|
Vulnerability Report: Debian GNU/Linux 3.1
|
This vulnerability report for Debian GNU/Linux 3.1 contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.
If you have information about a new or an existing vulnerability in Debian GNU/Linux 3.1 then you are more than welcome to contact us.
|
|
|
|
|
Vendor, Links, and Unpatched Vulnerabilities
|
|
|
|
639 Secunia Advisories in 2003-2009
|
Secunia has issued a total of 639 Secunia advisories in 2003-2009 for Debian GNU/Linux 3.1. Currently, 0% (3 out of 639) are marked as unpatched with the most severe being rated Moderately critical 
More information about the specific Secunia advisories affecting Debian GNU/Linux 3.1 can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.
|
|
|
|
|
|
Release Date: 2008-04-17 |
Secunia Advisory ID: SA29864 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openoffice.org. This fixes some vulnerabilities, which can be exploited by malicious people to potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2008-04-01 |
Secunia Advisory ID: SA29601 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xine-lib. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2008-03-28 |
Secunia Advisory ID: SA29580 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for exiftags. This fixes some vulnerabilities, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2008-03-27 |
Secunia Advisory ID: SA29501 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: Unknown Exposure of sensitive information DoS System access
|
Where: From local network |
|
Short Description: Debian has acknowledged some vulnerabilities in firebird2, where some have unknown impact and others can be exploited by malicious users to disclose potentially sensitive information or to cause a DoS (Denial of Service) and by malicious people to cause a DoS or potentially to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2008-03-19 |
Secunia Advisory ID: SA29435 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for krb5. This fixes some vulnerabilities, which can be exploited by malicious people to disclose potentially sensitive information, cause a DoS (Denial of Service), or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2008-03-18 |
Secunia Advisory ID: SA29432 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for unzip. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2008-03-17 |
Secunia Advisory ID: SA29400 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Debian has issued an update for horde3. This fixes a vulnerability, which can be exploited by malicious users to disclose sensitive information and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2008-03-17 |
Secunia Advisory ID: SA29405 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for smarty. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2008-03-17 |
Secunia Advisory ID: SA29377 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Debian has issued an update for backup-manager. This fixes a security issue, which can be exploited by malicious, local users to disclose sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2008-03-17 |
Secunia Advisory ID: SA29385 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for dovecot. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2008-03-12 |
Secunia Advisory ID: SA29354 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for libnet-dns-perl. This fixes some vulnerabilities, which can be exploited by malicious people to poison the DNS cache or to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2008-03-10 |
Secunia Advisory ID: SA29262 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for moin. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass security restrictions, manipulate certain data, or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2008-03-06 |
Secunia Advisory ID: SA29244 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for evolution. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-28 |
Secunia Advisory ID: SA29135 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ghostscript. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-26 |
Secunia Advisory ID: SA29104 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for koffice. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-26 |
Secunia Advisory ID: SA25400 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for diatheke. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-25 |
Secunia Advisory ID: SA29058 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Unknown Security Bypass Exposure of sensitive information Privilege escalation DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for kernel-2.4.27 and kernel-2.6.8. This fixes some weaknesses, security issues, and vulnerabilities, where one has an unknown impact, and others can be exploited by malicious, local users to cause a DoS (Denial of Service), disclose potentially sensitive information, bypass certain security restrictions, and gain escalated privileges, and by malicious people to cause a DoS. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-25 |
Secunia Advisory ID: SA29071 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for turba2. This fixes a security issue, which can be exploited by malicious users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-25 |
Secunia Advisory ID: SA29054 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Debian has issued an update for alsa-driver. This fixes a vulnerability, which can be exploited by malicious, local users to disclose potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-20 |
Secunia Advisory ID: SA28957 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for pcre3. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-13 |
Secunia Advisory ID: SA28930 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for nagios-plugins. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-11 |
Secunia Advisory ID: SA28867 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tk8.4. This fixes a vulnerability, which can potentially be exploited by malicious people to compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-11 |
Secunia Advisory ID: SA28857 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tk8.3. This fixes a vulnerability, which can potentially be exploited by malicious people to compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-11 |
Secunia Advisory ID: SA28837 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for sdl-image1.2. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-11 |
Secunia Advisory ID: SA28871 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Manipulation of data System access
|
Where: From remote |
|
Short Description: Debian has issued an update for phpbb2. This fixes some vulnerabilities, which can be exploited by malicious users to compromise a vulnerable system and by malicious people to conduct cross-site scripting and cross-site request forgery attacks. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-11 |
Secunia Advisory ID: SA28776 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libexif. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2008-02-06 |
Secunia Advisory ID: SA28814 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for squid. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2008-01-22 |
Secunia Advisory ID: SA28614 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libvorbis. This fixes some vulnerabilties, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-22 |
Secunia Advisory ID: SA28507 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xine-lib. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-22 |
Secunia Advisory ID: SA28538 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: Local system |
|
Short Description: Debian has issued an update for scponly. This fixes a security issue, which can be exploited by malicious, local users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-21 |
Secunia Advisory ID: SA28551 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for mantis. This fixes a vulnerability, which can be exploited by malicious users to conduct script insertion attacks, and a security issue, which can be exploited by malicious people to disclose sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-21 |
