmrotate is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmrotate</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-478" comment="/usr/bin/pnmrotate is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmrotate</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-477" comment="/usr/bin/pnmrotate is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmrotate</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-466" comment="/usr/bin/pnmrotate is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-477"/>
      <subtest negate="false" test_ref="upt-478"/>
      <subtest negate="false" test_ref="upt-479"/>
    </compound_test>
    <permission_test id="upt-476" comment="/usr/bin/pnmremap is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmremap</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-475" comment="/usr/bin/pnmremap is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmremap</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-474" comment="/usr/bin/pnmremap is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmremap</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-465" comment="/usr/bin/pnmremap is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-474"/>
      <subtest negate="false" test_ref="upt-475"/>
      <subtest negate="false" test_ref="upt-476"/>
    </compound_test>
    <permission_test id="upt-473" comment="/usr/bin/pnmpsnr is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmpsnr</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-472" comment="/usr/bin/pnmpsnr is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmpsnr</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-471" comment="/usr/bin/pnmpsnr is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmpsnr</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-464" comment="/usr/bin/pnmpsnr is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-471"/>
      <subtest negate="false" test_ref="upt-472"/>
      <subtest negate="false" test_ref="upt-473"/>
    </compound_test>
    <permission_test id="upt-470" comment="/usr/bin/pnmpaste is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmpaste</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-469" comment="/usr/bin/pnmpaste is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmpaste</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-468" comment="/usr/bin/pnmpaste is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmpaste</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-463" comment="/usr/bin/pnmpaste is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-468"/>
      <subtest negate="false" test_ref="upt-469"/>
      <subtest negate="false" test_ref="upt-470"/>
    </compound_test>
    <permission_test id="upt-467" comment="/usr/bin/pnmpad is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmpad</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-466" comment="/usr/bin/pnmpad is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmpad</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-465" comment="/usr/bin/pnmpad is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmpad</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-462" comment="/usr/bin/pnmpad is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-465"/>
      <subtest negate="false" test_ref="upt-466"/>
      <subtest negate="false" test_ref="upt-467"/>
    </compound_test>
    <permission_test id="upt-464" comment="/usr/bin/pnmnoraw is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmnoraw</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-463" comment="/usr/bin/pnmnoraw is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmnoraw</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-462" comment="/usr/bin/pnmnoraw is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmnoraw</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-461" comment="/usr/bin/pnmnoraw is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-462"/>
      <subtest negate="false" test_ref="upt-463"/>
      <subtest negate="false" test_ref="upt-464"/>
    </compound_test>
    <permission_test id="upt-461" comment="/usr/bin/pnmnlfilt is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmnlfilt</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-460" comment="/usr/bin/pnmnlfilt is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmnlfilt</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-459" comment="/usr/bin/pnmnlfilt is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmnlfilt</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-460" comment="/usr/bin/pnmnlfilt is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-459"/>
      <subtest negate="false" test_ref="upt-460"/>
      <subtest negate="false" test_ref="upt-461"/>
    </compound_test>
    <permission_test id="upt-458" comment="/usr/bin/pnmmontage is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmmontage</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-457" comment="/usr/bin/pnmmontage is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmmontage</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-456" comment="/usr/bin/pnmmontage is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmmontage</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-459" comment="/usr/bin/pnmmontage is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-456"/>
      <subtest negate="false" test_ref="upt-457"/>
      <subtest negate="false" test_ref="upt-458"/>
    </compound_test>
    <permission_test id="upt-455" comment="/usr/bin/pnminvert is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnminvert</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-454" comment="/usr/bin/pnminvert is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnminvert</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-453" comment="/usr/bin/pnminvert is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnminvert</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-458" comment="/usr/bin/pnminvert is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-453"/>
      <subtest negate="false" test_ref="upt-454"/>
      <subtest negate="false" test_ref="upt-455"/>
    </compound_test>
    <permission_test id="upt-452" comment="/usr/bin/pnminterp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnminterp</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-451" comment="/usr/bin/pnminterp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnminterp</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-450" comment="/usr/bin/pnminterp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnminterp</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-457" comment="/usr/bin/pnminterp is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-450"/>
      <subtest negate="false" test_ref="upt-451"/>
      <subtest negate="false" test_ref="upt-452"/>
    </compound_test>
    <permission_test id="upt-449" comment="/usr/bin/pnmhistmap is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmhistmap</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-448" comment="/usr/bin/pnmhistmap is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmhistmap</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-447" comment="/usr/bin/pnmhistmap is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmhistmap</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-456" comment="/usr/bin/pnmhistmap is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-447"/>
      <subtest negate="false" test_ref="upt-448"/>
      <subtest negate="false" test_ref="upt-449"/>
    </compound_test>
    <permission_test id="upt-446" comment="/usr/bin/pnmhisteq is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmhisteq</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-445" comment="/usr/bin/pnmhisteq is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmhisteq</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-444" comment="/usr/bin/pnmhisteq is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmhisteq</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-455" comment="/usr/bin/pnmhisteq is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-444"/>
      <subtest negate="false" test_ref="upt-445"/>
      <subtest negate="false" test_ref="upt-446"/>
    </compound_test>
    <permission_test id="upt-443" comment="/usr/bin/pnmgamma is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmgamma</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-442" comment="/usr/bin/pnmgamma is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmgamma</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-441" comment="/usr/bin/pnmgamma is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmgamma</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-454" comment="/usr/bin/pnmgamma is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-441"/>
      <subtest negate="false" test_ref="upt-442"/>
      <subtest negate="false" test_ref="upt-443"/>
    </compound_test>
    <permission_test id="upt-440" comment="/usr/bin/pnmflip is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmflip</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-439" comment="/usr/bin/pnmflip is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmflip</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-438" comment="/usr/bin/pnmflip is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmflip</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-453" comment="/usr/bin/pnmflip is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-438"/>
      <subtest negate="false" test_ref="upt-439"/>
      <subtest negate="false" test_ref="upt-440"/>
    </compound_test>
    <permission_test id="upt-437" comment="/usr/bin/pnmfile is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmfile</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-436" comment="/usr/bin/pnmfile is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmfile</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-435" comment="/usr/bin/pnmfile is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmfile</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-452" comment="/usr/bin/pnmfile is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-435"/>
      <subtest negate="false" test_ref="upt-436"/>
      <subtest negate="false" test_ref="upt-437"/>
    </compound_test>
    <permission_test id="upt-434" comment="/usr/bin/pnmenlarge is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmenlarge</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-433" comment="/usr/bin/pnmenlarge is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmenlarge</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-432" comment="/usr/bin/pnmenlarge is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmenlarge</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-451" comment="/usr/bin/pnmenlarge is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-432"/>
      <subtest negate="false" test_ref="upt-433"/>
      <subtest negate="false" test_ref="upt-434"/>
    </compound_test>
    <permission_test id="upt-431" comment="/usr/bin/pnmdepth is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmdepth</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-430" comment="/usr/bin/pnmdepth is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmdepth</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-429" comment="/usr/bin/pnmdepth is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmdepth</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-450" comment="/usr/bin/pnmdepth is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-429"/>
      <subtest negate="false" test_ref="upt-430"/>
      <subtest negate="false" test_ref="upt-431"/>
    </compound_test>
    <permission_test id="upt-427" comment="/usr/bin/pnmcut is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcut</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-426" comment="/usr/bin/pnmcut is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcut</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-425" comment="/usr/bin/pnmcut is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcut</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-449" comment="/usr/bin/pnmcut is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-425"/>
      <subtest negate="false" test_ref="upt-426"/>
      <subtest negate="false" test_ref="upt-427"/>
    </compound_test>
    <permission_test id="upt-424" comment="/usr/bin/pnmcrop is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcrop</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-423" comment="/usr/bin/pnmcrop is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcrop</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-422" comment="/usr/bin/pnmcrop is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcrop</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-448" comment="/usr/bin/pnmcrop is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-422"/>
      <subtest negate="false" test_ref="upt-423"/>
      <subtest negate="false" test_ref="upt-424"/>
    </compound_test>
    <permission_test id="upt-421" comment="/usr/bin/pnmconvol is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmconvol</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-420" comment="/usr/bin/pnmconvol is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmconvol</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-419" comment="/usr/bin/pnmconvol is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmconvol</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-447" comment="/usr/bin/pnmconvol is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-419"/>
      <subtest negate="false" test_ref="upt-420"/>
      <subtest negate="false" test_ref="upt-421"/>
    </compound_test>
    <permission_test id="upt-418" comment="/usr/bin/pnmcomp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcomp</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-417" comment="/usr/bin/pnmcomp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcomp</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-416" comment="/usr/bin/pnmcomp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcomp</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-446" comment="/usr/bin/pnmcomp is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-416"/>
      <subtest negate="false" test_ref="upt-417"/>
      <subtest negate="false" test_ref="upt-418"/>
    </compound_test>
    <permission_test id="upt-415" comment="/usr/bin/pnmcolormap is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcolormap</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-414" comment="/usr/bin/pnmcolormap is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcolormap</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-413" comment="/usr/bin/pnmcolormap is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcolormap</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-445" comment="/usr/bin/pnmcolormap is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-413"/>
      <subtest negate="false" test_ref="upt-414"/>
      <subtest negate="false" test_ref="upt-415"/>
    </compound_test>
    <permission_test id="upt-412" comment="/usr/bin/pnmcat is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcat</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-411" comment="/usr/bin/pnmcat is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcat</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-410" comment="/usr/bin/pnmcat is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmcat</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-444" comment="/usr/bin/pnmcat is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-410"/>
      <subtest negate="false" test_ref="upt-411"/>
      <subtest negate="false" test_ref="upt-412"/>
    </compound_test>
    <permission_test id="upt-409" comment="/usr/bin/pnmarith is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmarith</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-408" comment="/usr/bin/pnmarith is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmarith</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-407" comment="/usr/bin/pnmarith is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmarith</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-443" comment="/usr/bin/pnmarith is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-407"/>
      <subtest negate="false" test_ref="upt-408"/>
      <subtest negate="false" test_ref="upt-409"/>
    </compound_test>
    <permission_test id="upt-406" comment="/usr/bin/pnmalias is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmalias</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-405" comment="/usr/bin/pnmalias is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmalias</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-404" comment="/usr/bin/pnmalias is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pnmalias</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-442" comment="/usr/bin/pnmalias is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-404"/>
      <subtest negate="false" test_ref="upt-405"/>
      <subtest negate="false" test_ref="upt-406"/>
    </compound_test>
    <permission_test id="upt-403" comment="/usr/bin/pngtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pngtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-402" comment="/usr/bin/pngtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pngtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-401" comment="/usr/bin/pngtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pngtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-441" comment="/usr/bin/pngtopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-401"/>
