Secunia Logo  


Secunia PSI WorldMap
 
Vulnerability Report: Mandrake Linux 7.x
This vulnerability report for Mandrake Linux 7.x contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in Mandrake Linux 7.x then you are more than welcome to contact us.


Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2009
2.2. Statistics for 2008
2.3. Statistics for 2007
2.4. Statistics for 2006
2.5. Statistics for 2005
2.6. Statistics for 2004
2.7. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2009
3.2. List for 2008
3.3. List for 2007
3.4. List for 2006
3.5. List for 2005
3.6. List for 2004
3.7. List for 2003

4. Send Feedback
 
Vendor, Links, and Unpatched Vulnerabilities

Vendor Mandriva

Product Link View Here (Link to external site)

Affected By 45 Secunia advisories
0 Vulnerabilities

Monitor Product Receive alerts for this product





27 Secunia Advisories in 2003
Secunia has issued a total of 27 Secunia advisories in 2003 for Mandrake Linux 7.x. Currently, 0% (0 out of 27) are marked as unpatched.

More information about the specific Secunia advisories affecting Mandrake Linux 7.x can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.



nfs-utils "xlog()" Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 1 of 27 in 2003. 14,396 views.
Release Date:
2003-07-14
Secunia Advisory ID:
SA9259
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
A vulnerability has been reported in nfs-utils, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Linux-PAM User Name Spoofing Vulnerability
Vendor Patch. Secunia Advisory 2 of 27 in 2003. 14,529 views.
Release Date:
2003-06-17
Secunia Advisory ID:
SA9057
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been identified in Linux-PAM, which allows malicious, local users to escalate their privileges. [Read More]


Xinetd Connection Reject Memory Leak
Vendor Patch. Secunia Advisory 3 of 27 in 2003. 11,248 views.
Release Date:
2003-04-22
Secunia Advisory ID:
SA8632
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
A vulnerability has been identified in Xinetd, which can be exploited by malicious people to cause a DoS (Denial of Service) on a vulnerable system. [Read More]


Samba exploitable buffer overflow
Vendor Patch. Secunia Advisory 4 of 27 in 2003. 15,341 views.
Release Date:
2003-04-07
Secunia Advisory ID:
SA8533
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Samba is vulnerable to a buffer overflow, which can be exploited by anonymous users. [Read More]


Sendmail Address Parsing Buffer Overflow
Vendor Patch. Secunia Advisory 5 of 27 in 2003. 18,972 views.
Release Date:
2003-03-30
Secunia Advisory ID:
SA8446
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Sendmail, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Mandrake update for kernel 2.2
Vendor Patch. Secunia Advisory 6 of 27 in 2003. 5,732 views.
Release Date:
2003-03-28
Secunia Advisory ID:
SA8437
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Privilege escalation
DoS
Where:
From remote
Short Description:
MandrakeSoft has released updated packages for kernel version 2.2. These fix three vulnerabilities: An information disclosure vulnerability, a Denial of Service vulnerability, and a privilege escalation vulnerability. [Read More]


Mandrake updates for glibc
Vendor Patch. Secunia Advisory 7 of 27 in 2003. 7,094 views.
Release Date:
2003-03-26
Secunia Advisory ID:
SA8410
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
DoS
Where:
From remote
Short Description:
Mandrake has issued updates to RPC XDR. A vulnerability has been discovered allowing malicious users to cause an integer overflow, this could lead to a Denial of Service and possibly also execution of arbitrary code. [Read More]


Mandrake updates for openssl
Vendor Patch. Secunia Advisory 8 of 27 in 2003. 7,328 views.
Release Date:
2003-03-26
Secunia Advisory ID:
SA8409
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of system information
Where:
From remote
Short Description:
Mandrake has issued updates to openssl. Two vulnerabilities has been discovered, one allowing malicious people to extract the premaster-secret, the other allowed malicious people to extract the RSA secret. [Read More]


Multiple Vendor RPC XDR Library Integer Overflow
Vendor Patch. Secunia Advisory 9 of 27 in 2003. 13,810 views.
Release Date:
2003-03-20
Secunia Advisory ID:
SA8347
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
A vulnerability identified in multiple *NIX operating systems and software can be exploited by malicious people to conduct a DoS attack (Denial of Service) on a vulnerable system or potentially compromise it. [Read More]


Samba Packet Fragment Re-assembly Buffer Overflow
Vendor Patch. Secunia Advisory 10 of 27 in 2003. 14,708 views.
Release Date:
2003-03-17
Secunia Advisory ID:
SA8299
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
A vulnerability has been identified in Samba, which can be exploited by a malicious person to compromise a vulnerable server. [Read More]


Mandrake updates for file
Vendor Patch. Secunia Advisory 11 of 27 in 2003. 6,215 views.
Release Date:
2003-03-07
Secunia Advisory ID:
SA8241
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
MandrakeSoft has released updates for the utility "file". These fix a vulnerability exploitable by malicious, local users to escalate their privileges. [Read More]


