Gentoo Essential and Critical Security Patch Updates - Page 167
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
Adobe Acrobat Reader is vulnerable to a buffer overflow that could lead to remote execution of arbitrary code.
Several vulnerabilities related to the use of options in modelines have been found and fixed in Vim. They could potentially result in a local user escalating privileges. [More...]
ncpfs is vulnerable to a buffer overflow that could lead to local execution of arbitrary code with elevated privileges.
Multiple vulnerabilities have been discovered in nfs-utils that could lead to a Denial of Service, or the execution of arbitrary code.
The code for parsing ELF headers in file contains a flaw which may allow an attacker to execute arbitrary code.
PHProjekt contains a vulnerability in the setup procedure allowing remote users without admin rights to change the configuration.
mirrorselect is vulnerable to symlink attacks, potentially allowing a local user to overwrite arbitrary files.
Perl is vulnerable to symlink attacks, potentially allowing a local user to overwrite arbitrary files.
Multiple overflows have been found in the imlib library image decoding routines, potentially allowing execution of arbitrary code.
PDFlib is vulnerable to multiple overflows, which can potentially lead to the execution of arbitrary code.
rssh and scponly do not filter command-line options that can be exploited to execute any command, thereby allowing a remote user to completely bypass the restricted shell. [More...]
The Java plug-in security in Sun and Blackdown Java environments can be bypassed to access arbitrary packages, allowing untrusted Java applets to perform unrestricted actions on the host system. [More...]
Open DC Hub contains a buffer overflow that can be exploited to allow remote code execution.
phpMyAdmin is vulnerable to cross-site scripting attacks.
phpWebSite is vulnerable to possible HTTP response splitting attacks.
The Cyrus IMAP Server contains multiple vulnerabilities which could lead to remote execution of arbitrary code.
A bug in the TWiki search function allows an attacker to execute arbitrary commands with the permissions of the user running TWiki.
phpBB contains a vulnerability which allows a remote attacker to execute arbitrary commands with the rights of the web server user.
ProZilla contains several buffer overflow vulnerabilities that can be exploited by a malicious server to execute arbitrary code with the rights of the user running ProZilla. [More...]
pdftohtml includes vulnerable Xpdf code to handle PDF files, making it vulnerable to execution of arbitrary code upon converting a malicious PDF file. [More...]