New User, Welcome!     Login

Next Page >>

possibly

[ MDVSA-2010:198 ] kernel

 from kernel memory via unspecified vectors. (CVE-2009-3228)
 
 The do_pages_move function in mm/migrate.c in the Linux kernel before
 2.6.33-rc7 does not validate node values, which allows local users
 to read arbitrary kernel memory locations, cause a denial of service
 (OOPS), and possibly have unspecified other impact by specifying a
 node that is not part of the kernel node set. (CVE-2010-0415)
 
 The ATI Rage 128 (aka r128) driver in the Linux kernel before
 2.6.31-git11 does not properly verify Concurrent Command Engine (CCE)
 state initialization, which allows local users to cause a denial of

[ MDVSA-2010:188 ] kernel

 from kernel memory via unspecified vectors. (CVE-2009-3228)
 
 The do_pages_move function in mm/migrate.c in the Linux kernel before
 2.6.33-rc7 does not validate node values, which allows local users
 to read arbitrary kernel memory locations, cause a denial of service
 (OOPS), and possibly have unspecified other impact by specifying a
 node that is not part of the kernel node set. (CVE-2010-0415)
 
 The ATI Rage 128 (aka r128) driver in the Linux kernel before
 2.6.31-git11 does not properly verify Concurrent Command Engine (CCE)
 state initialization, which allows local users to cause a denial of

[USN-1112-1] Firefox and Xulrunner vulnerabilities

- firefox-3.0: safe and easy web browser from Mozilla

Details:

It was discovered that there was a vulnerability in the memory handling of
certain types of content. An attacker could exploit this to possibly run
arbitrary code as the user running Firefox. (CVE-2011-0081)

It was discovered that Firefox incorrectly handled certain JavaScript
requests. An attacker could exploit this to possibly run arbitrary code as
the user running Firefox. (CVE-2011-0069)

Fwd: [USN-1122-1] Thunderbird vulnerabilities

- thunderbird: mail/news client with RSS and integrated spam filter support

Details:

It was discovered that there was a vulnerability in the memory handling of
certain types of content. An attacker could exploit this to possibly run
arbitrary code as the user running Thunderbird. (CVE-2011-0081)

It was discovered that Thunderbird incorrectly handled certain JavaScript
requests. If JavaScript were enabled, an attacker could exploit this to
possibly run arbitrary code as the user running Thunderbird.

[USN-1122-2] Thunderbird vulnerabilities

This update provides the corresponding fixes for Natty.

Original advisory details:

 It was discovered that there was a vulnerability in the memory handling of
 certain types of content. An attacker could exploit this to possibly run
 arbitrary code as the user running Thunderbird. (CVE-2011-0081)
 
 It was discovered that Thunderbird incorrectly handled certain JavaScript
 requests. If JavaScript were enabled, an attacker could exploit this to
 possibly run arbitrary code as the user running Thunderbird.

[USN-930-4] Firefox and Xulrunner vulnerabilities

provides the corresponding updates for Ubuntu 9.04 and 9.10, along with
additional updates affecting Firefox 3.6.6.

Several flaws were discovered in the browser engine of Firefox. If a user
were tricked into viewing a malicious site, a remote attacker could use
this to crash the browser or possibly run arbitrary code as the user
invoking the program. (CVE-2010-1208, CVE-2010-1209, CVE-2010-1211,
CVE-2010-1212)

An integer overflow was discovered in how Firefox processed plugin
parameters. An attacker could exploit this to crash the browser or possibly

[USN-930-5] ant, apturl, Epiphany, gluezilla, gnome-python-extras, liferea, mozvoikko, OpenJDK, packagekit, ubufox, webfav, yelp update

Original advisory details:

 If was discovered that Firefox could be made to access freed memory. If a
 user were tricked into viewing a malicious site, a remote attacker could
 cause a denial of service or possibly execute arbitrary code with the
 privileges of the user invoking the program. This issue only affected
 Ubuntu 8.04 LTS. (CVE-2010-1121)
 
 Several flaws were discovered in the browser engine of Firefox. If a
 user were tricked into viewing a malicious site, a remote attacker could

