Section: .. / 0802-advisories /
| /// File Name: |
USN-574-1.txt |
Description:
|
Ubuntu Security Notice 574-1 - A massive slew of vulnerabilities relating to the linux-source-2.6.17/20/22 packages have been addressed.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 156053 | | Related CVE(s): | CVE-2006-6058, CVE-2007-3107, CVE-2007-4567, CVE-2007-4849, CVE-2007-4997, CVE-2007-5093, CVE-2007-5500, CVE-2007-5501, CVE-2007-5966, CVE-2007-6063, CVE-2007-6151, CVE-2007-6206, CVE-2007-6417, CVE-2008-0001 | | Last Modified: | Feb 4 14:42:55 2008 |
| MD5 Checksum: | e768f5816148d5f5d28111789684935c |
|
| /// File Name: |
USN-577-1.txt |
Description:
|
Ubuntu Security Notice 577-1 - Wojciech Purczynski discovered that the vmsplice system call did not properly perform verification of user-memory pointers. A local attacker could exploit this to overwrite arbitrary kernel memory and gain root privileges.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 152828 | | Related CVE(s): | CVE-2008-0600 | | Last Modified: | Feb 12 17:28:37 2008 |
| MD5 Checksum: | bee560cfacf135bc2241a2028f3c38d5 |
|
| /// File Name: |
sa28706.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for the kernel. This fixes a security issue and some vulnerabilities, where some have unknown impacts and others can be exploited by malicious, local users to disclose potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service) and corrupt a file system, and by malicious people to cause a DoS.
| | Homepage: | http://secunia.com/advisories/28706/ | | File Size: | 142765 | | Last Modified: | Feb 5 19:59:36 2008 |
| MD5 Checksum: | 1c2716ba8e15cb1b0c98044a9555387f |
|
| /// File Name: |
sa28933.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for the kernel. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/28933/ | | File Size: | 142038 | | Last Modified: | Feb 13 16:32:17 2008 |
| MD5 Checksum: | d9bd8288ecf63af1e2e8efdef4a246f6 |
|
| /// File Name: |
2008_symarkpb.pdf |
Description:
|
Symark PowerBroker Security Advisory - A vulnerability has been identified in Symark's PowerBroker suite that allows an attacker with local access to gain root access. Versions up to and including 5.0.1 are vulnerable.
| | Author: | Michael Ligh, Greg Sinclair | | Homepage: | http://www.symark.com/ | | File Size: | 107012 | | Last Modified: | Feb 27 13:31:35 2008 |
| MD5 Checksum: | 35be0bd2cbb4b0b7fba154ae9bfa29e8 |
|
| /// File Name: |
sa29058.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for kernel-2.4.27 and kernel-2.6.8. This fixes some weaknesses, security issues, and vulnerabilities, where one has an unknown impact, and others can be exploited by malicious, local users to cause a DoS (Denial of Service), disclose potentially sensitive information, bypass certain security restrictions, and gain escalated privileges, and by malicious people to cause a DoS.
| | Homepage: | http://secunia.com/advisories/29058/ | | File Size: | 71106 | | Last Modified: | Feb 25 17:35:43 2008 |
| MD5 Checksum: | 319171c1089a678df625d829902ff167 |
|
| /// File Name: |
MDVSA-2008-048.txt |
Description:
|
Mandriva Linux Security Advisory - A number of security vulnerabilities have been discovered and corrected in the latest Mozilla Firefox program, version 2.0.0.12.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 62499 | | Related CVE(s): | CVE-2008-0412, CVE-2008-0413, CVE-2008-0414, CVE-2008-0415, CVE-2008-0417, CVE-2008-0418, CVE-2008-0419, CVE-2008-0420, CVE-2008-0591, CVE-2008-0592, CVE-2008-0593, CVE-2008-0594 | | Last Modified: | Feb 22 20:33:34 2008 |
| MD5 Checksum: | 1f8b82c153be77f8b27e3ab5f5114034 |
|
| /// File Name: |
dsa-1503.txt |
Description:
|
Debian Security Advisory 1503 - Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code.
