Thank you for reading the Linux Advisory Watch Security Newsletter. Tons of Mandriva updates this week. The purpose of this document is to provide our readers with a quick summary of each week's vendor security bulletins and pointers on methods to improve the security posture of your open source system. Vulnerabilities affect nearly every vendor virtually every week, so be sure to read through to find the updates your distributor have made available.

LinuxSecurity.com Feature Extras:

Securing a Linux Web Server - With the significant prevalence of Linux web servers globally, security is often touted as a strength of the platform for such a purpose. However, a Linux based web server is only as secure as its configuration and very often many are quite vulnerable to compromise. While specific configurations vary wildly due to environments or specific use, there are various general steps that can be taken to insure basic security considerations are in place.

Password guessing with Medusa 2.0 - Medusa was created by the fine folks at foofus.net, in fact the much awaited Medusa 2.0 update was released in February of 2010. For a complete change log please visit


(Apr 10)

Timur Yunusov and Alexey Osipov from Positive Technologies discovered that the XML files parser of ModSecurity, an Apache module whose purpose is to tighten the Web application security, is vulnerable to XML external entities attacks. A specially-crafted XML file provided by a [More...]

(Apr 4)

Several vulnerabilities were discovered in PostgreSQL database server. CVE-2013-1899 [More...]

(Apr 4)

A vulnerability was discovered in PostgreSQL database server. Random numbers generated by contrib/pgcrypto functions may be easy for another database user to guess. [More...]


(Apr 8)

Two vulnerabilities in NVIDIA drivers may allow a local attacker to gain escalated privileges.


Mandriva: 2013:142: postgresql (Apr 11)

Multiple vulnerabilities has been discovered and corrected in postgresql: PostgreSQL 9.2.x before 9.2.3, 9.1.x before 9.1.8, 9.0.x before 9.0.12, 8.4.x before 8.4.16, and 8.3.x before 8.3.23 does not properly declare [More...]

Mandriva: 2013:141: libxslt (Apr 11)

Updated libxslt packages fix security vulnerability: Nicholas Gregoire discovered that libxslt incorrectly handled certain empty values. If a user or automated system were tricked into processing a specially crafted XSLT document, a remote attacker could [More...]

Mandriva: 2013:140: asterisk (Apr 10)

Multiple vulnerablilities was identified and fixed in asterisk: The SIP channel driver in Asterisk Open Source 1.8.x before 1.8.20.2, 10.x before 10.12.2, and 11.x before 11.2.2; Certified Asterisk 1.8.15 before 1.8.15-cert2; Asterisk Business Edition (BE) C.3.x [More...]

Mandriva: 2013:139: x11-server (Apr 10)

This fixes a format string vulnerability in the LogVHdrMessageVerb function in os/log.c when handling input device names in X.Org X11 server (CVE-2012-2118). MBS1 is not vulnerable to arbitrary code execution via this [More...]

Mandriva: 2013:138: x11-driver-video-qxl (Apr 10)

Updated x11-driver-video-qxl package fixes security vulnerability: A flaw was found in the way the host's qemu-kvm qxl driver and the guest's X.Org qxl driver interacted when a SPICE connection terminated. A user able to initiate a SPICE connection to a guest [More...]

Mandriva: 2013:137: wordpress (Apr 10)

This update provides WordPress 3.4.2, a maintenance and security release. [More...] _______________________________________________________________________

Mandriva: 2013:136: weechat (Apr 10)

Updated weechat packages fix security vulnerability: A buffer overflow is causing a crash or freeze of WeeChat (0.36 to 0.39) when decoding IRC colors in strings. The packages have been patched to fix this problem (CVE-2012-5854). [More...]

Mandriva: 2013:135: vte (Apr 10)

Updated vte packages fix security vulnerability: A denial of service flaw was found in the way VTE, a terminal emulator widget, processed certain escape sequences with large repeat counts. A remote attacker could provide a specially-crafted file, which once [More...]

