Red Hat Essential and Critical Security Patch Updates
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
Updated kernel packages that fix several minor security vulnerabilities are now available.
An attacker could create a malicious WebDAV server in such a way as to allow arbitrary code execution on the client connecting via subserversion.
An attacker could create a malicious WebDAV server in such a way as to allow arbitrary code execution on the client.
An updated mailman package that closes a DoS vulnerability in mailman introduced by RHSA-2004:019 is now available.
An updated cadaver package that fixes a vulnerability in neon exploitable by a malicious DAV server is now available.
Updated cvs packages that fix a client vulnerability that could be exploited by a malicious server are now available.
Updated Ethereal packages that fix various security vulnerabilities are now available.
The parsing of unexpected ASN.1 constructs within S/MIME data could cause Mozilla to crash or consume large amounts of memory.
If a Squid configuration uses Access Control Lists (ACLs), a remote attacker could cause allowed access to crafted, prohibited URLs.
Updated httpd packages are now available that fix a denial of service vulnerability in mod_ssl
This patch resolves a DoS attack, a cross-site scripting vulnerability, and a cookie path escape vulnerability.
Updated OpenSSL packages that fix several remote denial of servicevulnerabilities are now available.
Updated OpenSSL packages that fix several remote denial of servicevulnerabilities are available for Red Hat Enterprise Linux 3.
Updated OpenSSL packages that fix a remote denial of service vulnerability are now available for Red Hat Enterprise Linux 2.1.
Using symlinks, this bug can be exploited to cause Sysstat to write to/read from arbitrary files.
Attacker can escape path restrictions set by cookie originator.
These vulnerabilities allow the escape of home-directory restrictions and the execution of arbitrary code.
Updated libxml2 packages that fix an overflow when parsing remote resources are now available.
Updated mod_python packages that fix a denial of service vulnerability are now available for Red Hat Enterprise Linux.