ArchLinux Essential and Critical Security Patch Updates - Page 77
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
The package wordpress before version 4.2.4-1 is vulnerable to multiple issues, including XSS and SQL injection.
The package firefox before version 39.0.3-1 is vulnerable to local file stealing.
The package pacman before version 4.2.1-2 is vulnerable to silent downgrade via a man-in-the-middle attack.
The package bind before version 9.10.2.P3-1 is vulnerable to denial of service.
The package qemu before version 2.3.0-5 is vulnerable to multiple issues including arbitrary code execution, information disclosure and denial of service.
The package crypto++ before version 5.6.2-3 is vulnerable to private key recovery via a timing side-channel attack.
The package libuser before version 0.62-1 is vulnerable to privilege escalation and denial of service.
The package openssh before version 6.9p1-2 is vulnerable to authentication limits bypass.
The package chromium before version 44.0.2403.89-1 is vulnerable to multiple issues including but not limited to denial of service, CSP and SOP bypass and spell-checking dictionaries hijack.
The package jre7-openjdk before version 7.u85_2.6.1-1 is vulnerable to multiple issues including remote code execution.
The package apache before version 2.4.16-1 is vulnerable to multiple issues including remote denial of service and authentication bypass.
The package lib32-flashplugin before version 11.2.202.491-1 is vulnerable to arbitrary code execution.
The package flashplugin before version 11.2.202.491-1 is vulnerable to arbitrary code execution.
The package lib32-openssl before version 1.0.2.d-1 is vulnerable to man-in-the-middle.
The package lib32-krb5 before version 1.13.2-2 is vulnerable to multiple issues including denial of service and preauthentication requirement bypass.
The package krb5 before version 1.13.2-1 is vulnerable to multiple issues including denial of service and preauthentication requirement bypass.
The package thunderbird before version 38.1.0-1 is vulnerable to multiple issues, including remote code execution and key pinning bypass.
The package openssl before version 1.0.2.d-1 is vulnerable to man-in-the-middle.
The package flashplugin before version 11.2.202.481-1 is vulnerable to remote code execution.
The package bind before version 9.10.2.P2-1 is vulnerable to denial of service.