      <subtest negate="false" test_ref="upt-402"/>
      <subtest negate="false" test_ref="upt-403"/>
    </compound_test>
    <permission_test id="upt-400" comment="/usr/bin/pktopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pktopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-399" comment="/usr/bin/pktopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pktopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-398" comment="/usr/bin/pktopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pktopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-440" comment="/usr/bin/pktopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-398"/>
      <subtest negate="false" test_ref="upt-399"/>
      <subtest negate="false" test_ref="upt-400"/>
    </compound_test>
    <permission_test id="upt-397" comment="/usr/bin/pjtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pjtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-396" comment="/usr/bin/pjtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pjtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-395" comment="/usr/bin/pjtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pjtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-439" comment="/usr/bin/pjtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-395"/>
      <subtest negate="false" test_ref="upt-396"/>
      <subtest negate="false" test_ref="upt-397"/>
    </compound_test>
    <permission_test id="upt-394" comment="/usr/bin/pi3topbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pi3topbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-393" comment="/usr/bin/pi3topbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pi3topbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-392" comment="/usr/bin/pi3topbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pi3topbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-438" comment="/usr/bin/pi3topbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-392"/>
      <subtest negate="false" test_ref="upt-393"/>
      <subtest negate="false" test_ref="upt-394"/>
    </compound_test>
    <permission_test id="upt-391" comment="/usr/bin/pi1toppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pi1toppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-390" comment="/usr/bin/pi1toppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pi1toppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-389" comment="/usr/bin/pi1toppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pi1toppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-437" comment="/usr/bin/pi1toppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-389"/>
      <subtest negate="false" test_ref="upt-390"/>
      <subtest negate="false" test_ref="upt-391"/>
    </compound_test>
    <permission_test id="upt-388" comment="/usr/bin/pgmtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-387" comment="/usr/bin/pgmtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-386" comment="/usr/bin/pgmtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-436" comment="/usr/bin/pgmtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-386"/>
      <subtest negate="false" test_ref="upt-387"/>
      <subtest negate="false" test_ref="upt-388"/>
    </compound_test>
    <permission_test id="upt-385" comment="/usr/bin/pgmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-384" comment="/usr/bin/pgmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-383" comment="/usr/bin/pgmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-435" comment="/usr/bin/pgmtopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-383"/>
      <subtest negate="false" test_ref="upt-384"/>
      <subtest negate="false" test_ref="upt-385"/>
    </compound_test>
    <permission_test id="upt-382" comment="/usr/bin/pgmtolispm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtolispm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-381" comment="/usr/bin/pgmtolispm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtolispm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-380" comment="/usr/bin/pgmtolispm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtolispm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-434" comment="/usr/bin/pgmtolispm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-380"/>
      <subtest negate="false" test_ref="upt-381"/>
      <subtest negate="false" test_ref="upt-382"/>
    </compound_test>
    <permission_test id="upt-379" comment="/usr/bin/pgmtofs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtofs</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-378" comment="/usr/bin/pgmtofs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtofs</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-377" comment="/usr/bin/pgmtofs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtofs</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-433" comment="/usr/bin/pgmtofs is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-377"/>
      <subtest negate="false" test_ref="upt-378"/>
      <subtest negate="false" test_ref="upt-379"/>
    </compound_test>
    <permission_test id="upt-376" comment="/usr/bin/pgmtexture is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtexture</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-375" comment="/usr/bin/pgmtexture is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtexture</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-374" comment="/usr/bin/pgmtexture is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmtexture</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-432" comment="/usr/bin/pgmtexture is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-374"/>
      <subtest negate="false" test_ref="upt-375"/>
      <subtest negate="false" test_ref="upt-376"/>
    </compound_test>
    <permission_test id="upt-373" comment="/usr/bin/pgmslice is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmslice</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-372" comment="/usr/bin/pgmslice is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmslice</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-371" comment="/usr/bin/pgmslice is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmslice</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-431" comment="/usr/bin/pgmslice is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-371"/>
      <subtest negate="false" test_ref="upt-372"/>
      <subtest negate="false" test_ref="upt-373"/>
    </compound_test>
    <permission_test id="upt-370" comment="/usr/bin/pgmramp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmramp</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-369" comment="/usr/bin/pgmramp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmramp</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-368" comment="/usr/bin/pgmramp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmramp</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-430" comment="/usr/bin/pgmramp is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-368"/>
      <subtest negate="false" test_ref="upt-369"/>
      <subtest negate="false" test_ref="upt-370"/>
    </compound_test>
    <permission_test id="upt-367" comment="/usr/bin/pgmoil is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmoil</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-366" comment="/usr/bin/pgmoil is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmoil</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-365" comment="/usr/bin/pgmoil is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmoil</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-429" comment="/usr/bin/pgmoil is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-365"/>
      <subtest negate="false" test_ref="upt-366"/>
      <subtest negate="false" test_ref="upt-367"/>
    </compound_test>
    <permission_test id="upt-364" comment="/usr/bin/pgmnorm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmnorm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-363" comment="/usr/bin/pgmnorm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmnorm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-362" comment="/usr/bin/pgmnorm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmnorm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-428" comment="/usr/bin/pgmnorm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-362"/>
      <subtest negate="false" test_ref="upt-363"/>
      <subtest negate="false" test_ref="upt-364"/>
    </compound_test>
    <permission_test id="upt-361" comment="/usr/bin/pgmnoise is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmnoise</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-360" comment="/usr/bin/pgmnoise is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmnoise</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-359" comment="/usr/bin/pgmnoise is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmnoise</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-427" comment="/usr/bin/pgmnoise is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-359"/>
      <subtest negate="false" test_ref="upt-360"/>
      <subtest negate="false" test_ref="upt-361"/>
    </compound_test>
    <permission_test id="upt-358" comment="/usr/bin/pgmkernel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmkernel</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-357" comment="/usr/bin/pgmkernel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmkernel</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-356" comment="/usr/bin/pgmkernel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmkernel</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-426" comment="/usr/bin/pgmkernel is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-356"/>
      <subtest negate="false" test_ref="upt-357"/>
      <subtest negate="false" test_ref="upt-358"/>
    </compound_test>
    <permission_test id="upt-355" comment="/usr/bin/pgmhist is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmhist</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-354" comment="/usr/bin/pgmhist is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmhist</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-353" comment="/usr/bin/pgmhist is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmhist</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-425" comment="/usr/bin/pgmhist is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-353"/>
      <subtest negate="false" test_ref="upt-354"/>
      <subtest negate="false" test_ref="upt-355"/>
    </compound_test>
    <permission_test id="upt-352" comment="/usr/bin/pgmenhance is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmenhance</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-351" comment="/usr/bin/pgmenhance is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmenhance</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-350" comment="/usr/bin/pgmenhance is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmenhance</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-424" comment="/usr/bin/pgmenhance is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-350"/>
      <subtest negate="false" test_ref="upt-351"/>
      <subtest negate="false" test_ref="upt-352"/>
    </compound_test>
    <permission_test id="upt-349" comment="/usr/bin/pgmedge is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmedge</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-348" comment="/usr/bin/pgmedge is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmedge</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-347" comment="/usr/bin/pgmedge is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmedge</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-423" comment="/usr/bin/pgmedge is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-347"/>
      <subtest negate="false" test_ref="upt-348"/>
      <subtest negate="false" test_ref="upt-349"/>
    </compound_test>
    <permission_test id="upt-346" comment="/usr/bin/pgmcrater is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmcrater</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-345" comment="/usr/bin/pgmcrater is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmcrater</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-344" comment="/usr/bin/pgmcrater is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmcrater</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-422" comment="/usr/bin/pgmcrater is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-344"/>
      <subtest negate="false" test_ref="upt-345"/>
      <subtest negate="false" test_ref="upt-346"/>
    </compound_test>
    <permission_test id="upt-343" comment="/usr/bin/pgmbentley is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmbentley</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-342" comment="/usr/bin/pgmbentley is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmbentley</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-341" comment="/usr/bin/pgmbentley is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pgmbentley</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-421" comment="/usr/bin/pgmbentley is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-341"/>
      <subtest negate="false" test_ref="upt-342"/>
      <subtest negate="false" test_ref="upt-343"/>
    </compound_test>
    <permission_test id="upt-340" comment="/usr/bin/pcxtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pcxtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-339" comment="/usr/bin/pcxtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pcxtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-338" comment="/usr/bin/pcxtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pcxtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-420" comment="/usr/bin/pcxtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-338"/>
      <subtest negate="false" test_ref="upt-339"/>
      <subtest negate="false" test_ref="upt-340"/>
    </compound_test>
    <permission_test id="upt-337" comment="/usr/bin/pbmupc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmupc</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-336" comment="/usr/bin/pbmupc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmupc</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-335" comment="/usr/bin/pbmupc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmupc</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-419" comment="/usr/bin/pbmupc is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-335"/>
      <subtest negate="false" test_ref="upt-336"/>
      <subtest negate="false" test_ref="upt-337"/>
    </compound_test>
    <permission_test id="upt-334" comment="/usr/bin/pbmtozinc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtozinc</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-333" comment="/usr/bin/pbmtozinc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtozinc</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-332" comment="/usr/bin/pbmtozinc is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtozinc</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-418" comment="/usr/bin/pbmtozinc is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-332"/>
      <subtest negate="false" test_ref="upt-333"/>
      <subtest negate="false" test_ref="upt-334"/>
    </compound_test>
    <permission_test id="upt-331" comment="/usr/bin/pbmtoybm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoybm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-330" comment="/usr/bin/pbmtoybm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoybm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-329" comment="/usr/bin/pbmtoybm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoybm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-417" comment="/usr/bin/pbmtoybm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-329"/>
      <subtest negate="false" test_ref="upt-330"/>
      <subtest negate="false" test_ref="upt-331"/>
    </compound_test>
    <permission_test id="upt-328" comment="/usr/bin/pbmtoxbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoxbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-327" comment="/usr/bin/pbmtoxbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoxbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-326" comment="/usr/bin/pbmtoxbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoxbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-416" comment="/usr/bin/pbmtoxbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-326"/>
      <subtest negate="false" test_ref="upt-327"/>
      <subtest negate="false" test_ref="upt-328"/>
    </compound_test>
    <permission_test id="upt-325" comment="/usr/bin/pbmtox10bm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtox10bm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-324" comment="/usr/bin/pbmtox10bm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtox10bm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-323" comment="/usr/bin/pbmtox10bm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtox10bm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-415" comment="/usr/bin/pbmtox10bm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-323"/>
      <subtest negate="false" test_ref="upt-324"/>
      <subtest negate="false" test_ref="upt-325"/>
    </compound_test>
    <permission_test id="upt-322" comment="/usr/bin/pbmtowbmp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtowbmp</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-321" comment="/usr/bin/pbmtowbmp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtowbmp</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-320" comment="/usr/bin/pbmtowbmp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtowbmp</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-414" comment="/usr/bin/pbmtowbmp is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-320"/>
