|
Vulnerability Report:
|
This vulnerability report for contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.
If you have information about a new or an existing vulnerability in then you are more than welcome to contact us.
|
|
|
|
|
Vendor, Links, and Unpatched Vulnerabilities
|
|
|
|
171 Secunia Advisories in 2004
|
Secunia has issued a total of 171 Secunia advisories in 2004 for . Currently, 0% (0 out of 171) are marked as unpatched.
More information about the specific Secunia advisories affecting can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.
|
|
|
|
|
|
Release Date: 2004-12-30 |
Secunia Advisory ID: SA13681 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xpdf. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-25 |
Secunia Advisory ID: SA13667 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for imlib. This fixes multiple vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-25 |
Secunia Advisory ID: SA13666 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tiff. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-24 |
Secunia Advisory ID: SA13663 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for netkit-telnet-ssl. This fixes a vulnerability, which potentially allows malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-23 |
Secunia Advisory ID: SA13633 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Javier Fernández-Sanguino Peña has reported a vulnerability in debmake, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-21 |
Secunia Advisory ID: SA13575 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: Debian has issued an update for ethereal. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-12-21 |
Secunia Advisory ID: SA13584 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xzgv. This fixes multiple vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-20 |
Secunia Advisory ID: SA13519 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for a2ps. This fixes a vulnerability, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-17 |
Secunia Advisory ID: SA13521 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for cscope. This fixes a vulnerability, which potentially can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-15 |
Secunia Advisory ID: SA13461 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for zgv. This fixes multiple vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-15 |
Secunia Advisory ID: SA13473 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for atari800. This fixes multiple vulnerabilities, which can be exploited by malicious, local users to escalate their privileges on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-13 |
Secunia Advisory ID: SA13417 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xfree86. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-09 |
Secunia Advisory ID: SA13403 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for nfs-utils. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-12-06 |
Secunia Advisory ID: SA13380 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for viewcvs. This fixes a vulnerability, which can be exploited by malicious users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-03 |
Secunia Advisory ID: SA13371 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From local network |
|
Short Description: infamous41md has reported a vulnerability in hpsockd, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-02 |
Secunia Advisory ID: SA13343 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for openssl. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-30 |
Secunia Advisory ID: SA13338 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libgd. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-30 |
Secunia Advisory ID: SA13337 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libgd2. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-26 |
Secunia Advisory ID: SA13320 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tetex-bin. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-26 |
Secunia Advisory ID: SA13313 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an updated for yardradius. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-25 |
Secunia Advisory ID: SA13310 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for cyrus-imapd. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-24 |
Secunia Advisory ID: SA13305 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for sudo. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-17 |
Secunia Advisory ID: SA13220 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for apache. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-16 |
Secunia Advisory ID: SA13214 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for imagemagick. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-12 |
Secunia Advisory ID: SA13183 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ez-ipupdate. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-11 |
Secunia Advisory ID: SA13153 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gnats. This fixes a vulnerability, which potentially can be exploited by malicious users to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-10 |
Secunia Advisory ID: SA13152 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libgd1. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-10 |
Secunia Advisory ID: SA13154 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libgd2. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-08 |
Secunia Advisory ID: SA13133 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for ruby. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-11-08 |
Secunia Advisory ID: SA13121 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: Local system |
|
Short Description: Debian has issued an update for shadow. This fixes a vulnerability, which can be exploited by malicious, local users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-08 |
Secunia Advisory ID: SA13112 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an update for dhcp. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-03 |
Secunia Advisory ID: SA13084 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for lvm10. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-03 |
Secunia Advisory ID: SA13082 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xpdf. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-03 |
Secunia Advisory ID: SA13080 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libxml. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-02 |
Secunia Advisory ID: SA13061 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact:
|
Where: From remote |
|
Short Description: [Read More]
|
|
|
|
|
|
Release Date: 2004-11-01 |
Secunia Advisory ID: SA13046 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mpg123. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-29 |
Secunia Advisory ID: SA13032 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for postgresql. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-29 |
Secunia Advisory ID: SA13022 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for catdoc. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-29 |