[USN-1093-1] Linux Kernel vulnerabilities (Marvell Dove)

read or write disk blocks that had changed file assignment or had become
unlinked, leading to a loss of privacy. (CVE-2010-2943)

Tavis Ormandy discovered that the IRDA subsystem did not correctly shut
down. A local attacker could exploit this to cause the system to crash
or possibly gain root privileges. (Ubuntu 10.10 was not affected.)
(CVE-2010-2954)

Brad Spengler discovered that the wireless extensions did not correctly
validate certain request sizes. A local attacker could exploit this
to read portions of kernel memory, leading to a loss of privacy. (Only

[ MDVSA-2011:141 ] firefox

 web site (CVE-2011-2372).
 
 Multiple unspecified vulnerabilities in the browser engine in Mozilla
 Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0,
 and SeaMonkey before 2.4 allow remote attackers to cause a denial of
 service (memory corruption and application crash) or possibly execute
 arbitrary code via unknown vectors (CVE-2011-2995).
 
 Multiple unspecified vulnerabilities in the browser engine in Mozilla
 Firefox 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allow
 remote attackers to cause a denial of service (memory corruption and

[USN-853-1] Firefox and Xulrunner vulnerabilities

Details follow:

Alin Rad Pop discovered a heap-based buffer overflow in Firefox when it
converted strings to floating point numbers. If a user were tricked into
viewing a malicious website, a remote attacker could cause a denial of service
or possibly execute arbitrary code with the privileges of the user invoking the
program. (CVE-2009-1563)

Jeremy Brown discovered that the Firefox Download Manager was vulnerable to
symlink attacks. A local attacker could exploit this to create or overwrite
files with the privileges of the user invoking the program. (CVE-2009-3274)

[USN-853-2] Firefox and Xulrunner regression

Original advisory details:

 Alin Rad Pop discovered a heap-based buffer overflow in Firefox when it
 converted strings to floating point numbers. If a user were tricked into
 viewing a malicious website, a remote attacker could cause a denial of service
 or possibly execute arbitrary code with the privileges of the user invoking the
 program. (CVE-2009-1563)
 
 Jeremy Brown discovered that the Firefox Download Manager was vulnerable to
 symlink attacks. A local attacker could exploit this to create or overwrite
 files with the privileges of the user invoking the program. (CVE-2009-3274)

[ MDVSA-2011:027 ] openoffice.org

 to overwrite arbitrary files via a .. (dot dot) in an entry in an
 XSLT JAR filter description file, an Extension (aka OXT) file, or
 unspecified other JAR or ZIP files (CVE-2010-3450).
 
 Use-after-free vulnerability in oowriter allows remote attackers to
 cause a denial of service (application crash) or possibly execute
 arbitrary code via malformed tables in an RTF document (CVE-2010-3451).
 
 Use-after-free vulnerability in oowriter allows remote attackers to
 cause a denial of service (application crash) or possibly execute
 arbitrary code via crafted tags in an RTF document (CVE-2010-3452).

[SECURITY] [DSA 2188-1] webkit security update

CVE-2010-2901

  The rendering implementation in WebKit allows
  remote attackers to cause a denial of service (memory corruption) or possibly
  have unspecified other impact via unknown vectors.


CVE-2010-4199


[USN-1104-1] FFmpeg vulnerabilities

Details follow:

Cesar Bernardini and Felipe Andres Manzano discovered that FFmpeg
incorrectly handled certain malformed flic files. If a user were tricked
into opening a crafted flic file, an attacker could cause a denial of
service via application crash, or possibly execute arbitrary code with the
privileges of the user invoking the program. This issue only affected
Ubuntu 8.04 LTS, 9.10 and 10.04 LTS. (CVE-2010-3429)

Dan Rosenberg discovered that FFmpeg incorrectly handled certain malformed
wmv files. If a user were tricked into opening a crafted wmv file, an

[SECURITY] [DSA 2245-1] chromium-browser security update

CVE-2011-1292

  Use-after-free vulnerability in the frame-loader implementation in Google
  Chrome allows remote attackers to cause a denial of service or possibly
  have unspecified other impact via unknown vectors.