Mandriva: 2013:134: viewvc (Apr 10)

Updated viewvc packages fix security vulnerabilities: complete authz support for remote SVN views (CVE-2012-3356). log msg leak in SVN revision view with unreadable copy source [More...]

Mandriva: 2013:133: usbmuxd (Apr 10)

Updated usbmuxd packages fix security vulnerability: It was discovered that usbmuxd did not correctly perform bounds checking when processing the SerialNumber field of USB devices. An attacker with physical access could use this to crash usbmuxd [More...]

Mandriva: 2013:132: tor (Apr 10)

Updated tor package fixes security vulnerabilities: Tor before 0.2.2.34, when configured as a client or bridge, sends a TLS certificate chain as part of an outgoing OR connection, which allows remote relays to bypass intended anonymity properties by reading this [More...]

Mandriva: 2013:131: taglib (Apr 10)

Updated taglib packages fix security vulnerabilities: taglib before 1.7.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted MP4 file (CVE-2012-2396). [More...]

Mandriva: 2013:130: stunnel (Apr 10)

Updated stunnel packages fix security vulnerability: stunnel 4.21 through 4.54, when CONNECT protocol negotiation and NTLM authentication are enabled, does not correctly perform integer conversion, which allows remote proxy servers to execute arbitrary code [More...]

Mandriva: 2013:129: squid (Apr 10)

Updated squid packages fix security vulnerability: Due to missing input validation, the Squid cachemgr.cgi tool in Squid before 3.1.22 and 3.2.4 is vulnerable to a denial of service attack when processing specially crafted requests (CVE-2012-5643). [More...]

Mandriva: 2013:128: squashfs-tools (Apr 10)

Updated squashfs-tools packages fix security vulnerabilities: remote arbitrary code execution via crafted list file (CVE-2012-4024). integer overflow in queue_init() may lead to abitrary code execution [More...]

Mandriva: 2013:127: socat (Apr 10)

Updated socat package fixes security vulnerability: Heap-based buffer overflow in the xioscan_readline function in xio-readline.c in socat 1.4.0.0 through 1.7.2.0 and 2.0.0-b1 through 2.0.0-b4 allows local users to execute arbitrary code via the READLINE [More...]

Mandriva: 2013:126: snack (Apr 10)

Updated snack packages fix security vulnerability: Two vulnerabilities have been discovered in Snack Sound Toolkit, which are caused due to missing boundary checks in the GetWavHeader() function (generic/jkSoundFile.c) when parsing either format sub-chunks [More...]

Mandriva: 2013:125: sleuthkit (Apr 10)

Updated sleuthkit packages fix security vulnerabilities: A security flaw was found in the way the Sleuth Kit (TSK), a collection of UNIX-based command line tools allowing to investigate a computer, performed management of \'.\' (dotfile) file system entry. An attacker [More...]

Mandriva: 2013:124: ruby (Apr 10)

Updated ruby packages fix security vulnerabilities: Shugo Maedo and Vit Ondruch discovered that Ruby incorrectly allowed untainted strings to be modified in protective safe levels. An attacker could use this flaw to bypass intended access restrictions [More...]

Mandriva: 2013:123: rpmdevtools (Apr 10)

Updated rpmdevtools package fixes security vulnerability: A TOCTOU race condition was found in the way 'annotate-output' (used to execute a program annotating the output linewise with time and stream) tool of rpmdevtools before 8.3 performed management of its [More...]

Mandriva: 2013:122: quagga (Apr 10)

Updated quagga package fixes security vulnerability: The bgp_capability_orf function in bgpd in Quagga 0.99.20.1 and earlier allows remote attackers to cause a denial of service (assertion failure and daemon exit) by leveraging a BGP peering relationship and sending [More...]

Mandriva: 2013:121: qemu (Apr 10)

Updated qemu packages fix security vulnerability: A flaw was found in how qemu, in snapshot mode (-snapshot command line argument), handled the creation and opening of the temporary file used to store the difference of the virtualized guest's read-only [More...]

