Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
87

Debian DSA-1277-1 Low Risk: Xmms Code Execution Exploit

Multiple errors have been found in the skin handling routines in xmms, the X Multimedia System. These vulnerabilities could allow an attacker to run arbitrary code as the user running xmms by inducing the victim to load specially crafted interface skin files. . - ------------------------------------------------------------------------Debian Security Advisory DSA-1277-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Noah Meyerhans April 04, 2007 - ------------------------------------------------------------------------Package : xmms Vulnerability : several Problem type : local Debian-specific: no CVE Id(s) : CVE-2007-0654 CVE-2007-0653 BugTraq ID : 23078 Debian Bug : 416423 Multiple errors have been found in the skin handling routines in xmms, the X Multimedia System. These vulnerabilities could allow an attacker to run arbitrary code as the user running xmms by inducing the victim to load specially crafted interface skin files. For the stable distribution (sarge), these problems have been fixed in version 1.2.10+cvs20050209-2sarge1 For the upcoming stable distrubution (etch) and the unstable distribution (sid), these problems have been fixed in versions 1:1.2.10+20061101-1etch1 and 1:1.2.10+20070401-1, respectively. We recommend that you upgrade your xmms packages. Upgrade instructions - --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian 3.1 (stable) - -------------------Stable updates are available for alpha, amd64, arm, hppa, i386, ia64, m68k, mips, mipsel, powerpc, s390 and sparc. Source archives: Size/MD5 checksum: 333600 8d25c5173ec7d94d0db9f92b418610ce Size/MD5 checksum: 2796215 ec03ce185b2fd255d58ef5d2267024eb Size/MD5 checksum: 1065 d03e55ebe9c6a5ba2337d5f3542bc883 alpha architecture (DEC Alpha) Size/MD5 checksum: 2700990 aa024afc093e8f415b19d783e39b81c0 Size/MD5 checksum: 48766 5fd631196c28fd44df02ecf25ab9c676 amd64 architecture (AMD x86_64 (AMD64)) Size/MD5 checksum: 2434966 5c10a5a20aa5329b1c120cef213ef164 Size/MD5 checksum: 37810 06a82b2325505c9e30e4b7d9c6a17ffe arm architecture (ARM) Size/MD5 checksum: 2396722 fcead4025c4743996a4c307a003377df Size/MD5 checksum: 35376 e4f630de7290d4141964cc6ae8758ac4 hppa architecture (HP PA RISC) Size/MD5 checksum: 2585550 c73dd34f37131785adcf699e65b55ac3 Size/MD5 checksum: 40834 90fe696e1dee1d694cd8148ac83a6b88 i386 architecture (Intel ia32) Size/MD5 checksum: 33842 52fef7c2ef6a73f329d18b4df43ee6e5 Size/MD5 checksum: 2395578 c0a4c275b67ce3bc166128cd4c1fa747 ia64 architecture (Intel ia64) Size/MD5 checksum: 2717624 e7d9b41eda0f4b32c3bba2c2dff15fc1 Size/MD5 checksum: 48220 28fef757212bef0da7ed46bec7e76740 m68k architecture (Motorola Mc680x0) Size/MD5 checksum: 2315470 1a93ec2577d2a79b9b645003e1d22a03 Size/MD5 checksum: 31624 30bd86c18e943f3a93a983a63c2c1fb7 mips architecture (MIPS (Big Endian)) Size/MD5 checksum: 2412762 e340f997cfbbe0ef8ef50f78b5ec5d71 Size/MD5 checksum: 40580 698dfcf5c909de3a955f6337fb23e425 mipsel architecture (MIPS (Little Endian)) Size/MD5 checksum: 2391432 b2ef3697588a72e735f5caa02593d1b7 Size/MD5 checksum: 40516 10443e075a1f4840d4de22f2dcfc355b powerpc architecture (PowerPC) Size/MD5 checksum: 36946 057d90024cae6e6a0fdfa2d0de666134 Size/MD5 checksum: 2487280 e0571a0993112c79d6751509e548193d s390 architecture (IBM S/390) Size/MD5 checksum: 24308862cc8a1371309b973c1f963a93fc58a80 Size/MD5 checksum: 37424 3e6eb798d0a7a6137fbb1ad1a961da75 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5 checksum: 34526 2e7e99b117f6c9ab83d9a8c0afc12f79 Size/MD5 checksum: 2422962 9d5a5484287a3773e8f7a8f5bac4d29a These files will probably be moved into the stable distribution on its next update. - ---------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Ubuntu Security Notice USN-756-1 tackles potential buffer overflow vulnerabilities in mpg123 that may allow remote code execution through malicious MP3 files.. Debian Security, xmms Code Execution, Software Update, Security Patch, Local Issue. . Severity: Low. LinuxSecurity.com Team