File utility possible privilege escalation
Vendor Patch. Secunia Advisory 12 of 27 in 2003. 8,328 views.
Release Date:
2003-03-05
Secunia Advisory ID:
SA8224
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A boundary error identified in the utility "file" included in many *nix distributions can potentially be exploited by malicious users to escalate their privileges. [Read More]


Mandrake updates for sendmail
Vendor Patch. Secunia Advisory 13 of 27 in 2003. 5,660 views.
Release Date:
2003-03-03
Secunia Advisory ID:
SA8196
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Mandrake has issued updates for sendmail. Sendmail has been found vulnerable to an issue that could lead to remote root compromise. The problem is with parsing of certain headers. [Read More]


Mandrake updates for webmin
Vendor Patch. Secunia Advisory 14 of 27 in 2003. 6,720 views.
Release Date:
2003-02-27
Secunia Advisory ID:
SA8163
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Mandrake has issued updates for WebTool which is derived from Webmin. A vulnerability exists which may allows users to bypass the authentication process by including a special metacharacter in the BASE64 encoded authentication string. [Read More]


Mandrake updates for VNC
Vendor Patch. Secunia Advisory 15 of 27 in 2003. 7,159 views.
Release Date:
2003-02-25
Secunia Advisory ID:
SA8139
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Mandrake has issued updates for VNC. These fix a vulnerability allowing attackers to perform a replay attack. [Read More]


Mandrake updates for lynx
Vendor Patch. Secunia Advisory 16 of 27 in 2003. 6,207 views.
Release Date:
2003-02-25
Secunia Advisory ID:
SA8138
Solution Status:
Vendor Patch
Criticality:
Impact:
Manipulation of data
Where:
Local system
Short Description:
Mandrake has issued updated packages to fix a vulnerability in lynx. [Read More]


Mandrake updates for openssl
Vendor Patch. Secunia Advisory 17 of 27 in 2003. 5,775 views.
Release Date:
2003-02-22
Secunia Advisory ID:
SA8112
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Where:
From remote
Short Description:
MandrakeSoft has released updated packages for openssl. These eliminate an information disclosure vulnerability, which can be exploited by malicious people to gain knowledge of a used plaintext block in a SSL/TLS session. [Read More]


Mandrake updates to postgresql
Vendor Patch. Secunia Advisory 18 of 27 in 2003. 6,092 views.
Release Date:
2003-02-12
Secunia Advisory ID:
SA8034
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Mandrake has issued updates to postgresql as more buffer overflows has been identified. [Read More]


Mandrake updates to mysql
Vendor Patch. Secunia Advisory 19 of 27 in 2003. 5,680 views.
Release Date:
2003-02-04
Secunia Advisory ID:
SA7989
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Mandrake has issued updates to mysql. A double free'd pointer bug in mysql_change_user allowed logged in users to crash mysqld. [Read More]


Mandrake updates to vim
Vendor Patch. Secunia Advisory 20 of 27 in 2003. 5,382 views.
Release Date:
2003-02-04
Secunia Advisory ID:
SA7988
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Mandrake has issued updates to vim. It is possible to create malicious text files that can execute arbitrary commands when loaded into vim. The problem is that vim reads the text file and looks for comments, these comments can be exploited to call external commands. [Read More]


Mandrake updates to fetchmail
Vendor Patch. Secunia Advisory 21 of 27 in 2003. 5,222 views.
Release Date:
2003-01-28
Secunia Advisory ID:
SA7958
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Mandrake has issued updates to fetchmail, to fix a remotely expoitable heap overflow. [Read More]


Mandrake update for libpng
Vendor Patch. Secunia Advisory 22 of 27 in 2003. 5,832 views.
Release Date:
2003-01-21
Secunia Advisory ID:
SA7911
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
MandrakeSoft has issued an update for libpng. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Mandrake updates to CVS
Vendor Patch. Secunia Advisory 23 of 27 in 2003. 5,515 views.
Release Date:
2003-01-21
Secunia Advisory ID:
SA7912
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Mandrake has issued updates to fix the double-free vulnerability in CVS, allowing anonymous remote users to execute arbitrary code. [Read More]


Mandrake updates to dhcp
Vendor Patch. Secunia Advisory 24 of 27 in 2003. 6,604 views.
Release Date:
2003-01-19
Secunia Advisory ID:
SA7896
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Mandrake has issued updates to the dhcp,to fix the stack overflow in the minires library. [Read More]


Mandrake updated to dhcpcd
Vendor Patch. Secunia Advisory 25 of 27 in 2003. 5,485 views.
Release Date:
2003-01-10
Secunia Advisory ID:
SA7845
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Mandrake has issued updated packages to dhcpcd. [Read More]


Mandrake updates to xpdf
Vendor Patch. Secunia Advisory 26 of 27 in 2003. 5,440 views.
Release Date:
2003-01-10
Secunia Advisory ID:
SA7844
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Mandrake has issued updates to xpdf to fix an integer overflow. [Read More]


Mandrake updates to CUPS
Vendor Patch. Secunia Advisory 27 of 27 in 2003. 5,800 views.
Release Date:
2003-01-10
Secunia Advisory ID:
SA7843
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Mandrake has issued updates to CUPS to fix multiple vulnerabilities. [Read More]