SuSE Essential and Critical Security Patch Updates - Page 796

Find the information you need for your favorite open source distribution .

SuSE: 2007-050: Opera Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The Opera web-browser allows an attacker to execute arbitrary code by The Opera web-browser allows an attacker to execute arbitrary code by providing an invalid pointer to a virtual function in JavaScript. providing an invalid pointer to a virtual function in JavaScript. This bug can be exploited automatically when a user visits a web-site that contains the attacker's JavaScript code. 2) Solution [More...]

SuSE: 2007-035: Linux kernel Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This kernel update fixes the following security problems in our SUSE This kernel update fixes the following security problems in our SUSE Linux Enterprise Server 9, Novell Linux Desktop 9 and Open Enterprise Linux Enterprise Server 9, Novell Linux Desktop 9 and Open Enterprise Server kernels. - CVE-2006-2936: The ftdi_sio driver allowed local users to cause adenial of service (memory consumption) [More...]

SuSE: 2007-034: asterisk Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The Open Source PBX software Asterisk was updated The Open Source PBX software Asterisk was updated to fix several security related bugs that allowed attackers to remotely to fix several security related bugs that allowed attackers to remotely crash asterisk or cause information leaks: - CVE-2007-1306: Asterisk allowed remote attackers to cause a denialof service (crash) by sending a Session Init [More...]

SuSE: 2007-033: clamav 0.90.3 Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The anti-virus scan engine ClamAV was upgraded to version 0.90.3 to The anti-virus scan engine ClamAV was upgraded to version 0.90.3 to fix several security bugs: fix several security bugs: - Wrong calculation of buffer-end (CVE-2007-3023) - Use strict permissions for temporary files (CVE-2007-3024) - Heap corruption causing denial-of-service with corrupted rar archive(no CVE assigned at this tim [More...]

SuSE: 2007-032: php4,php5 security problems Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Numerous numerous vulnerabilities have been fixed in PHP. Numerous numerous vulnerabilities have been fixed in PHP. Most of them were made public during the "Month of PHP Bugs" project by Stefan Esser and we thank Stefan for his reports. The vulnerabilities potentially lead to crashes, information leaks or even execution of malicious code.

SuSE: 2007-031: samba security problems Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The Samba server was affected by several security problems which have The Samba server was affected by several security problems which have been fixed. been fixed. Following security problems were fixed: CVE-2007-2446: Specially crafted MS-RPC packets could overwrite heap memory and therefore could potentially be exploited to execute code.

SuSE: 2007-030: Linux kernel Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This kernel update for SUSE Linux 9.3 fixes the following security problems: This kernel update for SUSE Linux 9.3 fixes the following security problems: - CVE-2006-2936: The ftdi_sio driver allowed local users to cause a denialof service (memory consumption) by writing more data tothe serial port than the hardware can handle, which causesthe data to be queued. This requires this driver to beload [More...]

SuSE: 2007-029: Linux kernel Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This kernel update for openSUSE 10.2 fixes the following security problems: This kernel update for openSUSE 10.2 fixes the following security problems: - CVE-2007-1000 A NULL pointer dereference in the IPv6 sockopt handling could potentially be used by local attackers to read arbitrary kernel memory and thereby gain access to private information. - CVE-2007-1388 A NULL pointer dereference cou [More...]

SuSE: 2007-028: Opera 9.20 Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This version update of Opera to 9.20 fixes numerous defects including This version update of Opera to 9.20 fixes numerous defects including some security problems. some security problems. The full Changelog is available on https://help.opera.com/en/latest/ Security issues fixed by Opera:

SuSE: 2007-027: XFree86,Xorg Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Several X security problems were fixed that could be used by local Several X security problems were fixed that could be used by local attackers to crash the X server or potentially to execute code as attackers to crash the X server or potentially to execute code as root user. - CVE-2007-1003: Integer overflows in the XC-MISC extension of theX-server could potentially be exploited to execute code [More...]

SuSE: 2007-026: clamav update Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The AntiVirus scan engine clamav was updated to version 0.90.2. Among The AntiVirus scan engine clamav was updated to version 0.90.2. Among other bugs two security problems were fixed which could cause a remote other bugs two security problems were fixed which could cause a remote denial of service attack against clamav or potentially be used to execute code. - CVE-2007-1745: The chm_decompress_s [More...]

SuSE: 2007-025: krb5 Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The krb5 telnet daemon allowed remote attackers to skip The krb5 telnet daemon allowed remote attackers to skip authentication and gain root access (CVE-2007-0956) authentication and gain root access (CVE-2007-0956) A bug in the function krb5_klog_syslog() leads to a buffer overflow which could be exploited to execute arbitrary code (CVE-2007-0957). A double-free bug in the GSS-API library could [More...]

SuSE: 2007-024: gpg Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

When printing a text stream with a GPG signature it was possible When printing a text stream with a GPG signature it was possible for an attacker to create a stream with "unsigned text, signed text" for an attacker to create a stream with "unsigned text, signed text" where both unsigned and signed text would be shown without distinction which one was signed and which part wasn't. This problem is [More...]

SuSE: 2007-023: OpenOffice,libwpd security problems Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Several security problems were fixed in the Wordperfect converter library Several security problems were fixed in the Wordperfect converter library libwpd and OpenOffice_org: libwpd and OpenOffice_org: For SUSE Linux 10.1 this aligns the version with the one shipped with SUSE Linux Enterprise Desktop 10. - CVE-2007-0002: Various problems were fixed in libwpd in OpenOffice_org

SuSE: 2007-022: Mozilla security problems Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The mozilla browsers in old products and Mozilla Seamonkey in SUSE The mozilla browsers in old products and Mozilla Seamonkey in SUSE Linux 10.1 were brought to Mozilla Seamonkey to version 1.0.8 and Linux 10.1 were brought to Mozilla Seamonkey to version 1.0.8 and Mozilla Thunderbird was brought to version 1.5.0.10 to fix various security issues. Note that Mozilla Firefox for all distributions a [More...]

SuSE: 2007-021: Linux kernel Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The Linux kernel was updated to fix the security problems listed below. The Linux kernel was updated to fix the security problems listed below. This advisory is for the bugs already announced for SUSE Linux Enterprise 10 and SUSE Linux 10.1 in SUSE-SA:2007:018. The packages associated with this update were already released 1 week ago.

SuSE: 2007-020: php security problems Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Multiple bugs have been fixed in the PHP4 and PHP5 script interpreters. Multiple bugs have been fixed in the PHP4 and PHP5 script interpreters. These include the following security related problems: CVE-2007-0906: Multiple buffer overflows in PHP before 5.2.1 allow attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors in the (1) session, (2) zip, (3) [More...]

SuSE: 2007-019: MozillaFirefox Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The Mozilla Firefox web browser was updated to security update version The Mozilla Firefox web browser was updated to security update version 1.5.0.10 on older products and Mozilla Firefox to version 2.0.0.2 on 1.5.0.10 on older products and Mozilla Firefox to version 2.0.0.2 on openSUSE 10.2 to fix various security issues. Updates for the Mozilla seamonkey suite before 10.2, Mozilla Suite and Mo [More...]

SuSE: 2007-018: Linux Kernel Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

A kernel update has been released to fix the following security problems: A kernel update has been released to fix the following security problems: - CVE-2006-2936: The ftdi_sio driver allowed local users to cause a denialof service (memory consumption) by writing more data tothe serial port than the hardware can handle, which causesthe data to be queued. This requires this driver to beloaded, wh [More...]