Calendar 2 Apr 04, 2007 Low Debian
172

Ubuntu 6.06 LTS: USN-445-1 Critical: XMMS Remote Code Execution

Sven Krewitt of Secunia Research discovered that XMMS did not correctly handle BMP images when loading GUI skins. If a user were tricked into loading a specially crafted skin, a remote attacker could execute arbitrary code with user privileges. . =========================================================== Ubuntu Security Notice USN-445-1 March 27, 2007 xmms vulnerabilities CVE-2007-0653, CVE-2007-0654 ========================================================== A security issue affects the following Ubuntu releases: Ubuntu 5.10 Ubuntu 6.06 LTS Ubuntu 6.10 This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu. The problem can be corrected by upgrading your system to the following package versions: Ubuntu 5.10: xmms 1.2.10+cvs20050209-2ubuntu2.1 Ubuntu 6.06 LTS: xmms 1.2.10+cvs20050809-4ubuntu5.1 Ubuntu 6.10: xmms 1.2.10+cvs20060429-1ubuntu2.1 After a standard system upgrade you need to restart XMMS or reboot your computer to effect the necessary changes. Details follow: Sven Krewitt of Secunia Research discovered that XMMS did not correctly handle BMP images when loading GUI skins. If a user were tricked into loading a specially crafted skin, a remote attacker could execute arbitrary code with user privileges. Updated packages for Ubuntu 5.10: Source archives: Size/MD5: 333129 72ef83d4f52b41558ed91841ddb3b981 Size/MD5: 1045 8b3d745ea4c9fc0e1db52d015c5613c3 Size/MD5: 2796215 ec03ce185b2fd255d58ef5d2267024eb amd64 architecture (Athlon64, Opteron, EM64T Xeon) Size/MD5: 38878 02123da5ed2da81adcaf8b3dd1380506 Size/MD5: 1095122 5dd89b588b95cc209fb044390efe5289 i386 architecture (x86 compatible Intel/AMD) Size/MD5: 32860 b49614977d707df3753028dbac5e7d27 Size/MD5: 1001796d8a97ce8caae0d71701a4b884e5970bb powerpc architecture (Apple Macintosh G3/G4/G5) Size/MD5: 38072 0db4136bbeaa8a3ff7f387a2f6320c07 Size/MD5: 1133132 93cf5da1ff18a848d854029ad9ec2696 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5: 34968 140189e295996eee72023777d137066f Size/MD5: 1062062 d1775f3f095dc03a37ab9ded4b768c6f Updated packages for Ubuntu 6.06 LTS: Source archives: Size/MD5: 191006 337e790c81d113b8385da0d649123f0e Size/MD5: 980 a3934c8b60f5810560c2073026f2172e Size/MD5: 2798937 f60b948a5394a69b04195c22c9c75a89 amd64 architecture (Athlon64, Opteron, EM64T Xeon) Size/MD5: 38904 de7338cb9e157756a1475f16d1de3d3f Size/MD5: 1158938 4f0d080b8aa8732f674a2cfe6c97b1d2 i386 architecture (x86 compatible Intel/AMD) Size/MD5: 32946 16d93ac5daa9da11d4f7dc80dcaea4e9 Size/MD5: 1052896 aad130a721051fc69c8a9a6643832019 powerpc architecture (Apple Macintosh G3/G4/G5) Size/MD5: 38012 99027515643537182a3e8910945b960b Size/MD5: 1193394 521f3148224f6f96643faf5ab7d96506 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5: 35108 8cc7b915ee91b2020d144e3358052d50 Size/MD5: 1127786 3ec068038288108506ee3767cd41cd59 Updated packages for Ubuntu 6.10: Source archives: Size/MD5: 194003 36a8a27753ac35ce35d76697a272855b Size/MD5: 992 d97a5a09fc238c29c59b8b233644df99 Size/MD5: 6124267 15710911fae50a8a986b10be07c1951f amd64 architecture (Athlon64, Opteron, EM64T Xeon) Size/MD5: 39202 848a0574bed3305350e4d71f4f11857d Size/MD5: 1219410 50ab3c73a23647f57a3b6748c4c2c1b0 i386 architecture (x86 compatible Intel/AMD) Size/MD5: 33784 1e15c6b47b7287153bd7dd729c165613 Size/MD5: 1110970 321668eae4d53449f1269116540bc7ca powerpc architecture (Apple Macintosh G3/G4/G5) Size/MD5: 38034 9a1bbb7aaa9b23337d0bc093ae461ef6 Size/MD5: 1322454 e124ffd6707b35afb141573b638aaaa4 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5: 35460 72bef6d6e03c9009043badb9db627101 Size/MD5: 1191882 491d7e1c78a200d57e7d51cc2b51a0ed . Significant XMMS security flaws in Ubuntu necessitate immediate action. Discover the best ways to address them today.. Remote Code Exploit, Ubuntu Security Notice, XMMS Security Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 27, 2007 Critical Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here