(Aug 16) Applications using Off-the-Record messaging plugins could be madeto crash or run programs if it received specially crafted networkmessages.
Archive for Uncategorized
(Aug 16) USN-1482-1 introduced a regression in ClamAV that could cause it to failto scan certain documents.
Red Hat: 2012:1156-01: kernel: Moderate Advisory
(Aug 14) Updated kernel packages that fix two security issues and several bugs are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having moderate [More…]
Red Hat: 2012:1168-01: condor: Important Advisory
(Aug 14) Updated condor packages that fix one security issue are now available for Red Hat Enterprise MRG 2.1 for Red Hat Enterprise Linux 5. The Red Hat Security Response Team has rated this update as having [More…]
Debian: 2530-1: rssh: shell command injection
(Aug 15) Henrik Erkkonen discovered that rssh, a restricted shell for SSH, does not properly restrict shell access. For the stable distribution (squeeze), this problem has been fixed in [More…]
Debian: 2529-1: python-django: Multiple vulnerabilities
(Aug 14) Jeroen Dekkers and others reported several vulnerabilities in Django, a Python Web framework. The Common Vulnerabilities and Exposures project defines the following issues: [More…]
Ubuntu: 1538-1: Linux kernel (Natty backport) vulnerabilities
(Aug 14) Several security issues were fixed in the kernel.
Red Hat: 2012:1173-01: flash-plugin: Critical Advisory
(Aug 15) An updated Adobe Flash Player package that fixes one security issue is now available for Red Hat Enterprise Linux 6 Supplementary. The Red Hat Security Response Team has rated this update as having critical [More…]
Red Hat: 2012:1169-01: condor: Important Advisory
(Aug 14) Updated condor packages that fix one security issue are now available for Red Hat Enterprise MRG 2.1 for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having [More…]
Ubuntu: 1539-1: Linux kernel (Oneiric backport) vulnerabilities
(Aug 14) Several security issues were fixed in the kernel.
Ubuntu: 1530-1: Linux kernel (OMAP4) vulnerabilities
(Aug 10) Several security issues were fixed in the kernel.
Ubuntu: 1531-1: Linux kernel vulnerabilities
(Aug 10) Several security issues were fixed in the kernel.
Ubuntu: 1532-1: Linux kernel (OMAP4) vulnerabilities
(Aug 10) Several security issues were fixed in the kernel.
Ubuntu: 1533-1: Linux kernel vulnerabilities
(Aug 10) Several security issues were fixed in the kernel.
Debian: 2526-1: libotr: heap-based buffer overflows
(Aug 12) Just Ferguson discovered that libotr, an off-the-record (OTR) messaging library, can be forced to perform zero-length allocations for heap buffers that are used in base64 decoding routines. An attacker can exploit this flaw by sending crafted messages to an application that is using libotr to [More…]
Ubuntu: 1535-1: Linux kernel vulnerabilities
(Aug 10) Several security issues were fixed in the kernel.
Ubuntu: 1534-1: Linux kernel (EC2) vulnerabilities
(Aug 10) Several security issues were fixed in the kernel.
(Aug 9) Calligra could be made to crash or run programs as your login if it openeda specially crafted file.
(Aug 8) Multiple security vulnerabilities were fixed in WebKit.
(Aug 10) Expat could be made to cause a denial of service by consuming excessive CPUand memory resources.
(Aug 9) KOffice could be made to crash or run programs as your login if it openeda specially crafted file.
Red Hat: 2012:1151-01: openldap: Low Advisory
(Aug 8) Updated openldap packages that fix one security issue and one bug are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having low [More…]
Red Hat: 2012:1150-01: kernel-rt: Moderate Advisory
(Aug 8) Updated kernel-rt packages that fix two security issues and two bugs are now available for Red Hat Enterprise MRG 2.1. The Red Hat Security Response Team has rated this update as having moderate [More…]
Debian: 2523-1: globus-gridftp-server: programming error
(Aug 6) It was discovered that the GridFTP component from the Globus Toolkit, a toolkit used for building Grid systems and applications performed insufficient validation of a name lookup, which could lead to privilege escalation. [More…]
Debian: 2524-1: openttd: Multiple vulnerabilities
(Aug 6) Two denial of service vulnerabilities have been discovered in the server component of OpenTTD, a free reimplementation of Transport Tycoon Deluxe. For the stable distribution (squeeze), this problem has been fixed in [More…]
Debian: 2525-1: expat: Multiple vulnerabilities
(Aug 6) It was discovered that Expat, a C library to parse XML, is vulnerable to denial of service through hash collisions and a memory leak in pool handling. [More…]
Red Hat: 2012:1149-01: sudo: Moderate Advisory
(Aug 7) An updated sudo package that fixes one security issue and several bugs is now available for Red Hat Enterprise Linux 5. The Red Hat Security Response Team has rated this update as having moderate [More…]
Red Hat: 2012:1148-01: kernel: Important Advisory
(Aug 7) Updated kernel packages that fix one security issue are now available for Red Hat Enterprise Linux 6.1 Extended Update Support. The Red Hat Security Response Team has rated this update as having [More…]
Ubuntu: 1523-1: NVIDIA graphics drivers vulnerability
(Aug 6) NVIDIA graphics drivers could be made to run programs as an administrator.
Debian: 2519-2: isc-dhcp: Multiple vulnerabilities
(Aug 4) It was discovered that the recent update for isc-dhcp, did not contain the patched code included in the source package. Due to quirk in the build system those patches were deapplied during the build process. [More…]