|
Vulnerability Report: Debian GNU/Linux 3.1
|
This vulnerability report for Debian GNU/Linux 3.1 contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.
If you have information about a new or an existing vulnerability in Debian GNU/Linux 3.1 then you are more than welcome to contact us.
|
|
|
|
|
Vendor, Links, and Unpatched Vulnerabilities
|
|
|
|
181 Secunia Advisories in 2005
|
Secunia has issued a total of 181 Secunia advisories in 2005 for Debian GNU/Linux 3.1. Currently, 1% (1 out of 181) are marked as unpatched with the most severe being rated Less critical 
More information about the specific Secunia advisories affecting Debian GNU/Linux 3.1 can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.
|
|
|
|
|
|
Release Date: 2005-12-27 |
Secunia Advisory ID: SA18225 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Steve Kemp has reported a vulnerability in ketm, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-27 |
Secunia Advisory ID: SA18215 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for tkdiff. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-27 |
Secunia Advisory ID: SA18228 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for dhis-tools-dns. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-22 |
Secunia Advisory ID: SA18098 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Manipulation of data System access
|
Where: From remote |
|
Short Description: Debian has issued an update for phpbb2. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting, script insertion, and SQL injection attacks, bypass certain security restrictions, and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-22 |
Secunia Advisory ID: SA18171 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an update for nbd. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-19 |
Secunia Advisory ID: SA18109 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for dropbear. This fixes a vulnerability, which potentially can be exploited by malicious users to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-15 |
Secunia Advisory ID: SA18059 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Privilege escalation DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for kernel-source-2.4.27. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain knowledge of potentially sensitive information, to cause a DoS (Denial of Service) and potentially to gain escalated privileges, or by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-12-15 |
Secunia Advisory ID: SA18056 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Unknown Security Bypass Exposure of sensitive information Privilege escalation DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for kernel-source-2.6.8. This fixes some vulnerabilities, which can be exploited by malicious, local users with an unknown impact, to cause a DoS (Denial of Service), to gain knowledge of potentially sensitive and to gain escalated privileges, or by malicious people to bypass certain security restrictions and potentially to cause a DoS. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-13 |
Secunia Advisory ID: SA18012 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ethereal. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-12 |
Secunia Advisory ID: SA17965 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Unknown System access
|
Where: From remote |
|
Short Description: Debian has issued an update for curl. This fixes two vulnerabilities, where one has an unknown impact and another can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-09 |
Secunia Advisory ID: SA17967 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for osh. This fixes two vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-08 |
Secunia Advisory ID: SA17919 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Patrick Cheong Shu Yang has reported a security issue in courier, which can be exploited by malicious users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-07 |
Secunia Advisory ID: SA17882 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for inkscape. This fixes two vulnerabilities, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges and by malicious people to potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-02 |
Secunia Advisory ID: SA17860 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for helix-player. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-01 |
Secunia Advisory ID: SA17794 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for horde2. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-01 |
Secunia Advisory ID: SA17791 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gdk-pixbuf. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-30 |
Secunia Advisory ID: SA17818 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for centericq. This fixes a weakness, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-11-30 |
Secunia Advisory ID: SA17770 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gtk+2.0. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-24 |
Secunia Advisory ID: SA17676 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Unknown
|
Where: From remote |
|
Short Description: Debian has issued an update for zope. This fixes a vulnerability with an unknown impact. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-23 |
Secunia Advisory ID: SA17599 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for horde3. This fixes some vulnerabilities, which can be exploited by malicious people to conduct script insertion attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-23 |
Secunia Advisory ID: SA17678 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for sylpheed. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-22 |
Secunia Advisory ID: SA17654 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Manipulation of data Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mantis. This fixes some vulnerabilities, which can be exploited by malicious people to disclose sensitive information, conduct cross-site scripting and SQL injection attacks, and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-22 |
Secunia Advisory ID: SA17671 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for netpbm-free. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-21 |
Secunia Advisory ID: SA17656 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Unknown Privilege escalation
|
Where: From remote |
|
Short Description: Debian has issued an update for gnump3d. This fixes two vulnerabilities, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges, and by malicious people with an unknown impact. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-21 |
Secunia Advisory ID: SA17653 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for unzip. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-21 |
Secunia Advisory ID: SA17637 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for xmail. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-18 |
Secunia Advisory ID: SA17631 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Debian has issued an update for fetchmail. This fixes a vulnerability, which can be exploited by malicious, local users to gain knowledge of certain sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-18 |
Secunia Advisory ID: SA17643 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Manipulation of data Exposure of system information Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for egroupware. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks, manipulate certain information, and bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-17 |
Secunia Advisory ID: SA17616 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Manipulation of data Exposure of system information Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for phpgroupware. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks and manipulate certain information. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-15 |
