SuSE Essential and Critical Security Patch Updates - Page 796
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
The Opera web-browser allows an attacker to execute arbitrary code by The Opera web-browser allows an attacker to execute arbitrary code by providing an invalid pointer to a virtual function in JavaScript. providing an invalid pointer to a virtual function in JavaScript. This bug can be exploited automatically when a user visits a web-site that contains the attacker's JavaScript code. 2) Solution [More...]
Various Mozilla family browsers have been updated to their current Various Mozilla family browsers have been updated to their current security release versions. security release versions. The Mozilla Seamonkey suite was brought to security update version 1.0.9. The Mozilla Firefox browser was brought to security update version
This kernel update fixes the following security problems in our SUSE This kernel update fixes the following security problems in our SUSE Linux Enterprise Server 9, Novell Linux Desktop 9 and Open Enterprise Linux Enterprise Server 9, Novell Linux Desktop 9 and Open Enterprise Server kernels. - CVE-2006-2936: The ftdi_sio driver allowed local users to cause adenial of service (memory consumption) [More...]
The Open Source PBX software Asterisk was updated The Open Source PBX software Asterisk was updated to fix several security related bugs that allowed attackers to remotely to fix several security related bugs that allowed attackers to remotely crash asterisk or cause information leaks: - CVE-2007-1306: Asterisk allowed remote attackers to cause a denialof service (crash) by sending a Session Init [More...]
The anti-virus scan engine ClamAV was upgraded to version 0.90.3 to The anti-virus scan engine ClamAV was upgraded to version 0.90.3 to fix several security bugs: fix several security bugs: - Wrong calculation of buffer-end (CVE-2007-3023) - Use strict permissions for temporary files (CVE-2007-3024) - Heap corruption causing denial-of-service with corrupted rar archive(no CVE assigned at this tim [More...]
Numerous numerous vulnerabilities have been fixed in PHP. Numerous numerous vulnerabilities have been fixed in PHP. Most of them were made public during the "Month of PHP Bugs" project by Stefan Esser and we thank Stefan for his reports. The vulnerabilities potentially lead to crashes, information leaks or even execution of malicious code.
The Samba server was affected by several security problems which have The Samba server was affected by several security problems which have been fixed. been fixed. Following security problems were fixed: CVE-2007-2446: Specially crafted MS-RPC packets could overwrite heap memory and therefore could potentially be exploited to execute code.
This kernel update for SUSE Linux 9.3 fixes the following security problems: This kernel update for SUSE Linux 9.3 fixes the following security problems: - CVE-2006-2936: The ftdi_sio driver allowed local users to cause a denialof service (memory consumption) by writing more data tothe serial port than the hardware can handle, which causesthe data to be queued. This requires this driver to beload [More...]
This kernel update for openSUSE 10.2 fixes the following security problems: This kernel update for openSUSE 10.2 fixes the following security problems: - CVE-2007-1000 A NULL pointer dereference in the IPv6 sockopt handling could potentially be used by local attackers to read arbitrary kernel memory and thereby gain access to private information. - CVE-2007-1388 A NULL pointer dereference cou [More...]
This version update of Opera to 9.20 fixes numerous defects including This version update of Opera to 9.20 fixes numerous defects including some security problems. some security problems. The full Changelog is available on https://help.opera.com/en/latest/ Security issues fixed by Opera:
Several X security problems were fixed that could be used by local Several X security problems were fixed that could be used by local attackers to crash the X server or potentially to execute code as attackers to crash the X server or potentially to execute code as root user. - CVE-2007-1003: Integer overflows in the XC-MISC extension of theX-server could potentially be exploited to execute code [More...]
The AntiVirus scan engine clamav was updated to version 0.90.2. Among The AntiVirus scan engine clamav was updated to version 0.90.2. Among other bugs two security problems were fixed which could cause a remote other bugs two security problems were fixed which could cause a remote denial of service attack against clamav or potentially be used to execute code. - CVE-2007-1745: The chm_decompress_s [More...]
The krb5 telnet daemon allowed remote attackers to skip The krb5 telnet daemon allowed remote attackers to skip authentication and gain root access (CVE-2007-0956) authentication and gain root access (CVE-2007-0956) A bug in the function krb5_klog_syslog() leads to a buffer overflow which could be exploited to execute arbitrary code (CVE-2007-0957). A double-free bug in the GSS-API library could [More...]
When printing a text stream with a GPG signature it was possible When printing a text stream with a GPG signature it was possible for an attacker to create a stream with "unsigned text, signed text" for an attacker to create a stream with "unsigned text, signed text" where both unsigned and signed text would be shown without distinction which one was signed and which part wasn't. This problem is [More...]
Several security problems were fixed in the Wordperfect converter library Several security problems were fixed in the Wordperfect converter library libwpd and OpenOffice_org: libwpd and OpenOffice_org: For SUSE Linux 10.1 this aligns the version with the one shipped with SUSE Linux Enterprise Desktop 10. - CVE-2007-0002: Various problems were fixed in libwpd in OpenOffice_org
The mozilla browsers in old products and Mozilla Seamonkey in SUSE The mozilla browsers in old products and Mozilla Seamonkey in SUSE Linux 10.1 were brought to Mozilla Seamonkey to version 1.0.8 and Linux 10.1 were brought to Mozilla Seamonkey to version 1.0.8 and Mozilla Thunderbird was brought to version 1.5.0.10 to fix various security issues. Note that Mozilla Firefox for all distributions a [More...]
The Linux kernel was updated to fix the security problems listed below. The Linux kernel was updated to fix the security problems listed below. This advisory is for the bugs already announced for SUSE Linux Enterprise 10 and SUSE Linux 10.1 in SUSE-SA:2007:018. The packages associated with this update were already released 1 week ago.
Multiple bugs have been fixed in the PHP4 and PHP5 script interpreters. Multiple bugs have been fixed in the PHP4 and PHP5 script interpreters. These include the following security related problems: CVE-2007-0906: Multiple buffer overflows in PHP before 5.2.1 allow attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors in the (1) session, (2) zip, (3) [More...]
The Mozilla Firefox web browser was updated to security update version The Mozilla Firefox web browser was updated to security update version 1.5.0.10 on older products and Mozilla Firefox to version 2.0.0.2 on 1.5.0.10 on older products and Mozilla Firefox to version 2.0.0.2 on openSUSE 10.2 to fix various security issues. Updates for the Mozilla seamonkey suite before 10.2, Mozilla Suite and Mo [More...]
A kernel update has been released to fix the following security problems: A kernel update has been released to fix the following security problems: - CVE-2006-2936: The ftdi_sio driver allowed local users to cause a denialof service (memory consumption) by writing more data tothe serial port than the hardware can handle, which causesthe data to be queued. This requires this driver to beloaded, wh [More...]