Secunia Advisory ID: SA28548 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for flac. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-18 |
Secunia Advisory ID: SA28539 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information Privilege escalation DoS
|
Where: Local system |
|
Short Description: Debian has issued an update for xorg-server. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service), disclose potentially sensitive information or to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-15 |
Secunia Advisory ID: SA28451 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for gforge. This fixes some vulnerabilities, which can be exploited by malicious people to conduct SQL injection attacks. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-15 |
Secunia Advisory ID: SA28479 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for postgresql-7.4. This fixes some vulnerabilities, which can be exploited by malicious users to gain escalated privileges or to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2008-01-14 |
Secunia Advisory ID: SA28452 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for libxml2. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2008-01-11 |
Secunia Advisory ID: SA28433 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for openafs. This fixes a vulnerability, which can be exploited by malicious users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2008-01-08 |
Secunia Advisory ID: SA28333 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for freetype. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-07 |
Secunia Advisory ID: SA28342 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for wzdftpd. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-07 |
Secunia Advisory ID: SA28347 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for eggdrop. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-07 |
Secunia Advisory ID: SA28348 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for util-linux. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-07 |
Secunia Advisory ID: SA28349 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for loop-aes-utils. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2008-01-04 |
Secunia Advisory ID: SA28334 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for maradns. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2008-01-04 |
Secunia Advisory ID: SA28315 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for wireshark. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2008-01-02 |
Secunia Advisory ID: SA28255 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tar. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-12-12 |
Secunia Advisory ID: SA28061 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for nss-ldap. This fixes a security issue, which can be exploited by malicious persons to manipulate certain data. [Read More]
|
|
|
|
|
|
Release Date: 2007-12-12 |
Secunia Advisory ID: SA28060 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ruby-gnome2. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2007-12-11 |
Secunia Advisory ID: SA27999 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an update for samba. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-12-10 |
Secunia Advisory ID: SA28008 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Debian has issued an update for sitebar. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks, and by malicious users to disclose potentially sensitive information and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-12-10 |
Secunia Advisory ID: SA27996 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for qt-x11-free. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2007-12-06 |
Secunia Advisory ID: SA27943 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for wesnoth. This fixes a vulnerability, which can be exploited by malicious people to disclose potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2007-12-03 |
Secunia Advisory ID: SA27891 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for cacti. This fixes a vulnerability, which can be exploited by malicious people to conduct SQL injection attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-12-03 |
Secunia Advisory ID: SA27892 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for asterisk. This fixes a vulnerability, which can be exploited by malicious users to conduct SQL injection attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-28 |
Secunia Advisory ID: SA27801 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tk8.4. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-28 |
Secunia Advisory ID: SA27806 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tk8.3. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-27 |
Secunia Advisory ID: SA27817 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for wireshark. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-11-27 |
Secunia Advisory ID: SA27823 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Privilege escalation DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for mysql-dfsg, mysql-dfsg-5.0, and mysql-dfsg-4.1. This fixes some security issues and vulnerabilities, which can be exploited by malicious users to bypass certain security restrictions, gain escalated privileges, or cause a DoS (Denial of Service), and by malicious people to cause a DoS. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-26 |
Secunia Advisory ID: SA27764 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Debian has issued an update for ruby1.8. This fixes some security issues, which can be exploited by malicious people to conduct spoofing attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-26 |
Secunia Advisory ID: SA27769 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Debian has issued an update for libopenssl-ruby. This fixes some security issues, which can be exploited by malicious people to conduct spoofing attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-23 |
Secunia Advisory ID: SA27787 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an update for samba. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-22 |
Secunia Advisory ID: SA27772 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for kdegraphics. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-12 |
Secunia Advisory ID: SA27565 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Spoofing
|
Where: From remote |
|
Short Description: Debian has issued an update for horde3. This fixes some vulnerabilities, which can be exploited by malicious people to conduct phishing and cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-09 |
Secunia Advisory ID: SA27595 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for phpmyadmin. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-08 |
Secunia Advisory ID: SA27549 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: Local system |
|
Short Description: Debian has issued an update for gforge. This fixes a security issue, which can be exploited by malicious, local users to truncate arbitrary files. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-07 |
Secunia Advisory ID: SA27479 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for perl. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-06 |
Secunia Advisory ID: SA27538 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for pcre3. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service), disclose sensitive information, or potentially compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2007-11-06 |
Secunia Advisory ID: SA27520 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for perdition. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-10-19 |
Secunia Advisory ID: SA27303 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for zoph. This fixes a vulnerability, which can be exploited by malicious users to conduct SQL injection attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-10-19 |