Secunia Advisory ID: SA17551 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for abiword. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-15 |
Secunia Advisory ID: SA17558 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for acidlab. This fixes some vulnerabilities, which can be exploited by malicious users to conduct SQL injection attacks and by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-15 |
Secunia Advisory ID: SA17586 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for linux-ftpd-ssl. This fixes a vulnerability, which can be exploited by malicious users to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-15 |
Secunia Advisory ID: SA17584 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Manipulation of data Exposure of system information Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for phpsysinfo. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks and manipulate certain information. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-15 |
Secunia Advisory ID: SA17572 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for uim. This fixes a vulnerability, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-10 |
Secunia Advisory ID: SA17463 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for awstats. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-09 |
Secunia Advisory ID: SA17477 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gpsdrive. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-09 |
Secunia Advisory ID: SA17497 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libungif4. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-08 |
Secunia Advisory ID: SA17494 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for chmlib. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-08 |
Secunia Advisory ID: SA17501 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-07 |
Secunia Advisory ID: SA17472 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for thttpd. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-07 |
Secunia Advisory ID: SA17452 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for openvpn. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-02 |
Secunia Advisory ID: SA17337 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for phpmyadmin. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks and disclose sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-11-02 |
Secunia Advisory ID: SA17367 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for gallery. This fixes a security issue, which can be exploited by malicious users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-28 |
Secunia Advisory ID: SA17357 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for netpbm-free. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-28 |
Secunia Advisory ID: SA17355 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for gnump3d. This fixes two vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and directory traversal attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-28 |
Secunia Advisory ID: SA17360 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for lynx-ssl. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-27 |
Secunia Advisory ID: SA17343 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for net-snmp. This fixes a vulnerability, which can be exploited by malicious users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-10-27 |
Secunia Advisory ID: SA17344 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for openssl. This fixes a vulnerability, which potentially can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-27 |
Secunia Advisory ID: SA17340 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for lynx. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-26 |
Secunia Advisory ID: SA17332 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issue an update for koffice. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-26 |
Secunia Advisory ID: SA17339 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for libgda2. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-26 |
Secunia Advisory ID: SA17322 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for sudo. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-21 |
Secunia Advisory ID: SA17269 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for eric. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-21 |
Secunia Advisory ID: SA17284 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Spoofing Manipulation of data System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-thunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to conduct spoofing attacks, manipulate certain data, bypass certain security restrictions, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-21 |
Secunia Advisory ID: SA17267 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for module-assistant. This fixes a vulnerability, which potentially can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-20 |
Secunia Advisory ID: SA17263 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Spoofing Manipulation of data System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla. This fixes some vulnerabilities, which can be exploited by malicious people to conduct spoofing attacks, manipulate certain data, bypass certain security restrictions, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-13 |
Secunia Advisory ID: SA17187 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for hylafax. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-12 |
Secunia Advisory ID: SA17162 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xine-lib. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-11 |
Secunia Advisory ID: SA17129 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for ruby. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-11 |
Secunia Advisory ID: SA17148 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for uw-imap. This fixes a vulnerability, which can be exploited by malicious users to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-11 |
Secunia Advisory ID: SA17139 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xli. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-11 |
Secunia Advisory ID: SA17140 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for xloadimage. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17102 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ethereal. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17120 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for up-imapproxy. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17103 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for openvpn. This fixes some vulnerabilities, which can be exploited by malicious people and users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17106 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an update for py2play. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17081 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From local network |
|
Short Description: Debian has issued an update for weex. This fixes a vulnerability, which potentially can be exploited by malicious users to cause a DoS (Denial of Service) or to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17123 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for cpio. This fixes a vulnerability, which can be exploited by malicious people to cause files to be unpacked to arbitrary locations on a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17110 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From local network |
|