Secunia Advisory ID: SA13017 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for squid. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and use the system for port scanning other hosts. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-28 |
Secunia Advisory ID: SA13009 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for cabextract. This fixes a vulnerability, which potentially can be exploited to overwrite arbitrary files on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-22 |
Secunia Advisory ID: SA12907 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libpng3. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-22 |
Secunia Advisory ID: SA12906 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libpng. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-22 |
Secunia Advisory ID: SA12934 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for cupsys. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-21 |
Secunia Advisory ID: SA12919 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for ecartis. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-18 |
Secunia Advisory ID: SA12864 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for netkit-telnet-ssl. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-10-18 |
Secunia Advisory ID: SA12852 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for cyrus-sasl-mit. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-18 |
Secunia Advisory ID: SA12851 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tiff. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system or cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-10-15 |
Secunia Advisory ID: SA12838 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Debian has issued an update for cupsys. This fixes a vulnerability, which can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-13 |
Secunia Advisory ID: SA12819 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for SoX. This fixes two vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-13 |
Secunia Advisory ID: SA12820 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mpg123. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-12 |
Secunia Advisory ID: SA12798 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for cyrus-sasl. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-11 |
Secunia Advisory ID: SA12781 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for XFree86. This fixes multiple vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-11 |
Secunia Advisory ID: SA12784 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass DoS System access
|
Where: From local network |
|
Short Description: Debian has issued an update for mysql. This fixes multiple vulnerabilities, which can be exploited by malicious users to bypass certain security restrictions, cause a DoS (Denial of Service), and potentially compromise the system. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-08 |
Secunia Advisory ID: SA12763 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for lesstif. This fixes multiple vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-06 |
Secunia Advisory ID: SA12746 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for net-acct. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-06 |
Secunia Advisory ID: SA12743 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for libapache-mod-dav. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-10-01 |
Secunia Advisory ID: SA12705 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Debian has issued an update for freenet6. This fixes a security issue, which can be exploited by malicious, local users to access sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-28 |
Secunia Advisory ID: SA12667 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for sendmail. This fixes a security issue, which can be exploited by malicious people to use a vulnerable system as an open mail relay. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-27 |
Secunia Advisory ID: SA12657 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for getmail. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-23 |
Secunia Advisory ID: SA12623 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for imlib2. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-22 |
Secunia Advisory ID: SA12614 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation System access
|
Where: From remote |
|
Short Description: Debian has issued an update for lukemftpd. This fixes some vulnerabilities, which potentially can be exploited by malicious users to gain escalated privileges or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-21 |
Secunia Advisory ID: SA12608 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Michal Zalewski has reported a vulnerability in the netkit-telnet package for Debian Linux, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-09-21 |
Secunia Advisory ID: SA12592 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for wv. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-20 |
Secunia Advisory ID: SA12563 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ImageMagick. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-17 |
Secunia Advisory ID: SA12586 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gtk+2.0. This fixes multiple vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-16 |
Secunia Advisory ID: SA12564 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for gdk-pixbuf. This fixes multiple vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-16 |
Secunia Advisory ID: SA12566 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for cupsys. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-09-16 |
Secunia Advisory ID: SA12573 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for imlib. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-15 |
Secunia Advisory ID: SA12537 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for webmin. This fixes a vulnerability, which potentially can be exploited by malicious people to perform certain actions on a system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-01 |
Secunia Advisory ID: SA12411 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for krb5. This fixes multiple vulnerabilities, where the most critical potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-31 |
Secunia Advisory ID: SA12405 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for qt-copy. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-24 |
Secunia Advisory ID: SA12361 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for icecast-server. This fixes a vulnerability, which can be exploited by malicious people to conduct script insertion attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-19 |
Secunia Advisory ID: SA12329 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for MySQL. This fixes a vulnerability, potentially allowing malicious users to escalate their privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-17 |
Secunia Advisory ID: SA12311 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for kdelibs. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-17 |
