Från Bugtraq december år 2002
Några texter från Bugtraq. Nyaste texterna sist:
ezbounce[v1.0-(1.04a/1.50pre6)]: remote format string exploit.
[RHSA-2003:199-01] Updated unzip packages fix trojan vulnerability
Binary file Adobe-acrobat-reader-2003-07.txt matches
[CLA-2003:668] Conectiva Security Announcement - kde
[SECURITY] [DSA-336-2] Factual correction for DSA-336-1
[RHSA-2003:204-01] Updated PHP packages are now available
Greymatter v1.21d: Remote PHP command injection/execution.
phpMyAdmin: reply to vulnerability report (2003-06-18)
[KSA-003] Cross Site Scripting Vulnerability in Phpgroupware
[RHSA-2003:203-01] Updated Ethereal packages fix security issues
Immunix Secured OS 7+ unzip update -- bugtraq
[CLA-2003:672] Conectiva Security Announcement - unzip
[CLA-2003:674] Conectiva Security Announcement - xpdf
[CLA-2003:675] Conectiva Security Announcement - ml85p
[CLA-2003:685] Conectiva Security Announcement - openldap
[SECURITY] [DSA-337-1] New semi, wemi packages fix insecure temporary file creation
[SECURITY] [DSA-339-1] New semi, wemi packages fix insecure temporary file creation
[SECURITY] [DSA-338-1] New x-face-el packages fix insecure temporary file creation
[CLA-2003:690] Conectiva Security Announcement - imp
Qt temporary files race condition in Knoppix 3.1
MDKSA-2003:073 - Updated unzip packages fix vulnerability
[CLA-2003:691] Conectiva Security Announcement - php4
[SECURITY] [DSA-341-1] New liece packages fix insecure temporary file creation
[SECURITY] [DSA-342-1] New mozart packages fix unsafe mailcap configuration
[SECURITY] [DSA-347-1] New teapop packages fix SQL injection
zkfingerd-2.0.2(the last version)Format String Vulnerabilities
[SECURITY] [DSA-344-1] New unzip packages fix directory traversal
Tomcat Dangerous Documentation/Tomcat Default Plaintext Password Storage
[SECURITY] [DSA-343-1] New skk, ddskk packages fix insecure temporary file creation
TerminatorX local root
[SECURITY] [DSA-346-1] New phpsysinfo packages fix directory traversal
[SECURITY] [DSA-345-1] New xbl packages fix buffer overflow
xpdf vulnerability - CAN-2003-0434
Acroread 5.0.7 buffer overflow
[CLA-2003:693] Conectiva Security Announcement - pam
TSLSA-2003-0025 - apache
Red Hat 9: free tickets
[ANNOUNCE][SECURITY] Apache 2.0.47 released
[CLA-2003:694] Conectiva Security Announcement - gnupg
Samba Remote Exploit with connect back method and bruteforce mode
Linux nfs-utils xlog() off-by-one bug
BlackBook - Multiple Vunerabilities
[RHSA-2003:206-01] Updated nfs-utils packages fix denial of service vulnerability
ImageMagick's Overflow
[SECURITY] [DSA-348-1] New traceroute-nanog packages fix integer overflow
[SECURITY] [DSA-349-1] New nfs-utils package fixes buffer overflow
xfstt-1.4 vulnerability
[CLA-2003:696] Conectiva Security Announcement - ucd-snmp
[CLA-2003:695] Conectiva Security Announcement - mpg123
SuSE Security Announcement: nfs-utils (SuSE-SA:2003:031)
Multiple vulnerabilites in Citadel/UX
[SECURITY] [DSA-350-1] New falconseye packages fix buffer overflow
[slackware-security] nfs-utils packages replaced (SSA:2003-195-01b)
[CLA-2003:697] Conectiva Security Announcement - phpgroupware
Immunix Secured OS 7+ nfs-utils update -- bugtraq
MDKSA-2003:074 - Updated kernel packages fix multiple vulnerabilities
SRT2003-07-07-0831 - IBM U2 UniVerse cci_dir creates hard links as root
SRT2003-07-07-0913 - Abnormal suid behavior in several applications
SRT2003-07-08-1223 - IBM U2 UniVerse uvadm can take root via buffer overflows
[RHSA-2003:196-02] Updated Xpdf packages fix security vulnerability.
