Section: .. / 0802-advisories /
| /// File Name: |
dsa-1494-1.txt |
Description:
|
Debian Security Advisory 1494-1 - The vmsplice system call did not properly verify address arguments passed by user space processes, which allowed local attackers to overwrite arbitrary kernel memory, gaining root privileges. In the vserver-enabled kernels, a missing access check on certain symlinks in /proc enabled local attackers to access resources in other vservers.
| | Homepage: | http://www.debian.org/security | | File Size: | 19108 | | Related CVE(s): | CVE-2008-0010, CVE-2008-0600, CVE-2008-0163 | | Last Modified: | Feb 11 14:05:40 2008 |
| MD5 Checksum: | b42537a9d76554c92306fe4961b6dc02 |
|
| /// File Name: |
dsa-1493-1.txt |
Description:
|
Debian Security Advisory 1493-1 - Several local/remote vulnerabilities have been discovered in the image loading library for the Simple DirectMedia Layer 1.2. Gynvael Coldwind discovered a buffer overflow in GIF image parsing, which could result in denial of service and potentially the execution of arbitrary code. It was discovered that a buffer overflow in IFF ILBM image parsing could result in denial of service and potentially the execution of arbitrary code.
| | Homepage: | http://www.debian.org/security | | File Size: | 12740 | | Related CVE(s): | CVE-2007-6697, CVE-2008-0554 | | Last Modified: | Feb 11 14:04:19 2008 |
| MD5 Checksum: | 72bbc9959cf2a3e4342467b27b1fbd0d |
|
| /// File Name: |
dsa-1492-1.txt |
Description:
|
Debian Security Advisory 1492-1 - Frank Lichtenheld and Nico Golde discovered that WML, an off-line HTML generation toolkit, creates insecure temporary files in the eperl and ipp backends and in the wmg.cgi script, which could lead to local denial of service by overwriting files.
| | Homepage: | http://www.debian.org/security | | File Size: | 4765 | | Related CVE(s): | CVE-2008-0665, CVE-2008-0666 | | Last Modified: | Feb 11 14:03:30 2008 |
| MD5 Checksum: | bc2ce85d338ccaddd0884aa09b0fe214 |
|
| /// File Name: |
dsa-1491-1.txt |
Description:
|
Debian Security Advisory 1491-1 - It was discovered that a buffer overflow in the GIF image parsing code of Tk, a cross-platform graphical toolkit, could lead to denial of service and potentially the execution of arbitrary code.
| | Homepage: | http://www.debian.org/security | | File Size: | 11702 | | Related CVE(s): | CVE-2008-0553 | | Last Modified: | Feb 11 14:02:36 2008 |
| MD5 Checksum: | 34e4be2d30d46fc098c03110bac57e94 |
|
| /// File Name: |
dsa-1490-1.txt |
Description:
|
Debian Security Advisory 1490-1 - It was discovered that a buffer overflow in the GIF image parsing code of Tk, a cross-platform graphical toolkit, could lead to denial of service and potentially the execution of arbitrary code.
| | Homepage: | http://www.debian.org/security | | File Size: | 11531 | | Related CVE(s): | CVE-2008-0553 | | Last Modified: | Feb 11 14:02:02 2008 |
| MD5 Checksum: | 9b0705cb253b538c6ef0798c46fbd865 |
|
| /// File Name: |
dsa-1489-1.txt |
Description:
|
Debian Security Advisory 1489-1 - Several remote vulnerabilities have been discovered in the Iceweasel web browser, an unbranded version of the Firefox browser. These include arbitrary code execution, privilege escalation, and directory traversal flaws.
| | Homepage: | http://www.debian.org/security | | File Size: | 11716 | | Related CVE(s): | CVE-2008-0412, CVE-2008-0413, CVE-2008-0414, CVE-2008-0415, CVE-2008-0416, CVE-2008-0417, CVE-2008-0418, CVE-2008-0419, CVE-2008-0591, CVE-2008-0592, CVE-2008-0593, CVE-2008-0594 | | Last Modified: | Feb 11 14:01:28 2008 |
| MD5 Checksum: | ac2c18d94b7eb798fe55715ab2115b91 |
|
| /// File Name: |
CVE-2007-6286.txt |
Description:
|
Apache Tomcat versions 5.5.11 through 5.5.25 and 6.0.0 through 6.0.15 suffer from a duplicate request processing vulnerability.
| | Homepage: | http://tomcat.apache.org/security.html | | File Size: | 1183 | | Related CVE(s): | CVE-2007-6286 | | Last Modified: | Feb 11 13:56:58 2008 |
| MD5 Checksum: | 5747a91001a9756598a25e6ad2e7200e |
|
| /// File Name: |
CVE-2007-5333.txt |
Description:
|
Apache Tomcat versions 4.1.0 through 4.1.36, 5.5.0 through 5.5.25, and 6.0.0 through 6.0.14 suffers from a cookie handling vulnerability that allows for session hi-jacking.
