SuSE Essential and Critical Security Patch Updates - Page 772

Find the information you need for your favorite open source distribution .

SuSE: 2009-039: Mozilla Firefox 3.0.12 Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The MozillaFirefox 3.0.12 release fixes various bugs and some critical The MozillaFirefox 3.0.12 release fixes various bugs and some critical security issues. security issues. MFSA 2009-34 / CVE-2009-2462 / CVE-2009-2463 / CVE-2009-2464 / CVE-2009-2465 / CVE-2009-2466: Mozilla developers and community members identified and fixed several stability bugs in the browser engine used in Firefox and

SuSE: 2009-038: Linux Kernel Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The SUSE Linux Enterprise 11 and openSUSE 11.1 kernel was updated to The SUSE Linux Enterprise 11 and openSUSE 11.1 kernel was updated to fix various bugs and several security issues. It was also updated to fix various bugs and several security issues. It was also updated to the stable release 2.6.27.25. Following security issues were fixed: CVE-2009-1961: A local denial of service problem in the [More...]

SuSE: 2009-037: dhcp-client Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The DHCP client (dhclient) could be crashed by a malicious DHCP The DHCP client (dhclient) could be crashed by a malicious DHCP server sending an overlong subnet field (CVE-2009-0692). server sending an overlong subnet field (CVE-2009-0692). In theory a malicious DHCP server could exploit the flaw to execute arbitrary code as root on machines using dhclient to obtain network settings. Newer distr [More...]

SuSE: Weekly Summary 2009:012

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

To avoid flooding mailing lists with SUSE Security Announcements for minor To avoid flooding mailing lists with SUSE Security Announcements for minor issues, SUSE Security releases weekly summary reports for the low profile issues, SUSE Security releases weekly summary reports for the low profile vulnerability fixes. The SUSE Security Summary Reports do not list or download URLs like the SUSE Secu [More...]

SuSE: 2009-036: IBM Java 6 Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

IBM Java 6 SR 5 was released fixing various bugs and critical security IBM Java 6 SR 5 was released fixing various bugs and critical security issues: issues: CVE-2009-1093: A vulnerability in the Java Runtime Environment (JRE) with initializing LDAP connections may be exploited by a remote client to cause a denial-of-service condition on the LDAP service.

SuSE: 2009-035: Acrobat Reader Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This update of the Adobe Acrobat Reader acroread to version 8.1.6 This update of the Adobe Acrobat Reader acroread to version 8.1.6 fixes the following vulnerabilities: fixes the following vulnerabilities: - CVE-2009-1855: stack overflow that could lead to code execution - CVE-2009-1856: integer overflow with potential to lead to arbitrarycode execution - CVE-2009-1857: memory corruption with pote [More...]

SuSE: 2009-034: Mozilla Firefox 3.0.11 Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The Mozilla Firefox browser was updated to version 3.0.11, fixing The Mozilla Firefox browser was updated to version 3.0.11, fixing various bugs and security issues: various bugs and security issues: * MFSA 2009-24/CVE-2009-1392/CVE-2009-1832/CVE-2009-1833 Crashes with evidence of memory corruption (rv:1.9.0.11)* MFSA 2009-25/CVE-2009-1834 (bmo#479413) URL spoofing with invalid unicode character [More...]

SuSE: 2009-033: Linux kernel Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This update of the Linux kernel for SUSE Linux Enterprise Server 9 This update of the Linux kernel for SUSE Linux Enterprise Server 9 SP4 contains various bug- and two security-fixes. SP4 contains various bug- and two security-fixes. The following security vulnerabilities have been fixed: CVE-2009-1072: nfsd in the Linux kernel did not drop the CAP_MKNOD capability before handling a user request [More...]

SuSE: Weekly Summary 2009:011

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

To avoid flooding mailing lists with SUSE Security Announcements for minor To avoid flooding mailing lists with SUSE Security Announcements for minor issues, SUSE Security releases weekly summary reports for the low profile issues, SUSE Security releases weekly summary reports for the low profile vulnerability fixes. The SUSE Security Summary Reports do not list or download URLs like the SUSE Secu [More...]

