New User, Welcome!     Login

Next Page >>

allows

[ MDVSA-2010:198 ] kernel

 Some vulnerabilities were discovered and corrected in the Linux
 2.6 kernel:
 
 fs/namei.c in Linux kernel 2.6.18 through 2.6.34 does not always
 follow NFS automount symlinks, which allows attackers to have an
 unknown impact, related to LOOKUP_FOLLOW. (CVE-2010-1088)
 
 The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem
 in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9
 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure

[ MDVSA-2010:188 ] kernel

 Some vulnerabilities were discovered and corrected in the Linux
 2.6 kernel:
 
 fs/namei.c in Linux kernel 2.6.18 through 2.6.34 does not always
 follow NFS automount symlinks, which allows attackers to have an
 unknown impact, related to LOOKUP_FOLLOW. (CVE-2010-1088)
 
 The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem
 in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9
 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure

[ MDVSA-2011:029 ] kernel

 Problem Description:

 A vulnerability was discovered and corrected in the Linux 2.6 kernel:
 The X.25 implementation does not properly parse facilities, which
 allows remote attackers to cause a denial of service (heap memory
 corruption and panic) or possibly have
 unspecified other impact via malformed data, a different vulnerability
 than CVE-2010-4164. (CVE-2010-3873)
 
 The bcm_connect function Broadcast Manager in the Controller Area

[ MDVSA-2011:051 ] kernel

 _______________________________________________________________________

 Problem Description:

 The do_anonymous_page function in mm/memory.c in the Linux kernel
 does not properly separate the stack and the heap, which allows
 context-dependent attackers to execute arbitrary code by writing
 to the bottom page of a shared memory segment, as demonstrated by a
 memory-exhaustion attack against the X.Org X server. (CVE-2010-2240)
 
 The do_tcp_setsockopt function in net/ipv4/tcp.c in the Linux kernel

Re: Summary of AS/400 Vulnerability Information

7) Known vulnerabilities:

CVE ID          Disclosed       Title
CVE-2000-1038   12/11/2000      The web administration interface for IBM AS/400
Firewall allows remote attackers to cause a denial of service via an
empty GET request.
CVE-2002-1731   12/31/2002      The System Request menu in IBM AS/400 allows
local users to list valid user accounts by viewing the object names that
are type USRPRF.
CVE-2005-0868   05/02/2005      AS/400 Telnet 5250 terminal emulation clients,

[SECURITY] [DSA-1950-1] New webkit packages fix several vulnerabilities

library for Gtk+. The Common Vulnerabilities and Exposures project identifies
the following problems:

CVE-2009-0945

Array index error in the insertItemBefore method in WebKit, allows remote
attackers to execute arbitrary code via a document with a SVGPathList data
structure containing a negative index in the SVGTransformList, SVGStringList,
SVGNumberList, SVGPathSegList, SVGPointList, or SVGLengthList SVGList object,
which triggers memory corruption.


[SECURITY] [DSA 1787-1] New Linux 2.6.24 packages fix several vulnerabilities

    be triggered by a local user by calling the svc_listen function
    twice on the same socket and reading /proc/net/atm/*vc.

CVE-2008-5395

    Helge Deller discovered a denial of service condition that allows
    local users on PA-RISC systems to crash a system by attempting to
    unwind a stack contiaining userspace addresses.

CVE-2008-5700


[ MDVSA-2009:321 ] pidgin

 The NSS plugin in libpurple in Pidgin 2.4.1 does not verify SSL
 certificates, which makes it easier for remote attackers to trick
 a user into accepting an invalid server certificate for a spoofed
 service. (CVE-2008-3532)
 
 Pidgin 2.4.1 allows remote attackers to cause a denial of service
 (crash) via a long filename that contains certain characters, as
 demonstrated using an MSN message that triggers the crash in the
 msn_slplink_process_msg function. (CVE-2008-2955)
 
 The UPnP functionality in Pidgin 2.0.0, and possibly other versions,

[ MDVSA-2010:055 ] poppler

 Affected: 2008.0
 _______________________________________________________________________

 Problem Description:

 An out-of-bounds reading flaw in the JBIG2 decoder allows remote
 attackers to cause a denial of service (crash) via a crafted PDF file
 (CVE-2009-0799).
 
 Multiple input validation flaws in the JBIG2 decoder allows
 remote attackers to execute arbitrary code via a crafted PDF file

[ MDVSA-2009:209 ] java-1.6.0-openjdk

 Multiple Java OpenJDK security vulnerabilities has been identified
 and fixed:
 
 The design of the W3C XML Signature Syntax and Processing (XMLDsig)
 recommendation specifies an HMAC truncation length (HMACOutputLength)
 but does not require a minimum for its length, which allows attackers
 to spoof HMAC-based signatures and bypass authentication by specifying
 a truncation length with a small number of bits (CVE-2009-0217).
 