CVE-2011-1293


CORE-2008-0125: CitectSCADA ODBC service vulnerability

. 2008-03-06:
Email from the vendor's technical architect confirms reception of the
report and indicating that there are not concerns around publication of
a security advisory disclosing the vulnerability. The vendor asks for a
phone conference to ensure that both Core and Citect have a common
understanding of the issue and expresses the possibility  of adding
additional information to the advisory. The vendor also states that it
will formulate a plan for handling this issue.

. 2008-03-12:
Core asks to continue the discussion concerning the vulnerability by

[ MDVSA-2010:071 ] mozilla-thunderbird

 mozilla-thunderbird:
 
 Mozilla Thunderbird before 2.0.0.24 and SeaMonkey before 1.1.19
 process e-mail attachments with a parser that performs casts and
 line termination incorrectly, which allows remote attackers to
 cause a denial of service (application crash) or possibly execute
 arbitrary code via a crafted message, related to message indexing
 (CVE-2009-0689).
 
 Integer overflow in a base64 decoding function in Mozilla Firefox
 before 3.0.12 and Thunderbird allows remote attackers to cause a

[ MDVSA-2010:055 ] poppler

 Multiple buffer overflows in the JBIG2 MMR decoder allows remote
 attackers to cause denial of service or to execute arbitrary code
 via a crafted PDF file (CVE-2009-1182, CVE-2009-1183).
 
 An integer overflow in the JBIG2 decoding feature allows remote
 attackers to cause a denial of service (crash) and possibly execute
 arbitrary code via vectors related to CairoOutputDev (CVE-2009-1187).
 
 An integer overflow in the JBIG2 decoding feature allows remote
 attackers to execute arbitrary code or cause a denial of service
 (application crash) via a crafted PDF document (CVE-2009-1188).

[ MDVSA-2009:311 ] ghostscript

 Multiple security vulnerabilities has been identified and fixed
 in ghostscript:
 
 A buffer underflow in Ghostscript's CCITTFax decoding filter allows
 remote attackers to cause denial of service and possibly to execute
 arbitrary by using a crafted PDF file (CVE-2007-6725).
 
 Buffer overflow in Ghostscript's BaseFont writer module allows
 remote attackers to cause a denial of service and possibly to execute
 arbitrary code via a crafted Postscript file (CVE-2008-6679).

[ MDVSA-2009:095 ] ghostscript

 _______________________________________________________________________

 Problem Description:

 A buffer underflow in Ghostscript's CCITTFax decoding filter allows
 remote attackers to cause denial of service and possibly to execute
 arbitrary by using a crafted PDF file (CVE-2007-6725).
 
 Buffer overflow in Ghostscript's BaseFont writer module allows
 remote attackers to cause a denial of service and possibly to execute
 arbitrary code via a crafted Postscript file (CVE-2008-6679).

[ GLSA 200805-18 ] Mozilla products: Multiple vulnerabilities

The following vulnerabilities were reported in all mentioned Mozilla
products:

* Jesse Ruderman, Kai Engert, Martijn Wargers, Mats Palmgren, and
  Paul Nickerson reported browser crashes related to JavaScript
  methods, possibly triggering memory corruption (CVE-2008-0412).

* Carsten Book, Wesley Garland, Igor Bukanov, moz_bug_r_a4, shutdown,
  Philip Taylor, and tgirmann reported crashes in the JavaScript
  engine, possibly triggering memory corruption (CVE-2008-0413).


[USN-957-1] Firefox and Xulrunner vulnerabilities

Details follow:

Several flaws were discovered in the browser engine of Firefox. If a user
were tricked into viewing a malicious site, a remote attacker could use
this to crash the browser or possibly run arbitrary code as the user
invoking the program. (CVE-2010-1208, CVE-2010-1209, CVE-2010-1211,
CVE-2010-1212)

An integer overflow was discovered in how Firefox processed plugin
parameters. An attacker could exploit this to crash the browser or possibly

[USN-957-2] Firefox and Xulrunner vulnerability

Original advisory details:

 Several flaws were discovered in the browser engine of Firefox. If a user
 were tricked into viewing a malicious site, a remote attacker could use
 this to crash the browser or possibly run arbitrary code as the user
 invoking the program. (CVE-2010-1208, CVE-2010-1209, CVE-2010-1211,
 CVE-2010-1212)
 
 An integer overflow was discovered in how Firefox processed plugin
 parameters. An attacker could exploit this to crash the browser or possibly

[SECURITY] [DSA-2105-1] New freetype packages fix several vulnerabilities

CVE-2010-2541

  Buffer overflow in ftmulti.c in the ftmulti demo program in FreeType
  allows remote attackers to cause a denial of service (application
  crash) or possibly execute arbitrary code via a crafted font file.

