Gentoo Essential and Critical Security Patch Updates - Page 148
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
A buffer overflow in Metamail could possibly be exploited to execute arbitrary code.
Crypt::CBC uses an insecure initialization vector, potentially resulting in a weaker encryption.
An error in the rshd daemon of Heimdal could allow authenticated users to elevate privileges.
PEAR-Auth did not correctly verify data passed to the DB and LDAP containers, thus allowing to inject false credentials to bypass the authentication. [More...]
A buffer overflow in zoo may be exploited to execute arbitrary when creating archives of specially crafted directories and files.
A memory allocation bug in Freeciv allows a remote attacker to perform a Denial of Service attack.
Cube is vulnerable to a buffer overflow, invalid memory access and remote client crashes, possibly leading to a Denial of Service or remote code execution. [More...]
SquirrelMail is vulnerable to several cross-site scripting vulnerabilities and IMAP command injection.
GnuPG may erroneously report a modified or unsigned message has a valid digital signature.
flex might generate code with a buffer overflow, making applications using such scanners vulnerable to the execution of arbitrary code.
A malicious tar archive could trigger a Buffer overflow in GNU tar, potentially resulting in the execution of arbitrary code.
A stack-based buffer overflow in zoo may be exploited to execute arbitrary code through malicious ZOO archives.
Format string vulnerabilities in IMAP Proxy may lead to the execution of arbitrary code when connected to malicious IMAP servers.
MPlayer is vulnerable to integer overflows in FFmpeg and ASF decoding that could potentially result in the execution of arbitrary code.
CSTeTeX, pTeX, and teTeX include vulnerable XPdf code to handle PDF files, making them vulnerable to the execution of arbitrary code.
WordPress is vulnerable to an SQL injection vulnerability.
noweb is vulnerable to symlink attacks, potentially allowing a local user to overwrite arbitrary files.
A vulnerability in GraphicsMagick allows attackers to crash the application and potentially execute arbitrary code.
GPdf includes vulnerable Xpdf code to handle PDF files, making it vulnerable to the execution of arbitrary code.
A flaw in OpenSSH and Dropbear allows local users to elevate their privileges via scp.