 The Java Web Start framework does not properly check all application
 jar files trust and this allows context-dependent attackers to

[ MDVSA-2011:170 ] java-1.6.0-openjdk

 Problem Description:

 Security issues were identified and fixed in openjdk (icedtea6)
 and icedtea-web:
 
 IcedTea6 prior to 1.10.4 allows remote untrusted Java Web Start
 applications and untrusted Java applets to affect confidentiality
 via unknown vectors related to Networking (CVE-2011-3547).
 
 IcedTea6 prior to 1.10.4 allows remote untrusted Java Web Start
 applications and untrusted Java applets to affect confidentiality,

[ MDVSA-2011:175 ] poppler

 Problem Description:

 Multiple security vulnerabilities has been discovered and corrected
 in poppler:
 
 An out-of-bounds reading flaw in the JBIG2 decoder allows remote
 attackers to cause a denial of service (crash) via a crafted PDF file
 (CVE-2009-0799).
 
 Multiple input validation flaws in the JBIG2 decoder allows
 remote attackers to execute arbitrary code via a crafted PDF file

[SECURITY] [DSA 2358-1] openjdk-6 security update

        Integer overflow errors in the JPEG and font parser allow
        untrusted code (including applets) to elevate its privileges.

CVE-2011-0864
        Hotspot, the just-in-time compiler in OpenJDK, mishandled
        certain byte code instructions, allowing untrusted code
        (including applets) to crash the virtual machine.

CVE-2011-0865
        A race condition in signed object deserialization could
        allow untrusted code to modify signed content, apparently

[ MDVSA-2010:087 ] poppler

 
 Multiple integer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and
 earlier allow remote attackers to cause a denial of service (crash)
 via a crafted PDF file (CVE-2009-0147).
 
 The JBIG2 decoder in Xpdf 3.02pl2 and earlier allows remote attackers
 to cause a denial of service (crash) via a crafted PDF file that
 triggers a free of uninitialized memory (CVE-2009-0166).
 
 Heap-based buffer overflow in Xpdf 3.02pl2 and earlier, CUPS 1.3.9,
 and probably other products, allows remote attackers to execute

[SECURITY] [DSA-1988-1] New qt4-x11 packages fix several vulnerabilities

following problems:

CVE-2009-0945

Array index error in the insertItemBefore method in WebKit, as used in qt4-x11,
allows remote attackers to execute arbitrary code.


CVE-2009-1687

The JavaScript garbage collector in WebKit, as used in qt4-x11 does not

[ MDVSA-2009:283 ] cups

 of service (crash) via a crafted PDF file, related to (1)
 JBIG2Stream::readSymbolDictSeg, (2) JBIG2Stream::readSymbolDictSeg,
 and (3) JBIG2Stream::readGenericBitmap. (CVE-2009-0146, CVE-2009-0147)
 
 Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and
 earlier allows remote attackers to cause a denial of service (daemon
 crash) and possibly execute arbitrary code via a crafted TIFF image,
 which is not properly handled by the (1) _cupsImageReadTIFF function
 in the imagetops filter and (2) imagetoraster filter, leading to a
 heap-based buffer overflow. (CVE-2009-0163)
 

[SECURITY] [DSA 1794-1] New Linux 2.6.18 packages fix several vulnerabilities

    Local users can trigger a kernel BUG() due to a race condition in
    the do_setlk function.

CVE-2008-5395

    Helge Deller discovered a denial of service condition that allows
    local users on PA-RISC to crash the system by attempting to unwind
    a stack containing userspace addresses.

CVE-2008-5701


[ MDVSA-2011:054 ] java-1.6.0-openjdk

 the intended security policy by creating instances of ClassLoader
 (CVE-2010-4351).
 
 Unspecified vulnerability in the Java Runtime Environment (JRE)
 in Oracle Java SE and Java for Business 6 Update 23 and earlier,
 5.0 Update 27 and earlier, and 1.4.2_29 earlier allows remote
 untrusted Java Web Start applications and untrusted Java applets to
 affect integrity via unknown vectors related to Networking. NOTE: the
 previous information was obtained from the February 2011 CPU. Oracle
 has not commented on claims from a downstream vendor that this issue
 involves DNS cache poisoning by untrusted applets. (CVE-2010-4448)

FreeWebshop.org: multiple vulnerabilities

included within the web pages. If the user chooses a different language,
a cookie containing this language is send to the users browser. This
cookie is later used to find the correct language files. No validation
is performed on the content of this cookie. This allows attackers to
execute a directory traversal attack and included arbitrary local files,
allowing the disclosure of arbitrary file content or in some cases even
arbitrary code execution if the attacker can manipulate the content of
the included language file. This vulnerability exists in the following
code:

includes/initlang.inc.php:

[ MDVSA-2009:282-1 ] cups

 of service (crash) via a crafted PDF file, related to (1)
 JBIG2Stream::readSymbolDictSeg, (2) JBIG2Stream::readSymbolDictSeg,
 and (3) JBIG2Stream::readGenericBitmap. (CVE-2009-0146, CVE-2009-0147)
 
 Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and
 earlier allows remote attackers to cause a denial of service (daemon
 crash) and possibly execute arbitrary code via a crafted TIFF image,
 which is not properly handled by the (1) _cupsImageReadTIFF function
 in the imagetops filter and (2) imagetoraster filter, leading to a
 heap-based buffer overflow. (CVE-2009-0163)
 