Mandriva: 2013:120: python-pycrypto (Apr 10)

Updated python-pycrypto package fixes security vulnerability: PyCrypto before 2.6 does not produce appropriate prime numbers when using an ElGamal scheme to generate a key, which reduces the signature space or public key space and makes it easier for attackers to conduct [More...]

Mandriva: 2013:119: python-httplib2 (Apr 10)

python-httplib2 ships its own copy of the Mozilla NSS certificates, but it should use the system-wide ones provided by the rootcerts package instead. This has been corrected. [More...] _______________________________________________________________________

Mandriva: 2013:118: python-feedparser (Apr 10)

Updated python-feedparser package fixes security vulnerability: Universal Feed Parser (aka feedparser or python-feedparser) before 5.1.2 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML ENTITY declaration in a non-ASCII [More...]

Mandriva: 2013:117: python (Apr 10)

Updated python packages fix security vulnerabilities: A race condition was found in the way the Python distutils module set file permissions during the creation of the .pypirc file. If a local user had access to the home directory of another user who is [More...]

Mandriva: 2013:116: pixman (Apr 10)

Updated pixman packages fix security vulnerability: Stack-based buffer overflow in libpixman has unspecified impact and attack vectors (CVE-2013-1591). [More...] _______________________________________________________________________

Mandriva: 2013:115: php-ZendFramework (Apr 10)

Updated php-ZendFramework packages fix security vulnerabilities: Zend_Dom, Zend_Feed, Zend_Soap, and Zend_XmlRpc in Zend Framework before 1.11.13 and 1.12.0 are vulnerable to XML Entity Expansion (XEE) vectors, leading to Denial of Service vectors. XEE attacks occur when [More...]

Mandriva: 2013:114: php (Apr 10)

Multiple vulnerabilities has been discovered and corrected in php: ext/soap/soap.c in PHP before 5.3.22 and 5.4.x before 5.4.13 does not validate the relationship between the soap.wsdl_cache_dir directive and the open_basedir directive, which allows remote attackers to [More...]

Mandriva: 2013:113: perl (Apr 10)

Updated perl packages fix security vulnerability: It was discovered that Perl's 'x' string repeat operator is vulnerable to a heap-based buffer overflow. An attacker could use this to execute arbitrary code (CVE-2012-5195). [More...]

Mandriva: 2013:112: otrs (Apr 10)

Updated otrs package fixes security vulnerabilities: Multiple cross-site scripting (XSS) vulnerabilities in Open Ticket Request System (OTRS) Help Desk 2.4.x before 2.4.13, 3.0.x before 3.0.15, and 3.1.x before 3.1.9, and OTRS ITSM 2.1.x before 2.1.5, [More...]

Mandriva: 2013:111: openslp (Apr 10)

Updated openslp packages fix security vulnerability: The extension parser in slp_v2message.c in OpenSLP 1.2.1 allows remote attackers to cause a denial of service (infinite loop) via a packet with a next extension offset that references this extension [More...]

Mandriva: 2013:110: openjpeg (Apr 10)

Updated openjpeg packages fix security vulnerability: An out-of heap-based buffer bounds read and write flaw, leading to invalid free, was found in the way a tile coder / decoder (TCD) implementation of OpenJPEG, an open-source JPEG 2000 codec written in [More...]

Mandriva: 2013:109: open-iscsi (Apr 10)

Updated open-iscsi package fixes security vulnerability: Colin Watson discovered that iscsi_discovery in Open-iSCSI did not safely create temporary files. A local attacker could exploit this to overwrite arbitrary files with root privileges (CVE-2009-1297). [More...]

Mandriva: 2013:108: openconnect (Apr 10)

Updated openconnect packages fix security vulnerability: A stack-based buffer overflow flaw was found in the way OpenConnect, a client for Cisco's AnyConnect VPN, performed processing of certain host names, paths, or cookie lists, received from the VPN gateway. A [More...]

Mandriva: 2013:107: ocaml-xml-light (Apr 10)

Updated ocaml-xml-light packages fix security vulnerability: OCaml Xml-Light Library before r234 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service [More...]