Secunia Advisory ID: SA27273 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: DoS System access
|
Where: From local network |
|
Short Description: Debian has issued an update for dhcp. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-10-19 |
Secunia Advisory ID: SA27297 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for t1lib. This fixes a vulnerability, which can be exploited by malicious users to potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-10-15 |
Secunia Advisory ID: SA27241 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for wesnoth. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-10-10 |
Secunia Advisory ID: SA27168 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for xfs. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-10-05 |
Secunia Advisory ID: SA27042 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for gforge. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-10-03 |
Secunia Advisory ID: SA27049 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for quagga. This fixes some vulnerabilities, which can be exploited by malicious users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-10-03 |
Secunia Advisory ID: SA27031 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openssl, openssl097 and openssl096. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-09-18 |
Secunia Advisory ID: SA26817 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openoffice.org. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-09-11 |
Secunia Advisory ID: SA26723 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for gforge. This fixes a vulnerability, which can be exploited by malicious people to conduct SQL injection attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-09-10 |
Secunia Advisory ID: SA26733 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for phpmyadmin. This fixes some vulnerabilities, which can be exploited by malicious users to conduct script insertion attacks and by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-09-06 |
Secunia Advisory ID: SA26675 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Thomas de Grenier de Latour has discovered a vulnerability in the debian-goodies package for Debian Linux, which can be exploited by malicious, local users to perform actions with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-09-03 |
Secunia Advisory ID: SA26654 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes some vulnerabilities, which can potentially be exploited by malicious people to cause a DoS (Denial of Service) or to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-09-03 |
Secunia Advisory ID: SA26646 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for id3lib3.8.3. This fixes a security issue, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-09-03 |
Secunia Advisory ID: SA26653 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for vim. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-27 |
Secunia Advisory ID: SA26602 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for asterisk. This fixes some vulnerabilities, which can be exploited by malicious users to disclose potentially sensitive information, and by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-21 |
Secunia Advisory ID: SA26514 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for koffice. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-14 |
Secunia Advisory ID: SA26432 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gpdf. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-14 |
Secunia Advisory ID: SA26410 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for kdegraphics. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-13 |
Secunia Advisory ID: SA26404 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tcpdump. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-08 |
Secunia Advisory ID: SA26365 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for pdfkit.framework. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-08 |
Secunia Advisory ID: SA26364 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: Local system |
|
Short Description: Debian has issued an update for bochs. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-07 |
Secunia Advisory ID: SA26343 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tetex-bin. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-06 |
Secunia Advisory ID: SA26342 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libextractor. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-01 |
Secunia Advisory ID: SA26294 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for file. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-07-31 |
Secunia Advisory ID: SA26282 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for xfs. This fixes a vulnerability, which can be exploited by malicious, local users to perform actions with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-07-27 |
Secunia Advisory ID: SA26180 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Debian has issued an update for bind. This fixes a vulnerability, which can be exploited by malicious people to poison the DNS cache. [Read More]
|
|
|
|
|
|
Release Date: 2007-07-23 |
Secunia Advisory ID: SA25588 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Spoofing Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-firefox. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting and spoofing attacks, gain knowledge of sensitive information, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-07-19 |
Secunia Advisory ID: SA26132 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gimp. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-07-19 |
Secunia Advisory ID: SA26129 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for freetype. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2007-07-10 |
Secunia Advisory ID: SA25980 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for vlc. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-07-09 |
Secunia Advisory ID: SA25945 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for php4. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks, cause a DoS (Denial of Service), and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-07-06 |
Secunia Advisory ID: SA25967 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for gfax. This fixes a security issue, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-07-02 |
Secunia Advisory ID: SA25913 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: Local system |
|
Short Description: Debian has issued an update for fireflier-server. This fixes a security issue, which can be exploited by malicious, local users to delete arbitrary files. [Read More]
|
|
|
|
|
|
Release Date: 2007-07-02 |
Secunia Advisory ID: SA25880 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for evolution. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-06-29 |
Secunia Advisory ID: SA25890 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for krb5. This fixes some vulnerabilities, which can be exploited by malicious users and malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-06-25 |
Secunia Advisory ID: SA25796 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-06-18 |
Secunia Advisory ID: SA25701 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for libapache-mod-jk. This fixes a security issue, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2007-06-18 |
Secunia Advisory ID: SA25717 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libexif. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2007-06-18 |
Secunia Advisory ID: SA25725 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: From local network |
|
Short Description: Debian has issued an update for postgresql-7.4. This fixes a security issue, which can be exploited by malicious users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-06-18 |
Secunia Advisory ID: SA25714 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for kernel-source-2.6.8. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and gain escalated privileges, and by malicious people to cause a DoS. [Read More]
|
|
|
|
|
|
Release Date: 2007-06-15 |