[SECURITY] [DSA-351-1] New php4 packages fix cross-site scripting vulnerability
possible open relay hole in qmail-smtpd-auth patch
SRT2003-07-16-0358 - bru has buffer overflow and format issues
ZH2003-11SA (security advisory): Elite News Ver. 1.0.0.0-1.0.0.3 Beta
TSLSA-2003-0027 - nfs-utils
Fw: SC Signature and HPING Signature
Re: SRT2003-07-16-0358 - bru has buffer overflow and format issues
[RHSA-2003:238-01] Updated 2.4 kernel fixes vulnerabilities
[RHSA-2003:162-02] Updated Mozilla packages fix security vulnerability.
[CLA-2003:698] Conectiva Security Announcement - apache
[CLA-2003:700] Conectiva Security Announcement - nfs-utils
Re: Disclosure-for-pay?
[CLA-2003:701] Conectiva Security Announcement - kernel
[CLA-2003:702] Conectiva Security Announcement - cups
phpMyAdmin: updated reply to vulnerability report of 2003-06-18
Apache 1.3.27 mod_proxy security issue
[SECURITY] [DSA-352-1] New fdclone packages fix insecure temporary directory usage
[RHSA-2003:234-01] Updated semi packages fix vulnerability
MDKSA-2003:077 - Updated phpgroupware packages fix multiple vulnerabilities
[CLA-2003:703] Conectiva Security Announcement - phpgroupware
Integrigy Security Alert - Oracle E-Business Suite AOL/J Setup Test Information Disclosure
MDKSA-2003:078 - Updated mpg123 packages fix vulnerability
[CLA-2003:704] Conectiva Security Announcement - apache
[ESA-20032407-018] Several local 'kernel' vulnerabilities.
MDKSA-2003:071-1 - Updated xpdf packages fix arbitrary code execution vulnerability
Oracle Extproc Buffer Overflow (#NISR25072003)
MDKSA-2003:066-2 - Updated kernel packages fix multiple vulnerabilities
[RHSA-2003:221-01] Updated stunnel packages fix signal vulnerability
question about oracle advisory
ssh host key generation in Red Hat Linux
VMware GSX Server 2.5.1 / Workstation 4.0 (for Linux systems) vulnerability
Gallery XSS security advisory (with fix and patch instructions)
Remotely exploitable overflow in mod_mylo for Apache
[CLA-2003:711] Conectiva Security Announcement - mnogosearch
[SECURITY] [DSA-353-1] New sup packages fix insecure temporary file creation
KDE Security Advisory: Konqueror Referrer Authentication Leak
[CLA-2003:713] Conectiva Security Announcement - perl
[RHSA-2003:222-01] Updated openssh packages available
Remote Linux Kernel < 2.4.21 DoS in XDR routine.
wu-ftpd fb_realpath() off-by-one bug
SuSE Security Announcement: wuftpd (SuSE-SA:2003:032)
[RHSA-2003:245-01] Updated wu-ftpd packages fix remote vulnerability.
MDKSA-2003:080 - Updated wu-ftpd packages fix remote root vulnerability
MDKSA-2003:079 - Updated kdelibs packages fix konqueror authentication leak
Re: Remote Linux Kernel < 2.4.21 DoS in XDR routine.
[SECURITY] [DSA-356-1] New xtokkaetama packages fix buffer overflows
[SECURITY] [DSA-355-1] New gallery packages fix cross-site scripting
[SECURITY] [DSA-354-1] New xconq packages fix buffer overflows
Upp en nivå