      <subtest negate="false" test_ref="upt-321"/>
      <subtest negate="false" test_ref="upt-322"/>
    </compound_test>
    <permission_test id="upt-319" comment="/usr/bin/pbmtoptx is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoptx</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-318" comment="/usr/bin/pbmtoptx is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoptx</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-317" comment="/usr/bin/pbmtoptx is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoptx</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-413" comment="/usr/bin/pbmtoptx is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-317"/>
      <subtest negate="false" test_ref="upt-318"/>
      <subtest negate="false" test_ref="upt-319"/>
    </compound_test>
    <permission_test id="upt-316" comment="/usr/bin/pbmtopsg3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopsg3</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-315" comment="/usr/bin/pbmtopsg3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopsg3</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-314" comment="/usr/bin/pbmtopsg3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopsg3</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-412" comment="/usr/bin/pbmtopsg3 is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-314"/>
      <subtest negate="false" test_ref="upt-315"/>
      <subtest negate="false" test_ref="upt-316"/>
    </compound_test>
    <permission_test id="upt-313" comment="/usr/bin/pbmtoppa is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoppa</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-312" comment="/usr/bin/pbmtoppa is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoppa</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-311" comment="/usr/bin/pbmtoppa is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoppa</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-411" comment="/usr/bin/pbmtoppa is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-311"/>
      <subtest negate="false" test_ref="upt-312"/>
      <subtest negate="false" test_ref="upt-313"/>
    </compound_test>
    <permission_test id="upt-310" comment="/usr/bin/pbmtoplot is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoplot</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-309" comment="/usr/bin/pbmtoplot is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoplot</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-308" comment="/usr/bin/pbmtoplot is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoplot</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-410" comment="/usr/bin/pbmtoplot is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-308"/>
      <subtest negate="false" test_ref="upt-309"/>
      <subtest negate="false" test_ref="upt-310"/>
    </compound_test>
    <permission_test id="upt-307" comment="/usr/bin/pbmtopk is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopk</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-306" comment="/usr/bin/pbmtopk is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopk</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-305" comment="/usr/bin/pbmtopk is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopk</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-409" comment="/usr/bin/pbmtopk is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-305"/>
      <subtest negate="false" test_ref="upt-306"/>
      <subtest negate="false" test_ref="upt-307"/>
    </compound_test>
    <permission_test id="upt-304" comment="/usr/bin/pbmtopi3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopi3</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-303" comment="/usr/bin/pbmtopi3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopi3</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-302" comment="/usr/bin/pbmtopi3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopi3</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-408" comment="/usr/bin/pbmtopi3 is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-302"/>
      <subtest negate="false" test_ref="upt-303"/>
      <subtest negate="false" test_ref="upt-304"/>
    </compound_test>
    <permission_test id="upt-301" comment="/usr/bin/pbmtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-300" comment="/usr/bin/pbmtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-299" comment="/usr/bin/pbmtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-407" comment="/usr/bin/pbmtopgm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-299"/>
      <subtest negate="false" test_ref="upt-300"/>
      <subtest negate="false" test_ref="upt-301"/>
    </compound_test>
    <permission_test id="upt-298" comment="/usr/bin/pbmtonokia is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtonokia</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-297" comment="/usr/bin/pbmtonokia is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtonokia</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-296" comment="/usr/bin/pbmtonokia is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtonokia</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-406" comment="/usr/bin/pbmtonokia is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-296"/>
      <subtest negate="false" test_ref="upt-297"/>
      <subtest negate="false" test_ref="upt-298"/>
    </compound_test>
    <permission_test id="upt-295" comment="/usr/bin/pbmtomgr is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtomgr</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-294" comment="/usr/bin/pbmtomgr is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtomgr</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-293" comment="/usr/bin/pbmtomgr is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtomgr</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-405" comment="/usr/bin/pbmtomgr is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-293"/>
      <subtest negate="false" test_ref="upt-294"/>
      <subtest negate="false" test_ref="upt-295"/>
    </compound_test>
    <permission_test id="upt-292" comment="/usr/bin/pbmtomda is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtomda</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-291" comment="/usr/bin/pbmtomda is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtomda</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-290" comment="/usr/bin/pbmtomda is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtomda</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-404" comment="/usr/bin/pbmtomda is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-290"/>
      <subtest negate="false" test_ref="upt-291"/>
      <subtest negate="false" test_ref="upt-292"/>
    </compound_test>
    <permission_test id="upt-289" comment="/usr/bin/pbmtomacp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtomacp</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-288" comment="/usr/bin/pbmtomacp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtomacp</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-287" comment="/usr/bin/pbmtomacp is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtomacp</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-403" comment="/usr/bin/pbmtomacp is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-287"/>
      <subtest negate="false" test_ref="upt-288"/>
      <subtest negate="false" test_ref="upt-289"/>
    </compound_test>
    <permission_test id="upt-286" comment="/usr/bin/pbmtolps is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtolps</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-285" comment="/usr/bin/pbmtolps is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtolps</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-284" comment="/usr/bin/pbmtolps is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtolps</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-402" comment="/usr/bin/pbmtolps is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-284"/>
      <subtest negate="false" test_ref="upt-285"/>
      <subtest negate="false" test_ref="upt-286"/>
    </compound_test>
    <permission_test id="upt-283" comment="/usr/bin/pbmtoln03 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoln03</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-282" comment="/usr/bin/pbmtoln03 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoln03</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-281" comment="/usr/bin/pbmtoln03 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoln03</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-401" comment="/usr/bin/pbmtoln03 is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-281"/>
      <subtest negate="false" test_ref="upt-282"/>
      <subtest negate="false" test_ref="upt-283"/>
    </compound_test>
    <permission_test id="upt-280" comment="/usr/bin/pbmtolj is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtolj</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-279" comment="/usr/bin/pbmtolj is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtolj</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-278" comment="/usr/bin/pbmtolj is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtolj</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-400" comment="/usr/bin/pbmtolj is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-278"/>
      <subtest negate="false" test_ref="upt-279"/>
      <subtest negate="false" test_ref="upt-280"/>
    </compound_test>
    <permission_test id="upt-277" comment="/usr/bin/pbmtoicon is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoicon</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-276" comment="/usr/bin/pbmtoicon is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoicon</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-275" comment="/usr/bin/pbmtoicon is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoicon</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-399" comment="/usr/bin/pbmtoicon is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-275"/>
      <subtest negate="false" test_ref="upt-276"/>
      <subtest negate="false" test_ref="upt-277"/>
    </compound_test>
    <permission_test id="upt-274" comment="/usr/bin/pbmtogo is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtogo</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-273" comment="/usr/bin/pbmtogo is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtogo</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-272" comment="/usr/bin/pbmtogo is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtogo</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-398" comment="/usr/bin/pbmtogo is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-272"/>
      <subtest negate="false" test_ref="upt-273"/>
      <subtest negate="false" test_ref="upt-274"/>
    </compound_test>
    <permission_test id="upt-271" comment="/usr/bin/pbmtogem is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtogem</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-270" comment="/usr/bin/pbmtogem is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtogem</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-269" comment="/usr/bin/pbmtogem is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtogem</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-397" comment="/usr/bin/pbmtogem is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-269"/>
      <subtest negate="false" test_ref="upt-270"/>
      <subtest negate="false" test_ref="upt-271"/>
    </compound_test>
    <permission_test id="upt-268" comment="/usr/bin/pbmtog3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtog3</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-267" comment="/usr/bin/pbmtog3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtog3</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-266" comment="/usr/bin/pbmtog3 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtog3</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-396" comment="/usr/bin/pbmtog3 is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-266"/>
      <subtest negate="false" test_ref="upt-267"/>
      <subtest negate="false" test_ref="upt-268"/>
    </compound_test>
    <permission_test id="upt-265" comment="/usr/bin/pbmtoepson is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoepson</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-264" comment="/usr/bin/pbmtoepson is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoepson</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-263" comment="/usr/bin/pbmtoepson is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoepson</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-395" comment="/usr/bin/pbmtoepson is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-263"/>
      <subtest negate="false" test_ref="upt-264"/>
      <subtest negate="false" test_ref="upt-265"/>
    </compound_test>
    <permission_test id="upt-262" comment="/usr/bin/pbmtoepsi is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoepsi</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-261" comment="/usr/bin/pbmtoepsi is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoepsi</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-260" comment="/usr/bin/pbmtoepsi is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoepsi</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-394" comment="/usr/bin/pbmtoepsi is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-260"/>
      <subtest negate="false" test_ref="upt-261"/>
      <subtest negate="false" test_ref="upt-262"/>
    </compound_test>
    <permission_test id="upt-259" comment="/usr/bin/pbmtocmuwm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtocmuwm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-258" comment="/usr/bin/pbmtocmuwm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtocmuwm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-257" comment="/usr/bin/pbmtocmuwm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtocmuwm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-393" comment="/usr/bin/pbmtocmuwm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-257"/>
      <subtest negate="false" test_ref="upt-258"/>
      <subtest negate="false" test_ref="upt-259"/>
    </compound_test>
    <permission_test id="upt-256" comment="/usr/bin/pbmtobbnbg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtobbnbg</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-255" comment="/usr/bin/pbmtobbnbg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtobbnbg</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-254" comment="/usr/bin/pbmtobbnbg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtobbnbg</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-392" comment="/usr/bin/pbmtobbnbg is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-254"/>
      <subtest negate="false" test_ref="upt-255"/>
      <subtest negate="false" test_ref="upt-256"/>
    </compound_test>
    <permission_test id="upt-253" comment="/usr/bin/pbmtoatk is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoatk</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-252" comment="/usr/bin/pbmtoatk is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoatk</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-251" comment="/usr/bin/pbmtoatk is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoatk</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-391" comment="/usr/bin/pbmtoatk is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-251"/>
      <subtest negate="false" test_ref="upt-252"/>
      <subtest negate="false" test_ref="upt-253"/>
    </compound_test>
    <permission_test id="upt-250" comment="/usr/bin/pbmtoascii is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoascii</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-249" comment="/usr/bin/pbmtoascii is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoascii</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-248" comment="/usr/bin/pbmtoascii is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtoascii</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-390" comment="/usr/bin/pbmtoascii is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-248"/>
      <subtest negate="false" test_ref="upt-249"/>
      <subtest negate="false" test_ref="upt-250"/>
    </compound_test>
    <permission_test id="upt-247" comment="/usr/bin/pbmto4425 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmto4425</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-246" comment="/usr/bin/pbmto4425 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmto4425</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-245" comment="/usr/bin/pbmto4425 is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmto4425</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-389" comment="/usr/bin/pbmto4425 is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-245"/>
      <subtest negate="false" test_ref="upt-246"/>
      <subtest negate="false" test_ref="upt-247"/>
    </compound_test>
    <permission_test id="upt-244" comment="/usr/bin/pbmto10x is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmto10x</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-243" comment="/usr/bin/pbmto10x is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmto10x</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-242" comment="/usr/bin/pbmto10x is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmto10x</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-388" comment="/usr/bin/pbmto10x is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-242"/>