Short Description: Debian has issued an update for shorewall. This fixes a security issue, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17109 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for masqmail. This fixes two vulnerabilities, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17108 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for dia. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17101 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for tcpdump. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17118 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for tcpdump. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-10-10 |
Secunia Advisory ID: SA17125 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for graphviz. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-06 |
Secunia Advisory ID: SA17084 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for mason. This fixes a security issue, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-05 |
Secunia Advisory ID: SA17067 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for mod-auth-shadow. This fixes a security issue, which potentially can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-05 |
Secunia Advisory ID: SA17068 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for arc. This fixes a security issue and a vulnerability, which can be exploited by malicious, local users to gain access to sensitive information and perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-05 |
Secunia Advisory ID: SA17066 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for egroupware. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-05 |
Secunia Advisory ID: SA17020 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mailutils. This fixes a vulnerability, which can be exploited by malicious users to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-04 |
Secunia Advisory ID: SA17053 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for drupal. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-03 |
Secunia Advisory ID: SA17040 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for cfengine2. This fixes some vulnerabilities, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-03 |
Secunia Advisory ID: SA17038 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for cfengine. This fixes some vulnerabilities, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-03 |
Secunia Advisory ID: SA17026 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Spoofing Manipulation of data System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-firefox. This fixes some vulnerabilities, which can be exploited by malicious people to conduct spoofing attacks, manipulate certain data, bypass certain security restrictions, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-30 |
Secunia Advisory ID: SA16988 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for loop-aes-utils. This fixes a security issue, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-30 |
Secunia Advisory ID: SA17018 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for backupninja. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-30 |
Secunia Advisory ID: SA16981 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for helix-player. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-30 |
Secunia Advisory ID: SA17016 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gopher. This fixes two vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-30 |
Secunia Advisory ID: SA17017 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Debian has issued an update for ntlmaps. This fixes a security issue, which can be exploited by malicious, local users to disclose certain sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-30 |
Secunia Advisory ID: SA17015 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for squid. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-09-29 |
Secunia Advisory ID: SA17004 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for util-linux. This fixes a security issue, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-29 |
Secunia Advisory ID: SA16989 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service), or potentially to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-29 |
Secunia Advisory ID: SA17005 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for gtkdiskfree. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-28 |
Secunia Advisory ID: SA16972 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for python2.3. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-26 |
Secunia Advisory ID: SA16939 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for courier. This fixes a vulnerability, which can be exploited by malicious people to conduct script insertion attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-23 |
Secunia Advisory ID: SA16914 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for python2.1. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-23 |
Secunia Advisory ID: SA16916 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for kdeedu. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions with escalated privileges on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-22 |
Secunia Advisory ID: SA16905 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for xfree86. This fixes a vulnerability, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-22 |
Secunia Advisory ID: SA16890 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for python2.2. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-19 |
Secunia Advisory ID: SA16850 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for kdebase. This fixes a vulnerability, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-16 |
Secunia Advisory ID: SA16842 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for lm-sensors. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-15 |
Secunia Advisory ID: SA16815 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for centericq. This fixes some vulnerabilities, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-15 |
Secunia Advisory ID: SA16811 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for turqstat. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-14 |
Secunia Advisory ID: SA16823 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for common-lisp-controller. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-13 |
Secunia Advisory ID: SA16797 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Spoofing System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting and spoofing attacks, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-13 |
Secunia Advisory ID: SA16787 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Hijacking
|
Where: From remote |
|
Short Description: Debian has issued an update for tdiary. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site request forgery attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-13 |
Secunia Advisory ID: SA16771 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for libapache-mod-ssl. This fixes a security issue, which potentially can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-13 |
Secunia Advisory ID: SA16768 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for squid. This fixes some vulnerabilities, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-09-09 |
Secunia Advisory ID: SA16765 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for gcvs. This fixes a security issue, which potentially can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-09 |
Secunia Advisory ID: SA16754 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Manipulation of data DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for apache2. This fixes three vulnerabilities and a security issue, which can be exploited by malicious people to cause a DoS (Denial of Service), conduct HTTP request smuggling attacks, and potentially bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-08 |
