Gentoo Linux Security Advisories

GLSA 200601-05 (high) - mod_auth_pgsql: Multiple format string vulnerabilities
Format string vulnerabilities in mod_auth_pgsql may lead to the execution of arbitrary code.
GLSA 200601-04 (high) - VMware Workstation: Vulnerability in NAT networking
VMware guest operating systems can execute arbitrary code with elevated privileges on the host operating system through a flaw in NAT networking.
GLSA 200601-03 (high) - HylaFAX: Multiple vulnerabilities
HylaFAX is vulnerable to arbitrary code execution and unauthorized access vulnerabilities.
GLSA 200601-02 (normal) - KPdf, KWord: Multiple overflows in included Xpdf code
KPdf and KWord both include vulnerable Xpdf code to handle PDF files, making them vulnerable to the execution of arbitrary code.
GLSA 200601-01 (normal) - pinentry: Local privilege escalation
pinentry is vulnerable to privilege escalation.
GLSA 200512-18 (normal) - XnView: Privilege escalation
XnView may search for shared libraries in an untrusted location, potentially allowing local users to execute arbitrary code with the privileges of another user.
GLSA 200512-17 (high) - scponly: Multiple privilege escalation issues
Local users can exploit an scponly flaw to gain root privileges, and scponly restricted users can use another vulnerability to evade shell restrictions.
GLSA 200512-16 (low) - OpenMotif, AMD64 x86 emulation X libraries: Buffer overflows in libUil library
Two buffer overflows have been discovered in libUil, part of the OpenMotif toolkit, that can potentially lead to the execution of arbitrary code.
GLSA 200512-15 (high) - rssh: Privilege escalation
Local users could gain root privileges by chrooting into arbitrary directories.
GLSA 200512-14 (high) - NBD Tools: Buffer overflow in NBD server
The NBD server is vulnerable to a buffer overflow that may result in the execution of arbitrary code.
GLSA 200512-13 (high) - Dropbear: Privilege escalation
A buffer overflow in Dropbear could allow authenticated users to execute arbitrary code as the root user.
GLSA 200512-12 (normal) - Mantis: Multiple vulnerabilities
Mantis is affected by multiple vulnerabilities ranging from file upload and SQL injection to cross-site scripting and HTTP response splitting.
GLSA 200512-11 (normal) - CenterICQ: Multiple vulnerabilities
CenterICQ is vulnerable to a Denial of Service issue, and also potentially to the execution of arbitrary code through an included vulnerable ktools library.
GLSA 200512-10 (normal) - Opera: Command-line URL shell command injection
Lack of URL validation in Opera command-line wrapper could be abused to execute arbitrary commands.
GLSA 200512-09 (low) - cURL: Off-by-one errors in URL handling
cURL is vulnerable to local arbitrary code execution via buffer overflow due to the insecure parsing of URLs.
GLSA 200512-08 (normal) - Xpdf, GPdf, CUPS, Poppler: Multiple vulnerabilities
Multiple vulnerabilities have been discovered in Xpdf, GPdf, CUPS and Poppler potentially resulting in the execution of arbitrary code.
GLSA 200512-07 (low) - OpenLDAP, Gauche: RUNPATH issues
OpenLDAP and Gauche suffer from RUNPATH issues that may allow users in the "portage" group to escalate privileges.
GLSA 200512-06 (high) - Ethereal: Buffer overflow in OSPF protocol dissector
Ethereal is missing bounds checking in the OSPF protocol dissector that could lead to abnormal program termination or the execution of arbitrary code.
GLSA 200512-05 (high) - Xmail: Privilege escalation through sendmail
The sendmail program in Xmail is vulnerable to a buffer overflow, potentially resulting in local privilege escalation.
GLSA 200512-04 (low) - Openswan, IPsec-Tools: Vulnerabilities in ISAKMP Protocol implementation
Openswan and IPsec-Tools suffer from an implementation flaw which may allow a Denial of Service attack.

« Previous 1 ... 158 159 160 161 162 ... 191 Next »

Also available in: Atom

Thank you!