Section: .. / 0612-advisories /
| /// File Name: |
DSA-1236-1.txt |
Description:
|
Debian Security Advisory 1236-1: Antti-Juhani Kaijanaho discovered that enemies-of-carlotta, a simple manager for mailing lists, does not properly sanitise email addresses before passing them through to the system shell.
| | Homepage: | http://www.debian.org/security | | File Size: | 3072 | | Last Modified: | Dec 14 22:42:17 2006 |
| MD5 Checksum: | e3f93518e3400c6aa8542c43f694303d |
|
| /// File Name: |
glsa-200612-17.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-17 - A format string vulnerability was found in the sqllog function from the SQL accounting code for radiusd. That function is only used if one or more of the postgresql, mysql or odbc USE flags are enabled, which is not the default, except for the server 2006.1 and 2007.0 profiles which enable the mysql USE flag. Versions less than 1.4 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3263 | | Last Modified: | Dec 14 22:00:22 2006 |
| MD5 Checksum: | 1f2b36743f2675aaf1d4b1df06c476cb |
|
| /// File Name: |
glsa-200612-16.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-16 - Teemu Salmela discovered that Links does not properly validate smb:// URLs when it runs smbclient commands. Versions less than 2.1_pre26 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3114 | | Last Modified: | Dec 14 22:00:15 2006 |
| MD5 Checksum: | 62e45d337d85ef1d4311a4071b4fc681 |
|
| /// File Name: |
glsa-200612-15.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-15 - Jakub Moc of Gentoo Linux discovered that McAfee VirusScan was distributed with an insecure DT_RPATH which included the current working directory, rather than $ORIGIN which was probably intended. Versions less than or equal to 4510e are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3772 | | Last Modified: | Dec 14 22:00:07 2006 |
| MD5 Checksum: | 31da4fdde7e506aaf166a6b7429e15e0 |
|
| /// File Name: |
glsa-200612-14.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-14 - Trac allows users to perform certain tasks via HTTP requests without performing correct validation on those requests. Versions less than 0.10.1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3003 | | Last Modified: | Dec 14 21:59:59 2006 |
| MD5 Checksum: | df24557a7418fd51f15df73b378f6243 |
|
| /// File Name: |
glsa-200612-13.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-13 - infamous41md has discovered that the ole_init_info function may allocate too little memory for storing the contents of an OLE document, resulting in a heap buffer overflow. Versions less than 1.14.2 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3087 | | Last Modified: | Dec 14 21:59:51 2006 |
| MD5 Checksum: | e0cb295ba2fa5a72d70eb19161444dce |
|
| /// File Name: |
glsa-200612-12.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-12 - F-Prot Antivirus version 4.6.7 fixes a heap-based buffer overflow, an infinite loop, and other unspecified vulnerabilities. Versions less than 4.6.7 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3271 | | Last Modified: | Dec 14 21:59:44 2006 |
| MD5 Checksum: | a3edad08b495c2bd64ce74b596e116b3 |
|
| /// File Name: |
MDKSA-2006-228.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006:228: A "stack overwrite" vulnerability in GnuPG (gpg) allows attackers to execute arbitrary code via crafted OpenPGP packets that cause GnuPG to dereference a function pointer from deallocated stack memory.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 5080 | | Last Modified: | Dec 14 21:58:53 2006 |
| MD5 Checksum: | 327ac222d8158b2294025280ee3359c8 |
|
| /// File Name: |
MDKSA-2006-229.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006:229: Stack-based buffer overflow in ps.c for evince allows user-assisted attackers to execute arbitrary code via a PostScript (PS) file with certain headers that contain long comments, as demonstrated using the DocumentMedia header.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 2579 | | Last Modified: | Dec 14 21:58:24 2006 |
| MD5 Checksum: | f4671d426fe1225928f9092b7d2a4811 |
|
| /// File Name: |
MDKSA-2006-230.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006:230: The latest version of ClamAV, 0.88.7, fixes some bugs, including vulnerabilities with handling base64-encoded MIME attachment files that can lead to either a) a crash (CVE-2006-5874), or b) a bypass of virus detection (CVE-2006-6406).