Secunia Advisory ID: SA25685 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for iceweasel. This fixes some vulnerabilities, which can be exploited by malicious people to conduct spoofing attacks, bypass certain security restrictions, and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-06-14 |
Secunia Advisory ID: SA25664 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for icedove. This fixes some vulnerabilities, which can potentially be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-06-13 |
Secunia Advisory ID: SA25650 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openoffice. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-06-11 |
Secunia Advisory ID: SA25573 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gimp. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-06-08 |
Secunia Advisory ID: SA25559 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: Security Bypass Spoofing Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for iceape. This fixes some vulnerabilities, which can be exploited by malicious people to conduct spoofing attacks, bypass certain security restrictions, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-05-22 |
Secunia Advisory ID: SA25365 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for php4. This fixes a vulnerability, which can be exploited by malicious users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2007-05-18 |
Secunia Advisory ID: SA25305 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information Privilege escalation DoS
|
Where: Local system |
|
Short Description: Debian has issued an update for xfree86. This fixes some vulnerabilities, which can be exploited by malicious, local users to disclose sensitive information, cause a DoS (Denial of Service), and gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-05-17 |
Secunia Advisory ID: SA25293 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for quagga. This fixes a vulnerability, which can be exploited by malicious users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-05-15 |
Secunia Advisory ID: SA25236 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for squirrelmail. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-05-08 |
Secunia Advisory ID: SA25157 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Privilege escalation
|
Where: From remote |
|
Short Description: Debian has issued an update for ldap-account-manager. This fixes some vulnerabilities, which can be exploited by malicious, local users to perform actions with escalated privileges and by malicious users to conduct script insertion attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-05-01 |
Secunia Advisory ID: SA25095 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for qemu. This fixes some vulnerabilities, which can be exploited by malicious users to bypass certain security restrictions and cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-04-30 |
Secunia Advisory ID: SA25025 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Debian has issued an update for php4. This fixes some vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions, malicious users to disclose potentially sensitive information or compromise a vulnerable system, and by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-04-30 |
Secunia Advisory ID: SA25028 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Unknown DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes some vulnerabilities, where one has an unknown impact and the others can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-04-23 |
Secunia Advisory ID: SA24974 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for webcalendar. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-04-09 |
Secunia Advisory ID: SA24828 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for man-db. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-04-09 |
Secunia Advisory ID: SA24804 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xmms. This fixes two vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-04-04 |
Secunia Advisory ID: SA24736 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for krb5. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions and by malicious users to cause a DoS (Denial of Service) or to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-04-03 |
Secunia Advisory ID: SA24723 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for file. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-04-03 |
Secunia Advisory ID: SA24713 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for zope2.7. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site request forgery attacks. [Read More]
|
|
|
|
|
|
Release Date: 2007-03-28 |
Secunia Advisory ID: SA24638 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for nas. This fixes some vulnerabilities, which potentially can be exploited by malicious, local users to gain escalated privileges or malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-03-23 |
Secunia Advisory ID: SA24610 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for tcpdump. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-03-21 |
Secunia Advisory ID: SA24613 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openoffice.org. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-03-21 |
Secunia Advisory ID: SA24607 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: From local network |
|
Short Description: Debian has issued an update for openafs. This fixes a vulnerability, which can be exploited by malicious users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-03-19 |
Secunia Advisory ID: SA24572 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libwpd. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or to compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2007-03-19 |
Secunia Advisory ID: SA24590 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for lookup-el. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-03-16 |
Secunia Advisory ID: SA24519 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for webcalendar. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-03-14 |
Secunia Advisory ID: SA24511 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for gnupg. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions when applications use GnuPG in an insecure manner. [Read More]
|
|
|
|
|
|
Release Date: 2007-03-12 |
Secunia Advisory ID: SA24390 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks or potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-03-08 |
Secunia Advisory ID: SA24421 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for php4. This fixes some vulnerabilities and a weakness, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-03-07 |
Secunia Advisory ID: SA24425 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-03-05 |
Secunia Advisory ID: SA24379 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gnomemeeting and ekiga. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-02-27 |
Secunia Advisory ID: SA24324 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: A vulnerability has been discovered in Debian, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-02-16 |
Secunia Advisory ID: SA24158 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for postgresql. This fixes a vulnerability, which can be exploited by malicious users to gain knowledge of potentially sensitive information and cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-02-15 |
Secunia Advisory ID: SA24174 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From local network |
|
Short Description: Debian has issued an update for fetchmail. This fixes a security issue, which can be exploited by malicious people to gain sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2007-02-15 |
Secunia Advisory ID: SA24167 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for imagemagick. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-02-07 |
Secunia Advisory ID: SA24078 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-thunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-02-06 |
Secunia Advisory ID: SA24060 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From local network |
