A bug has been found in versions of lv that read a .lv file in the current directory. Local attackers can use this to place an .lv file in any directory to which they have write access.
Comment
Versions of man before 1.51 have a bug where a malformed man file can cause a program named “unsafe” to be run.
Updated zlib packages are now available which fix a buffer overflow vulnerability.
Updated mICQ packages are available for Red Hat Linux versions 7.2 and 7.3 that fix a remote crash.
Unpatched versions of mgetty prior to 1.1.29 would overflow an internal buffer if the caller name reported by the modem was too long.