Secunia Advisory ID: SA16741 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for apache. This fixes a vulnerability, which can be exploited by malicious people to conduct HTTP request smuggling attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-08 |
Secunia Advisory ID: SA16745 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Debian has issued an update for kdelibs. This fixes a security issue, which can be exploited by malicious, local users to gain knowledge of certain information. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-05 |
Secunia Advisory ID: SA16687 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for ntp. This fixes a security issue, which can cause ntpd to run with incorrect group permissions. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-02 |
Secunia Advisory ID: SA16679 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for pcre3. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-02 |
Secunia Advisory ID: SA16673 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: Local system |
|
Short Description: Debian has issued an update for polygen. This fixes a weakness, which can be exploited by malicious, local users to manipulate the contents of certain files. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-02 |
Secunia Advisory ID: SA16675 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for webcalendar. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-02 |
Secunia Advisory ID: SA16670 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting System access
|
Where: From remote |
|
Short Description: Debian has issued an update for phpgroupware. This fixes some vulnerabilities, which can be exploited by malicious administrative users to conduct script insertion attacks, or by malicious people to bypass certain security restrictions or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-02 |
Secunia Advisory ID: SA16690 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for zsync. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-02 |
Secunia Advisory ID: SA16681 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for proftpd. This fixes two vulnerabilities, which can be exploited by malicious users to disclose certain sensitive information, cause a DoS (Denial of Service), or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-02 |
Secunia Advisory ID: SA16689 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for affix. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-01 |
Secunia Advisory ID: SA16652 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for courier. This fixes a vulnerability, which can be exploited by malicious people to conduct script insertion attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-01 |
Secunia Advisory ID: SA16624 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for pstotext. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-30 |
Secunia Advisory ID: SA16610 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for maildrop. This fixes a security issue, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-30 |
Secunia Advisory ID: SA16631 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation System access
|
Where: From remote |
|
Short Description: Debian has issued an update for php4. This fixes some vulnerabilities, which can be exploited by malicious, local users to perform certain actions with escalated privileges, or by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-30 |
Secunia Advisory ID: SA16636 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for phpldapadmin. This fixes a security issue, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-30 |
Secunia Advisory ID: SA16634 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Unknown System access
|
Where: From remote |
|
Short Description: Debian has issued an update for Kismet. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-29 |
Secunia Advisory ID: SA16591 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for backup-manager. This fixes two vulnerabilities, which potentially can be exploited by malicious, local users to disclose potentially sensitive information or perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-26 |
Secunia Advisory ID: SA16576 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for simpleproxy. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-26 |
Secunia Advisory ID: SA16588 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for libpam-ldap. This fixes a security issue, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-25 |
Secunia Advisory ID: SA16561 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for courier. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-08-23 |
Secunia Advisory ID: SA16527 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Exposure of system information Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-thunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, gain knowledge of potentially sensitive information, conduct cross-site scripting attacks and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-23 |
Secunia Advisory ID: SA16532 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass System access
|
Where: From remote |
|
Short Description: Debian has issued an update for bluez-utils. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-22 |
Secunia Advisory ID: SA16537 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for kdegraphics. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) on a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-22 |
Secunia Advisory ID: SA16507 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Spoofing System access
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-firefox. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting and spoofing attacks, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-22 |
Secunia Advisory ID: SA16536 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Manipulation of data
|
Where: From remote |
|
Short Description: Debian has issued an update for mantis. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-17 |
Secunia Advisory ID: SA16473 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla. This fixes a vulnerability, which can be exploited by malicious people to spoof the contents of web sites. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-16 |
Secunia Advisory ID: SA16458 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-15 |
Secunia Advisory ID: SA16446 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Debian has issued an update for mozilla-firefox. This fixes a vulnerability, which can be exploited by malicious people to spoof the contents of web sites. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-12 |
Secunia Advisory ID: SA16421 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for fetchmail. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-12 |
Secunia Advisory ID: SA16413 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information Privilege escalation DoS System access
|
Where: From remote |
|
Short Description: Debian has issued updates for multiple packages. These fix several vulnerabilities and covers all security updates since the release of sarge for the stable amd64 distribution. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-03 |
Secunia Advisory ID: SA16327 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Eduard Bloch has reported a vulnerability in apt-cacher, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-08-01 |
Secunia Advisory ID: SA16303 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for pdns. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-08-01 |
Secunia Advisory ID: SA16277 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for gopher. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-29 |
Secunia Advisory ID: SA16269 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for gaim. This fixes a weakness, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-07-28 |
