Gentoo Linux Security Advisories

GLSA 200603-22 (normal) - PHP: Format string and XSS vulnerabilities
Multiple vulnerabilities in PHP allow remote attackers to inject arbitrary HTTP headers, perform cross site scripting or in some cases execute arbitrary code.
GLSA 200603-21 (high) - Sendmail: Race condition in the handling of asynchronous signals
Sendmail is vulnerable to a race condition which could lead to the execution of arbitrary code with sendmail privileges.
GLSA 200603-20 (normal) - Macromedia Flash Player: Arbitrary code execution
Multiple vulnerabilities have been identified that allows arbitrary code execution on a user's system via the handling of malicious SWF files.
GLSA 200603-19 (normal) - cURL/libcurl: Buffer overflow in the handling of TFTP URLs
libcurl is affected by a buffer overflow in the handling of URLs for the TFTP protocol, which could be exploited to compromise a user's system.
GLSA 200603-18 (normal) - Pngcrush: Buffer overflow
Pngcrush is vulnerable to a buffer overflow which could potentially lead to the execution of arbitrary code.
GLSA 200603-17 (high) - PeerCast: Buffer overflow
PeerCast is vulnerable to a buffer overflow that may lead to the execution of arbitrary code.
GLSA 200603-16 (high) - Metamail: Buffer overflow
A buffer overflow in Metamail could possibly be exploited to execute arbitrary code.
GLSA 200603-15 (low) - Crypt::CBC: Insecure initialization vector
Crypt::CBC uses an insecure initialization vector, potentially resulting in a weaker encryption.
GLSA 200603-14 (normal) - Heimdal: rshd privilege escalation
An error in the rshd daemon of Heimdal could allow authenticated users to elevate privileges.
GLSA 200603-13 (normal) - PEAR-Auth: Potential authentication bypass
PEAR-Auth did not correctly verify data passed to the DB and LDAP containers, thus allowing to inject false credentials to bypass the authentication.
GLSA 200603-12 (normal) - zoo: Buffer overflow
A buffer overflow in zoo may be exploited to execute arbitrary when creating archives of specially crafted directories and files.
GLSA 200603-11 (normal) - Freeciv: Denial of Service
A memory allocation bug in Freeciv allows a remote attacker to perform a Denial of Service attack.
GLSA 200603-10 (high) - Cube: Multiple vulnerabilities
Cube is vulnerable to a buffer overflow, invalid memory access and remote client crashes, possibly leading to a Denial of Service or remote code execution.
GLSA 200603-09 (low) - SquirrelMail: Cross-site scripting and IMAP command injection
SquirrelMail is vulnerable to several cross-site scripting vulnerabilities and IMAP command injection.
GLSA 200603-08 (normal) - GnuPG: Incorrect signature verification
GnuPG may erroneously report a modified or unsigned message has a valid digital signature.
GLSA 200603-07 (normal) - flex: Potential insecure code generation
flex might generate code with a buffer overflow, making applications using such scanners vulnerable to the execution of arbitrary code.
GLSA 200603-06 (normal) - GNU tar: Buffer overflow
A malicious tar archive could trigger a Buffer overflow in GNU tar, potentially resulting in the execution of arbitrary code.
GLSA 200603-05 (normal) - zoo: Stack-based buffer overflow
A stack-based buffer overflow in zoo may be exploited to execute arbitrary code through malicious ZOO archives.
GLSA 200603-04 (normal) - IMAP Proxy: Format string vulnerabilities
Format string vulnerabilities in IMAP Proxy may lead to the execution of arbitrary code when connected to malicious IMAP servers.
GLSA 200603-03 (normal) - MPlayer: Multiple integer overflows
MPlayer is vulnerable to integer overflows in FFmpeg and ASF decoding that could potentially result in the execution of arbitrary code.

« Previous 1 ... 138 139 140 141 142 ... 173 Next »

Also available in: Atom

Thank you!