Mandriva: 2013:106: nss-pam-ldapd (Apr 10)

Updated nss-pam-ldapd packages fixes the following security vulnerability: Garth Mollett discovered that a file descriptor overflow issue in the use of FD_SET() in nss-pam-ldapd can lead to a stack-based buffer [More...]

Mandriva: 2013:105: munin (Apr 10)

Updated munin packages fix security vulnerabilities: The qmailscan plugin for Munin before 2.0 rc6 allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable names (CVE-2012-2103). [More...]

Mandriva: 2013:104: mosh (Apr 10)

Updated mosh package fixes security vulnerability: Mosh versions 1.2 and earlier allow an application to cause the mosh-server to consume large amounts of CPU time with a short ANSI escape sequence. In addition, a malicious mosh-server can cause the [More...]

Mandriva: 2013:103: mesa (Apr 10)

Updated mesa packages fix security vulnerability: The glsl shaders are vulnerable to a buffer overrun in parcel_out_uniform_storage::visit_field. When too many uniforms are used, the error will now be caught in check_resources [More...]

Mandriva: 2013:102: mariadb (Apr 10)

Updated mariadb packages includes fixes for the following security vulnerabilities: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.26 and earlier allows remote attackers to affect integrity [More...]

Mandriva: 2013:101: lynx (Apr 10)

Updated lynx package fixes security vulnerability: Lynx does not verify that the server's certificate is signed by a trusted certification authority, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate, related to [More...]

Mandriva: 2013:099: libytnef (Apr 10)

Updated libytnef package fixes security vulnerability: Function DecompressRTF() in libytnef 1.5 leads to a buffer overflow on certain TNEF files (presumably, on files, generated by some recent versions of MS software). [More...]

Mandriva: 2013:100: lighttpd (Apr 10)

The http_request_split_value function in request.c in lighttpd before 1.4.32 allows remote attackers to cause a denial of service (infinite loop) via a request with a header containing an empty token, as demonstrated using the Connection: TE,,Keep-Alive header (CVE-2012-5533). [More...]

Mandriva: 2013:098: libupnp (Apr 10)

Updated libupnp packages fix security vulnerabilities: The Portable SDK for UPnP Devices libupnp library contains multiple buffer overflow vulnerabilities. Devices that use libupnp may also accept UPnP queries over the WAN interface, therefore exposing the [More...]

Mandriva: 2013:097: libotr (Apr 10)

A vulnerability was found and corrected in libotr: Just Ferguson discovered that libotr, an off-the-record (OTR) messaging library, can be forced to perform zero-length allocations for heap buffers that are used in base64 decoding routines. An attacker can [More...]

Mandriva: 2013:096: keepalived (Apr 10)

Updated keepalived package fixes security vulnerability: The pidfile_write function in core/pidfile.c in keepalived 1.2.2 and earlier uses 0666 permissions for the (1) keepalived.pid, (2) checkers.pid, and (3) vrrp.pid files in /var/run/, which allows local [More...]

Mandriva: 2013:095: java-1.7.0-openjdk (Apr 10)

Updated java-1.7.0-openjdk packages fix security vulnerabilities: Two improper permission check issues were discovered in the reflection API in OpenJDK. An untrusted Java application or applet could use these flaws to bypass Java sandbox restrictions (CVE-2012-3174, [More...]

Mandriva: 2013:094: jakarta-poi (Apr 10)

Updated jakarta-poi packages fix security vulnerability: It was discovered that Apache POI, a Java implementation of the Microsoft Office file formats, would allocate arbitrary amounts of memory when processing crafted documents. This could impact the [More...]

Mandriva: 2013:093: ircd-hybrid (Apr 10)

Updated ircd-hybrid packages fix security vulnerability: Bob Nomnomnom reported a Denial of Service vulnerability in IRCD-Hybrid, an Internet Relay Chat server. A remote attacker may use an error in the masks validation and crash the server (CVE-2013-0238). [More...]

