Уведомления о безопасности GLSA
GLSA 200402-04 (средняя) - Gallery 1.4.1 and below remote exploit vulnerability
The Gallery developers have discovered a potentially serious security flaw in Gallery 1.3.1, 1.3.2, 1.3.3, 1.4 and 1.4.1 which can allow a remote exploit of your webserver.
The Gallery developers have discovered a potentially serious security flaw in Gallery 1.3.1, 1.3.2, 1.3.3, 1.4 and 1.4.1 which can allow a remote exploit of your webserver.
GLSA 200402-03 (средняя) - Monkeyd Denial of Service vulnerability
A bug in get_real_string() function allows for a Denial of Service attack to be launched against the webserver.
A bug in get_real_string() function allows for a Denial of Service attack to be launched against the webserver.
GLSA 200402-02 (высокая) - XFree86 Font Information File Buffer Overflow
Exploitation of a buffer overflow in the XFree86 Project Inc.'s XFree86 X Window System allows local attackers to gain root privileges.
Exploitation of a buffer overflow in the XFree86 Project Inc.'s XFree86 X Window System allows local attackers to gain root privileges.
GLSA 200402-01 (средняя) - PHP setting leaks from .htaccess files on virtual hosts
If the server configuration "php.ini" file has "register_globals = on" and a request is made to one virtual host (which has "php_admin_flag register_globals off") and the next request is sent to the another virtual host (which does not have the setting) global variables may leak and may be used to exploit the site.
If the server configuration "php.ini" file has "register_globals = on" and a request is made to one virtual host (which has "php_admin_flag register_globals off") and the next request is sent to the another virtual host (which does not have the setting) global variables may leak and may be used to exploit the site.
GLSA 200401-04 (средняя) - GAIM 0.75 Remote overflows
Various overflows in the handling of AIM DirectIM packets was revealed in GAIM that could lead to a remote compromise of the IM client.
Various overflows in the handling of AIM DirectIM packets was revealed in GAIM that could lead to a remote compromise of the IM client.
GLSA 200401-03 (низкая) - Apache mod_python Denial of Service vulnerability
Apache's mod_python module could crash the httpd process if a specific, malformed query string was sent.
Apache's mod_python module could crash the httpd process if a specific, malformed query string was sent.
GLSA 200401-02 (низкая) - Honeyd remote detection vulnerability via a probe packet
Identification of Honeyd installations allows an adversary to launch attacks specifically against Honeyd. No remote root exploit is currently known.
Identification of Honeyd installations allows an adversary to launch attacks specifically against Honeyd. No remote root exploit is currently known.
GLSA 200401-01 (высокая) - Linux kernel do_mremap() local privilege escalation vulnerability
A critical security vulnerability has been found in recent Linux kernels which allows for local privelege escalation.
A critical security vulnerability has been found in recent Linux kernels which allows for local privelege escalation.
GLSA 200312-08 (высокая) - CVS: possible root compromise when using CVS pserver
A possible root compromise exists for CVS pservers.
A possible root compromise exists for CVS pservers.
GLSA 200312-07 (низкая) - Two buffer overflows in lftp
Two buffer overflow problems are found in lftp that, in case the user visits a malicious ftp server, could lead to malicious code being executed.
Two buffer overflow problems are found in lftp that, in case the user visits a malicious ftp server, could lead to malicious code being executed.
GLSA 200312-06 (translation missing: ru, label_glsa_medium) - XChat: malformed dcc send request denial of service
A bug in XChat could allow malformed dcc send requests to cause a denial of service.
A bug in XChat could allow malformed dcc send requests to cause a denial of service.
GLSA 200312-05 (translation missing: ru, label_glsa_minimal) - GnuPG: ElGamal signing keys compromised and format string vulnerability
A bug in GnuPG allows ElGamal signing keys to be compromised, and a format string bug in the gpgkeys_hkp utility may allow arbitrary code execution.
A bug in GnuPG allows ElGamal signing keys to be compromised, and a format string bug in the gpgkeys_hkp utility may allow arbitrary code execution.
GLSA 200312-04 (translation missing: ru, label_glsa_minimal) - CVS: malformed module request vulnerability
A bug in cvs could allow attempts to create files and directories outside a repository.
A bug in cvs could allow attempts to create files and directories outside a repository.
GLSA 200312-03 (высокая) - rsync: exploitable heap overflow
rsync contains a heap overflow vulnerability that can be used to execute arbitrary code.
rsync contains a heap overflow vulnerability that can be used to execute arbitrary code.
GLSA 200312-01 (низкая) - rsync.gentoo.org: rotation server compromised
A server in the rsync.gentoo.org rotation was compromised.
A server in the rsync.gentoo.org rotation was compromised.
GLSA 200311-08 (средняя) - Libnids: remote code execution vulnerability
Libnids contains a bug which could allow remote code execution.
Libnids contains a bug which could allow remote code execution.
GLSA 200311-07 (средняя) - phpSysInfo: arbitrary code execution and directory traversal
phpSysInfo contains two vulnerabilities that can allow arbitrary code execution and local directory traversal.
phpSysInfo contains two vulnerabilities that can allow arbitrary code execution and local directory traversal.
GLSA 200311-06 (средняя) - glibc: getgrouplist buffer overflow vulnerability
glibc contains a buffer overflow in the getgrouplist function.
glibc contains a buffer overflow in the getgrouplist function.
GLSA 200311-05 (средняя) - Ethereal: security problems in ethereal 0.9.15
Ethereal is vulnerable to heap and buffer overflows in the GTP, ISAKMP, MEGACO, and SOCKS protocol dissectors.
Ethereal is vulnerable to heap and buffer overflows in the GTP, ISAKMP, MEGACO, and SOCKS protocol dissectors.
GLSA 200311-04 (средняя) - FreeRADIUS: heap exploit and NULL pointer dereference vulnerability
FreeRADIUS is vulnerable to a heap exploit and a NULL pointer dereference vulnerability.
FreeRADIUS is vulnerable to a heap exploit and a NULL pointer dereference vulnerability.
« Предыдущий 1 ... 187 188 189 190 Следующий »
Экспортировать в Atom