[ MDVSA-2009:282 ] cups

 of service (crash) via a crafted PDF file, related to (1)
 JBIG2Stream::readSymbolDictSeg, (2) JBIG2Stream::readSymbolDictSeg,
 and (3) JBIG2Stream::readGenericBitmap. (CVE-2009-0146, CVE-2009-0147)
 
 Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and
 earlier allows remote attackers to cause a denial of service (daemon
 crash) and possibly execute arbitrary code via a crafted TIFF image,
 which is not properly handled by the (1) _cupsImageReadTIFF function
 in the imagetops filter and (2) imagetoraster filter, leading to a
 heap-based buffer overflow. (CVE-2009-0163)
 

[ MDVSA-2009:162 ] java-1.6.0-openjdk

 Problem Description:

 Multiple security vulnerabilities has been identified and fixed in
 Little cms library embedded in OpenJDK:
 
 A memory leak flaw allows remote attackers to cause a denial of service
 (memory consumption and application crash) via a crafted image file
 (CVE-2009-0581).
 
 Multiple integer overflows allow remote attackers to execute arbitrary
 code via a crafted image file that triggers a heap-based buffer

[ MDVSA-2009:137 ] java-1.6.0-openjdk

 Problem Description:

 Multiple security vulnerabilities has been identified and fixed in
 Little cms library embedded in OpenJDK:
 
 A memory leak flaw allows remote attackers to cause a denial of service
 (memory consumption and application crash) via a crafted image file
 (CVE-2009-0581).
 
 Multiple integer overflows allow remote attackers to execute arbitrary
 code via a crafted image file that triggers a heap-based buffer

[ MDVSA-2009:101 ] xpdf

 Affected: 2008.0, 2008.1, 2009.0, Corporate 3.0, Corporate 4.0
 _______________________________________________________________________

 Problem Description:

 Multiple buffer overflows in the JBIG2 decoder allows remote
 attackers to cause a denial of service (crash) via a crafted PDF file
 (CVE-2009-0146).
 
 Multiple integer overflows in the JBIG2 decoder allows remote
 attackers to cause a denial of service (crash) via a crafted PDF file

[SECURITY] [DSA 2188-1] webkit security update

the following problems:

CVE-2010-1783

  WebKit does not properly handle dynamic modification of a
  text node, which allows remote attackers to execute arbitrary code or cause
  a denial of service (memory corruption and application crash) via a
  crafted HTML document.


CVE-2010-2901

[SECURITY] [DSA 1800-1] New Linux 2.6.26 packages fix several vulnerabilities

    small number of 3-byte UTF-8 characters.

CVE-2009-1072

    Igor Zhbanov reported that nfsd was not properly dropping
    CAP_MKNOD, allowing users to create device nodes on file systems
    exported with root_squash.

CVE-2009-1184

    Dan Carpenter reported a coding issue in the selinux subsystem

[SECURITY] [DSA 2356-1] openjdk-6 security update

        chosen-plaintext attacks when block ciphers are used in CBC
        mode.

CVE-2011-3521
        The CORBA implementation contains a deserialization
        vulnerability in the IIOP implementation, allowing untrusted
        Java code (such as applets) to elevate its privileges.

CVE-2011-3544
        The Java scripting engine lacks necessary security manager
        checks, allowing untrusted Java code (such as applets) to

[ MDVSA-2010:027 ] kdelibs4

 Multiple vulnerabilities was discovered and corrected in kdelibs4:
 
 KDE KSSL in kdelibs 3.5.4, 4.2.4, and 4.3 does not properly handle a
 \'\0\' (NUL) character in a domain name in the Subject Alternative
 Name field of an X.509 certificate, which allows man-in-the-middle
 attackers to spoof arbitrary SSL servers via a crafted certificate
 issued by a legitimate Certification Authority, a related issue to
 CVE-2009-2408 (CVE-2009-2702).
 
 The JavaScript garbage collector in WebKit in Apple Safari before

[SECURITY] [DSA 1926-1] New TYPO3 packages fix several vulnerabilities

content management framework. The Common Vulnerabilities and Exposures
project identifies the following problems:

CVE-2009-3628

    The Backend subcomponent allows remote authenticated users to
    determine an encryption key via crafted input to a form field.

CVE-2009-3629

    Multiple cross-site scripting (XSS) vulnerabilities in the

[ MDVSA-2009:135 ] kernel

 
 The selinux_ip_postroute_iptables_compat function in
 security/selinux/hooks.c in the SELinux subsystem in the Linux kernel
 before 2.6.27.22, and 2.6.28.x before 2.6.28.10, when compat_net is
 enabled, omits calls to avc_has_perm for the (1) node and (2) port,
 which allows local users to bypass intended restrictions on network
 traffic. NOTE: this was incorrectly reported as an issue fixed in
 2.6.27.21. (CVE-2009-1184)
 
 The exit_notify function in kernel/exit.c in the Linux kernel
 before 2.6.30-rc1 does not restrict exit signals when the

Next Page>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!