Уведомления о безопасности GLSA

GLSA 200507-13 (средняя) - pam_ldap and nss_ldap: Plain text authentication leak
pam_ldap and nss_ldap fail to restart TLS when following a referral, possibly leading to credentials being sent in plain text.
GLSA 200507-12 (низкая) - Bugzilla: Unauthorized access and information disclosure
Multiple vulnerabilities in Bugzilla could allow remote users to modify bug flags or gain sensitive information.
GLSA 200507-11 (высокая) - MIT Kerberos 5: Multiple vulnerabilities
MIT Kerberos 5 is vulnerable to a Denial of Service attack and remote execution of arbitrary code, possibly leading to the compromise of the entire Kerberos realm.
GLSA 200507-10 (высокая) - Ruby: Arbitrary command execution through XML-RPC
A vulnerability in XMLRPC.iPIMethods allows remote attackers to execute arbitrary commands.
GLSA 200507-09 (средняя) - Adobe Acrobat Reader: Buffer overflow vulnerability
Adobe Acrobat Reader is vulnerable to a buffer overflow that could lead to remote execution of arbitrary code.
GLSA 200507-08 (высокая) - phpGroupWare, eGroupWare: PHP script injection vulnerability
phpGroupWare and eGroupWare include an XML-RPC implementation which allows remote attackers to execute arbitrary PHP script commands.
GLSA 200507-07 (высокая) - phpWebSite: Multiple vulnerabilities
phpWebSite is vulnerable to the remote execution of arbitrary PHP script code and to other, yet undisclosed, vulnerabilities.
GLSA 200507-06 (высокая) - TikiWiki: Arbitrary command execution through XML-RPC
TikiWiki includes PHP XML-RPC code, making it vulnerable to arbitrary command execution.
GLSA 200507-05 (высокая) - zlib: Buffer overflow
A buffer overflow has been discovered in zlib, potentially resulting in the execution of arbitrary code.
GLSA 200507-04 (средняя) - RealPlayer: Heap overflow vulnerability
RealPlayer is vulnerable to a heap overflow that could lead to remote execution of arbitrary code.
GLSA 200507-03 (высокая) - phpBB: Arbitrary command execution
A vulnerability in phpBB allows a remote attacker to execute arbitrary commands with the rights of the web server.
GLSA 200507-02 (высокая) - WordPress: Multiple vulnerabilities
WordPress contains PHP script injection, cross-site scripting and path disclosure vulnerabilities.
GLSA 200507-01 (высокая) - PEAR XML-RPC, phpxmlrpc: PHP script injection vulnerability
The PEAR XML-RPC and phpxmlrpc libraries allow remote attackers to execute arbitrary PHP script commands.
GLSA 200506-24 (высокая) - Heimdal: Buffer overflow vulnerabilities
Multiple buffer overflow vulnerabilities in Heimdal's telnetd server could allow the execution of arbitrary code.
GLSA 200506-23 (средняя) - Clam AntiVirus: Denial of Service vulnerability
Clam AntiVirus is vulnerable to a Denial of Service attack when processing certain Quantum archives.
GLSA 200506-22 (средняя) - sudo: Arbitrary command execution
A vulnerability in sudo may allow local users to elevate privileges.
GLSA 200506-21 (средняя) - Trac: File upload vulnerability
Trac may allow remote attackers to upload files, possibly leading to the execution of arbitrary code.
GLSA 200506-20 (высокая) - Cacti: Several vulnerabilities
Cacti is vulnerable to several SQL injection, authentication bypass and file inclusion vulnerabilities.
GLSA 200506-19 (низкая) - SquirrelMail: Several XSS vulnerabilities
Squirrelmail is vulnerable to several cross-site scripting vulnerabilities which could lead to a compromise of webmail accounts.
GLSA 200506-18 (низкая) - Tor: Information disclosure
A flaw in Tor may allow the disclosure of arbitrary memory portions.

« Предыдущий 1 ... 165 166 167 168 169 ... 191 Следующий »

Экспортировать в Atom

Спасибо!