Section: .. / 0609-advisories /
| /// File Name: |
dsa-1177-1.txt |
Description:
|
Debian Security Advisory 1177-1 - Hendrik Weimer discovered that it is possible for a normal user to disable the login shell of the root account via usermin, a web-based administration tool.
| | Homepage: | http://www.debian.org/security | | File Size: | 6994 | | Related CVE(s): | CVE-2006-4246 | | Last Modified: | Sep 16 10:39:11 2006 |
| MD5 Checksum: | 913f1d9ed35249ef9bafdda58cc4f448 |
|
| /// File Name: |
dsa-1178-1.txt |
Description:
|
Debian Security Advisory 1178-1: It was discovered that an integer overflow in freetype's PCF font code may lead to denial of service and potential execution of arbitrary code.
| | Homepage: | http://www.debian.org/security | | File Size: | 8713 | | Last Modified: | Sep 26 21:46:36 2006 |
| MD5 Checksum: | 0b113cb8854d940f70d9ab44364c7ecb |
|
| /// File Name: |
dsa-1179-1.txt |
Description:
|
Debian Security Advisory 1179-1: Luigi Auriemma discovered several buffer overflows in alsaplayer, a PCM player designed for ALSA, that can lead to a crash of the application and possibly other outcomes.
| | Homepage: | http://www.debian.org/security | | File Size: | 30086 | | Last Modified: | Sep 26 21:47:13 2006 |
| MD5 Checksum: | a022621dd553816fb75c03b7bfacba46 |
|
| /// File Name: |
dsa-1180-1.txt |
Description:
|
Debian Security Advisory 1180-1: Luigi Auriemma discovered two security related bugs in bomberclone, a free Bomberman clone.
| | Homepage: | http://www.debian.org/security | | File Size: | 5767 | | Last Modified: | Sep 26 21:47:21 2006 |
| MD5 Checksum: | 2423d9b6b7cbcdf395d5a58ccf8a73b3 |
|
| /// File Name: |
dsa-1181-1.txt |
Description:
|
Debian Security Advisory 1181-1: Tavis Ormandy from the Google Security Team discovered several vulnerabilities in gzip, the GNU compression utility.
| | Homepage: | http://www.debian.org/security | | File Size: | 5635 | | Last Modified: | Sep 26 21:47:27 2006 |
| MD5 Checksum: | b7f8cbdb9c4048813d0ebe90a5ae9a89 |
|
| /// File Name: |
dsa-1182-1.txt |
Description:
|
Debian Security Advisory 1182-1: Daniel Bleichenbacher discovered a flaw in GNU TLS cryptographic package that could allow an attacker to generate a forged signature that GNU TLS will accept as valid.
| | Homepage: | http://www.debian.org/security | | File Size: | 11307 | | Last Modified: | Sep 26 21:47:36 2006 |
| MD5 Checksum: | 62ba149f5f9d11422d86ec8492a50681 |
|
| /// File Name: |
dsa-1183-1.txt |
Description:
|
Debian Security Advisory 1183-1: Several security related problems have been discovered in the Linux kernel which may lead to a denial of service or even the execution of arbitrary code. The Common Vulnerabilities and Exposures project identifies the following problems:
| | Homepage: | http://www.debian.org/security | | File Size: | 46544 | | Last Modified: | Sep 27 01:27:00 2006 |
| MD5 Checksum: | 993cecc0d124eec54924dd6b54c4a823 |
|
| /// File Name: |
dsa-1184-1.txt |
Description:
|
Debian Security Advisory 1184-1: Several security related problems have been discovered in the Linux kernel which may lead to a denial of service or even the execution of arbitrary code. The Common Vulnerabilities and Exposures project identifies the following problems:
| | Homepage: | http://www.debian.org/security | | File Size: | 45344 | | Last Modified: | Sep 27 01:27:10 2006 |
| MD5 Checksum: | e63e41a4db0eb578d606fec595297804 |
|
| /// File Name: |
dsa-1184-2.txt |
Description:
|
Debian Security Advisory 1184-2: kernel-source-2.6.8 - This advisory covers the S/390 components of the recent security update for the Linux 2.6.8 kernel that was missing due to technical problems. For reference below please see the original advisory text.
| | Homepage: | http://www.debian.org/security | | File Size: | 8239 | | Last Modified: | Sep 27 01:26:50 2006 |
| MD5 Checksum: | f5ac02e354e4166310374de9e832cdd0 |
|
| /// File Name: |
e107075.txt |
Description:
|
e107 version 0.7.5 suffers from SQL injection flaws in the admin section.
| | Author: | Omid | | File Size: | 2024 | | Last Modified: | Sep 7 09:18:28 2006 |
| MD5 Checksum: | fd2f393ebf6169a063b6eea59d220b97 |
|
| /// File Name: |
EEYEB-20080824.txt |
Description:
|
eEye Digital Security has discovered a second heap overflow vulnerability in the MS06-042 cumulative Internet Explorer update that would allow an attacker to execute arbitrary code on the system of a victim who attempts to access a malicious URL. Windows 2000, Windows XP SP1, and Windows 2003 SP0 systems running Internet Explorer 5 SP4 or Internet Explorer 6 SP1, with the MS06-042 patch applied, are vulnerable; unpatched and more recent versions of Internet Explorer are not affected.