Mandriva: 2013:092: imagemagick (Apr 9)

Updated imagemagick packages fix security vulnerability: The Magick_png_malloc function in coders/png.c in ImageMagick 6.7.8-6 and earlier does not use the proper variable type for the allocation size, which might allow remote attackers to cause a denial of service [More...]

Mandriva: 2013:091: icecast (Apr 9)

Updated icecast package fixes security vulnerability: Icecast didn't strip newlines from log entries, therefore allowing users to forge log entries (CVE-2011-4612) [More...] _______________________________________________________________________

Mandriva: 2013:089: icclib (Apr 9)

A security issue was identified and fixed in icclib: An integer overflow flaw, leading to a heap-based buffer overflow, was found in Ghostscript's International Color Consortium Format library (icclib). An attacker could create a specially-crafted PostScript or [More...]

Mandriva: 2013:090: argyllcms (Apr 9)

A security issue was identified and fixed in argyllcms: An integer overflow flaw, leading to a heap-based buffer overflow, was found in Ghostscript's International Color Consortium Format library (icclib). An attacker could create a specially-crafted PostScript or [More...]

Mandriva: 2013:088: hplip (Apr 9)

This hplip update addresses the folloving issues: Print/Fax queues can now be analyzed by running hp-diagnose-queues fixes some issues and duplex scanning support with newer AIO devices [More...]

Mandriva: 2013:087: firefox (Apr 9)

Multiple security issues was identified and fixed in mozilla firefox: Mozilla community member Tobias Schula reported that if gfx.color_management.enablev4 preference is enabled manually in about:config, some grayscale PNG images will be rendered incorrectly [More...]

Mandriva: 2013:086: groff (Apr 9)

Multiple vulnerabilities has been found and corrected in groff: contrib/pdfmark/pdfroff.sh in GNU troff (aka groff) before 1.21 allows local users to overwrite arbitrary files via a symlink attack on a pdf#####.tmp temporary file (CVE-2009-5044). [More...]

Mandriva: 2013:085: groff (Apr 9)

Multiple vulnerabilities has been found and corrected in groff: contrib/pdfmark/pdfroff.sh in GNU troff (aka groff) before 1.21 allows local users to overwrite arbitrary files via a symlink attack on a pdf#####.tmp temporary file (CVE-2009-5044). [More...]

Mandriva: 2013:084: gnome-keyring (Apr 9)

Updated gnome-keyring package fixes security vulnerability: gnome-keyring seems to obey the configuration asking it to stop caching passphrases, but after a while it doesn't cache nor does it ask for the passphrase (CVE-2012-3466). [More...]

Mandriva: 2013:083: glib2.0 (Apr 9)

Updated glib2.0 packages fix security vulnerability: It was discovered that the version of glib shipped with MBS 1 does not sanitise certain DBUS related environment variables. When used in combination with a setuid application which utilises dbus via [More...]

Mandriva: 2013:082: gimp (Apr 9)

Updated gimp packages fix security vulnerabilities: An integer overflow flaw, leading to a heap-based buffer overflow, was found in the GIMP's GIF image format plug-in. An attacker could create a specially-crafted GIF image file that, when opened, could [More...]

Mandriva: 2013:081: gegl (Apr 9)

Updated gegl packages fix security vulnerability: An integer overflow flaw, leading to a heap-based buffer overflow, was found in the way the gegl utility processed .ppm (Portable Pixel Map) image files. An attacker could create a specially-crafted .ppm file [More...]

Mandriva: 2013:080: ganglia (Apr 9)

Updated ganglia packages fix security vulnerability: There is a security issue in Ganglia Web going back to at least 3.1.7 which can lead to arbitrary script being executed with web user privileges possibly leading to a machine compromise. [More...]

Mandriva: 2013:079: ffmpeg (Apr 9)

Updated ffmpeg packages fix security vulnerabilities: h264: Add check for invalid chroma_format_idc (CVE-2012-0851) h263dec: Disallow width/height changing with frame threads [More...]

