Red Hat Essential and Critical Security Patch Updates
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
An updated utempter package that fixes a potential symlink vulnerability is now available.
An attacker could carefully craft a PNG file in such a way that it would cause an application linked to libpng to crash when opened by a victim.
An updated rsync package that fixes a directory traversal security flaw is now available.
Updated mc packages that resolve several buffer overflow vulnerabilities, one format string vulnerability and several temporary file creation vulnerabilities are now available.
An updated cadaver package is now available that fixes a vulnerability in neon which could be exploitable by a malicious DAV server.
An updated cvs package that fixes a server vulnerability that could be exploited by a malicious client is now available.
Updated kdelibs packages that fix telnet URI handler and mailto URI handler file vulnerabilities are now available.
This patch fixes three seperate vulnerabilities in IPSec under Red Hat.
This patches the 2.4.x kernel for a wide variety of platforms to fix a large number of bugs, including several with security implications.
This patch corrects many vulnerabilities of Midnight Commander.
An attacker could create a malicious WebDAV server in such a way as to allow arbitrary code execution on the client should a user connect to it using OpenOffice.
An attacker could carefully craft a PNG file in such a way that it would cause an application linked to libpng to crash when opened by a victim.
Utemper can be userd to overwrite privileged files with symlink.
Updated httpd packages are now available that fix a denial of service vulnerability in mod_ssl and include various other bug fixes.
Ulf Harnhammar discovered two stack buffer overflows and two directory traversal flaws in LHA.
An updated X-Chat package fixes a vulnerability which could be exploited by a malicious Socks-5 proxy is now available.
Updated kernel packages that fix two privilege escalation vulnerabilities are now available.
Flaws in XFree86 4.1.0 allows local or remote attackers who are able to connect to the X server to cause a denial of service.
Updated IA64 kernel packages fix a variety of security vulnerabilities.
Updated kernel packages that fix a security vulnerability which may allowlocal users to gain root privileges are now available.