| | Homepage: | http://tomcat.apache.org/security.html | | File Size: | 1446 | | Related CVE(s): | CVE-2007-5333 | | Last Modified: | Feb 11 13:56:07 2008 |
| MD5 Checksum: | acbae294fbaccc1ba6298805f1302c65 |
|
| /// File Name: |
sa28768.txt |
Description:
|
Secunia Security Advisory - rPath has issued an update for gd. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/28768/ | | File Size: | 2057 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | 0e5cb4bb5b52df8460345524b6a48cfc |
|
| /// File Name: |
sa28796.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for libcdio. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28796/ | | File Size: | 3464 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | 0413b883c51dcfc76d451d930c441a57 |
|
| /// File Name: |
sa28806.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for the kernel. This fixes some security issues and vulnerabilities, where some have unknown impacts and others can be exploited by malicious, local users to disclose potentially sensitive information, bypass certain security restrictions, corrupt a file system, and gain escalated privileges, or by malicious people to bypass certain security restrictions and cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28806/ | | File Size: | 19085 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | 11c0c2548bbed6b7bd80f5602759c9a7 |
|
| /// File Name: |
sa28807.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for tk and perl-Tk. This fixes a vulnerability, which can potentially be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28807/ | | File Size: | 2374 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | 7612e4ef6a8dbdfe46c1ba5a7555f5cd |
|
| /// File Name: |
sa28815.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Mozilla SeaMonkey, which can be exploited by malicious people to disclose sensitive information, bypass certain security restrictions, conduct spoofing attacks, or potentially to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28815/ | | File Size: | 2788 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | 18fcce27a9f6fde5155e82cc56690be9 |
|
| /// File Name: |
sa28817.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for openldap. This fixes a vulnerability, which can be exploited by malicious users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28817/ | | File Size: | 2036 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | 567411b8fa8486906abef2663af6c37f |
|
| /// File Name: |
sa28836.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities and a weakness have been discovered in PowerNews, which can be exploited by malicious users to compromise a vulnerable system and by malicious people to conduct cross-site scripting and SQL injection attacks, disclose certain information, and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28836/ | | File Size: | 3863 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | 696279e678e7fac0464cb6ae1d38f128 |
|
| /// File Name: |
sa28841.txt |
Description:
|
Secunia Security Advisory - Russ McRee has reported a vulnerability in Sift Unity, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/28841/ | | File Size: | 2129 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | 2e5eb4e325b362209dd4d6a9fc3e01cc |
|
| /// File Name: |
sa28843.txt |
Description:
|
Secunia Security Advisory - OpenBSD has issued an update for X.Org.This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service), disclose potentially sensitive information, or to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/28843/ | | File Size: | 2334 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | caf6568e67a2befea084039035f57543 |
|
| /// File Name: |
sa28844.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in HP Select Identity, which can be exploited by malicious users to bypass certain security restrictions or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28844/ | | File Size: | 2773 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | c4be46adf39b8bca93f6e19444fd1dcd |
|
| /// File Name: |
sa28848.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for tk. This fixes a vulnerability, which can potentially be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/28848/ | | File Size: | 2765 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | fea6a6803a8db0174d8b113fb406944c |
|
| /// File Name: |
sa28850.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for SDL_image. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/28850/ | | File Size: | 2890 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | 0276ed843b37393b7ba7e9ea8f715892 |
|
| /// File Name: |
sa28851.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Adobe Reader/Acrobat, some of which have unknown impacts while others can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28851/ | | File Size: | 2632 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | b7e875a0d8f3b86f8e886d50abe9445e |
|
| /// File Name: |
sa28852.txt |
Description:
|
Secunia Security Advisory - Alexander Brachmann has reported a vulnerability in the Freetag plugin for Serendipity, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/28852/ | | File Size: | 2547 | | Last Modified: | Feb 11 13:45:05 2008 |
| MD5 Checksum: | 14258cf8dbad3086628f7732d2e0dcc6 |
|
| /// File Name: |
sa28838.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for multiple packages. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges and cause a DoS (Denial of Service), by malicious users to manipulate data, gain escalated privileges, and cause a DoS, and by malicious people to manipulate data, bypass certain security restrictions, cause a DoS, and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28838/ | | File Size: | 3452 | | Last Modified: | Feb 8 19:16:05 2008 |
| MD5 Checksum: | 796a257cef4909f883d5358ddba60ddb |
|
| /// File Name: |
sa28804.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in UltraVNC, which can potentially be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28804/ | | File Size: | 2687 | | Last Modified: | Feb 8 19:15:54 2008 |
| MD5 Checksum: | 48a3aad807d0392e75e3ba087949b019 |
|
|
|
|
|