      <subtest negate="false" test_ref="upt-243"/>
      <subtest negate="false" test_ref="upt-244"/>
    </compound_test>
    <permission_test id="upt-241" comment="/usr/bin/pbmtext is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtext</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-240" comment="/usr/bin/pbmtext is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtext</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-239" comment="/usr/bin/pbmtext is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmtext</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-387" comment="/usr/bin/pbmtext is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-239"/>
      <subtest negate="false" test_ref="upt-240"/>
      <subtest negate="false" test_ref="upt-241"/>
    </compound_test>
    <permission_test id="upt-238" comment="/usr/bin/pbmreduce is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmreduce</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-237" comment="/usr/bin/pbmreduce is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmreduce</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-236" comment="/usr/bin/pbmreduce is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmreduce</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-386" comment="/usr/bin/pbmreduce is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-236"/>
      <subtest negate="false" test_ref="upt-237"/>
      <subtest negate="false" test_ref="upt-238"/>
    </compound_test>
    <permission_test id="upt-235" comment="/usr/bin/pbmpscale is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmpscale</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-234" comment="/usr/bin/pbmpscale is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmpscale</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-233" comment="/usr/bin/pbmpscale is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmpscale</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-385" comment="/usr/bin/pbmpscale is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-233"/>
      <subtest negate="false" test_ref="upt-234"/>
      <subtest negate="false" test_ref="upt-235"/>
    </compound_test>
    <permission_test id="upt-232" comment="/usr/bin/pbmpage is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmpage</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-231" comment="/usr/bin/pbmpage is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmpage</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-230" comment="/usr/bin/pbmpage is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmpage</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-384" comment="/usr/bin/pbmpage is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-230"/>
      <subtest negate="false" test_ref="upt-231"/>
      <subtest negate="false" test_ref="upt-232"/>
    </compound_test>
    <permission_test id="upt-229" comment="/usr/bin/pbmmask is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmmask</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-228" comment="/usr/bin/pbmmask is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmmask</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-226" comment="/usr/bin/pbmmask is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmmask</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-383" comment="/usr/bin/pbmmask is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-226"/>
      <subtest negate="false" test_ref="upt-228"/>
      <subtest negate="false" test_ref="upt-229"/>
    </compound_test>
    <permission_test id="upt-225" comment="/usr/bin/pbmmake is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmmake</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-224" comment="/usr/bin/pbmmake is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmmake</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-223" comment="/usr/bin/pbmmake is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmmake</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-382" comment="/usr/bin/pbmmake is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-223"/>
      <subtest negate="false" test_ref="upt-224"/>
      <subtest negate="false" test_ref="upt-225"/>
    </compound_test>
    <permission_test id="upt-222" comment="/usr/bin/pbmlife is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmlife</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-221" comment="/usr/bin/pbmlife is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmlife</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-220" comment="/usr/bin/pbmlife is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmlife</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-381" comment="/usr/bin/pbmlife is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-220"/>
      <subtest negate="false" test_ref="upt-221"/>
      <subtest negate="false" test_ref="upt-222"/>
    </compound_test>
    <permission_test id="upt-219" comment="/usr/bin/pbmclean is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmclean</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-218" comment="/usr/bin/pbmclean is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmclean</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-217" comment="/usr/bin/pbmclean is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pbmclean</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-380" comment="/usr/bin/pbmclean is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-217"/>
      <subtest negate="false" test_ref="upt-218"/>
      <subtest negate="false" test_ref="upt-219"/>
    </compound_test>
    <permission_test id="upt-216" comment="/usr/bin/pamtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-215" comment="/usr/bin/pamtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-214" comment="/usr/bin/pamtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-379" comment="/usr/bin/pamtopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-214"/>
      <subtest negate="false" test_ref="upt-215"/>
      <subtest negate="false" test_ref="upt-216"/>
    </compound_test>
    <permission_test id="upt-213" comment="/usr/bin/pamstretch is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamstretch</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-212" comment="/usr/bin/pamstretch is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamstretch</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-211" comment="/usr/bin/pamstretch is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamstretch</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-378" comment="/usr/bin/pamstretch is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-211"/>
      <subtest negate="false" test_ref="upt-212"/>
      <subtest negate="false" test_ref="upt-213"/>
    </compound_test>
    <permission_test id="upt-210" comment="/usr/bin/pamoil is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamoil</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-209" comment="/usr/bin/pamoil is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamoil</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-208" comment="/usr/bin/pamoil is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamoil</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-377" comment="/usr/bin/pamoil is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-208"/>
      <subtest negate="false" test_ref="upt-209"/>
      <subtest negate="false" test_ref="upt-210"/>
    </compound_test>
    <permission_test id="upt-207" comment="/usr/bin/pamfile is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamfile</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-206" comment="/usr/bin/pamfile is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamfile</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-205" comment="/usr/bin/pamfile is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamfile</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-376" comment="/usr/bin/pamfile is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-205"/>
      <subtest negate="false" test_ref="upt-206"/>
      <subtest negate="false" test_ref="upt-207"/>
    </compound_test>
    <permission_test id="upt-204" comment="/usr/bin/pamdeinterlace is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamdeinterlace</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-203" comment="/usr/bin/pamdeinterlace is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamdeinterlace</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-202" comment="/usr/bin/pamdeinterlace is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamdeinterlace</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-375" comment="/usr/bin/pamdeinterlace is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-202"/>
      <subtest negate="false" test_ref="upt-203"/>
      <subtest negate="false" test_ref="upt-204"/>
    </compound_test>
    <permission_test id="upt-201" comment="/usr/bin/pamcut is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamcut</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-200" comment="/usr/bin/pamcut is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamcut</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-199" comment="/usr/bin/pamcut is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamcut</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-374" comment="/usr/bin/pamcut is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-199"/>
      <subtest negate="false" test_ref="upt-200"/>
      <subtest negate="false" test_ref="upt-201"/>
    </compound_test>
    <permission_test id="upt-198" comment="/usr/bin/pamchannel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamchannel</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-197" comment="/usr/bin/pamchannel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamchannel</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-196" comment="/usr/bin/pamchannel is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pamchannel</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-373" comment="/usr/bin/pamchannel is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-196"/>
      <subtest negate="false" test_ref="upt-197"/>
      <subtest negate="false" test_ref="upt-198"/>
    </compound_test>
    <permission_test id="upt-195" comment="/usr/bin/palmtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/palmtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-194" comment="/usr/bin/palmtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/palmtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-193" comment="/usr/bin/palmtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/palmtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-372" comment="/usr/bin/palmtopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-193"/>
      <subtest negate="false" test_ref="upt-194"/>
      <subtest negate="false" test_ref="upt-195"/>
    </compound_test>
    <permission_test id="upt-192" comment="/usr/bin/neotoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/neotoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-191" comment="/usr/bin/neotoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/neotoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-190" comment="/usr/bin/neotoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/neotoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-371" comment="/usr/bin/neotoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-190"/>
      <subtest negate="false" test_ref="upt-191"/>
      <subtest negate="false" test_ref="upt-192"/>
    </compound_test>
    <permission_test id="upt-189" comment="/usr/bin/mtvtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mtvtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-188" comment="/usr/bin/mtvtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mtvtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-187" comment="/usr/bin/mtvtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mtvtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-370" comment="/usr/bin/mtvtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-187"/>
      <subtest negate="false" test_ref="upt-188"/>
      <subtest negate="false" test_ref="upt-189"/>
    </compound_test>
    <permission_test id="upt-186" comment="/usr/bin/mgrtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mgrtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-185" comment="/usr/bin/mgrtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mgrtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-184" comment="/usr/bin/mgrtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mgrtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-369" comment="/usr/bin/mgrtopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-184"/>
      <subtest negate="false" test_ref="upt-185"/>
      <subtest negate="false" test_ref="upt-186"/>
    </compound_test>
    <permission_test id="upt-183" comment="/usr/bin/mdatopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mdatopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-182" comment="/usr/bin/mdatopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mdatopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-181" comment="/usr/bin/mdatopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mdatopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-368" comment="/usr/bin/mdatopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-181"/>
      <subtest negate="false" test_ref="upt-182"/>
      <subtest negate="false" test_ref="upt-183"/>
    </compound_test>
    <permission_test id="upt-180" comment="/usr/bin/macptopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/macptopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-179" comment="/usr/bin/macptopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/macptopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-178" comment="/usr/bin/macptopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/macptopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-367" comment="/usr/bin/macptopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-178"/>
      <subtest negate="false" test_ref="upt-179"/>
      <subtest negate="false" test_ref="upt-180"/>
    </compound_test>
    <permission_test id="upt-177" comment="/usr/bin/lispmtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/lispmtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-176" comment="/usr/bin/lispmtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/lispmtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-175" comment="/usr/bin/lispmtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/lispmtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-366" comment="/usr/bin/lispmtopgm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-175"/>
      <subtest negate="false" test_ref="upt-176"/>
      <subtest negate="false" test_ref="upt-177"/>
    </compound_test>
    <permission_test id="upt-174" comment="/usr/bin/leaftoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/leaftoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-173" comment="/usr/bin/leaftoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/leaftoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-172" comment="/usr/bin/leaftoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/leaftoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-365" comment="/usr/bin/leaftoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-172"/>
      <subtest negate="false" test_ref="upt-173"/>
      <subtest negate="false" test_ref="upt-174"/>
    </compound_test>
    <permission_test id="upt-171" comment="/usr/bin/jpegtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/jpegtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-170" comment="/usr/bin/jpegtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/jpegtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-169" comment="/usr/bin/jpegtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/jpegtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-364" comment="/usr/bin/jpegtopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-169"/>
      <subtest negate="false" test_ref="upt-170"/>
      <subtest negate="false" test_ref="upt-171"/>
    </compound_test>
    <permission_test id="upt-168" comment="/usr/bin/imgtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/imgtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-167" comment="/usr/bin/imgtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/imgtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-166" comment="/usr/bin/imgtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/imgtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-363" comment="/usr/bin/imgtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-166"/>
      <subtest negate="false" test_ref="upt-167"/>
      <subtest negate="false" test_ref="upt-168"/>
    </compound_test>
    <permission_test id="upt-165" comment="/usr/bin/ilbmtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ilbmtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-164" comment="/usr/bin/ilbmtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ilbmtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-163" comment="/usr/bin/ilbmtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/ilbmtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-362" comment="/usr/bin/ilbmtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-163"/>
      <subtest negate="false" test_ref="upt-164"/>
      <subtest negate="false" test_ref="upt-165"/>
    </compound_test>
