Уведомления о безопасности GLSA

GLSA 200602-08 (высокая) - libtasn1, GNU TLS: Security flaw in DER decoding
A flaw in the parsing of Distinguished Encoding Rules (DER) has been discovered in libtasn1, potentially resulting in the execution of arbitrary code.
GLSA 200602-07 (средняя) - Sun JDK/JRE: Applet privilege escalation
Sun's Java Development Kit (JDK) and Java Runtime Environment (JRE) do not adequately constrain applets from privilege escalation and arbitrary code execution.
GLSA 200602-06 (средняя) - ImageMagick: Format string vulnerability
A vulnerability in ImageMagick allows attackers to crash the application and potentially execute arbitrary code.
GLSA 200602-05 (средняя) - KPdf: Heap based overflow
KPdf includes vulnerable Xpdf code to handle PDF files, making it vulnerable to the execution of arbitrary code.
GLSA 200602-04 (средняя) - Xpdf, Poppler: Heap overflow
Xpdf and Poppler are vulnerable to a heap overflow that may be exploited to execute arbitrary code.
GLSA 200602-03 (средняя) - Apache: Multiple vulnerabilities
Apache can be exploited for cross-site scripting attacks and is vulnerable to a Denial of Service attack.
GLSA 200602-02 (средняя) - ADOdb: PostgresSQL command injection
ADOdb is vulnerable to SQL injections if used in conjunction with a PostgreSQL database.
GLSA 200602-01 (средняя) - GStreamer FFmpeg plugin: Heap-based buffer overflow
The GStreamer FFmpeg plugin is vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.
GLSA 200601-17 (средняя) - Xpdf, Poppler, GPdf, libextractor, pdftohtml: Heap overflows
Xpdf, Poppler, GPdf, libextractor and pdftohtml are vulnerable to integer overflows that may be exploited to execute arbitrary code.
GLSA 200601-16 (средняя) - MyDNS: Denial of Service
MyDNS contains a vulnerability that may lead to a Denial of Service attack.
GLSA 200601-15 (высокая) - Paros: Default administrator password
Paros's database component is installed without a password, allowing execution of arbitrary system commands.
GLSA 200601-14 (высокая) - LibAST: Privilege escalation
A buffer overflow in LibAST may result in execution of arbitrary code with escalated privileges.
GLSA 200601-13 (низкая) - Gallery: Cross-site scripting vulnerability
Gallery is possibly vulnerable to a cross-site scripting attack that could allow arbitrary JavaScript code execution.
GLSA 200601-12 (низкая) - Trac: Cross-site scripting vulnerability
Trac is vulnerable to a cross-site scripting attack that could allow arbitrary JavaScript code execution.
GLSA 200601-11 (средняя) - KDE kjs: URI heap overflow vulnerability
KDE fails to properly validate URIs when handling javascript, potentially resulting in the execution of arbitrary code.
GLSA 200601-10 (средняя) - Sun and Blackdown Java: Applet privilege escalation
Sun's and Blackdown's JDK or JRE may allow untrusted applets to elevate their privileges.
GLSA 200601-09 (средняя) - Wine: Windows Metafile SETABORTPROC vulnerability
There is a flaw in Wine in the handling of Windows Metafiles (WMF) files, which could possibly result in the execution of arbitrary code.
GLSA 200601-08 (средняя) - Blender: Heap-based buffer overflow
Blender is vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.
GLSA 200601-07 (высокая) - ClamAV: Remote execution of arbitrary code
ClamAV is vulnerable to a buffer overflow which may lead to remote execution of arbitrary code.
GLSA 200601-06 (средняя) - xine-lib, FFmpeg: Heap-based buffer overflow
xine-lib and FFmpeg are vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.

« Предыдущий 1 ... 156 157 158 159 160 ... 190 Следующий »

Экспортировать в Atom

Спасибо!