SuSE Essential and Critical Security Patch Updates - Page 774
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
The SUSE Linux Enterprise 10 Service Pack 2 kernel was updated to The SUSE Linux Enterprise 10 Service Pack 2 kernel was updated to version 2.6.16.60-0.34 to fix some security issues and various bugs. version 2.6.16.60-0.34 to fix some security issues and various bugs. The following security problems have been fixed: CVE-2008-5079: net/atm/svc.c in the ATM subsystem allowed local users to cause [More...]
The IBM Java JRE 5 was brought to Service Release 9 fixing quite a The IBM Java JRE 5 was brought to Service Release 9 fixing quite a number of security issues and bugs. number of security issues and bugs. The update fixes the following security problems: CVE-2008-5350: A security vulnerability in the Java Runtime Environment (JRE) may allow an untrusted applet or application to list the contents [More...]
The OpenSSL certificate checking routines EVP_VerifyFinal can return The OpenSSL certificate checking routines EVP_VerifyFinal can return negative values and 0 on failure. In some places negative values negative values and 0 on failure. In some places negative values were not checked and considered successful verification. Prior to this update it was possible to bypass the certification chain chec [More...]
The DNS daemon bind is used to resolve and lookup addresses on the inter- The DNS daemon bind is used to resolve and lookup addresses on the inter- net. net. Some month ago a vulnerability in the DNS protocol and its numbers was published that allowed easy spoofing of DNS entries. The only way to pro- tect against spoofing is to use DNSSEC. Unfortunately the bind code that verifys the certificatio [More...]
The openSUSE 10.3 kernel was updated to fix various security problems The openSUSE 10.3 kernel was updated to fix various security problems and bugs. Following security bugs were fixed: and bugs. Following security bugs were fixed: CVE-2008-5079: net/atm/svc.c in the ATM subsystem allowed local users to cause a denial of service (kernel infinite loop) by making two calls to svc_listen for the sam [More...]
This update fixes various security issues and several bugs in the This update fixes various security issues and several bugs in the openSUSE 11.0 kernel. openSUSE 11.0 kernel. The kernel was also updated to the stable version 2.6.25.20, including its bugfixes. Following security issues were fixed:
To avoid flooding mailing lists with SUSE Security Announcements for minor To avoid flooding mailing lists with SUSE Security Announcements for minor issues, SUSE Security releases weekly summary reports for the low profile issues, SUSE Security releases weekly summary reports for the low profile vulnerability fixes. The SUSE Security Summary Reports do not list or download URLs like the SUSE Secu [More...]
Various Mozilla browser suite programs were updated to the last Various Mozilla browser suite programs were updated to the last security release. security release. The Mozilla Firefox 3.0.5 browser, Seamonkey 1.1.14 and xulrunner190 update were already published before Christmas, please see SUSE-SA:2008:058.
To avoid flooding mailing lists with SUSE Security Announcements for minor To avoid flooding mailing lists with SUSE Security Announcements for minor issues, SUSE Security releases weekly summary reports for the low profile issues, SUSE Security releases weekly summary reports for the low profile vulnerability fixes. The SUSE Security Summary Reports do not list or download URLs like the SUSE Secu [More...]
Sun Java received several security fixes and was updated to: Sun Java received several security fixes and was updated to: - Sun Java 1.6.0 to Update 11-b03 - Sun Java 1.5.0 to Update 17 - Sun Java 1.4.2 to Update 19 Numerous security issues such as privilege escalations, and sandbox
The Adobe Flash Player was updated to fix an unspecified vulnerability The Adobe Flash Player was updated to fix an unspecified vulnerability that allowed attackers to take control of the victim's system by that allowed attackers to take control of the victim's system by having the victim load a specially crafted SWF file, for instance embedded in a web page (CVE-2008-5499). 2) Solution or Work-A [More...]
The Mozilla Firefox browser was updated to version 3.0.5, fixing The Mozilla Firefox browser was updated to version 3.0.5, fixing various security issues and stability problems. various security issues and stability problems. The Mozilla Seamonkey browser was updated to version 1.1.14, also fixing various security issues and stability problems. The other Mozilla browsers and suites are still bein [More...]
To avoid flooding mailing lists with SUSE Security Announcements for minor To avoid flooding mailing lists with SUSE Security Announcements for minor issues, SUSE Security releases weekly summary reports for the low profile issues, SUSE Security releases weekly summary reports for the low profile vulnerability fixes. The SUSE Security Summary Reports do not list or download URLs like the SUSE Secu [More...]
To avoid flooding mailing lists with SUSE Security Announcements for minor To avoid flooding mailing lists with SUSE Security Announcements for minor issues, SUSE Security releases weekly summary reports for the low profile issues, SUSE Security releases weekly summary reports for the low profile vulnerability fixes. The SUSE Security Summary Reports do not list or download URLs like the SUSE Secu [More...]
To avoid flooding mailing lists with SUSE Security Announcements for minor To avoid flooding mailing lists with SUSE Security Announcements for minor issues, SUSE Security releases weekly summary reports for the low profile issues, SUSE Security releases weekly summary reports for the low profile vulnerability fixes. The SUSE Security Summary Reports do not list or download URLs like the SUSE Secu [More...]
To avoid flooding mailing lists with SUSE Security Announcements for minor To avoid flooding mailing lists with SUSE Security Announcements for minor issues, SUSE Security releases weekly summary reports for the low profile issues, SUSE Security releases weekly summary reports for the low profile vulnerability fixes. The SUSE Security Summary Reports do not list or download URLs like the SUSE Secu [More...]
To avoid flooding mailing lists with SUSE Security Announcements for minor To avoid flooding mailing lists with SUSE Security Announcements for minor issues, SUSE Security releases weekly summary reports for the low profile issues, SUSE Security releases weekly summary reports for the low profile vulnerability fixes. The SUSE Security Summary Reports do not list or download URLs like the SUSE Secu [More...]
The openwsman project provides an implementation of the Web Service The openwsman project provides an implementation of the Web Service Management specification. Management specification. The SuSE Security-Team has found two critical issues in the code: - two remote buffer overflows while decoding the HTTP basic authenticationheader (CVE-2008-2234) - a possible SSL session replay attack affectin [More...]
Postfix is a well known MTA. Postfix is a well known MTA. During a source code audit the SuSE Security-Team discovered a local During a source code audit the SuSE Security-Team discovered a local privilege escalation bug (CVE-2008-2936) as well as a mailbox ownership problem (CVE-2008-2937) in postfix. The first bug allowed local users to execute arbitrary commands as root while the second one al [More...]
To avoid flooding mailing lists with SUSE Security Announcements for minor To avoid flooding mailing lists with SUSE Security Announcements for minor issues, SUSE Security releases weekly summary reports for the low profile issues, SUSE Security releases weekly summary reports for the low profile vulnerability fixes. The SUSE Security Summary Reports do not list or download URLs like the SUSE Secu [More...]