    <permission_test id="upt-162" comment="/usr/bin/icontopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/icontopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-161" comment="/usr/bin/icontopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/icontopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-160" comment="/usr/bin/icontopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/icontopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-361" comment="/usr/bin/icontopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-160"/>
      <subtest negate="false" test_ref="upt-161"/>
      <subtest negate="false" test_ref="upt-162"/>
    </compound_test>
    <permission_test id="upt-159" comment="/usr/bin/hpcdtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/hpcdtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-158" comment="/usr/bin/hpcdtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/hpcdtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-157" comment="/usr/bin/hpcdtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/hpcdtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-360" comment="/usr/bin/hpcdtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-157"/>
      <subtest negate="false" test_ref="upt-158"/>
      <subtest negate="false" test_ref="upt-159"/>
    </compound_test>
    <permission_test id="upt-156" comment="/usr/bin/hipstopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/hipstopgm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-155" comment="/usr/bin/hipstopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/hipstopgm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-154" comment="/usr/bin/hipstopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/hipstopgm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-359" comment="/usr/bin/hipstopgm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-154"/>
      <subtest negate="false" test_ref="upt-155"/>
      <subtest negate="false" test_ref="upt-156"/>
    </compound_test>
    <permission_test id="upt-153" comment="/usr/bin/gouldtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gouldtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-152" comment="/usr/bin/gouldtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gouldtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-151" comment="/usr/bin/gouldtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gouldtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-358" comment="/usr/bin/gouldtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-151"/>
      <subtest negate="false" test_ref="upt-152"/>
      <subtest negate="false" test_ref="upt-153"/>
    </compound_test>
    <permission_test id="upt-150" comment="/usr/bin/giftopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/giftopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-149" comment="/usr/bin/giftopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/giftopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-148" comment="/usr/bin/giftopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/giftopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-357" comment="/usr/bin/giftopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-148"/>
      <subtest negate="false" test_ref="upt-149"/>
      <subtest negate="false" test_ref="upt-150"/>
    </compound_test>
    <permission_test id="upt-147" comment="/usr/bin/gemtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gemtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-146" comment="/usr/bin/gemtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gemtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-145" comment="/usr/bin/gemtopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gemtopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-356" comment="/usr/bin/gemtopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-145"/>
      <subtest negate="false" test_ref="upt-146"/>
      <subtest negate="false" test_ref="upt-147"/>
    </compound_test>
    <permission_test id="upt-144" comment="/usr/bin/gemtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gemtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-143" comment="/usr/bin/gemtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gemtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-142" comment="/usr/bin/gemtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gemtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-355" comment="/usr/bin/gemtopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-142"/>
      <subtest negate="false" test_ref="upt-143"/>
      <subtest negate="false" test_ref="upt-144"/>
    </compound_test>
    <permission_test id="upt-141" comment="/usr/bin/g3topbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/g3topbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-140" comment="/usr/bin/g3topbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/g3topbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-139" comment="/usr/bin/g3topbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/g3topbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-354" comment="/usr/bin/g3topbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-139"/>
      <subtest negate="false" test_ref="upt-140"/>
      <subtest negate="false" test_ref="upt-141"/>
    </compound_test>
    <permission_test id="upt-138" comment="/usr/bin/fstopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/fstopgm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-137" comment="/usr/bin/fstopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/fstopgm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-136" comment="/usr/bin/fstopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/fstopgm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-353" comment="/usr/bin/fstopgm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-136"/>
      <subtest negate="false" test_ref="upt-137"/>
      <subtest negate="false" test_ref="upt-138"/>
    </compound_test>
    <permission_test id="upt-135" comment="/usr/bin/fitstopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/fitstopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-134" comment="/usr/bin/fitstopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/fitstopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-133" comment="/usr/bin/fitstopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/fitstopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-352" comment="/usr/bin/fitstopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-133"/>
      <subtest negate="false" test_ref="upt-134"/>
      <subtest negate="false" test_ref="upt-135"/>
    </compound_test>
    <permission_test id="upt-132" comment="/usr/bin/fiascotopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/fiascotopnm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-131" comment="/usr/bin/fiascotopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/fiascotopnm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-130" comment="/usr/bin/fiascotopnm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/fiascotopnm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-351" comment="/usr/bin/fiascotopnm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-130"/>
      <subtest negate="false" test_ref="upt-131"/>
      <subtest negate="false" test_ref="upt-132"/>
    </compound_test>
    <permission_test id="upt-129" comment="/usr/bin/eyuvtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/eyuvtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-128" comment="/usr/bin/eyuvtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/eyuvtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-127" comment="/usr/bin/eyuvtoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/eyuvtoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-350" comment="/usr/bin/eyuvtoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-127"/>
      <subtest negate="false" test_ref="upt-128"/>
      <subtest negate="false" test_ref="upt-129"/>
    </compound_test>
    <permission_test id="upt-126" comment="/usr/bin/cmuwmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/cmuwmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-125" comment="/usr/bin/cmuwmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/cmuwmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-124" comment="/usr/bin/cmuwmtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/cmuwmtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-349" comment="/usr/bin/cmuwmtopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-124"/>
      <subtest negate="false" test_ref="upt-125"/>
      <subtest negate="false" test_ref="upt-126"/>
    </compound_test>
    <permission_test id="upt-123" comment="/usr/bin/brushtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/brushtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-122" comment="/usr/bin/brushtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/brushtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-121" comment="/usr/bin/brushtopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/brushtopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-348" comment="/usr/bin/brushtopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-121"/>
      <subtest negate="false" test_ref="upt-122"/>
      <subtest negate="false" test_ref="upt-123"/>
    </compound_test>
    <permission_test id="upt-120" comment="/usr/bin/bmptoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/bmptoppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-119" comment="/usr/bin/bmptoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/bmptoppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-118" comment="/usr/bin/bmptoppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/bmptoppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-347" comment="/usr/bin/bmptoppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-118"/>
      <subtest negate="false" test_ref="upt-119"/>
      <subtest negate="false" test_ref="upt-120"/>
    </compound_test>
    <permission_test id="upt-117" comment="/usr/bin/bioradtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/bioradtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-116" comment="/usr/bin/bioradtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/bioradtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-115" comment="/usr/bin/bioradtopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/bioradtopgm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-346" comment="/usr/bin/bioradtopgm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-115"/>
      <subtest negate="false" test_ref="upt-116"/>
      <subtest negate="false" test_ref="upt-117"/>
    </compound_test>
    <permission_test id="upt-114" comment="/usr/bin/atktopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/atktopbm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-113" comment="/usr/bin/atktopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/atktopbm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-112" comment="/usr/bin/atktopbm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/atktopbm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-345" comment="/usr/bin/atktopbm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-112"/>
      <subtest negate="false" test_ref="upt-113"/>
      <subtest negate="false" test_ref="upt-114"/>
    </compound_test>
    <permission_test id="upt-111" comment="/usr/bin/asciitopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/asciitopgm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-110" comment="/usr/bin/asciitopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/asciitopgm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-109" comment="/usr/bin/asciitopgm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/asciitopgm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-344" comment="/usr/bin/asciitopgm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-109"/>
      <subtest negate="false" test_ref="upt-110"/>
      <subtest negate="false" test_ref="upt-111"/>
    </compound_test>
    <permission_test id="upt-108" comment="/usr/bin/411toppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/411toppm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-107" comment="/usr/bin/411toppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/411toppm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-106" comment="/usr/bin/411toppm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/411toppm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-343" comment="/usr/bin/411toppm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-106"/>
      <subtest negate="false" test_ref="upt-107"/>
      <subtest negate="false" test_ref="upt-108"/>
    </compound_test>
    <compound_test id="cmp-342" comment="Vulnerable configuration" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="cmp-343"/>
      <subtest negate="false" test_ref="cmp-344"/>
      <subtest negate="false" test_ref="cmp-345"/>
      <subtest negate="false" test_ref="cmp-346"/>
      <subtest negate="false" test_ref="cmp-347"/>
      <subtest negate="false" test_ref="cmp-348"/>
      <subtest negate="false" test_ref="cmp-349"/>
      <subtest negate="false" test_ref="cmp-350"/>
      <subtest negate="false" test_ref="cmp-351"/>
      <subtest negate="false" test_ref="cmp-352"/>
      <subtest negate="false" test_ref="cmp-353"/>
      <subtest negate="false" test_ref="cmp-354"/>
      <subtest negate="false" test_ref="cmp-355"/>
      <subtest negate="false" test_ref="cmp-356"/>
      <subtest negate="false" test_ref="cmp-357"/>
      <subtest negate="false" test_ref="cmp-358"/>
      <subtest negate="false" test_ref="cmp-359"/>
      <subtest negate="false" test_ref="cmp-360"/>
      <subtest negate="false" test_ref="cmp-361"/>
      <subtest negate="false" test_ref="cmp-362"/>
      <subtest negate="false" test_ref="cmp-363"/>
      <subtest negate="false" test_ref="cmp-364"/>
      <subtest negate="false" test_ref="cmp-365"/>
      <subtest negate="false" test_ref="cmp-366"/>
      <subtest negate="false" test_ref="cmp-367"/>
      <subtest negate="false" test_ref="cmp-368"/>
      <subtest negate="false" test_ref="cmp-369"/>
      <subtest negate="false" test_ref="cmp-370"/>
      <subtest negate="false" test_ref="cmp-371"/>
      <subtest negate="false" test_ref="cmp-372"/>
      <subtest negate="false" test_ref="cmp-373"/>
      <subtest negate="false" test_ref="cmp-374"/>
      <subtest negate="false" test_ref="cmp-375"/>
      <subtest negate="false" test_ref="cmp-376"/>
      <subtest negate="false" test_ref="cmp-377"/>
      <subtest negate="false" test_ref="cmp-378"/>
      <subtest negate="false" test_ref="cmp-379"/>
      <subtest negate="false" test_ref="cmp-380"/>
      <subtest negate="false" test_ref="cmp-381"/>
      <subtest negate="false" test_ref="cmp-382"/>
      <subtest negate="false" test_ref="cmp-383"/>
      <subtest negate="false" test_ref="cmp-384"/>
      <subtest negate="false" test_ref="cmp-385"/>
      <subtest negate="false" test_ref="cmp-386"/>
      <subtest negate="false" test_ref="cmp-387"/>
      <subtest negate="false" test_ref="cmp-388"/>
      <subtest negate="false" test_ref="cmp-389"/>
      <subtest negate="false" test_ref="cmp-390"/>
      <subtest negate="false" test_ref="cmp-391"/>
      <subtest negate="false" test_ref="cmp-392"/>
      <subtest negate="false" test_ref="cmp-393"/>
      <subtest negate="false" test_ref="cmp-394"/>
      <subtest negate="false" test_ref="cmp-395"/>
      <subtest negate="false" test_ref="cmp-396"/>
      <subtest negate="false" test_ref="cmp-397"/>
      <subtest negate="false" test_ref="cmp-398"/>
      <subtest negate="false" test_ref="cmp-399"/>
      <subtest negate="false" test_ref="cmp-400"/>
      <subtest negate="false" test_ref="cmp-401"/>
      <subtest negate="false" test_ref="cmp-402"/>
      <subtest negate="false" test_ref="cmp-403"/>
      <subtest negate="false" test_ref="cmp-404"/>
      <subtest negate="false" test_ref="cmp-405"/>
      <subtest negate="false" test_ref="cmp-406"/>
      <subtest negate="false" test_ref="cmp-407"/>
      <subtest negate="false" test_ref="cmp-408"/>
      <subtest negate="false" test_ref="cmp-409"/>
      <subtest negate="false" test_ref="cmp-410"/>
      <subtest negate="false" test_ref="cmp-411"/>
      <subtest negate="false" test_ref="cmp-412"/>
      <subtest negate="false" test_ref="cmp-413"/>
      <subtest negate="false" test_ref="cmp-414"/>
      <subtest negate="false" test_ref="cmp-415"/>
      <subtest negate="false" test_ref="cmp-416"/>
      <subtest negate="false" test_ref="cmp-417"/>
      <subtest negate="false" test_ref="cmp-418"/>
      <subtest negate="false" test_ref="cmp-419"/>
      <subtest negate="false" test_ref="cmp-420"/>
      <subtest negate="false" test_ref="cmp-421"/>
      <subtest negate="false" test_ref="cmp-422"/>
      <subtest negate="false" test_ref="cmp-423"/>
      <subtest negate="false" test_ref="cmp-424"/>
      <subtest negate="false" test_ref="cmp-425"/>
      <subtest negate="false" test_ref="cmp-426"/>
      <subtest negate="false" test_ref="cmp-427"/>
      <subtest negate="false" test_ref="cmp-428"/>
      <subtest negate="false" test_ref="cmp-429"/>
      <subtest negate="false" test_ref="cmp-430"/>
      <subtest negate="false" test_ref="cmp-431"/>
      <subtest negate="false" test_ref="cmp-432"/>
      <subtest negate="false" test_ref="cmp-433"/>
      <subtest negate="false" test_ref="cmp-434"/>
      <subtest negate="false" test_ref="cmp-435"/>
      <subtest negate="false" test_ref="cmp-436"/>
      <subtest negate="false" test_ref="cmp-437"/>
      <subtest negate="false" test_ref="cmp-438"/>