Secunia Advisory ID: SA16248 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ekg. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-28 |
Secunia Advisory ID: SA16232 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Debian has issued an update for phpbb2. This fixes a vulnerability, which can be exploited by malicious people to conduct script insertion attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-27 |
Secunia Advisory ID: SA16234 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Exposure of system information
|
Where: From remote |
|
Short Description: Debian has issued an update for webcalendar. This fixes a security issue, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-22 |
Secunia Advisory ID: SA16171 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for heimdal. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-21 |
Secunia Advisory ID: SA16153 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for zlib. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) against a vulnerable application. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-21 |
Secunia Advisory ID: SA16136 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Manipulation of data System access
|
Where: From remote |
|
Short Description: Debian has issued an update for cacti. This fixes some vulnerabilities, which can be exploited by malicious people to conduct SQL injection attacks, bypass certain security restrictions and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-19 |
Secunia Advisory ID: SA16120 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for ekg. This fixes some vulnerabilities, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-19 |
Secunia Advisory ID: SA16122 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for affix. This fixes two vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-19 |
Secunia Advisory ID: SA16118 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for heartbeat. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-18 |
Secunia Advisory ID: SA16116 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for phppgadmin. This fixes a vulnerability, which can be exploited by malicious people to disclose sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-18 |
Secunia Advisory ID: SA16114 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for krb5. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-18 |
Secunia Advisory ID: SA16112 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Debian has issued an update for heimdal. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-14 |
Secunia Advisory ID: SA16067 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Manipulation of data Exposure of sensitive information
|
Where: From remote |
|
Short Description: Debian has issued an update for squirrelmail. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks and disclose and manipulate sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-14 |
Secunia Advisory ID: SA16029 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for phpgroupware. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-13 |
Secunia Advisory ID: SA16063 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for tiff. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-13 |
Secunia Advisory ID: SA16053 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for centericq. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-12 |
Secunia Advisory ID: SA16032 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From local network |
|
Short Description: Debian has issued an update for squid. This fixes a vulnerability, which can be exploited by malicious people to spoof DNS lookups. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-12 |
Secunia Advisory ID: SA16030 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gzip. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-12 |
Secunia Advisory ID: SA15996 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for gedit. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-11 |
Secunia Advisory ID: SA16002 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for drupal. This fixes two vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-11 |
Secunia Advisory ID: SA15984 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: Debian has issued an update for dhcpcd. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-07-11 |
Secunia Advisory ID: SA15997 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Debian has issued an update for ruby1.8. This fixes a vulnerability, which potentially can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-11 |
Secunia Advisory ID: SA15999 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for egroupware. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-11 |
Secunia Advisory ID: SA16000 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for ettercap. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-11 |
Secunia Advisory ID: SA16024 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Debian has issued an update for fuse. This fixes a vulnerability, which can be exploited by malicious, local users to disclose potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-11 |
Secunia Advisory ID: SA16026 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for hteditor. This fixes two vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-08 |
Secunia Advisory ID: SA15992 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Debian has issued an update for cvs. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-07 |
Secunia Advisory ID: SA15948 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for bzip2. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-07-07 |
Secunia Advisory ID: SA15955 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Alexander Mader has reported a security issue in Debian apt-setup, which can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-07 |
Secunia Advisory ID: SA15973 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Debian has issued an update for trac. This fixes a vulnerability, which can be exploited by malicious users to disclose sensitive information and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-07 |
Secunia Advisory ID: SA15964 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Debian has issued an update for zlib. This fixes a vulnerability, which can be exploited by malicious people to conduct a DoS (Denial of Service) against a vulnerable application, or potentially to execute arbitrary code. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-06 |
Secunia Advisory ID: SA15943 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for gaim. This fixes two weaknesses, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-07-06 |
Secunia Advisory ID: SA15921 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for razor. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-07-06 |
Secunia Advisory ID: SA15919 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for clamav. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-07-01 |
Secunia Advisory ID: SA15896 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Debian has issued an update for spamassassin. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-07-01 |
Secunia Advisory ID: SA15890 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: Local system |
|
Short Description: Debian has issued an update for sudo. This fixes a vulnerability, which can be exploited by malicious, local users to execute arbitrary commands with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-06-30 |
Secunia Advisory ID: SA15882 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for crip. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-05-20 |
Secunia Advisory ID: SA15444 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Debian has issued an update for ppxp. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|