|
Short Description: Debian has issued an update for samba. This fixes some vulnerabilities, which can be exploited by malicious users to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-02-02 |
Secunia Advisory ID: SA23988 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-firefox. This fixes some vulnerabilities, which can be exploited by malicious people to gain knowledge of certain information, conduct cross-site scripting attacks, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-02-01 |
Secunia Advisory ID: SA24006 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for gtk+2.0. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-02-01 |
Secunia Advisory ID: SA24015 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for libgtop2. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-01-29 |
Secunia Advisory ID: SA23971 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for vlc. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-01-29 |
Secunia Advisory ID: SA23944 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for bind9. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-01-26 |
Secunia Advisory ID: SA23941 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Manipulation of data System access
|
Where: From remote |
|
Short Description: Debian has issued an update for cacti. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, manipulate data and compromise vulnerable systems. [Read More]
|
|
|
|
|
|
Release Date: 2007-01-22 |
Secunia Advisory ID: SA23822 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for netrik. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-01-16 |
Secunia Advisory ID: SA23789 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for xfree86. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-01-15 |
Secunia Advisory ID: SA23770 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for libsoup. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-01-09 |
Secunia Advisory ID: SA23681 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for libapache-mod-auth-kerb. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-01-09 |
Secunia Advisory ID: SA23683 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openoffice.org. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-29 |
Secunia Advisory ID: SA23567 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xine-lib. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-29 |
Secunia Advisory ID: SA23580 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for elog. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks and cause a DoS (Denial of Service), and malicious users to conduct script insertion attacks, cause a DoS, and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-29 |
Secunia Advisory ID: SA23579 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for evince. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-29 |
Secunia Advisory ID: SA23504 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for squirrelmail. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and script insertion attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-22 |
Secunia Advisory ID: SA23467 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data Exposure of system information Exposure of sensitive information
|
Where: From local network |
|
Short Description: Debian has issued an update for links2. This fixes some vulnerabilities, which can be exploited by malicious people to expose sensitive information and manipulate data. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-18 |
Secunia Advisory ID: SA23395 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for kernel-source-2.4.27. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain knowledge of potentially sensitive information or cause a DoS (Denial of Service), and by malicious people to cause a DoS. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-18 |
Secunia Advisory ID: SA23419 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Hijacking System access
|
Where: From remote |
|
Short Description: Debian has issued an update for sql-ledger. This fixes some vulnerabilities, which can be exploited by malicious people to hijack user sessions and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-18 |
Secunia Advisory ID: SA23379 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-12-14 |
Secunia Advisory ID: SA23370 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to expose potentially sensitive information and cause a DoS (Denial of Service), and malicious people to cause a DoS. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-14 |
Secunia Advisory ID: SA23382 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for enemies-of-carlotta. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-13 |
Secunia Advisory ID: SA23344 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for ruby-1.6 and ruby-1.8. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-12-13 |
Secunia Advisory ID: SA23327 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-12-11 |
Secunia Advisory ID: SA23333 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an update for l2tpns. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-11 |
Secunia Advisory ID: SA23299 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gnupg. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-06 |
Secunia Advisory ID: SA23212 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for asterisk. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-06 |
Secunia Advisory ID: SA23234 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data Exposure of system information Exposure of sensitive information
|
Where: From local network |
|
Short Description: Debian has issued an update for elinks. This fixes a vulnerability, which can be exploited by malicious people to expose sensitive information and manipulate data. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-05 |
Secunia Advisory ID: SA23188 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data Exposure of system information Exposure of sensitive information
|
Where: From local network |
|
Short Description: Debian has issued an update for links. This fixes a vulnerability, which can be exploited by malicious people to expose sensitive information and manipulate data. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-04 |
Secunia Advisory ID: SA23202 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-firefox. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-04 |
Secunia Advisory ID: SA23197 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-04 |
Secunia Advisory ID: SA23163 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for tar. This fixes a security issue, which can be exploited by malicious people to overwrite arbitrary files. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-04 |
Secunia Advisory ID: SA23235 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-thunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-01 |
Secunia Advisory ID: SA23174 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for proftpd. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and by malicious users and malicious people to potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-30 |
Secunia Advisory ID: SA23167 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libgsf. This fixes a vulnerability, which can be exploited by malicious people to potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-30 |
Secunia Advisory ID: SA23112 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation System access
|
Where: From remote |
|
Short Description: Debian has issued an update for texinfo. This fixes some vulnerabilities, which can be exploited by malicious, local users to perform certain actions with escalated privileges and by malicious people to potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-28 |
Secunia Advisory ID: SA23135 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for pstotext. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-23 |