      <subtest negate="false" test_ref="cmp-439"/>
      <subtest negate="false" test_ref="cmp-440"/>
      <subtest negate="false" test_ref="cmp-441"/>
      <subtest negate="false" test_ref="cmp-442"/>
      <subtest negate="false" test_ref="cmp-443"/>
      <subtest negate="false" test_ref="cmp-444"/>
      <subtest negate="false" test_ref="cmp-445"/>
      <subtest negate="false" test_ref="cmp-446"/>
      <subtest negate="false" test_ref="cmp-447"/>
      <subtest negate="false" test_ref="cmp-448"/>
      <subtest negate="false" test_ref="cmp-449"/>
      <subtest negate="false" test_ref="cmp-450"/>
      <subtest negate="false" test_ref="cmp-451"/>
      <subtest negate="false" test_ref="cmp-452"/>
      <subtest negate="false" test_ref="cmp-453"/>
      <subtest negate="false" test_ref="cmp-454"/>
      <subtest negate="false" test_ref="cmp-455"/>
      <subtest negate="false" test_ref="cmp-456"/>
      <subtest negate="false" test_ref="cmp-457"/>
      <subtest negate="false" test_ref="cmp-458"/>
      <subtest negate="false" test_ref="cmp-459"/>
      <subtest negate="false" test_ref="cmp-460"/>
      <subtest negate="false" test_ref="cmp-461"/>
      <subtest negate="false" test_ref="cmp-462"/>
      <subtest negate="false" test_ref="cmp-463"/>
      <subtest negate="false" test_ref="cmp-464"/>
      <subtest negate="false" test_ref="cmp-465"/>
      <subtest negate="false" test_ref="cmp-466"/>
      <subtest negate="false" test_ref="cmp-467"/>
      <subtest negate="false" test_ref="cmp-526"/>
      <subtest negate="false" test_ref="cmp-527"/>
      <subtest negate="false" test_ref="cmp-528"/>
      <subtest negate="false" test_ref="cmp-529"/>
      <subtest negate="false" test_ref="cmp-530"/>
      <subtest negate="false" test_ref="cmp-531"/>
      <subtest negate="false" test_ref="cmp-532"/>
      <subtest negate="false" test_ref="cmp-533"/>
      <subtest negate="false" test_ref="cmp-534"/>
      <subtest negate="false" test_ref="cmp-535"/>
      <subtest negate="false" test_ref="cmp-536"/>
      <subtest negate="false" test_ref="cmp-537"/>
      <subtest negate="false" test_ref="cmp-538"/>
      <subtest negate="false" test_ref="cmp-539"/>
      <subtest negate="false" test_ref="cmp-540"/>
      <subtest negate="false" test_ref="cmp-541"/>
      <subtest negate="false" test_ref="cmp-542"/>
      <subtest negate="false" test_ref="cmp-543"/>
      <subtest negate="false" test_ref="cmp-544"/>
      <subtest negate="false" test_ref="cmp-545"/>
      <subtest negate="false" test_ref="cmp-546"/>
      <subtest negate="false" test_ref="cmp-547"/>
      <subtest negate="false" test_ref="cmp-548"/>
      <subtest negate="false" test_ref="cmp-549"/>
      <subtest negate="false" test_ref="cmp-550"/>
      <subtest negate="false" test_ref="cmp-551"/>
      <subtest negate="false" test_ref="cmp-552"/>
      <subtest negate="false" test_ref="cmp-553"/>
      <subtest negate="false" test_ref="cmp-554"/>
      <subtest negate="false" test_ref="cmp-555"/>
      <subtest negate="false" test_ref="cmp-556"/>
      <subtest negate="false" test_ref="cmp-557"/>
      <subtest negate="false" test_ref="cmp-558"/>
      <subtest negate="false" test_ref="cmp-559"/>
      <subtest negate="false" test_ref="cmp-560"/>
      <subtest negate="false" test_ref="cmp-561"/>
      <subtest negate="false" test_ref="cmp-562"/>
      <subtest negate="false" test_ref="cmp-563"/>
      <subtest negate="false" test_ref="cmp-564"/>
      <subtest negate="false" test_ref="cmp-565"/>
      <subtest negate="false" test_ref="cmp-566"/>
      <subtest negate="false" test_ref="cmp-567"/>
      <subtest negate="false" test_ref="cmp-468"/>
      <subtest negate="false" test_ref="cmp-469"/>
      <subtest negate="false" test_ref="cmp-470"/>
      <subtest negate="false" test_ref="cmp-471"/>
      <subtest negate="false" test_ref="cmp-472"/>
      <subtest negate="false" test_ref="cmp-473"/>
      <subtest negate="false" test_ref="cmp-474"/>
      <subtest negate="false" test_ref="cmp-475"/>
      <subtest negate="false" test_ref="cmp-476"/>
      <subtest negate="false" test_ref="cmp-477"/>
      <subtest negate="false" test_ref="cmp-478"/>
      <subtest negate="false" test_ref="cmp-479"/>
      <subtest negate="false" test_ref="cmp-480"/>
      <subtest negate="false" test_ref="cmp-481"/>
      <subtest negate="false" test_ref="cmp-482"/>
      <subtest negate="false" test_ref="cmp-483"/>
      <subtest negate="false" test_ref="cmp-484"/>
      <subtest negate="false" test_ref="cmp-485"/>
      <subtest negate="false" test_ref="cmp-486"/>
      <subtest negate="false" test_ref="cmp-487"/>
      <subtest negate="false" test_ref="cmp-488"/>
      <subtest negate="false" test_ref="cmp-489"/>
      <subtest negate="false" test_ref="cmp-490"/>
      <subtest negate="false" test_ref="cmp-491"/>
      <subtest negate="false" test_ref="cmp-492"/>
      <subtest negate="false" test_ref="cmp-493"/>
      <subtest negate="false" test_ref="cmp-494"/>
      <subtest negate="false" test_ref="cmp-495"/>
      <subtest negate="false" test_ref="cmp-496"/>
      <subtest negate="false" test_ref="cmp-497"/>
      <subtest negate="false" test_ref="cmp-498"/>
      <subtest negate="false" test_ref="cmp-499"/>
      <subtest negate="false" test_ref="cmp-500"/>
      <subtest negate="false" test_ref="cmp-501"/>
      <subtest negate="false" test_ref="cmp-502"/>
      <subtest negate="false" test_ref="cmp-503"/>
      <subtest negate="false" test_ref="cmp-504"/>
      <subtest negate="false" test_ref="cmp-505"/>
      <subtest negate="false" test_ref="cmp-506"/>
      <subtest negate="false" test_ref="cmp-507"/>
      <subtest negate="false" test_ref="cmp-508"/>
      <subtest negate="false" test_ref="cmp-509"/>
      <subtest negate="false" test_ref="cmp-510"/>
      <subtest negate="false" test_ref="cmp-511"/>
      <subtest negate="false" test_ref="cmp-512"/>
      <subtest negate="false" test_ref="cmp-513"/>
      <subtest negate="false" test_ref="cmp-514"/>
      <subtest negate="false" test_ref="cmp-515"/>
      <subtest negate="false" test_ref="cmp-516"/>
      <subtest negate="false" test_ref="cmp-517"/>
      <subtest negate="false" test_ref="cmp-518"/>
      <subtest negate="false" test_ref="cmp-519"/>
      <subtest negate="false" test_ref="cmp-520"/>
      <subtest negate="false" test_ref="cmp-521"/>
      <subtest negate="false" test_ref="cmp-522"/>
      <subtest negate="false" test_ref="cmp-523"/>
      <subtest negate="false" test_ref="cmp-524"/>
      <subtest negate="false" test_ref="cmp-525"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-260" comment="netpbm-progs version is less than 9.24-10.90.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">netpbm-progs</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">9.24</tested_version>
        <tested_release operator="equals">10.90.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-259" comment="netpbm-devel version is less than 9.24-10.90.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">netpbm-devel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">9.24</tested_version>
        <tested_release operator="equals">10.90.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-258" comment="netpbm version is less than 9.24-10.90.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">netpbm</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">9.24</tested_version>
        <tested_release operator="equals">10.90.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-341" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-258"/>
      <subtest negate="false" test_ref="rvt-259"/>
      <subtest negate="false" test_ref="rvt-260"/>
    </compound_test>
    <inetlisteningservers_test id="rlt-217" comment="a program is listening on TCP or UDP port 1720" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name operator="pattern match">.*</program_name>
      </object>
      <data operation="AND">
        <local_port datatype="int" operator="equals">1720</local_port>
      </data>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-257" comment="pwlib version is less than 1.4.7-4.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">pwlib</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.4.7</tested_version>
        <tested_release operator="equals">4.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-55" comment="/usr/bin/bzip2 is executable" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/bzip2</component>
        </path>
      </object>
      <data operation="OR">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-20" comment="bzip2 RPM earlier than 0:1.0.2-11.EL3.4" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">bzip2</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">1.0.2</tested_version>
        <tested_release operator="equals">11.EL3.4</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-62" comment="gftp is executeable" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gftp</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-6" comment="gftp rpm is earlier than 1:2.0.14-4" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">gftp</name>
        <tested_epoch operator="equals">1</tested_epoch>
        <tested_version operator="equals">2.0.14</tested_version>
        <tested_release operator="equals">4</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-16" comment="ImageMagick RPM earlier than 0:5.5.6-14" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <oval:notes>
        <oval:note>The ImageMagick-devel, ImageMagick-c++-devel, and ImageMagick-c++ RPMs all require that the exact same version of the ImageMagick RPM is present.  As such, we can test for a vulnerable version of the former alone, rather than testing for the presence of each of these RPMs in particular.</oval:note>
      </oval:notes>
      <object>
        <name operator="equals">ImageMagick</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">5.5.6</tested_version>
        <tested_release operator="equals">14</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <process_test id="uct-1" comment="postmaster (the PostgreSQL master daemon) is running" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <command operator="pattern match">\bpostmaster\b</command>
      </object>
    </process_test>
    <rpmversioncompare_test id="rvt-9" comment="rh-postgresql-server is earlier than 0:7.3.10-1" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">rh-postgresql-server</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">7.3.10</tested_version>
        <tested_release operator="equals">1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-215" comment="ypserv is listening on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*ypserv.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-255" comment="ypserv version is less than 2.8-0.9E" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ypserv</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.8</tested_version>
        <tested_release operator="equals">0.9E</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-105" comment="xpdf is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xpdf</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-104" comment="xpdf is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xpdf</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-103" comment="xpdf is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xpdf</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-338" comment="xpdf is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-103"/>
      <subtest negate="false" test_ref="upt-104"/>
      <subtest negate="false" test_ref="upt-105"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-254" comment="xpdf version is less than 2.0.1-11" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">xpdf</name>
        <tested_epoch datatype="int" operator="equals">1</tested_epoch>
        <tested_version operator="equals">2.0.1</tested_version>
        <tested_release datatype="int" operator="equals">11</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-214" comment="xinetd is listening to the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*xinetd.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-253" comment="xinetd version is less than 2:2.3.11-1.9.0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">xinetd</name>
        <tested_epoch operator="equals">2</tested_epoch>
        <tested_version operator="equals">2.3.11</tested_version>
        <tested_release operator="equals">1.9.0</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-730" comment="/usr/bin/mikmod is executable by any user" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mikmod</component>
        </path>
      </object>
      <data operation="OR">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-8" comment="mikmod RPM prior to 0:3.1.6-22.EL3" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">mikmod</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">3.1.6</tested_version>
        <tested_release operator="equals">22.EL3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-31" comment="mozilla RPM is earlier than 37:1.7.10-1.1.3.1" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <oval:notes>
        <oval:note>Multiple RPMs were updated in this release, but all but mozilla-nspr have mozilla-with-their-same-version as an installation dependency.  So, if mozilla is up to date, mozilla-chat, mozilla-devel, ... , mozilla-js-debugger are all up to date.  Mozilla itself requires that mozilla-nspr and mozilla-nss be installed with the same version as itself.  This closes the loop -- if mozilla is up to date, so are the other mozilla-FOO RPMs.</oval:note>
      </oval:notes>
      <object>
        <name datatype="string" operator="equals">mozilla</name>
        <tested_epoch datatype="string" operator="equals">37</tested_epoch>
        <tested_version datatype="string" operator="equals">1.7.10</tested_version>
        <tested_release datatype="string" operator="equals">1.1.3.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version datatype="string" operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpminfo_test id="rrt-216" comment="Red Hat Enterprise 3 is installed" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">redhat-release</name>
      </object>
      <data operation="AND">
        <version operator="pattern match">^.*3.S</version>
      </data>
    </rpminfo_test>
    <inetlisteningservers_test id="rlt-213" comment="vsftpd is listening to the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*vsftpd.*</program_name>
      </object>
      <data operation="AND">
        <protocol operator="equals">TCP</protocol>
      </data>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-252" comment="vsftpd version is less than 1.1.3-8" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">vsftpd</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.1.3</tested_version>
        <tested_release datatype="int" operator="equals">8</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <process_test id="uct-2" comment="rhnsd is running" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <command datatype="string" operator="pattern match">^.*rhnsd.*$</command>
      </object>
    </process_test>
    <rpmversioncompare_test id="rvt-251" comment="up2date version is less than 3.1.23.1-5" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">up2date</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">3.1.23.1</tested_version>
        <tested_release datatype="int" operator="equals">5</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-58" comment="/tmp is world-writable" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <oval:notes>
        <oval:note>For "/tmp is readable by non-root users," use a compound test.</oval:note>
      </oval:notes>
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/tmp</component>
        </path>
      </object>
      <data operation="AND">
        <owrite datatype="boolean" operator="equals">1</owrite>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-24" comment="sysreport RPM earlier than 0:1.3.7.2-6" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">sysreport</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">1.3.7.2</tested_version>
        <tested_release operator="equals">6</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-102" comment="/usr/bin/unzip is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/unzip</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-101" comment="/usr/bin/unzip is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/unzip</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-100" comment="/usr/bin/unzip is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/unzip</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-335" comment="/usr/bin/unzip is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-100"/>
      <subtest negate="false" test_ref="upt-101"/>
      <subtest negate="false" test_ref="upt-102"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-250" comment="unzip version is less than 5.50-33" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">unzip</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">5.50</tested_version>
        <tested_release datatype="int" operator="equals">33</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-249" comment="squirrelmail version is less than 1.2.11-1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">squirrelmail</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.2.11</tested_version>
