Уведомления о безопасности GLSA
GLSA 200601-05 (высокая) - mod_auth_pgsql: Multiple format string vulnerabilities
Format string vulnerabilities in mod_auth_pgsql may lead to the execution of arbitrary code.
Format string vulnerabilities in mod_auth_pgsql may lead to the execution of arbitrary code.
GLSA 200601-04 (высокая) - VMware Workstation: Vulnerability in NAT networking
VMware guest operating systems can execute arbitrary code with elevated privileges on the host operating system through a flaw in NAT networking.
VMware guest operating systems can execute arbitrary code with elevated privileges on the host operating system through a flaw in NAT networking.
GLSA 200601-03 (высокая) - HylaFAX: Multiple vulnerabilities
HylaFAX is vulnerable to arbitrary code execution and unauthorized access vulnerabilities.
HylaFAX is vulnerable to arbitrary code execution and unauthorized access vulnerabilities.
GLSA 200601-02 (средняя) - KPdf, KWord: Multiple overflows in included Xpdf code
KPdf and KWord both include vulnerable Xpdf code to handle PDF files, making them vulnerable to the execution of arbitrary code.
KPdf and KWord both include vulnerable Xpdf code to handle PDF files, making them vulnerable to the execution of arbitrary code.
GLSA 200601-01 (средняя) - pinentry: Local privilege escalation
pinentry is vulnerable to privilege escalation.
pinentry is vulnerable to privilege escalation.
GLSA 200512-18 (средняя) - XnView: Privilege escalation
XnView may search for shared libraries in an untrusted location, potentially allowing local users to execute arbitrary code with the privileges of another user.
XnView may search for shared libraries in an untrusted location, potentially allowing local users to execute arbitrary code with the privileges of another user.
GLSA 200512-17 (высокая) - scponly: Multiple privilege escalation issues
Local users can exploit an scponly flaw to gain root privileges, and scponly restricted users can use another vulnerability to evade shell restrictions.
Local users can exploit an scponly flaw to gain root privileges, and scponly restricted users can use another vulnerability to evade shell restrictions.
GLSA 200512-16 (низкая) - OpenMotif, AMD64 x86 emulation X libraries: Buffer overflows in libUil library
Two buffer overflows have been discovered in libUil, part of the OpenMotif toolkit, that can potentially lead to the execution of arbitrary code.
Two buffer overflows have been discovered in libUil, part of the OpenMotif toolkit, that can potentially lead to the execution of arbitrary code.
GLSA 200512-15 (высокая) - rssh: Privilege escalation
Local users could gain root privileges by chrooting into arbitrary directories.
Local users could gain root privileges by chrooting into arbitrary directories.
GLSA 200512-14 (высокая) - NBD Tools: Buffer overflow in NBD server
The NBD server is vulnerable to a buffer overflow that may result in the execution of arbitrary code.
The NBD server is vulnerable to a buffer overflow that may result in the execution of arbitrary code.
GLSA 200512-13 (высокая) - Dropbear: Privilege escalation
A buffer overflow in Dropbear could allow authenticated users to execute arbitrary code as the root user.
A buffer overflow in Dropbear could allow authenticated users to execute arbitrary code as the root user.
GLSA 200512-12 (средняя) - Mantis: Multiple vulnerabilities
Mantis is affected by multiple vulnerabilities ranging from file upload and SQL injection to cross-site scripting and HTTP response splitting.
Mantis is affected by multiple vulnerabilities ranging from file upload and SQL injection to cross-site scripting and HTTP response splitting.
GLSA 200512-11 (средняя) - CenterICQ: Multiple vulnerabilities
CenterICQ is vulnerable to a Denial of Service issue, and also potentially to the execution of arbitrary code through an included vulnerable ktools library.
CenterICQ is vulnerable to a Denial of Service issue, and also potentially to the execution of arbitrary code through an included vulnerable ktools library.
GLSA 200512-10 (средняя) - Opera: Command-line URL shell command injection
Lack of URL validation in Opera command-line wrapper could be abused to execute arbitrary commands.
Lack of URL validation in Opera command-line wrapper could be abused to execute arbitrary commands.
GLSA 200512-09 (низкая) - cURL: Off-by-one errors in URL handling
cURL is vulnerable to local arbitrary code execution via buffer overflow due to the insecure parsing of URLs.
cURL is vulnerable to local arbitrary code execution via buffer overflow due to the insecure parsing of URLs.
GLSA 200512-08 (средняя) - Xpdf, GPdf, CUPS, Poppler: Multiple vulnerabilities
Multiple vulnerabilities have been discovered in Xpdf, GPdf, CUPS and Poppler potentially resulting in the execution of arbitrary code.
Multiple vulnerabilities have been discovered in Xpdf, GPdf, CUPS and Poppler potentially resulting in the execution of arbitrary code.
GLSA 200512-07 (низкая) - OpenLDAP, Gauche: RUNPATH issues
OpenLDAP and Gauche suffer from RUNPATH issues that may allow users in the "portage" group to escalate privileges.
OpenLDAP and Gauche suffer from RUNPATH issues that may allow users in the "portage" group to escalate privileges.
GLSA 200512-06 (высокая) - Ethereal: Buffer overflow in OSPF protocol dissector
Ethereal is missing bounds checking in the OSPF protocol dissector that could lead to abnormal program termination or the execution of arbitrary code.
Ethereal is missing bounds checking in the OSPF protocol dissector that could lead to abnormal program termination or the execution of arbitrary code.
GLSA 200512-05 (высокая) - Xmail: Privilege escalation through sendmail
The sendmail program in Xmail is vulnerable to a buffer overflow, potentially resulting in local privilege escalation.
The sendmail program in Xmail is vulnerable to a buffer overflow, potentially resulting in local privilege escalation.
GLSA 200512-04 (низкая) - Openswan, IPsec-Tools: Vulnerabilities in ISAKMP Protocol implementation
Openswan and IPsec-Tools suffer from an implementation flaw which may allow a Denial of Service attack.
Openswan and IPsec-Tools suffer from an implementation flaw which may allow a Denial of Service attack.
« Предыдущий 1 ... 157 158 159 160 161 ... 190 Следующий »
Экспортировать в Atom