Gentoo Essential and Critical Security Patch Updates - Page 150
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
ClamAV is vulnerable to a buffer overflow which may lead to remote execution of arbitrary code.
xine-lib and FFmpeg are vulnerable to a buffer overflow that may be exploited by attackers to execute arbitrary code.
Format string vulnerabilities in mod_auth_pgsql may lead to the execution of arbitrary code.
VMware guest operating systems can execute arbitrary code with elevated privileges on the host operating system through a flaw in NAT networking. [More...]
HylaFAX is vulnerable to arbitrary code execution and unauthorized access vulnerabilities.
KPdf and KWord both include vulnerable Xpdf code to handle PDF files, making them vulnerable to the execution of arbitrary code.
pinentry is vulnerable to privilege escalation.
XnView may search for shared libraries in an untrusted location, potentially allowing local users to execute arbitrary code with the privileges of another user. [More...]
Local users can exploit an scponly flaw to gain root privileges, and scponly restricted users can use another vulnerability to evade shell restrictions. [More...]
Two buffer overflows have been discovered in libUil, part of the OpenMotif toolkit, that can potentially lead to the execution of arbitrary code. [More...]
Local users could gain root privileges by chrooting into arbitrary directories.
The NBD server is vulnerable to a buffer overflow that may result in the execution of arbitrary code.
A buffer overflow in Dropbear could allow authenticated users to execute arbitrary code as the root user.
Mantis is affected by multiple vulnerabilities ranging from file upload and SQL injection to cross-site scripting and HTTP response splitting.
CenterICQ is vulnerable to a Denial of Service issue, and also potentially to the execution of arbitrary code through an included vulnerable ktools library. [More...]
Lack of URL validation in Opera command-line wrapper could be abused to execute arbitrary commands.
cURL is vulnerable to local arbitrary code execution via buffer overflow due to the insecure parsing of URLs.
Multiple vulnerabilities have been discovered in Xpdf, GPdf, CUPS and Poppler potentially resulting in the execution of arbitrary code.
OpenLDAP and Gauche suffer from RUNPATH issues that may allow users in the "portage" group to escalate privileges.
Ethereal is missing bounds checking in the OSPF protocol dissector that could lead to abnormal program termination or the execution of arbitrary code. [More...]