| | Author: | Derek Soeder | | Homepage: | http://research.eeye.com/ | | File Size: | 5688 | | Last Modified: | Sep 13 11:40:14 2006 |
| MD5 Checksum: | cde17359bf4c467d199b4a6c7253525b |
|
| /// File Name: |
feedsplitter.txt |
Description:
|
The Feedsplitter script suffers from multiple vulnerabilities including a file inclusion flaw that may allow for code execution.
| | Author: | Jonathan Rockway | | File Size: | 2008 | | Last Modified: | Sep 7 07:43:02 2006 |
| MD5 Checksum: | e938964a050758af7ece8846b4a4c71a |
|
| /// File Name: |
glsa-200609-01.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-01 - Ulf Harnhammar, from the Debian Security Audit Project, has found that Streamripper is vulnerable to multiple stack based buffer overflows caused by improper bounds checking when processing malformed HTTP headers. Versions less than 1.61.26 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2632 | | Last Modified: | Sep 7 11:10:53 2006 |
| MD5 Checksum: | 8bb04206fbb8b761ba3f7d6862810b8e |
|
| /// File Name: |
glsa-200609-02.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-02 - Michael Gehring has found that GTetrinet fails to properly handle array indexes. Versions less than 0.7.9 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2396 | | Last Modified: | Sep 7 11:11:12 2006 |
| MD5 Checksum: | a1e81f305e3cabadafbde439feec3b05 |
|
| /// File Name: |
glsa-200609-03.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-03 - OpenTTD is vulnerable to a Denial of Service attack due to a flaw in the manner the game server handles errors in command packets. Versions less than 0.4.8 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2512 | | Last Modified: | Sep 7 11:11:32 2006 |
| MD5 Checksum: | 27abf0eddb17fa36ca8627a068635e25 |
|
| /// File Name: |
glsa-200609-04.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-04 - Several integer overflows have been found in the PCF font parser. Versions less than 1.2.0-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2455 | | Last Modified: | Sep 7 11:11:53 2006 |
| MD5 Checksum: | 77e8f04823ce0bd8ab58edb844864057 |
|
| /// File Name: |
glsa-200609-05.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-05 - Daniel Bleichenbacher discovered that it might be possible to forge signatures signed by RSA keys with the exponent of 3. Versions less than 0.9.7k are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3330 | | Last Modified: | Sep 8 08:46:12 2006 |
| MD5 Checksum: | a5af2cbb97bb054ffa72f7e13664c758 |
|
| /// File Name: |
glsa-200609-06.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-06 - AdPlug is vulnerable to buffer and heap overflows when processing the following types of files: CFF, MTK, DMO, U6M, DTM, and S3M. Versions less than 2.0.1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2647 | | Last Modified: | Sep 13 11:05:52 2006 |
| MD5 Checksum: | d17d59980f6badb7ae6dfde1a9f7f45c |
|
| /// File Name: |
glsa-200609-07.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-07 - Several integer overflows have been found in the CID font parser. Versions less than 1.2.1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3185 | | Last Modified: | Sep 14 09:24:07 2006 |
| MD5 Checksum: | 716b6057c27d708ea960615dce336aba |
|
| /// File Name: |
glsa-200609-08.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-08 - xine-lib contains buffer overflows in the processing of AVI. Additionally, xine-lib is vulnerable to a buffer overflow in the HTTP plugin (xineplug_inp_http.so) via a long reply from an HTTP server. Versions less than 1.1.2-r2 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2820 | | Last Modified: | Sep 14 09:32:23 2006 |
| MD5 Checksum: | 7a91428a88bf0dc17785d6bbdc595de3 |
|
| /// File Name: |
glsa-200609-09.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-09 - FFmpeg contains buffer overflows in the AVI processing code. Versions less than 0.4.9_p20060530 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2391 | | Last Modified: | Sep 14 09:32:46 2006 |
| MD5 Checksum: | 255af034b04bbd6383195e8d252361b6 |
|
| /// File Name: |
glsa-200609-10.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-10 - rgod discovered that DokuWiki doesn't sanitize the X-FORWARDED-FOR HTTP header, allowing the injection of arbitrary contents - such as PHP commands - into a file. Additionally, the accessory scripts installed in the bin DokuWiki directory are vulnerable to directory traversal attacks, allowing to copy and execute the previously injected code. Versions less than 20060309d are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3467 | | Last Modified: | Sep 15 01:22:21 2006 |
| MD5 Checksum: | dbbc52118a7b11831a7aaaaa8f4f9cd7 |
|
| /// File Name: |
glsa-200609-11.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-11 - Queries for SIG records will cause an assertion error if more than one SIG RRset is returned. Additionally, an INSIST failure can be triggered by sending multiple recursive queries if the response to the query arrives after all the clients looking for the response have left the recursion queue. Versions less than 9.3.2-r4 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3218 | | Last Modified: | Sep 16 10:02:51 2006 |
| MD5 Checksum: | 082159a1cc8ea4434f4227d8c87d1214 |
|
|
|
|
|