| | Homepage: | http://www.debian.org/security | | File Size: | 55145 | | Related CVE(s): | CVE-2004-2731, CVE-2006-4814, CVE-2006-5753, CVE-2006-5823, CVE-2006-6053, CVE-2006-6054, CVE-2006-6106, CVE-2007-1353, CVE-2007-1592, CVE-2007-2172, CVE-2007-2525, CVE-2007-3848, CVE-2007-4308, CVE-2007-4311, CVE-2007-5093, CVE-2007-6063, CVE-2007-6151, CVE-2007-6206, CVE-2007-6694, CVE-2008-0007 | | Last Modified: | Feb 22 20:41:53 2008 |
| MD5 Checksum: | 3408c11383bf6b8fa21ef8da39900292 |
|
| /// File Name: |
USN-578-1.txt |
Description:
|
Ubuntu Security Notice 578-1 - A large amount of denial of service, buffer overflow, and privilege escalation vulnerabilities have been addressed in the linux-source-2.6.15 package.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 45850 | | Related CVE(s): | CVE-2006-6058, CVE-2006-7229, CVE-2007-4133, CVE-2007-4997, CVE-2007-5093, CVE-2007-5500, CVE-2007-6063, CVE-2007-6151, CVE-2007-6206, CVE-2007-6417, CVE-2008-0001 | | Last Modified: | Feb 14 13:16:32 2008 |
| MD5 Checksum: | f2daf3cf5596729d6924917165b47f86 |
|
| /// File Name: |
sa28971.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for the kernel. This fixes a security issue and some vulnerabilities, where one has an unknown impact and others can be exploited by malicious, local users to disclose potentially sensitive information, cause a DoS (Denial of Service), bypass certain security restrictions, and corrupt a file system, and by malicious people to cause a DoS.
| | Homepage: | http://secunia.com/advisories/28971/ | | File Size: | 40927 | | Last Modified: | Feb 14 19:42:32 2008 |
| MD5 Checksum: | 95d44aae51fa1e3c8e1a173c6ee23e21 |
|
| /// File Name: |
dsa-1494-2.txt |
Description:
|
Debian Security Advisory 1494-2 - The vmsplice system call did not properly verify address arguments passed by user space processes, which allowed local attackers to overwrite arbitrary kernel memory, gaining root privileges. In the vserver-enabled kernels, a missing access check on certain symlinks in /proc enabled local attackers to access resources in other vservers.
| | Homepage: | http://www.debian.org/security | | File Size: | 36918 | | Related CVE(s): | CVE-2008-0010, CVE-2008-0163, CVE-2008-0600 | | Last Modified: | Feb 13 17:23:21 2008 |
| MD5 Checksum: | fcaa16c388cd1512b0f196fbca14702d |
|
| /// File Name: |
dsa-1484-1.txt |
Description:
|
Debian Security Advisory 1484-1 - Several remote vulnerabilities have been discovered in Xulrunner, a runtime environment for XUL applications. These allow for arbitrary code execution, privilege escalation, and more.
| | Homepage: | http://www.debian.org/security | | File Size: | 33756 | | Related CVE(s): | CVE-2008-0412, CVE-2008-0413, CVE-2008-0414, CVE-2008-0415, CVE-2008-0416, CVE-2008-0417, CVE-2008-0418, CVE-2008-0419, CVE-2008-0591, CVE-2008-0592, CVE-2008-0593, CVE-2008-0594 | | Last Modified: | Feb 11 14:07:00 2008 |
| MD5 Checksum: | 46ed13a4fffcd239a28416ba21d88b3d |
|
| /// File Name: |
dsa-1504.txt |
Description:
|
Debian Security Advisory 1504 - Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code.