Mandriva: 2013:078: fail2ban (Apr 9)

Updated fail2ban package fixes security vulnerability: fail2ban before 0.8.8 didn't escape the content of \<matches\> (if used in custom action files), which could cause issues on the system running fail2ban as it scans log files, depending on what content is matched, [More...]

Mandriva: 2013:077: ettercap (Apr 9)

Updated ettercap package fixes security vulnerability: The GTK version of ettercap uses a global settings file at /tmp/.ettercap_gtk and does not verify ownership of this file. When parsing this file for settings in gtkui_conf_read\(\) [More...]

Mandriva: 2013:076: emacs (Apr 8)

Updated emacs packages fix security vulnerabilities: Untrusted search path vulnerability in EDE in CEDET before 1.0.1, as used in GNU Emacs before 23.4 and other products, allows local users to gain privileges via a crafted Lisp expression in a Project.ede [More...]

Mandriva: 2013:075: elinks (Apr 8)

Updated elinks package fixes security vulnerability: Marko Myllynen discovered that ELinks, a powerful text-mode browser, incorrectly delegates user credentials during GSS-Negotiate (CVE-2012-4545). [More...]

Mandriva: 2013:074: drupal (Apr 8)

Updated drupal packages fix security vulnerabilities: Drupal core's text filtering system provides several features including removing inappropriate HTML tags and automatically linking content that appears to be a link. A pattern in Drupal's text matching was [More...]

Mandriva: 2013:073: dokuwiki (Apr 8)

Updated dokuwiki package fixes security vulnerabilities: DokuWiki 2009-12-25c allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by [More...]

Mandriva: 2013:072: dnsmasq (Apr 8)

Updated dnsmasq packages fix security vulnerabilities: When dnsmasq before 2.63 is used in conjunctions with certain configurations of libvirtd, network packets from prohibited networks (e.g. packets that should not be passed in) may be sent to the dnsmasq [More...]

Mandriva: 2013:071: dbus-glib (Apr 8)

Updated dbus-glib packages fix security vulnerability: A privilege escalation flaw was found in the way dbus-glib, the D-Bus add-on library to integrate the standard D-Bus library with the GLib thread abstraction and main loop, performed filtering of the message [More...]

Mandriva: 2013:070: dbus (Apr 8)

Updated dbus packages fix security vulnerability: It was discovered that the D-Bus library honored environment settings even when running with elevated privileges. A local attacker could possibly use this flaw to escalate their privileges, by setting [More...]

Mandriva: 2013:069: cups-pk-helper (Apr 8)

Updated cups-pk-helper package fixes security vulnerability: cups-pk-helper, a PolicyKit helper to configure CUPS with fine-grained privileges, wraps CUPS function calls in an insecure way. This could lead to uploading sensitive data to a CUPS resource, or overwriting [More...]

Mandriva: 2013:068: courier-authlib (Apr 8)

When using the authpgsql module and if the Postgres server goes down, authpgsql will start leaking memory. A packaging flaw was discovered that caused the courier-authlib-devel package to be installed when installing for example maildrop. [More...]

Mandriva: 2013:067: couchdb (Apr 8)

Updated couchdb packages fix security vulnerabilities: A security flaw was found in the way Apache CouchDB, a distributed,fault- tolerant and schema-free document-oriented database accessible via a RESTful HTTP/JSON API, processed certain [More...]

Mandriva: 2013:066: bugzilla (Apr 8)

Multiple vulnerablilities was identified and fixed in bugzilla: The get_attachment_link function in Template.pm in Bugzilla 2.x and 3.x before 3.6.10, 3.7.x and 4.0.x before 4.0.7, 4.1.x and 4.2.x before 4.2.2, and 4.3.x before 4.3.2 does not check whether an attachment [More...]

Mandriva: 2013:065: boost (Apr 8)

Updated boost packages fix security vulnerability: A security flaw was found in the way ordered_malloc() routine implementation in Boost, the free peer-reviewed portable C++ source libraries, performed 'next-size' and 'max_size' parameters [More...]

