Linux Advisories

Divulgar conteúdo
The central voice for Linux and Open Source security news.
Atualizado: 29 minutos 38 segundos atrás

Ubuntu: 1356-1: Linux kernel (OMAP4) vulnerabilities

19 horas 54 minutos atrás
LinuxSecurity.com: Several security issues were fixed in the kernel.

Debian: 2403-2: php5: code injection

seg, 02/06/2012 - 11:22
LinuxSecurity.com: Stefan Esser discovered that the implementation of the max_input_vars configuration variable in a recent PHP security update was flawed such that it allows remote attackers to crash PHP or potentially execute code. [More...]

Mandriva: 2012:014: glpi

seg, 02/06/2012 - 11:06
LinuxSecurity.com: A vulnerability has been found and corrected in GLPI: The autocompletion functionality in GLPI before 0.80.2 does not blacklist certain username and password fields, which allows remote attackers to obtain sensitive information via a crafted POST request [More...]

Red Hat: 2012:0100-01: MRG Grid: Moderate Advisory

seg, 02/06/2012 - 10:57
LinuxSecurity.com: Updated Grid component packages that fix multiple security issues, multiple bugs, and add various enhancements are now available for Red Hat Enterprise MRG 2 for Red Hat Enterprise Linux 5. [More...]

Red Hat: 2012:0099-01: MRG Grid: Moderate Advisory

seg, 02/06/2012 - 10:56
LinuxSecurity.com: Updated Grid component packages that fix multiple security issues, multiple bugs, and add various enhancements are now available for Red Hat Enterprise MRG 2 for Red Hat Enterprise Linux 6. [More...]

Debian: 2405-1: apache2: multiple issues

seg, 02/06/2012 - 01:24
LinuxSecurity.com: Several vulnerabilities have been found in the Apache HTTPD Server: CVE-2011-3607: [More...]

Debian: 2404-1: xen-qemu-dm-4.0: buffer overflow

dom, 02/05/2012 - 04:47
LinuxSecurity.com: Nicolae Mogoraenu discovered a heap overflow in the emulated e1000e network interface card of QEMU, which is used in the xen-qemu-dm-4.0 packages. This vulnerability might enable to malicious guest systems to crash the host system or escalate their privileges. [More...]

Debian: 2384-2: cacti: Multiple vulnerabilities

sab, 02/04/2012 - 09:19
LinuxSecurity.com: It was discovered that the last security update for cacti, DSA-2384-1, introduced a regression in lenny. For the oldstable distribution (lenny), this problem has been fixed in [More...]

Ubuntu: 1355-2: Mozvoikko update

sex, 02/03/2012 - 14:46
LinuxSecurity.com: This update provides compatible Mozvoikko packages for the latest Firefox.

Ubuntu: 1355-1: Firefox vulnerabilities

sex, 02/03/2012 - 14:46
LinuxSecurity.com: Several security issues were fixed in Firefox.

Ubuntu: 1355-3: ubufox and webfav update

sex, 02/03/2012 - 14:46
LinuxSecurity.com: This update provides compatible ubufox and webfav packages for the latestFirefox.

Mandriva: 2012:013: mozilla

sex, 02/03/2012 - 08:58
LinuxSecurity.com: Security issues were identified and fixed in mozilla firefox and thunderbird: Use-after-free vulnerability in Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, [More...]

Red Hat: 2012:0093-01: php: Critical Advisory

qui, 02/02/2012 - 15:27
LinuxSecurity.com: Updated php packages that fix one security issue are now available for Red Hat Enterprise Linux 4, 5 and 6. The Red Hat Security Response Team has rated this update as having critical [More...]

Red Hat: 2012:0095-01: ghostscript: Moderate Advisory

qui, 02/02/2012 - 15:24
LinuxSecurity.com: Updated ghostscript packages that fix multiple security issues are now available for Red Hat Enterprise Linux 5 and 6. The Red Hat Security Response Team has rated this update as having moderate [More...]

Red Hat: 2012:0092-01: php53: Critical Advisory

qui, 02/02/2012 - 15:15
LinuxSecurity.com: Updated php53 packages that fix one security issue are now available for Red Hat Enterprise Linux 5. The Red Hat Security Response Team has rated this update as having critical [More...]

Red Hat: 2012:0094-01: freetype: Important Advisory

qui, 02/02/2012 - 15:15
LinuxSecurity.com: Updated freetype packages that fix multiple security issues are now available for Red Hat Enterprise Linux 5.6 Extended Update Support. The Red Hat Security Response Team has rated this update as having [More...]

Red Hat: 2012:0096-01: ghostscript: Moderate Advisory

qui, 02/02/2012 - 15:15
LinuxSecurity.com: Updated ghostscript packages that fix two security issues are now available for Red Hat Enterprise Linux 4. The Red Hat Security Response Team has rated this update as having moderate [More...]

Debian: 2403-1: php5: code injection

qui, 02/02/2012 - 13:30
LinuxSecurity.com: Stefan Esser discovered that the implementation of the max_input_vars configuration variable in a recent PHP security update was flawed such that it allows remote attackers to crash PHP or potentially execute code. [More...]

Debian: 2402-1: iceape: Multiple vulnerabilities

qui, 02/02/2012 - 12:14
LinuxSecurity.com: Several vulnerabilities have been found in the Iceape internet suite, an unbranded version of Seamonkey: CVE-2011-3670 [More...]

Debian: 2400-1: iceweasel: Multiple vulnerabilities

qui, 02/02/2012 - 12:09
LinuxSecurity.com: Several vulnerabilities have been discovered in Iceweasel, a web browser based on Firefox. The included XULRunner library provides rendering services for several other applications included in Debian. [More...]