        <tested_release datatype="int" operator="equals">1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-212" comment="sendmail is listening to the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*sendmail.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-248" comment="sendmail version is less than 8.12.8-6.90" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">sendmail</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">8.12.8</tested_version>
        <tested_release operator="equals">6.90</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-247" comment="sendmail version is less than 8.12.8-9.90" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">sendmail</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">8.12.8</tested_version>
        <tested_release operator="equals">9.90</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-211" comment="sendmail listening" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*sendmail.*</program_name>
      </object>
      <data operation="AND">
        <protocol operator="equals">TCP</protocol>
      </data>
    </inetlisteningservers_test>
    <permission_test id="upt-99" comment="sendmail is Set-GID" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/sendmail.sendmail</component>
        </path>
      </object>
      <data operation="AND">
        <sgid datatype="int" operator="equals">1</sgid>
      </data>
    </permission_test>
    <compound_test id="cmp-326" comment="sendmail is Set-GID" operation="AND" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-99"/>
      <subtest negate="false" test_ref="upt-98"/>
    </compound_test>
    <permission_test id="upt-98" comment="sendmail is Set-UID" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/sendmail.sendmail</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-97" comment="sendmail is Set-UID" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/sendmail.sendmail</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <compound_test id="cmp-325" comment="sendmail is Set-UID" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-97"/>
      <subtest negate="false" test_ref="upt-98"/>
    </compound_test>
    <permission_test id="upt-96" comment="sendmail is Set-UID" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/sbin/sendmail.sendmail</component>
        </path>
      </object>
      <data operation="AND">
        <suid datatype="int" operator="equals">1</suid>
      </data>
    </permission_test>
    <compound_test id="cmp-324" comment="sendmail is Set-UID" operation="AND" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-96"/>
      <subtest negate="false" test_ref="cmp-325"/>
    </compound_test>
    <compound_test id="cmp-323" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="cmp-324"/>
      <subtest negate="false" test_ref="cmp-326"/>
      <subtest negate="false" test_ref="rlt-211"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-246" comment="sendmail version is less than 8.12.8-5.90" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">sendmail</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">8.12.8</tested_version>
        <tested_release operator="equals">5.90</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-95" comment="/usr/bin/xemacs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xemacs</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-94" comment="/usr/bin/xemacs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xemacs</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-93" comment="/usr/bin/xemacs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/xemacs</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-322" comment="/usr/bin/xemacs is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-93"/>
      <subtest negate="false" test_ref="upt-94"/>
      <subtest negate="false" test_ref="upt-95"/>
    </compound_test>
    <permission_test id="upt-92" comment="/usr/bin/emacs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/emacs</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-91" comment="/usr/bin/emacs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/emacs</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-90" comment="/usr/bin/emacs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/emacs</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-321" comment="/usr/bin/emacs is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-90"/>
      <subtest negate="false" test_ref="upt-91"/>
      <subtest negate="false" test_ref="upt-92"/>
    </compound_test>
    <compound_test id="cmp-320" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="cmp-321"/>
      <subtest negate="false" test_ref="cmp-322"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-245" comment="wl-xemacs version is less than 2.10.1-1.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">wl-xemacs</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.10.1</tested_version>
        <tested_release operator="equals">1.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-244" comment="wl version is less than 2.10.1-1.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">wl</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.10.1</tested_version>
        <tested_release operator="equals">1.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-319" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-244"/>
      <subtest negate="false" test_ref="rvt-245"/>
    </compound_test>
    <inetlisteningservers_test id="rlt-210" comment="smbd is listening on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*smbd.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-243" comment="samba version is less than 2.2.7a-8.9.0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">samba</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.2.7a</tested_version>
        <tested_release operator="equals">8.9.0</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-209" comment="smbd listens on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*smbd.*</program_name>
      </object>
      <data operation="AND">
        <protocol operator="equals">TCP</protocol>
      </data>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-242" comment="samba version is less than 2.2.7a-7.9.0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">samba</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.2.7a</tested_version>
        <tested_release operator="equals">7.9.0</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-208" comment="smtpd listens on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*smtpd.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-241" comment="postfix version is less than 1.1.12-1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">postfix</name>
        <tested_epoch datatype="int" operator="equals">2</tested_epoch>
        <tested_version operator="equals">1.1.12</tested_version>
        <tested_release datatype="int" operator="equals">1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-89" comment="/usr/bin/pine is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pine</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-88" comment="/usr/bin/pine is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pine</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-87" comment="/usr/bin/pine is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/pine</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-314" comment="/usr/bin/pine is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-87"/>
      <subtest negate="false" test_ref="upt-88"/>
      <subtest negate="false" test_ref="upt-89"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-240" comment="pine version is less than 4.44-19.90.0" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">pine</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">4.44</tested_version>
        <tested_release operator="equals">19.90.0</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-239" comment="php version is less than 4.2.2-17.2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">php</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">4.2.2</tested_version>
        <tested_release operator="equals">17.2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-238" comment="perl-CGI version is less than 2.81-88.3" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">perl-CGI</name>
        <tested_epoch datatype="int" operator="equals">2</tested_epoch>
        <tested_version operator="equals">2.81</tested_version>
        <tested_release operator="equals">88.3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-237" comment="pam_smb version is less than 1.1.6-9.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">pam_smb</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.1.6</tested_version>
        <tested_release operator="equals">9.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-236" comment="openssl096b version is less than 0.9.6b-6" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl096b</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.6b</tested_version>
        <tested_release datatype="int" operator="equals">6</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-235" comment="openssl096 version is less than 0.9.6-17" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl096</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.6</tested_version>
        <tested_release datatype="int" operator="equals">17</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-234" comment="openssl-perl version is less than 0.9.7a-5" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl-perl</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release datatype="int" operator="equals">5</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-233" comment="openssl-devel version is less than 0.9.7a-5" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl-devel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release datatype="int" operator="equals">5</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-232" comment="openssl version is less than 0.9.7a-5" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssl</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release datatype="int" operator="equals">5</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-914" comment="affected version of SSL and TLS components for OpenSSL" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-232"/>
      <subtest negate="false" test_ref="rvt-233"/>
      <subtest negate="false" test_ref="rvt-234"/>
      <subtest negate="false" test_ref="rvt-235"/>
      <subtest negate="false" test_ref="rvt-236"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-231" comment="openssh-server version is less than 3.5p1-11" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssh-server</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">3.5p1</tested_version>
        <tested_release datatype="int" operator="equals">11</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-207" comment="sshd listens on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*sshd.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-230" comment="openssh-server version is less than 3.5p1-6.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">openssh-server</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">3.5p1</tested_version>
        <tested_release operator="equals">6.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-206" comment="rpc.mountd listens on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*rpc\.mountd.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-229" comment="nfs-utils version is less than 1.0.1-3.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">nfs-utils</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.0.1</tested_version>
        <tested_release operator="equals">3.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-205" comment="mysqld is listening to the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*mysqld.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-228" comment="mysql-server version is less than 3.23.56-1.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">mysql-server</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">3.23.56</tested_version>
        <tested_release operator="equals">1.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-86" comment="/usr/bin/mutt is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mutt</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-85" comment="/usr/bin/mutt is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mutt</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-84" comment="/usr/bin/mutt is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mutt</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-305" comment="/usr/bin/mutt is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-84"/>
      <subtest negate="false" test_ref="upt-85"/>
      <subtest negate="false" test_ref="upt-86"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-227" comment="mutt version is less than 1.4.1-1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">mutt</name>
        <tested_epoch datatype="int" operator="equals">5</tested_epoch>
        <tested_version operator="equals">1.4.1</tested_version>
        <tested_release datatype="int" operator="equals">1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-226" comment="lv version is less than 4.49.4-9.9.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">lv</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">4.49.4</tested_version>
        <tested_release operator="equals">9.9.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-204" comment="lpd listening on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*lpd.*</program_name>
      </object>
    </inetlisteningservers_test>
    <permission_test id="upt-83" comment="psbanner is world-executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/libexec/filters/psbanner</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-225" comment="lprng version is less than 3.8.19-3.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">lprng</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">3.8.19</tested_version>
        <tested_release operator="equals">3.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-859" comment="/usr/bin/mozilla is executable" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/mozilla</component>
        </path>
      </object>
      <data operation="OR">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-32" comment="mozilla RPM is earlier than 37:1.7.10-1.4.1" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <oval:notes>
        <oval:note>Multiple RPMs were updated in this release, but all but mozilla-nspr have mozilla-with-their-same-version as an installation dependency.  So, if mozilla is up to date, mozilla-chat, mozilla-devel, ... , mozilla-js-debugger are all up to date.  Mozilla itself requires that mozilla-nspr and mozilla-nss be installed with the same version as itself.  This closes the loop -- if mozilla is up to date, so are the other mozilla-FOO RPMs.</oval:note>
      </oval:notes>
      <object>
        <name datatype="string" operator="equals">mozilla</name>
        <tested_epoch datatype="string" operator="equals">37</tested_epoch>
        <tested_version datatype="string" operator="equals">1.7.10</tested_version>
        <tested_release datatype="string" operator="equals">1.4.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version datatype="string" operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpminfo_test id="rrt-1" comment="Red Hat Enterprise 4 is installed" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">redhat-release</name>
      </object>
      <data operation="AND">
        <version datatype="string" operator="pattern match">^.*4.S</version>
      </data>
    </rpminfo_test>
    <permission_test id="upt-82" comment="/usr/bin/konqueror is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/konqueror</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-81" comment="/usr/bin/konqueror is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/konqueror</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-80" comment="/usr/bin/konqueror is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/konqueror</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-304" comment="/usr/bin/konqueror is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-80"/>
      <subtest negate="false" test_ref="upt-81"/>
      <subtest negate="false" test_ref="upt-82"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-224" comment="kdelibs version is less than 3.1-12" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kdelibs</name>
        <tested_epoch datatype="int" operator="equals">6</tested_epoch>
        <tested_version operator="equals">3.1</tested_version>
        <tested_release datatype="int" operator="equals">12</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-428" comment="/usr/bin/gunzip is executable" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gunzip</component>
        </path>
      </object>
      <data operation="OR">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <permission_test id="upt-529" comment="/usr/bin/gzip is executable" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gzip</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-7" comment="gzip RPM earlier than 0:1.3.3-12rhel3" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">gzip</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">1.3.3</tested_version>
        <tested_release operator="equals">12.rhel3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-61" comment="/bin/cpio is executable by all" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/bin/cpio</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="boolean" operator="equals">1</oexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-28" comment="cpio rpm is older than 0:2.5-4.RHEL3" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">cpio</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">2.5</tested_version>