Secunia Advisory ID: SA12310 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for rsync. This fixes a vulnerability, which potentially can be exploited by malicious users to read or write arbitrary files on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-16 |
Secunia Advisory ID: SA12293 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Debian has issued an update for ruby. This fixes a vulnerability, which potentially can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-05 |
Secunia Advisory ID: SA12221 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libpng. This fixes multiple vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-03 |
Secunia Advisory ID: SA12195 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for squirrelmail. This fixes multiple vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting, script insertion, and SQL injection attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-23 |
Secunia Advisory ID: SA12144 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for courier. This fixes a vulnerability, which can be exploited by malicious people to conduct script insertion attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-23 |
Secunia Advisory ID: SA12143 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From remote |
|
Short Description: [Read More]
|
|
|
|
|
|
Release Date: 2004-07-23 |
Secunia Advisory ID: SA12142 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libapache-mod-ssl. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-21 |
Secunia Advisory ID: SA12113 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass System access
|
Where: From remote |
|
Short Description: Debian has issued an update for php4. This fixes two vulnerabilities, which can be exploited by malicious people to bypass certain security functionality or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-19 |
Secunia Advisory ID: SA12094 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for Ethereal. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-07-19 |
Secunia Advisory ID: SA12096 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for l2tpd. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-19 |
Secunia Advisory ID: SA12095 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for netkit-telnet-ssl. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-05 |
Secunia Advisory ID: SA12005 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for webmin. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-28 |
Secunia Advisory ID: SA11946 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for apache. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-21 |
Secunia Advisory ID: SA11907 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an update for rlpr. This fixes some vulnerabilities in rlpr, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-21 |
Secunia Advisory ID: SA11905 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for super. This fixes a vulnerability, which can be exploited by certain local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-21 |
Secunia Advisory ID: SA11904 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an update for sup. This fixes multiple vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-21 |
Secunia Advisory ID: SA11903 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for www-sql. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-17 |
Secunia Advisory ID: SA11886 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for krb5. This fixes some vulnerabilities, which can be exploited by malicious users to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-10 |
Secunia Advisory ID: SA11822 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for CVS. This fixes multiple vulnerabilities, which can be exploited by malicious users to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-08 |
Secunia Advisory ID: SA11782 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for postgresql. This fixes a vulnerability in the ODBC driver, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-07 |
Secunia Advisory ID: SA11779 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for lha. This fixes multiple vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-07 |
Secunia Advisory ID: SA11769 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for log2mail. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-03 |
Secunia Advisory ID: SA11758 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for gallery. This fixes a vulnerability, which can be exploited by malicious people to bypass the user authentication. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-31 |
Secunia Advisory ID: SA11744 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for ethereal. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system or cause a DoS (Denial-of-Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-05-31 |
Secunia Advisory ID: SA11738 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for gatos. This fixes a vulnerability, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-30 |
Secunia Advisory ID: SA11733 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for jftpgw. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-25 |
Secunia Advisory ID: SA11695 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for xpcd. This fixes three vulnerabilities, which potentially can be exploited by malicious people to execute arbitrary code on a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-19 |
Secunia Advisory ID: SA11654 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for cadaver. These fix a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-19 |
Secunia Advisory ID: SA11651 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for cvs. These fix a vulnerability, which can be exploited by malicious users to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-19 |
Secunia Advisory ID: SA11650 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for libneon. These fix a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-18 |
Secunia Advisory ID: SA11636 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From local network |
|
Short Description: Evgeny Demidov has discovered a vulnerability in Heimdal, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-07 |
Secunia Advisory ID: SA11562 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for exim. These fix two vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-03 |
Secunia Advisory ID: SA11530 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for flim. These fix a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-03 |
Secunia Advisory ID: SA11523 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued updated packages for rsync. These fix a vulnerability, potentially allowing malicious people to write files outside the intended directory. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-30 |
Secunia Advisory ID: SA11508 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updates for mc. These fix some vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-29 |
Secunia Advisory ID: SA11498 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for eterm. These fix a vulnerability, which potentially can be exploited by malicious people to manipulate actions taken by the system administrator and other users on a system. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-22 |
