Ubuntu: 1950-1: Light Display Manager vulnerability
(Sep 12) Light Display Manager could be made to expose sensitive information.
(Sep 12) Light Display Manager could be made to expose sensitive information.
(Sep 9) Fraudulent security certificates could allow sensitive information tobe exposed when accessing the Internet.
(Aug 20) The system could be made to expose sensitive information.
(Jul 31) GnuPG and Libgcrypt could be made to expose sensitive information.
(Jul 8) Applications using Raptor could be made to expose sensitive information orrun programs as your login if they opened a specially crafted file.
This release resolves several security issues and introduces several enhancements. We would like to thank the team at Rack911.com for assistance with discovering some of those issues.
The following bug has been fixed:
[-] Fixed moderate security issue with leak of sensitive information. The issue can be exploited by authenticated users only. Authenticated users are users that have logins to Parallels Plesk Panel (such as your customers, resellers, or your employees). This MU is strongly recommended for all Parallels Plesk Panel users.
This release resolves several security issues and introduces several enhancements. We would like to thank the team at Rack911.com for assistance with discovering some of those issues.
The following bug has been fixed:
[-] Fixed moderate security issue with leak of sensitive information. The issue can be exploited by authenticated users only. Authenticated users are users that have logins to Parallels Plesk Panel (such as your customers, resellers, or your employees). This MU is strongly recommended for all Parallels Plesk Panel users.
This release resolves several security issues and introduces several enhancements. We would like to thank the team at Rack911.com for assistance with discovering some of those issues.
The following bug has been fixed:
[-] Fixed moderate security issue with leak of sensitive information. The issue can be exploited by authenticated users only. Authenticated users are users that have logins to Parallels Plesk Panel (such as your customers, resellers, or your employees). This MU is strongly recommended for all Parallels Plesk Panel users.
This release resolves several security issues and introduces several enhancements. We would like to thank the team at Rack911.com for assistance with discovering some of those issues.
The following bug has been fixed:
[-] Fixed moderate security issue with leak of sensitive information. The issue can be exploited by authenticated users only. Authenticated users are users that have logins to Parallels Plesk Panel (such as your customers, resellers, or your employees). This MU is strongly recommended for all Parallels Plesk Panel users.
[-] Backup doesn’t work after 11.0.9 MU #53 (137862)
This release resolves several security issues and introduces several enhancements. We would like to thank the team at Rack911.com for assistance with discovering some of those issues.
The following bug has been fixed:
[-] Fixed moderate security issue with leak of sensitive information. The issue can be exploited by authenticated users only. Authenticated users are users that have logins to Parallels Plesk Panel (such as your customers, resellers, or your employees). This MU is strongly recommended for all Parallels Plesk Panel users.
This release resolves several security issues and introduces several enhancements. We would like to thank the team at Rack911.com for assistance with discovering some of those issues.
The following bug has been fixed:
[-] Fixed moderate security issue with leak of sensitive information. The issue can be exploited by authenticated users only. Authenticated users are users that have logins to Parallels Plesk Panel (such as your customers, resellers, or your employees). This MU is strongly recommended for all Parallels Plesk Panel users.
This release resolves several security issues and introduces several enhancements. We would like to thank the team at Rack911.com for assistance with discovering some of those issues.
The following bug has been fixed:
[-] Fixed moderate security issue with leak of sensitive information. The issue can be exploited by authenticated users only. Authenticated users are users that have logins to Parallels Plesk Panel (such as your customers, resellers, or your employees). This MU is strongly recommended for all Parallels Plesk Panel users.
(May 29) A vulnerability has been discovered in the Open Ticket Request System, which can be exploited by malicious users to disclose potentially sensitive information. An attacker with a valid agent login could manipulate URLs in the ticket [More…]
The following bug has been fixed:
[-] Fixed moderate security issue with leak of sensitive information. The issue can be exploited by authenticated users only. Authenticated users are users that have logins to Parallels Plesk Panel (such as your customers, resellers, or your employees). This MU is strongly recommended for all Parallels Plesk Panel users.
The following bug has been fixed:
[-] Fixed moderate security issue with leak of sensitive information. The issue can be exploited by authenticated users only. Authenticated users are users that have logins to Parallels Plesk Panel (such as your customers, resellers, or your employees). This MU is strongly recommended for all Parallels Plesk Panel users.
(May 9) telepathy-idle could be made to expose sensitive information over thenetwork.
Early last week, Netcraft blocked a website purporting to offer online support for eBay customers. The website made use of a third-party live chat service provided by Volusion, an e-commerce outfit which also provides both free and premium hosted live chat services. By running a live chat service and asking the right questions, a fraudster […]
(Apr 20) Yamada Yasuharu discovered that cURL, an URL transfer library, is vulnerable to expose potentially sensitive information when doing requests across domains with matching tails. Due to a bug in the tailmatch function when matching domain names, it was possible that [More…]
(Apr 15) Applications using libcurl could be made to expose sensitive informationover the network.
(Mar 25) GNOME Online Accounts could be made to expose sensitive information overthe network.
(Mar 14) NSS could be made to expose sensitive information over the network.
(Mar 14) Glance could be made to expose sensitive information over the network.
(Mar 13) PHP could be made to expose sensitive information over the network.
(Feb 27) GnuTLS could be made to expose sensitive information over the network.
(Feb 20) Keystone could be made to crash or expose sensitive information over thenetwork.
(Feb 13) jQuery could be made to expose sensitive information over the network.
(Jan 29) Glance could be made to expose sensitive information over the network.
(Jan 22) Vino could be made to expose sensitive information over the network.
(Jan 22) PHP could be made to expose sensitive information over the network.
(Jan 10) The system could be made to leak sensitive system information.
60 queries. 9 mb Memory usage. 1.399 seconds.