Gentoo Essential and Critical Security Patch Updates - Page 149
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
Applications relying on GnuPG to authenticate digital signatures may incorrectly believe a signature has been verified.
BomberClone is vulnerable to a buffer overflow which may lead to remote execution of arbitrary code.
A flaw in the parsing of Distinguished Encoding Rules (DER) has been discovered in libtasn1, potentially resulting in the execution of arbitrary code. [More...]
Sun's Java Development Kit (JDK) and Java Runtime Environment (JRE) do not adequately constrain applets from privilege escalation and arbitrary code execution. [More...]
KPdf includes vulnerable Xpdf code to handle PDF files, making it vulnerable to the execution of arbitrary code.
A vulnerability in ImageMagick allows attackers to crash the application and potentially execute arbitrary code.
Xpdf and Poppler are vulnerable to a heap overflow that may be exploited to execute arbitrary code.
Apache can be exploited for cross-site scripting attacks and is vulnerable to a Denial of Service attack.
ADOdb is vulnerable to SQL injections if used in conjunction with a PostgreSQL database.
The GStreamer FFmpeg plugin is vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.
Xpdf, Poppler, GPdf, libextractor and pdftohtml are vulnerable to integer overflows that may be exploited to execute arbitrary code.
MyDNS contains a vulnerability that may lead to a Denial of Service attack.
Paros's database component is installed without a password, allowing execution of arbitrary system commands.
A buffer overflow in LibAST may result in execution of arbitrary code with escalated privileges.
Gallery is possibly vulnerable to a cross-site scripting attack that could allow arbitrary JavaScript code execution.
Trac is vulnerable to a cross-site scripting attack that could allow arbitrary JavaScript code execution.
KDE fails to properly validate URIs when handling javascript, potentially resulting in the execution of arbitrary code.
Sun's and Blackdown's JDK or JRE may allow untrusted applets to elevate their privileges.
There is a flaw in Wine in the handling of Windows Metafiles (WMF) files, which could possibly result in the execution of arbitrary code.
Blender is vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.