Gentoo Linux Security Advisories

GLSA 200804-18 (normal) - Poppler: User-assisted execution of arbitrary code
Poppler does not handle fonts inside PDF files safely, allowing for execution of arbitrary code.
GLSA 200804-17 (normal) - Speex: User-assisted execution of arbitrary code
Improper input validation in Speex might lead to array indexing vulnerabilities in multiple player applications.
GLSA 200804-16 (high) - rsync: Execution of arbitrary code
A buffer overflow in rsync might lead to the remote execution of arbitrary code when extended attributes are being used.
GLSA 200804-15 (high) - libpng: Execution of arbitrary code
A vulnerability in libpng may allow for execution of arbitrary code in certain applications that handle untrusted images.
GLSA 200804-14 (normal) - Opera: Multiple vulnerabilities
Multiple vulnerabilities have been discovered in Opera, allowing for execution of arbitrary code.
GLSA 200804-13 (normal) - Asterisk: Multiple vulnerabilities
Multiple vulnerabilities have been found in Asterisk allowing for SQL injection, session hijacking and unauthorized usage.
GLSA 200804-12 (normal) - gnome-screensaver: Privilege escalation
gnome-screensaver allows local users to bypass authentication under certain configurations.
GLSA 200804-11 (normal) - policyd-weight: Insecure temporary file creation
policyd-weight uses temporary files in an insecure manner, allowing for a symlink attack.
GLSA 200804-10 (normal) - Tomcat: Multiple vulnerabilities
Multiple vulnerabilities in Tomcat may lead to local file overwriting, session hijacking or information disclosure.
GLSA 200804-09 (normal) - am-utils: Insecure temporary file creation
am-utils creates temporary files insecurely allowing local users to overwrite arbitrary files via a symlink attack.
GLSA 200804-08 (normal) - lighttpd: Multiple vulnerabilities
Multiple vulnerabilities in lighttpd may lead to information disclosure or a Denial of Service.
GLSA 200804-07 (high) - PECL APC: Buffer Overflow
A buffer overflow vulnerability in PECL APC might allow for the remote execution of arbitrary code.
GLSA 200804-06 (normal) - UnZip: User-assisted execution of arbitrary code
A double free vulnerability discovered in UnZip might lead to the execution of arbitrary code.
GLSA 200804-05 (normal) - NX: User-assisted execution of arbitrary code
NX uses code from the X.org X11 server which is prone to multiple vulnerabilities.
GLSA 200804-04 (normal) - MySQL: Multiple vulnerabilities
Multiple vulnerabilities in MySQL might lead to privilege escalation and Denial of Service.
GLSA 200804-03 (normal) - OpenSSH: Privilege escalation
Two flaws have been discovered in OpenSSH which could allow local attackers to escalate their privileges.
GLSA 200804-02 (normal) - bzip2: Denial of Service
A buffer overread vulnerability has been discovered in Bzip2.
GLSA 200804-01 (high) - CUPS: Multiple vulnerabilities
Multiple vulnerabilities have been discovered in CUPS, allowing for the remote execution of arbitrary code and a Denial of Service.
GLSA 200803-32 (normal) - Wireshark: Denial of Service
Multiple Denial of Service vulnerabilities have been discovered in Wireshark.
GLSA 200803-31 (high) - MIT Kerberos 5: Multiple vulnerabilities
Multiple vulnerabilities have been found in MIT Kerberos 5, which could allow a remote unauthenticated user to execute arbitrary code with root privileges.

« Previous 1 ... 111 112 113 114 115 ... 173 Next »

Also available in: Atom

Thank you!