        <tested_release operator="equals">4.RHEL3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <file_test id="uft-4" comment="/etc/httpd/conf.d/php.conf exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/etc/httpd/conf.d/php.conf</component>
        </path>
      </object>
    </file_test>
    <rpmversioncompare_test id="rvt-27" comment="php RPM prior to  0:4.3.2-24.ent" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">php</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">4.3.2</tested_version>
        <tested_release operator="equals">24.ent</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-223" comment="kernel version is less than 2.4.20-19.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.20</tested_version>
        <tested_release operator="equals">19.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-222" comment="kernel version is less than 2.4.20-18.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.20</tested_version>
        <tested_release operator="equals">18.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-56" comment="/usr/bin/gaim is executable by any user" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gaim</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="boolean" operator="equals">1</gexec>
        <oexec datatype="boolean" operator="equals">1</oexec>
        <uexec datatype="boolean" operator="equals">1</uexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-21" comment="gaim RPM earlier than 1:1.3.1-0.el3" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">gaim</name>
        <tested_epoch operator="equals">1</tested_epoch>
        <tested_version operator="equals">1.3.1</tested_version>
        <tested_release operator="equals">0.el3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-221" comment="kernel version is less than 2.4.20-13.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kernel</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.4.20</tested_version>
        <tested_release operator="equals">13.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <uname_test id="uut-2" comment="kernel 2.4.20-6 or earlier is running" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <data operation="AND">
        <os_release datatype="string" operator="equals">2.4.20-6</os_release>
      </data>
    </uname_test>
    <rpminfo_test id="rrt-202" comment="kernel version = 2.4.20-6" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">kernel</name>
      </object>
      <data operation="AND">
        <epoch datatype="string" operator="equals">NULL</epoch>
        <release datatype="int" operator="equals">6</release>
        <version operator="equals">2.4.20</version>
      </data>
    </rpminfo_test>
    <rpmversioncompare_test id="rvt-220" comment="krb5-workstation version is less than 1.2.7-14" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">krb5-workstation</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.2.7</tested_version>
        <tested_release datatype="int" operator="equals">14</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-289" comment="krb5-server or krb5-workstation installed" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-218"/>
      <subtest negate="false" test_ref="rvt-220"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-219" comment="krb5-libs version is less than 1.2.7-14" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">krb5-libs</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.2.7</tested_version>
        <tested_release datatype="int" operator="equals">14</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-218" comment="krb5-server version is less than 1.2.7-14" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">krb5-server</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.2.7</tested_version>
        <tested_release datatype="int" operator="equals">14</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-79" comment="/usr/bin/kdm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/kdm</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-78" comment="/usr/bin/kdm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/kdm</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-77" comment="/usr/bin/kdm is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/kdm</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-278" comment="/usr/bin/kdm is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-77"/>
      <subtest negate="false" test_ref="upt-78"/>
      <subtest negate="false" test_ref="upt-79"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-217" comment="kdebase version is less than 3.1-15" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">kdebase</name>
        <tested_epoch datatype="int" operator="equals">6</tested_epoch>
        <tested_version operator="equals">3.1</tested_version>
        <tested_release datatype="int" operator="equals">15</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <inetlisteningservers_test id="rlt-203" comment="httpd.worker is listening on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*httpd\.worker.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-216" comment="httpd version is less than 2.0.40-21.5" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">httpd</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.0.40</tested_version>
        <tested_release operator="equals">21.5</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-1" comment="/tmp is writable by everyone" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/tmp</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="boolean" operator="equals">1</oexec>
      </data>
    </permission_test>
    <rpmversioncompare_test id="rvt-1" comment="openssl096b package is older than 0.9.6b-16.22.3.i386.rpm" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">openssl096b</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">0.9.6b</tested_version>
        <tested_release operator="equals">16.22.3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-5" comment="openssl older than 0.9.7a-33.15" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">openssl</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release operator="equals">33.15</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-4" comment="openssl-devel older than 0.9.7a-33.15" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">openssl-devel</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release operator="equals">33.15</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-3" comment="openssl-perl is older than 0.9.7a-33.15" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">openssl-perl</name>
        <tested_epoch operator="equals">0</tested_epoch>
        <tested_version operator="equals">0.9.7a</tested_version>
        <tested_release operator="equals">33.15</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-22" comment="openssl, openssl-devel, OR openssl-perl older than 0.9.7a-33.15 or openssl096b older than 0.9.6b-16.22.3" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-3"/>
      <subtest negate="false" test_ref="rvt-4"/>
      <subtest negate="false" test_ref="rvt-5"/>
      <subtest negate="false" test_ref="rvt-1"/>
    </compound_test>
    <rpminfo_test id="rrt-206" comment="Red Hat Enterprise 3 is installed" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name operator="equals">redhat-release</name>
      </object>
      <data operation="AND">
        <version operator="pattern match">^3.S</version>
      </data>
    </rpminfo_test>
    <inetlisteningservers_test id="rlt-202" comment="httpd listening on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*httpd.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-215" comment="httpd version is less than 2.0.40-21.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">httpd</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.0.40</tested_version>
        <tested_release operator="equals">21.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-76" comment="/usr/bin/evolution is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/evolution</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-75" comment="/usr/bin/evolution is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/evolution</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-74" comment="/usr/bin/evolution is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/evolution</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-266" comment="/usr/bin/evolution is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-74"/>
      <subtest negate="false" test_ref="upt-75"/>
      <subtest negate="false" test_ref="upt-76"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-214" comment="gtkhtml version is less than 1.1.9-0.9.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">gtkhtml</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.1.9</tested_version>
        <tested_release operator="equals">0.9.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-213" comment="gtkhtml version is less than 1.1.9-0.9" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">gtkhtml</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.1.9</tested_version>
        <tested_release operator="equals">0.9</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-73" comment="/usr/bin/gnupg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gnupg</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-72" comment="/usr/bin/gnupg is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gnupg</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-263" comment="/usr/bin/gnupg is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-72"/>
      <subtest negate="false" test_ref="upt-73"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-212" comment="gnupg version is less than 1.2.1-4" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">gnupg</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.2.1</tested_version>
        <tested_release datatype="int" operator="equals">4</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-71" comment="/usr/bin/gs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gs</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-70" comment="/usr/bin/gs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gs</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-69" comment="/usr/bin/gs is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/gs</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-262" comment="/usr/bin/gs is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-69"/>
      <subtest negate="false" test_ref="upt-70"/>
      <subtest negate="false" test_ref="upt-71"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-211" comment="ghostscript version is less than 7.05-32.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ghostscript</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">7.05</tested_version>
        <tested_release operator="equals">32.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-210" comment="gdm version is less than 2.4.1.3-5.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">gdm</name>
        <tested_epoch datatype="int" operator="equals">1</tested_epoch>
        <tested_version operator="equals">2.4.1.3</tested_version>
        <tested_release operator="equals">5.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-209" comment="evolution version is less than 1.2.2-5" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">evolution</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.2.2</tested_version>
        <tested_release datatype="int" operator="equals">5</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-208" comment="ethereal-gnome version is less than 0.9.13-1.90.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ethereal-gnome</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.13</tested_version>
        <tested_release operator="equals">1.90.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-207" comment="ethereal version is less than 0.9.13-1.90.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ethereal</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.13</tested_version>
        <tested_release operator="equals">1.90.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-238" comment="Vulnerable Config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-207"/>
      <subtest negate="false" test_ref="rvt-208"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-206" comment="ethereal version is less than 0.9.11-0.90.1" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ethereal</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">0.9.11</tested_version>
        <tested_release operator="equals">0.90.1</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-68" comment="eog is owner-executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/eog</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <permission_test id="upt-67" comment="eog is group-executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/eog</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-66" comment="eog is world-executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/eog</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <compound_test id="cmp-232" comment="eog is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-66"/>
      <subtest negate="false" test_ref="upt-67"/>
      <subtest negate="false" test_ref="upt-68"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-205" comment="eog version is less than 2.2.0-2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">eog</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.2.0</tested_version>
        <tested_release datatype="int" operator="equals">2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-204" comment="ddskk-xemacs version is less than 11.6.0-11.90" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ddskk-xemacs</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">11.6.0</tested_version>
        <tested_release operator="equals">11.90</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <rpmversioncompare_test id="rvt-203" comment="ddskk version is less than 11.6.0-11.90" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">ddskk</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">11.6.0</tested_version>
        <tested_release operator="equals">11.90</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <compound_test id="cmp-216" comment="Vulnerable config" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="rvt-203"/>
      <subtest negate="false" test_ref="rvt-204"/>
    </compound_test>
    <inetlisteningservers_test id="rlt-201" comment="cupsd listens on the network" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <program_name datatype="string" operator="pattern match">^.*cupsd.*</program_name>
      </object>
    </inetlisteningservers_test>
    <rpmversioncompare_test id="rvt-202" comment="cups version is less than 1.1.17-13.3" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">cups</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">1.1.17</tested_version>
        <tested_release operator="equals">13.3</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <permission_test id="upt-65" comment="/usr/bin/balsa is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/balsa</component>
        </path>
      </object>
      <data operation="AND">
        <oexec datatype="int" operator="equals">1</oexec>
      </data>
    </permission_test>
    <permission_test id="upt-64" comment="/usr/bin/balsa is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/balsa</component>
        </path>
      </object>
      <data operation="AND">
        <gexec datatype="int" operator="equals">1</gexec>
      </data>
    </permission_test>
    <permission_test id="upt-63" comment="/usr/bin/balsa is executable" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <object>
        <path datatype="component" operator="equals">
          <component type="literal">/usr/bin/balsa</component>
        </path>
      </object>
      <data operation="AND">
        <uexec datatype="int" operator="equals">1</uexec>
      </data>
    </permission_test>
    <compound_test id="cmp-201" comment="/usr/bin/balsa is executable" operation="OR" xmlns="http://oval.mitre.org/XMLSchema/oval#independent">
      <subtest negate="false" test_ref="upt-63"/>
      <subtest negate="false" test_ref="upt-64"/>
      <subtest negate="false" test_ref="upt-65"/>
    </compound_test>
    <rpmversioncompare_test id="rvt-201" comment="balsa version is less than 2.0.6-2" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">balsa</name>
        <tested_epoch operator="equals">NULL</tested_epoch>
        <tested_version operator="equals">2.0.6</tested_version>
        <tested_release datatype="int" operator="equals">2</tested_release>
      </object>
      <data operation="AND">
        <installed_version operator="equals">earlier</installed_version>
      </data>
    </rpmversioncompare_test>
    <uname_test id="uut-1" comment="ix86 architecture" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#unix">
      <data operation="AND">
        <machine_class datatype="string" operator="pattern match">^i.*86</machine_class>
      </data>
    </uname_test>
    <rpminfo_test id="rrt-201" comment="Red Hat 9 is installed" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval#redhat">
      <object>
        <name datatype="string" operator="equals">redhat-release</name>
      </object>
      <data operation="AND">
        <version datatype="int" operator="equals">9</version>
      </data>
    </rpminfo_test>
  </tests>
</oval>