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 7917 | | Last Modified: | Dec 14 21:57:47 2006 |
| MD5 Checksum: | d28ef7c26354b45a14c625a3fc85ee46 |
|
| /// File Name: |
MDKSA-2006-164-2.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006:164-2: Local exploitation of an integer overflow vulnerability in the 'CIDAFM()' function in the X.Org and XFree86 X server could allow an attacker to execute arbitrary code with privileges of the X server, typically root.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 6336 | | Last Modified: | Dec 14 21:56:45 2006 |
| MD5 Checksum: | ce5f771ccac7bafeda0e985a5d32ee59 |
|
| /// File Name: |
caid-34870.txt |
Description:
|
Multiple instances of improper handling of NULL buffers in CA Anti-Virus allow local attackers to cause a denial of service condition. This issue affects only consumer CA Anti-Virus products.
| | Author: | Ken Williams | | Homepage: | http://ca.com/catalk.htm | | File Size: | 3266 | | Last Modified: | Dec 14 21:35:07 2006 |
| MD5 Checksum: | 263be2e3b35d09d31bb9a82e2e464ab6 |
|
| /// File Name: |
TA06-346A.txt |
Description:
|
National Cyber Alert System - Technical Cyber Security Alert TA06-346A: Microsoft has released updates that address critical vulnerabilities in Microsoft Windows, Visual Studio, Microsoft Outlook Express, Microsoft Media Player, and Microsoft Internet Explorer. Exploitation of these vulnerabilities could allow a remote, unauthenticated attacker to execute arbitrary code or cause a denial of service on a vulnerable system.
| | Homepage: | http://www.cert.org | | File Size: | 4547 | | Last Modified: | Dec 14 21:32:50 2006 |
| MD5 Checksum: | 3d0c9db49d5c7f5385e6dad73c442135 |
|
| /// File Name: |
sa23384.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges, cause a DoS (Denial of Service), and by malicious people to bypass certain security restriction, and cause a DoS.
| | Homepage: | http://secunia.com/advisories/23384/ | | File Size: | 124507 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | 658514b1d4b2ce8c9d8d0ea2984e2df5 |
|
| /// File Name: |
sa23383.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in w00t Gallery, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/23383/ | | File Size: | 2581 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | efdf21f45a2271c0242f4fafb41c1c39 |
|
| /// File Name: |
sa23382.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for enemies-of-carlotta. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23382/ | | File Size: | 2903 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | c9ca68b834927ca0979edcba34f2f993 |
|
| /// File Name: |
sa23378.txt |
Description:
|
Secunia Security Advisory - Rubén Santamarta has reported two vulnerabilities in CA Anti-Virus, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/23378/ | | File Size: | 2513 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | 2111d05b0a269a2fdba3306e24d79d3d |
|
| /// File Name: |
sa23377.txt |
Description:
|
Secunia Security Advisory - Antti-Juhani Kaijanaho has reported a vulnerability in Enemies of Carlotta, which potentially can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23377/ | | File Size: | 2401 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | b8d4b914d151d482ceba69fd8a045c46 |
|
| /// File Name: |
sa23370.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to expose potentially sensitive information and cause a DoS (Denial of Service), and malicious people to cause a DoS.
| | Homepage: | http://secunia.com/advisories/23370/ | | File Size: | 25926 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | bcf6884c823d65a08edae846e64c7099 |
|
| /// File Name: |
sa23368.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Symantec Veritas Netbackup, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23368/ | | File Size: | 3373 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | 410e738a06f867a26de13650d941f961 |
|
| /// File Name: |
sa23366.txt |
Description:
|
Secunia Security Advisory - Brett Moore has reported two security issues in HyperAccess, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23366/ | | File Size: | 2890 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | 3e56b5a4d5e9d2d12a627bff188f219e |
|
| /// File Name: |
sa23361.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported within the Linux kernel, which can be exploited by malicious, local users and malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/23361/ | | File Size: | 3653 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | a245da7556f41f530045654f2be974e9 |
|
| /// File Name: |
sa23360.txt |
Description:
|
Secunia Security Advisory - Mehdi Oudad and Kevin Fernandez have discovered a vulnerability in CoolPlayer, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/23360/ | | File Size: | 2716 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | 80ed3eb1fc8961575223c1b428a3a7e9 |
|
| /// File Name: |
sa23352.txt |
Description:
|
Secunia Security Advisory - rPath has issued an update for libgsf. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/23352/ | | File Size: | 2150 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | 7ad56a80e280504473f9dcf9814a5961 |
|
| /// File Name: |
sa23348.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged a vulnerability in S8100, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/23348/ | | File Size: | 2211 | | Last Modified: | Dec 14 21:28:17 2006 |
| MD5 Checksum: | 1d7fbf222daf7393221ab8dff825cde4 |
|
|
|
|
|