Mandriva: 2013:064: bogofilter (Apr 8)

Updated bogofilter package fixes security vulnerability: In bogofilter before 1.2.3, bogofilter's/bogolexer's base64 could overwrite heap memory in the character set conversion in certain pathological cases of invalid base64 code that decodes to incomplete [More...]

Mandriva: 2013:063: bip (Apr 8)

Updated bip package fixes security vulnerability: Buffer overflow in Bip 0.8.8 and earlier might allow remote authenticated users to execute arbitrary code via vectors involving a series of TCP connections that triggers use of many open file [More...]

Mandriva: 2013:062: backuppc (Apr 8)

Updated backuppc packages fix security vulnerabilities: Cross-site scripting (XSS) vulnerability in RestoreFile.pm in BackupPC 3.1.0, 3.2.1, and possibly other earlier versions allows remote attackers to inject arbitrary web script or HTML via the share [More...]

Mandriva: 2013:060: accountsservice (Apr 8)

Updated accountsservice packages fix security vulnerability: Florian Weimer discovered that AccountsService incorrectly handled privileges when copying certain files to the system cache directory. A local attacker could exploit this issue to read arbitrary files, [More...]

Mandriva: 2013:061: awstats (Apr 8)

Multiple XXS vulnerabilities was found and corrected in awstats (CVE-2012-4547). The updated packages have been patched to correct this issue. [More...] _______________________________________________________________________

Mandriva: 2013:059: dhcp (Apr 8)

A security issue was identified and fixed in ISC DHCP: libdns in ISC DHCP 4.2.x before 4.2.5-P1 allows remote name servers to cause a denial of service (memory consumption) via vectors involving a regular expression, as demonstrated by a memory-exhaustion attack [More...]

Mandriva: 2013:058: bind (Apr 8)

A security issue was identified and fixed in ISC BIND: libdns in ISC BIND 9.7.x and 9.8.x before 9.8.4-P2, 9.8.5 before 9.8.5b2, 9.9.x before 9.9.2-P2, and 9.9.3 before 9.9.3b2 on UNIX platforms allows remote attackers to cause a denial of service (memory [More...]

Mandriva: 2013:057: xinetd (Apr 8)

A security issue was identified and fixed in xinetd: builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled services and allows remote attackers to bypass intended access [More...]

Mandriva: 2013:056: libxml2 (Apr 8)

Multiple vulnerabilities was found and corrected in libxml2: A heap-buffer overflow was found in the way libxml2 decoded certain XML entitites. A remote attacker could provide a specially-crafted XML file, which once opened in an application linked against libxml [More...]

Mandriva: 2013:055: wireshark (Apr 5)

Multiple vulnerabilities has been found and corrected in wireshark: Infinite and large loops in ANSI MAP, BACapp, Bluetooth HCI, IEEE 802.3, LTP, and R3 dissectors have been fixed. Discovered by Laurent Butti (https://www.wireshark.org/security/wnpa-sec-2012-08.html [More...]

Mandriva: 2013:054: sudo (Apr 5)

Multiple vulnerabilities has been found and corrected in sudo: A flaw exists in the IP network matching code in sudo versions 1.6.9p3 through 1.8.4p4 that may result in the local host being matched even though it is not actually part of the network described by the [More...]

Mandriva: 2013:053: proftpd (Apr 5)

A vulnerability has been found and corrected in proftpd: ProFTPD before 1.3.5rc1, when using the UserOwner directive, allows local users to modify the ownership of arbitrary files via a race condition and a symlink attack on the (1) MKD or (2) XMKD commands [More...]

Mandriva: 2013:052: openssl (Apr 5)

Multiple vulnerabilities has been found and corrected in openssl: OpenSSL before 0.9.8y, 1.0.0 before 1.0.0k, and 1.0.1 before 1.0.1d does not properly perform signature verification for OCSP responses, which allows remote attackers to cause a denial of service (NULL [More...]

