Gentoo Essential and Critical Security Patch Updates - Page 163
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
Version 6.3 of AWStats only partially fixed the input validation flaws. Furthermore, another flaw leading to unwanted information disclosure was found and fixed in AWStats. [More...] [More...]
VMware may load shared libraries from an untrusted, world-writable directory, resulting in the execution of arbitrary code.
Opera is vulnerable to several vulnerabilities which could result in information disclosure and facilitate execution of arbitrary code.
A vulnerability in PowerDNS could lead to a temporary Denial of Service.
ht://Dig is vulnerable to cross-site scripting attacks.
mod_python contains a vulnerability in the Publisher Handler potentially leading to information disclosure.
Vulnerabilities leading to file overwriting and code execution with elevated privileges have been discovered in the perl-suid wrapper.
Portage-built Webmin binary packages accidentally include a file containing the local encrypted root password.
Mailman fails to properly sanitize input, leading to information disclosure.
pdftohtml includes vulnerable Xpdf code to handle PDF files, making it vulnerable to execution of arbitrary code upon converting a malicious PDF file. [More...]
Python-based XML-RPC servers may be vulnerable to remote execution of arbitrary code.
The PostgreSQL server can be tricked by a local attacker to execute arbitrary code.
Multiple vulnerabilities have been discovered in libXpm, which is included in OpenMotif, that can potentially lead to remote code execution. [More...]
Multiple vulnerabilities have been discovered in libXpm, which is included in LessTif, that can potentially lead to remote code execution. [More...]
A buffer overflow can be exploited to crash Newspost remotely and potentially execute arbitrary code.
Squid contains vulnerabilities in the code handling WCCP, HTTP and LDAP which could lead to Denial of Service, access control bypass, web cache and log poisoning. [More...]
enscript suffers from vulnerabilities and design flaws, potentially resulting in the execution of arbitrary code.
UW IMAP contains a vulnerability in the code handling CRAM-MD5 authentication allowing authentication bypass.
FireHOL is vulnerable to symlink attacks, potentially allowing a local user to overwrite arbitrary files.
ClamAV contains two vulnerabilities that could lead to Denial of Service and evasion of virus scanning.