Secunia Advisory ID: SA22997 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for linux-ftpd. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain knowledge of potentially sensitive information, or perform certain actions with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-22 |
Secunia Advisory ID: SA23069 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for proftpd. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-11-21 |
Secunia Advisory ID: SA23006 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gv. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-21 |
Secunia Advisory ID: SA23008 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for flexbackup. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-21 |
Secunia Advisory ID: SA23010 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xine-lib. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-20 |
Secunia Advisory ID: SA22998 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for imagemagick. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-16 |
Secunia Advisory ID: SA22926 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openssh. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-15 |
Secunia Advisory ID: SA22903 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for pdns. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-14 |
Secunia Advisory ID: SA22849 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Spoofing DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-firefox. This fixes some vulnerabilities, which can be exploited by malicious people to conduct spoofing and DoS (Denial of Service) attacks, bypass certain security restrictions and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-14 |
Secunia Advisory ID: SA22868 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Hijacking
|
Where: From remote |
|
Short Description: Debian has issued an update for trac. This fixes a vulnerability which can be exploited by malicious people to conduct cross-site request forgery attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-13 |
Secunia Advisory ID: SA22826 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Privilege escalation
|
Where: From remote |
|
Short Description: Debian has issued an update for bugzilla. This fixes some vulnerabilities, which can be exploited by malicious, local users to perform certain actions with escalated privileges, and by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-10 |
Secunia Advisory ID: SA22781 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Hijacking Cross Site Scripting Exposure of system information
|
Where: From remote |
|
Short Description: Debian has issued an update for phpmyadmin. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks, HTTP response splitting attacks, and cross-site forgery request attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-08 |
Secunia Advisory ID: SA22713 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for php4. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, cause a DoS (Denial of Service), and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-06 |
Secunia Advisory ID: SA22712 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for thttpd. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-03 |
Secunia Advisory ID: SA22694 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for pam_ldap. This fixes a security issue, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-03 |
Secunia Advisory ID: SA22656 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ingo1. This fixes a vulnerability, which can be exploited by malicious users to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-02 |
Secunia Advisory ID: SA22647 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for screen. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-01 |
Secunia Advisory ID: SA22659 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for ethereal. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-10-31 |
Secunia Advisory ID: SA22645 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issue an update for qt-x11-free. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-24 |
Secunia Advisory ID: SA22556 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Exposure of system information Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for webmin. This fixes some vulnerabilities, which can be exploited by malicious people to disclose potentially sensitive information, conduct cross-site scripting attacks, cause a DoS (Denial of Service), and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-24 |
Secunia Advisory ID: SA22531 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for python 2.3. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-23 |
Secunia Advisory ID: SA22537 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-23 |
Secunia Advisory ID: SA22518 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an update for maxdb-7.5.00. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-23 |
Secunia Advisory ID: SA22512 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for python2.4. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-19 |
Secunia Advisory ID: SA22500 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openssl096. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-10 |
Secunia Advisory ID: SA22311 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libwmf. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-10 |
Secunia Advisory ID: SA22332 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xfree86. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges, and by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-06 |
Secunia Advisory ID: SA22299 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Spoofing DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla. This fixes some vulnerabilities, which can be exploited by malicious people to conduct spoofing attacks, bypass certain security restrictions, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-05 |
Secunia Advisory ID: SA22247 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-thunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to conduct man-in-the-middle attacks, bypass certain security restrictions, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-05 |
Secunia Advisory ID: SA22270 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openssh-krb5. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-04 |
Secunia Advisory ID: SA22227 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Spoofing
|
Where: From remote |
|
Short Description: Debian has issued an update for mailman. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and phishing attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-02 |
Secunia Advisory ID: SA22243 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Debian has issued an update for migrationtools. This fixes a vulnerability, which can be exploited by malicious, local users to disclose potentially sensitive information and perform certain actions with escalated privileges on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-02 |
Secunia Advisory ID: SA22240 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openssl. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-02 |
Secunia Advisory ID: SA22239 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for cscope. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-26 |
Secunia Advisory ID: SA22093 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Exposure of sensitive information Privilege escalation DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for kernel-source-2.6.8. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain knowledge of potentially sensitive information, bypass certain security restriction, and cause a DoS (Denial of Service), and malicious people to cause a DoS. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-25 |
Secunia Advisory ID: SA22082 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges and cause a DoS (Denial of Service), and by malicious people to cause a DoS. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-25 |
Secunia Advisory ID: SA22084 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued updates for gnutls11 and gnutls13. These fix a vulnerability, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-20 |