CVE-2010-2805

  The FT_Stream_EnterFrame function in base/ftstream.c in FreeType does
  not properly validate certain position values, which allows remote

[USN-975-1] Firefox and Xulrunner vulnerabilities

application that use Xulrunner to make all the necessary changes.

Details follow:

Several dangling pointer vulnerabilities were discovered in Firefox. An
attacker could exploit this to crash the browser or possibly run arbitrary
code as the user invoking the program. (CVE-2010-2760, CVE-2010-2767,
CVE-2010-3167)

Blake Kaplan and Michal Zalewski discovered several weaknesses in the
XPCSafeJSObjectWrapper (SJOW) security wrapper. If a user were tricked into

[USN-978-1] Thunderbird vulnerabilities

all the necessary changes.

Details follow:

Several dangling pointer vulnerabilities were discovered in Thunderbird. An
attacker could exploit this to crash Thunderbird or possibly run arbitrary
code as the user invoking the program. (CVE-2010-2760, CVE-2010-2767,
CVE-2010-3167)

It was discovered that the XPCSafeJSObjectWrapper (SJOW) security wrapper
did not always honor the same-origin policy. If JavaScript was enabled, an

[USN-978-2] Thunderbird regression

We apologize for the inconvenience.

Original advisory details:

 Several dangling pointer vulnerabilities were discovered in Thunderbird. An
 attacker could exploit this to crash Thunderbird or possibly run arbitrary
 code as the user invoking the program. (CVE-2010-2760, CVE-2010-2767,
 CVE-2010-3167)
 
 It was discovered that the XPCSafeJSObjectWrapper (SJOW) security wrapper
 did not always honor the same-origin policy. If JavaScript was enabled, an

[USN-975-2] Firefox and Xulrunner regression

We apologize for the inconvenience.

Original advisory details:

 Several dangling pointer vulnerabilities were discovered in Firefox. An
 attacker could exploit this to crash the browser or possibly run arbitrary
 code as the user invoking the program. (CVE-2010-2760, CVE-2010-2767,
 CVE-2010-3167)
 
 Blake Kaplan and Michal Zalewski discovered several weaknesses in the
 XPCSafeJSObjectWrapper (SJOW) security wrapper. If a user were tricked into

[USN-989-1] PHP vulnerabilities

to bypass safe_mode restrictions. This issue only affected Ubuntu 8.04 LTS,
9.04 and 9.10. (CVE-2010-1130)

Stefan Esser discovered that PHP incorrectly decoded remote HTTP chunked
encoding streams. An attacker could exploit this issue to cause the PHP
server to crash and possibly execute arbitrary code with application
privileges. This issue only affected Ubuntu 10.04 LTS. (CVE-2010-1866)

Mateusz Kocielski discovered that certain PHP SQLite functions incorrectly
handled empty SQL queries. An attacker could exploit this issue to possibly
execute arbitrary code with application privileges. (CVE-2010-1868)

[ MDVSA-2010:221 ] openoffice.org

 Integer overflow allows remote attackers to execute arbitrary code
 via a crafted XPM file that triggers a heap-based buffer overflow
 (CVE-2009-2949).
 
 Heap-based buffer overflow allows remote attackers to cause a denial
 of service (application crash) or possibly execute arbitrary code
 via a crafted GIF file, related to LZW decompression (CVE-2009-2950).
 
 Integer underflow allows remote attackers to cause a denial of
 service (application crash) or possibly execute arbitrary code via
 a crafted sprmTDefTable table property modifier in a Word document

Next Page>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!