SuSE: 2009-032: Linux kernel Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This Linux kernel update for SUSE Linux Enterprise 11 and openSUSE This Linux kernel update for SUSE Linux Enterprise 11 and openSUSE 11.1 fixes lots of bugs and some security issues. The kernel was also 11.1 fixes lots of bugs and some security issues. The kernel was also updated to the 2.6.27.23 stable release. Following security issues have been fixed: CVE-2009-1439: Buffer overflow in fs/cifs [More...]

SuSE: 2009-031: Linux kernel Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This kernel update for openSUSE 11.0 fixes some bugs and several This kernel update for openSUSE 11.0 fixes some bugs and several security problems. security problems. The following security issues are fixed: CVE-2009-0065: Buffer overflow in net/sctp/sm_statefuns.c in the Stream Control Transmission Protocol (sctp) implementation in the Linux kernel allows remote attackers to remotely execute co [More...]

SuSE: 2009-030: Linux kernel Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This kernel update for openSUSE 10.3 fixes some bugs and several This kernel update for openSUSE 10.3 fixes some bugs and several security problems. security problems. The following security issues are fixed: CVE-2009-0065: Buffer overflow in net/sctp/sm_statefuns.c in the Stream Control Transmission Protocol (sctp) implementation in the

SuSE: 2009-029: IBM Java 5 Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The update brings IBM Java 5 to SR9-SSU. The update brings IBM Java 5 to SR9-SSU. It fixes a lot of security issues: CVE-2009-1100: A vulnerability in the Java Runtime Environment (JRE) with storing temporary font files may allow an untrusted applet or application to consume a disproportionate amount of disk space resulting in a denial-of-service condition.

SuSE: 2009-028: Linux kernel Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The Linux kernel on SUSE Linux Enterprise 10 Service Pack 2 was The Linux kernel on SUSE Linux Enterprise 10 Service Pack 2 was updated to fix various security issues and several bugs. updated to fix various security issues and several bugs. Following security issues were fixed: CVE-2009-0834: The audit_syscall_entry function in the Linux kernel on the x86_64 platform did not properly handle (1) [More...]

SuSE: 2009-027: Acrobat Reader Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The Adobe Acrobat Reader "acroread" received fixes for two The Adobe Acrobat Reader "acroread" received fixes for two vulnerabilities in the JavaScript API that allowed attackers vulnerabilities in the JavaScript API that allowed attackers to execute arbitrary code with a malformed PDF file. (CVE-2009-1492,CVE-2009-1493) 2) Solution or Work-Around

SuSE: Weekly Summary 2009:010

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

To avoid flooding mailing lists with SUSE Security Announcements for minor To avoid flooding mailing lists with SUSE Security Announcements for minor issues, SUSE Security releases weekly summary reports for the low profile issues, SUSE Security releases weekly summary reports for the low profile vulnerability fixes. The SUSE Security Summary Reports do not list or download URLs like the SUSE Secu [More...]

SuSE: 2009-026: glib2 Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The advisory was resent because the previous one contained the wrong The advisory was resent because the previous one contained the wrong Announcement ID. Announcement ID. The code library glib2 provides base64 encoding and decoding functions that are vulnerable to integer overflows when processing very large strings. Processes using this library functions for processing data from the network

SuSE: 2009-025: glib2 Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The code library glib2 provides base64 encoding and decoding functions The code library glib2 provides base64 encoding and decoding functions that are vulnerable to integer overflows when processing very large strings. that are vulnerable to integer overflows when processing very large strings. Processes using this library functions for processing data from the network can be exploited remotely t [More...]

SuSE: 2009-025: udev local root exploit Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This update fixes a local privilege escalation in udev. We previously This update fixes a local privilege escalation in udev. We previously released these updates and the advisory as SUSE-SA:2009:020 on released these updates and the advisory as SUSE-SA:2009:020 on April 16. Due to a mistake the patch fixing the security problem was not applied to the udev package, and we did not spot this during [More...]

SuSE: 2009-024: cups Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The Common Unix Printing System, CUPS, is a printing server for unix-like The Common Unix Printing System, CUPS, is a printing server for unix-like operating systems. It allows a local user to print documents as well as operating systems. It allows a local user to print documents as well as remote users via port 631/tcp. There were two security vulnerabilities fixed in cups. The first one can be [More...]