Secunia Advisory ID: SA21985 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for bomberclone. This fixes some vulnerabilities, which can be exploited by malicious people to gain knowledge of system information or cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-09-20 |
Secunia Advisory ID: SA22034 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an updated for gzip. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-19 |
Secunia Advisory ID: SA22018 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for alsaplayer. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-18 |
Secunia Advisory ID: SA21981 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for usermin. This fixes a vulnerability, which can be exploited by malicious users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-09-18 |
Secunia Advisory ID: SA21953 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for zope2.7. This fixes a vulnerability, which can be exploited by malicious people to disclose potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-14 |
Secunia Advisory ID: SA21905 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for isakmpd. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-12 |
Secunia Advisory ID: SA21873 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for openssl096. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-11 |
Secunia Advisory ID: SA21852 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for openssl. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-11 |
Secunia Advisory ID: SA21828 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for bind9. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-09-08 |
Secunia Advisory ID: SA21813 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ethereal. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-07 |
Secunia Advisory ID: SA21797 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gcc-3.4. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-05 |
Secunia Advisory ID: SA21762 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for mysql-dfsg-4.1. This fixes some vulnerabilities, which can be exploited by malicious users to bypass certain security restrictions or to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-09-05 |
Secunia Advisory ID: SA21744 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for apache. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-05 |
Secunia Advisory ID: SA21719 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for imagemagick. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-04 |
Secunia Advisory ID: SA21759 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for cheesetracker. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-01 |
Secunia Advisory ID: SA21722 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an advisory for capi4hylafax. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-31 |
Secunia Advisory ID: SA21704 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gtetrinet. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-31 |
Secunia Advisory ID: SA21696 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for sendmail. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-30 |
Secunia Advisory ID: SA21668 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libmusicbrainz-2.0. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-30 |
Secunia Advisory ID: SA21675 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-firefox. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-29 |
Secunia Advisory ID: SA21634 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-28 |
Secunia Advisory ID: SA21654 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-thunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-28 |
Secunia Advisory ID: SA21657 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for ruby1.8. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions or cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-28 |
Secunia Advisory ID: SA21662 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Debian has issued an update for kdebase. This fixes a vulnerability, which can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-28 |
Secunia Advisory ID: SA21658 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for streamripper. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-24 |
Secunia Advisory ID: SA21612 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for sendmail. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-21 |
Secunia Advisory ID: SA21562 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-18 |
Secunia Advisory ID: SA21534 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for trac. This fixes a vulnerability, which can be exploited by malicious users to conduct script insertion attacks and disclose sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-16 |
Secunia Advisory ID: SA21518 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for heartbeat. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-14 |
Secunia Advisory ID: SA21480 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for shadow. This fixes a security issue, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-14 |
Secunia Advisory ID: SA21503 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for drupal. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-14 |
Secunia Advisory ID: SA21502 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for gallery. This fixes some vulnerabilities, which can be exploited by malicious people to conduct script insertion attacks or disclose certain sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-10 |
Secunia Advisory ID: SA21434 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ncompress. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-09 |
Secunia Advisory ID: SA21439 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for krb5. This fixes a security issue, which can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-08 |
Secunia Advisory ID: SA21400 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for mantis. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-08 |
Secunia Advisory ID: SA21406 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for chmlib. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-04 |
Secunia Advisory ID: SA21363 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for dhcp. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-04 |
Secunia Advisory ID: SA21341 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: Debian has issued an update for cfs. This fixes a vulnerability, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-04 |
Secunia Advisory ID: SA21352 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for freeciv. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-04 |
Secunia Advisory ID: SA21351 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for gnupg2. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-04 |
Secunia Advisory ID: SA21333 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for gnupg. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-04 |
Secunia Advisory ID: SA21337 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for ruby1.6. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-03 |
Secunia Advisory ID: SA21339 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for gpdf. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-03 |
Secunia Advisory ID: SA21334 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tiff. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-02 |
Secunia Advisory ID: SA21324 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-thunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting and HTTP response smuggling attacks, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-02 |
Secunia Advisory ID: SA21323 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libtunepimp. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-02 |
Secunia Advisory ID: SA21313 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for apache. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-02 |