| | Homepage: | http://www.debian.org/security | | File Size: | 32423 | | Related CVE(s): | CVE-2006-5823, CVE-2006-6054, CVE-2006-6058, CVE-2006-7203, CVE-2007-1353, CVE-2007-2172, CVE-2007-2525, CVE-2007-3105, CVE-2007-3739, CVE-2007-3740, CVE-2007-3848, CVE-2007-4133, CVE-2007-4308, CVE-2007-4573, CVE-2007-5093, CVE-2007-6063, CVE-2007-6151, CVE-2007-6206, CVE-2007-6694, CVE-2008-0007 | | Last Modified: | Feb 22 20:43:58 2008 |
| MD5 Checksum: | 6a98ca94c7306d808a8fbc6c05d02834 |
|
| /// File Name: |
USN-576-1.txt |
Description:
|
Ubuntu Security Notice 576-1 - Code execution, cross site scripting, arbitrary upload, and a large amount of other vulnerabilities have been patched in Firefox.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 31729 | | Related CVE(s): | CVE-2008-0412, CVE-2008-0413, CVE-2008-0414, CVE-2008-0415, CVE-2008-0416, CVE-2008-0417, CVE-2008-0418, CVE-2008-0419, CVE-2008-0420, CVE-2008-0591, CVE-2008-0592, CVE-2008-0593, CVE-2008-0594 | | Last Modified: | Feb 7 23:34:59 2008 |
| MD5 Checksum: | d874184c41ea454f78e3de284d23c156 |
|
| /// File Name: |
sa28879.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for xulrunner. This fixes some weaknesses and vulnerabilities, which can be exploited by malicious people to disclose sensitive information, bypass certain security restrictions, conduct spoofing attacks, or to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28879/ | | File Size: | 30165 | | Last Modified: | Feb 12 14:09:00 2008 |
| MD5 Checksum: | 71b62f15beabd6452e6dff7906241f5e |
|
| /// File Name: |
sa28839.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for firefox. This fixes some vulnerabilities and weaknesses, which can be exploited by malicious people to disclose sensitive information, bypass certain security restrictions, conduct spoofing attacks, or to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28839/ | | File Size: | 28428 | | Last Modified: | Feb 8 16:18:36 2008 |
| MD5 Checksum: | 91a5279e16ab7b4c25cc5a8b1b9ca6bc |
|
| /// File Name: |
sa28749.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for apache2. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/28749/ | | File Size: | 26694 | | Last Modified: | Feb 5 21:49:07 2008 |
| MD5 Checksum: | de06edf3042b1e6d5c817bead2dfbeb9 |
|
| /// File Name: |
USN-580-1.txt |
Description:
|
Ubuntu Security Notice 580-1 - Devon Miller discovered that the iso-info and cd-info tools did not properly perform bounds checking. If a user were tricked into using these tools with a crafted iso image, an attacker could cause a denial of service via a core dump, and possibly execute arbitrary code.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 25549 | | Related CVE(s): | CVE-2007-6613 | | Last Modified: | Feb 21 20:10:06 2008 |
| MD5 Checksum: | 218adfc98f0d062bd360a6c24c3ceeb8 |
|
| /// File Name: |
dsa-1509-1.txt |
Description:
|
Debian Security Advisory 1509-1 - Several vulnerabilities have been discovered in xpdf code that is embedded in koffice, an integrated office suite for KDE. These flaws could allow an attacker to execute arbitrary code by inducing the user to import a specially crafted PDF document.
| | Homepage: | http://www.debian.org/security | | File Size: | 24810 | | Related CVE(s): | CVE-2007-4352, CVE-2007-5392, CVE-2007-5393 | | Last Modified: | Feb 26 18:11:06 2008 |
| MD5 Checksum: | 24398930a6503c729ca0bb857c09e9c3 |
|
| /// File Name: |
sa28970.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for libcdio. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28970/ | | File Size: | 24538 | | Last Modified: | Feb 22 19:49:27 2008 |
| MD5 Checksum: | 420752c552c0b08c840b31e55c254ce9 |
|
| /// File Name: |
sa29104.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for koffice. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/29104/ | | File Size: | 22797 | | Last Modified: | Feb 26 17:58:00 2008 |
| MD5 Checksum: | 3247d51216b7c1b8c58f25ed277d49bc |
|
| /// File Name: |
dsa-1485-1.txt |
Description:
|
Debian Security Advisory 1485-1 - Several remote vulnerabilities have been discovered in the Icedove mail client, an unbranded version of the Thunderbird client. These allow for arbitrary code execution, privilege escalation, and more.
| | Homepage: | http://www.debian.org/security | | File Size: | 21696 | | Related CVE(s): | CVE-2008-0412, CVE-2008-0413, CVE-2008-0414, CVE-2008-0415, CVE-2008-0416, CVE-2008-0417, CVE-2008-0418, CVE-2008-0419, CVE-2008-0591, CVE-2008-0592, CVE-2008-0593, CVE-2008-0594 | | Last Modified: | Feb 11 14:08:03 2008 |
| MD5 Checksum: | 9808eaa5313f5ec83f43e95ae08ab838 |
|
|
|
|
|