Secunia Advisory ID: SA11455 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for ident2. These fix a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-21 |
Secunia Advisory ID: SA11446 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for xchat. These fix a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-19 |
Secunia Advisory ID: SA11402 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for logcheck. These fix a security issue, which potentially can be exploited by malicious, local users to escalate their privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-19 |
Secunia Advisory ID: SA11400 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued updated packages for CVS. These fix two vulnerabilities allowing malicious servers to compromise clients, and malicious users to retrieve arbitrary files from a vulnerable server. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-19 |
Secunia Advisory ID: SA11401 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for neon. These fix a vulnerability allowing malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-19 |
Secunia Advisory ID: SA11403 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: [Read More]
|
|
|
|
|
|
Release Date: 2004-04-19 |
Secunia Advisory ID: SA11404 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: Debian has issued updated packages for iproute. These fix a vulnerability, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-04-15 |
Secunia Advisory ID: SA11369 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information Privilege escalation DoS
|
Where: Local system |
|
Short Description: Debian has issued updated packages for the kernel. These fix some vulnerabilities, which can be exploited by malicious, local users to escalate their privileges, cause a Denial of Service, and see sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-15 |
Secunia Advisory ID: SA11372 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updates packages for mysql. These fix two vulnerabilities, allowing malicious users to escalate their privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-15 |
Secunia Advisory ID: SA11383 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for xonix. These fix a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-15 |
Secunia Advisory ID: SA11384 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for ssmtp. These fix two vulnerabilities, allowing malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-07 |
Secunia Advisory ID: SA11309 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued updated packages for tcpdump. These fix two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-04-07 |
Secunia Advisory ID: SA11307 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for xine-ui. These fix a vulnerability, which potentially can be exploited by malicious, local users to escalate their privileges on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-07 |
Secunia Advisory ID: SA11306 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From local network |
|
Short Description: Debian has issued updated packages for heimdal. These fix a vulnerability, which can allow certain people to impersonate others. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-05 |
Secunia Advisory ID: SA11291 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for fte. These fix multiple vulnerabilities, which can be exploited by malicious, local users to gain "root" privileges on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-05 |
Secunia Advisory ID: SA11281 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued updated packages for oftpd. These fix a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-04-05 |
Secunia Advisory ID: SA11280 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information Exposure of system information
|
Where: From remote |
|
Short Description: Debian has issued updated packages for interchange. These fix a vulnerability, which can be exploited by malicious people to gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-30 |
Secunia Advisory ID: SA11238 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued updated packages for libpam-pqsql. These fixes a vulnerability, which can be exploited by malicious people to manipulate SQL queries. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-25 |
Secunia Advisory ID: SA11212 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for emil. These fix some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-24 |
Secunia Advisory ID: SA11198 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for ecartis. These fix some vulnerabilities, which can be exploited by malicious people to expose mail addresses and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-18 |
Secunia Advisory ID: SA11151 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued updated packages for OpenSSL. These fix two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial-of-Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-03-16 |
Secunia Advisory ID: SA11137 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued updated packages for gdk-pixbuf. These fix a vulnerability, which can be exploited by malicious people to crash certain applications like Evolution on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-15 |
Secunia Advisory ID: SA11117 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for Samba. These fix a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-12 |
Secunia Advisory ID: SA11115 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for xitalk. These fix a vulnerability, which can be exploited by malicious, local users to gain group "utmp" privileges on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-12 |
Secunia Advisory ID: SA11109 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for Calife. These fix a vulnerability, which potentially can be exploited by malicious, local users to escalate their privileges on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-11 |
Secunia Advisory ID: SA11107 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for sysstat. These fix a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-11 |
Secunia Advisory ID: SA11099 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued updated packages for kdelibs. These fix a vulnerability, which potentially can be exploited to bypass certain cookie path restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-09 |
Secunia Advisory ID: SA11063 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass DoS System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for wu-ftpd. These fix two vulnerabilities, which potentially can be exploited by malicious users to bypass certain restrictions or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-04 |
Secunia Advisory ID: SA11043 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for libxml and libxml2. These fix some vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-01 |
Secunia Advisory ID: SA11011 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: From remote |
|
Short Description: Debian has issued updated packages for xboing. These fix some vulnerabilities, which can be exploited by malicious, local users to escalate their privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-01 |