Secunia Advisory ID: SA21284 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for apache2. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-02 |
Secunia Advisory ID: SA21248 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for sitebar. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-01 |
Secunia Advisory ID: SA21265 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From local network |
|
Short Description: Debian has issued an update for osiris. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-28 |
Secunia Advisory ID: SA21249 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ethereal. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-28 |
Secunia Advisory ID: SA21240 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: Debian has issued an update for heartbeat. This fixes a vulnerability, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-07-28 |
Secunia Advisory ID: SA21244 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access Manipulation of data Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for drupal. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks, and by malicious users to potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-27 |
Secunia Advisory ID: SA21222 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for asterisk. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-26 |
Secunia Advisory ID: SA21191 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for fbi. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-25 |
Secunia Advisory ID: SA21152 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for libnet-server-perl. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-07-25 |
Secunia Advisory ID: SA21186 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for libgd2. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) against applications and services using libgd2. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-25 |
Secunia Advisory ID: SA21182 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gimp. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-25 |
Secunia Advisory ID: SA21184 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for libdumb. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-24 |
Secunia Advisory ID: SA21164 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for postgrey. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-07-24 |
Secunia Advisory ID: SA21176 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-firefox. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting and HTTP response smuggling attacks, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-24 |
Secunia Advisory ID: SA21150 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for hiki. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-07-21 |
Secunia Advisory ID: SA21146 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for hashcash. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-21 |
Secunia Advisory ID: SA21137 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for gnupg2. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-07-20 |
Secunia Advisory ID: SA21124 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mutt. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-20 |
Secunia Advisory ID: SA21123 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: From remote |
|
Short Description: Debian has issued an update for kernel-source. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-20 |
Secunia Advisory ID: SA21130 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for zope. This fixes a vulnerability, which can be exploited by malicious people to disclose potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-17 |
Secunia Advisory ID: SA21087 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for rssh. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-17 |
Secunia Advisory ID: SA21086 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for samba. This fixes a vulnerability, which can be exploited by malicious users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-07-10 |
Secunia Advisory ID: SA20968 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for gnupg. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-07-10 |
Secunia Advisory ID: SA20996 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for ppp. This fixes a vulnerability, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-07 |
Secunia Advisory ID: SA20942 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for xine-lib. This fixes a weakness, which can be exploited by malicious people to crash certain applications on a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-04 |
Secunia Advisory ID: SA20914 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Exposure of system information Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for kernel-source-2.6.8. This fixes some vulnerabilities and weaknesses, which can be exploited to bypass certain security restrictions, disclose potentially sensitive information, and cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-06-30 |
Secunia Advisory ID: SA20893 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openoffice.org. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-26 |
Secunia Advisory ID: SA20834 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for pinball. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-23 |
Secunia Advisory ID: SA20792 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for courier. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-06-19 |
Secunia Advisory ID: SA20750 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for horde2. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-15 |
Secunia Advisory ID: SA20672 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for horde3. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-15 |
Secunia Advisory ID: SA20688 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for wv2. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise an application using the library. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-15 |
Secunia Advisory ID: SA20671 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Exposure of system information Exposure of sensitive information DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for kernel-source-2.4.27. This fixes some vulnerabilities and weaknesses, which can be exploited by malicious, local users to bypass certain security restrictions, disclose potentially sensitive information and cause a DoS (Denial of Service), and by malicious people to bypass certain security restrictions, gain knowledge of certain system information, and cause a DoS. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-13 |
Secunia Advisory ID: SA20542 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for webcalendar. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions and disclose sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-12 |
Secunia Advisory ID: SA20591 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for freetype. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-12 |
Secunia Advisory ID: SA20622 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for gforge. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-09 |
Secunia Advisory ID: SA20541 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for mysql-dfsg-4.1. This fixes a vulnerability, which potentially can be exploited by malicious people to conduct SQL injection attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-08 |
Secunia Advisory ID: SA20520 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tiff. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-06 |
Secunia Advisory ID: SA20443 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an update for spamassassin, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-05 |
Secunia Advisory ID: SA20461 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for freeradius. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-05 |
Secunia Advisory ID: SA20446 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for centericq. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a user's system. [Read More]
|
|
|
|
|