Уведомления о безопасности GLSA
GLSA 200602-08 (высокая) - libtasn1, GNU TLS: Security flaw in DER decoding
A flaw in the parsing of Distinguished Encoding Rules (DER) has been discovered in libtasn1, potentially resulting in the execution of arbitrary code.
A flaw in the parsing of Distinguished Encoding Rules (DER) has been discovered in libtasn1, potentially resulting in the execution of arbitrary code.
GLSA 200602-07 (средняя) - Sun JDK/JRE: Applet privilege escalation
Sun's Java Development Kit (JDK) and Java Runtime Environment (JRE) do not adequately constrain applets from privilege escalation and arbitrary code execution.
Sun's Java Development Kit (JDK) and Java Runtime Environment (JRE) do not adequately constrain applets from privilege escalation and arbitrary code execution.
GLSA 200602-06 (средняя) - ImageMagick: Format string vulnerability
A vulnerability in ImageMagick allows attackers to crash the application and potentially execute arbitrary code.
A vulnerability in ImageMagick allows attackers to crash the application and potentially execute arbitrary code.
GLSA 200602-05 (средняя) - KPdf: Heap based overflow
KPdf includes vulnerable Xpdf code to handle PDF files, making it vulnerable to the execution of arbitrary code.
KPdf includes vulnerable Xpdf code to handle PDF files, making it vulnerable to the execution of arbitrary code.
GLSA 200602-04 (средняя) - Xpdf, Poppler: Heap overflow
Xpdf and Poppler are vulnerable to a heap overflow that may be exploited to execute arbitrary code.
Xpdf and Poppler are vulnerable to a heap overflow that may be exploited to execute arbitrary code.
GLSA 200602-03 (средняя) - Apache: Multiple vulnerabilities
Apache can be exploited for cross-site scripting attacks and is vulnerable to a Denial of Service attack.
Apache can be exploited for cross-site scripting attacks and is vulnerable to a Denial of Service attack.
GLSA 200602-02 (средняя) - ADOdb: PostgresSQL command injection
ADOdb is vulnerable to SQL injections if used in conjunction with a PostgreSQL database.
ADOdb is vulnerable to SQL injections if used in conjunction with a PostgreSQL database.
GLSA 200602-01 (средняя) - GStreamer FFmpeg plugin: Heap-based buffer overflow
The GStreamer FFmpeg plugin is vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.
The GStreamer FFmpeg plugin is vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.
GLSA 200601-17 (средняя) - Xpdf, Poppler, GPdf, libextractor, pdftohtml: Heap overflows
Xpdf, Poppler, GPdf, libextractor and pdftohtml are vulnerable to integer overflows that may be exploited to execute arbitrary code.
Xpdf, Poppler, GPdf, libextractor and pdftohtml are vulnerable to integer overflows that may be exploited to execute arbitrary code.
GLSA 200601-16 (средняя) - MyDNS: Denial of Service
MyDNS contains a vulnerability that may lead to a Denial of Service attack.
MyDNS contains a vulnerability that may lead to a Denial of Service attack.
GLSA 200601-15 (высокая) - Paros: Default administrator password
Paros's database component is installed without a password, allowing execution of arbitrary system commands.
Paros's database component is installed without a password, allowing execution of arbitrary system commands.
GLSA 200601-14 (высокая) - LibAST: Privilege escalation
A buffer overflow in LibAST may result in execution of arbitrary code with escalated privileges.
A buffer overflow in LibAST may result in execution of arbitrary code with escalated privileges.
GLSA 200601-13 (низкая) - Gallery: Cross-site scripting vulnerability
Gallery is possibly vulnerable to a cross-site scripting attack that could allow arbitrary JavaScript code execution.
Gallery is possibly vulnerable to a cross-site scripting attack that could allow arbitrary JavaScript code execution.
GLSA 200601-12 (низкая) - Trac: Cross-site scripting vulnerability
Trac is vulnerable to a cross-site scripting attack that could allow arbitrary JavaScript code execution.
Trac is vulnerable to a cross-site scripting attack that could allow arbitrary JavaScript code execution.
GLSA 200601-11 (средняя) - KDE kjs: URI heap overflow vulnerability
KDE fails to properly validate URIs when handling javascript, potentially resulting in the execution of arbitrary code.
KDE fails to properly validate URIs when handling javascript, potentially resulting in the execution of arbitrary code.
GLSA 200601-10 (средняя) - Sun and Blackdown Java: Applet privilege escalation
Sun's and Blackdown's JDK or JRE may allow untrusted applets to elevate their privileges.
Sun's and Blackdown's JDK or JRE may allow untrusted applets to elevate their privileges.
GLSA 200601-09 (средняя) - Wine: Windows Metafile SETABORTPROC vulnerability
There is a flaw in Wine in the handling of Windows Metafiles (WMF) files, which could possibly result in the execution of arbitrary code.
There is a flaw in Wine in the handling of Windows Metafiles (WMF) files, which could possibly result in the execution of arbitrary code.
GLSA 200601-08 (средняя) - Blender: Heap-based buffer overflow
Blender is vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.
Blender is vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.
GLSA 200601-07 (высокая) - ClamAV: Remote execution of arbitrary code
ClamAV is vulnerable to a buffer overflow which may lead to remote execution of arbitrary code.
ClamAV is vulnerable to a buffer overflow which may lead to remote execution of arbitrary code.
GLSA 200601-06 (средняя) - xine-lib, FFmpeg: Heap-based buffer overflow
xine-lib and FFmpeg are vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.
xine-lib and FFmpeg are vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.
« Предыдущий 1 ... 156 157 158 159 160 ... 190 Следующий »
Экспортировать в Atom