Secunia Advisory ID: SA11005 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued updated packages for libapache-mod-python. These fix a vulnerability, which can be exploited by malicious people to cause a Denial of Service. [Read More]
|
|
|
|
|
|
Release Date: 2004-02-23 |
Secunia Advisory ID: SA10954 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for lbreakout2. These fix a vulnerability allowing malicious, local users to escalate their privileges on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-02-23 |
Secunia Advisory ID: SA10951 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for hsftp. These fix a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-02-23 |
Secunia Advisory ID: SA10946 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued updated packages for pwlib. These fix some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-02-20 |
Secunia Advisory ID: SA10931 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for XFree86. These fix some vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges or cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-02-18 |
Secunia Advisory ID: SA10913 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for the kernel. These fix some vulnerabilities, which can be exploited by malicious users to escalate their privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-02-12 |
Secunia Advisory ID: SA10857 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: [Read More]
|
|
|
|
|
|
Release Date: 2004-02-09 |
Secunia Advisory ID: SA10813 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting DoS
|
Where: From remote |
|
Short Description: Debian has issued updated packages for mailman. These fix three vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks or crash the mailman process. [Read More]
|
|
|
|
|
|
Release Date: 2004-02-09 |
Secunia Advisory ID: SA10810 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for mpg123. These fix a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-02-06 |
Secunia Advisory ID: SA10803 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for gaim. These fix multiple vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-02-04 |
Secunia Advisory ID: SA10790 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for crawl. These fix multiple vulnerabilities, which can be exploited by malicious, local users to gain privileges as the "games" group. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-29 |
Secunia Advisory ID: SA10745 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for trr19. These fix a vulnerability, allowing malicious users to escalate their privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-27 |
Secunia Advisory ID: SA10715 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued updated packages for gnupg. These fix a vulnerability, which exposes the private key when using El-Gamal type 20 keys. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-21 |
Secunia Advisory ID: SA10683 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for slocate. These fix a vulnerability, which can be exploited by malicious, local users to gain "slocate" group privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-19 |
Secunia Advisory ID: SA10662 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: [Read More]
|
|
|
|
|
|
Release Date: 2004-01-17 |
Secunia Advisory ID: SA10652 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for tcpdump. These fix multiple vulnerabilities, which can be exploited by malicious people to crash tcpdump and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-17 |
Secunia Advisory ID: SA10645 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for mc. These fix a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-13 |
Secunia Advisory ID: SA10613 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued updated packages for mod_auth_shadow. These fix a security issue allowing expired accounts to authenticate. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-13 |
Secunia Advisory ID: SA10599 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for JitterBug. These fix a vulnerability, which can be exploited by malicious users to execute arbitrary commands on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-09 |
Secunia Advisory ID: SA10591 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Manipulation of data Exposure of system information Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued updated packages for phpgroupware. These fix some vulnerabilities, which can be exploited to conduct SQL injection attacks and execute certain scripts. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-08 |
Secunia Advisory ID: SA10577 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for vbox3. These fix a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-07 |
Secunia Advisory ID: SA10560 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued updated packages for jabber. These fix a vulnerability, which can be exploited by malicious people to cause a Denial of Service. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-07 |
Secunia Advisory ID: SA10558 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for the kernel. These fix a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-07 |
Secunia Advisory ID: SA10562 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for FSP. These fix two vulnerabilities, allowing malicious people to view arbitrary files and potentially gain system access. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-06 |
Secunia Advisory ID: SA10545 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for mpg321. These fix a vulnerability, which potentially may allow malicious people to gain system access. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-06 |
Secunia Advisory ID: SA10550 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for nd. These fix multiple vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-06 |
Secunia Advisory ID: SA10543 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for libnids. These fix a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-06 |
Secunia Advisory ID: SA10542 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: Debian has issued updated packages for bind. These fix a vulnerability, which can be exploited by malicious people to poison the DNS cache with negative entries. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-05 |
Secunia Advisory ID: SA10525 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for lftp. These fix two vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-05 |
Secunia Advisory ID: SA10539 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued updated packages for screen. These fix a vulnerability, which potentially may allow malicious, local users to escalate their privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-05 |
Secunia Advisory ID: SA10531 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued updated packages for Ethereal. These fix multiple vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system running Ethereal or cause a DoS (Denial of Service). [Read More]
|
|
|