Mandriva: 2013:051: openssh (Apr 5)

A vulnerability has been found and corrected in openssh: The default configuration of OpenSSH through 6.1 enforces a fixed time limit between establishing a TCP connection and completing a login, which makes it easier for remote attackers to cause a denial [More...]

Mandriva: 2013:050: nss (Apr 5)

Google reported to Mozilla that TURKTRUST, a certificate authority in Mozillas root program, had mis-issued two intermediate certificates to customers. The issue was not specific to Firefox but there was evidence that one of the certificates was used for man-in-the-middle (MITM) traffic management of domain names that the customer did not [More...]

Mandriva: 2013:049: net-snmp (Apr 5)

A vulnerability has been discovered and corrected in net-snmp: An array index error, leading to out-of heap-based buffer read flaw was found in the way net-snmp agent performed entries lookup in the extension table. When certain MIB subtree was handled by the extend [More...]

Mandriva: 2013:048: ncpfs (Apr 5)

Multiple vulnerabilities has been discovered and corrected in ncpfs: ncpfs 2.2.6 and earlier attempts to use (1) ncpmount to append to the /etc/mtab file and (2) ncpumount to append to the /etc/mtab.tmp file without first checking whether resource limits would interfere, [More...]

Mandriva: 2013:047: libxslt (Apr 5)

A vulnerability has been discovered and corrected in libxslt: The XSL implementation in libxslt allows remote attackers to cause a denial of service (incorrect read operation) via unspecified vectors (CVE-2012-2825). [More...]

Mandriva: 2013:046: libtiff (Apr 5)

Updated libtiff packages fix security vulnerabilities: libtiff did not properly convert between signed and unsigned integer values, leading to a buffer overflow. An attacker could use this flaw to create a specially-crafted TIFF file that, when opened, would [More...]

Mandriva: 2013:045: libssh (Apr 5)

Updated libssh packages fix security vulnerabilities: Multiple double free flaws, buffer overflow flaws, invalid free flaws, and improper overflow checks in libssh before 0.5.3 could enable a denial of service attack against libssh clients, or possibly [More...]

Mandriva: 2013:044: libjpeg (Apr 5)

A vulnerability has been discovered and corrected in libjpeg: A Heap-based buffer overflow was found in the way libjpeg-turbo decompressed certain corrupt JPEG images in which the component count was erroneously set to a large value. An attacker could create [More...]

Mandriva: 2013:043: libgssglue (Apr 5)

This update fixes insecure getenv() usage in libgssglue, which could be used under some circumstances by local attackers do gain root privileges (CVE-2011-2709). [More...] _______________________________________________________________________

Mandriva: 2013:042: krb5 (Apr 5)

Multiple vulnerabilities has been discovered and corrected in krb5: Fix a kadmind denial of service issue (null pointer dereference), which could only be triggered by an administrator with the create privilege (CVE-2012-1013). [More...]

Mandriva: 2013:041: html2ps (Apr 5)

A vulnerability has been found and corrected in html2ps: Directory traversal vulnerability in html2ps before 1.0b7 allows remote attackers to read arbitrary files via directory traversal sequences in SSI directives (CVE-2009-5067). [More...]

Mandriva: 2013:040: gnutls (Apr 5)

Nadhem Alfardan and Kenny Paterson devised an attack that recovers some bits of the plaintext of a GnuTLS session that utilizes that CBC ciphersuites, by using timing information (CVE-2013-1619). The gnutls package has been updated to latest 3.0.28 version to fix [More...]

Mandriva: 2013:001-1: gnupg (Apr 5)

A vulnerability has been found and corrected in gnupg: Versions of GnuPG <= 1.4.12 are vulnerable to memory access violations and public keyring database corruption when importing public keys that have been manipulated. An OpenPGP key can be fuzzed in such a [More...]

Mandriva: 2013:039: freetype2 (Apr 5)

Updated freetype2 packages fixes security vulnerabilities: A null pointer de-reference flaw was found in the way Freetype font rendering engine handled Glyph bitmap distribution format (BDF) fonts. A remote attacker could provide a specially-crafted BDF font [More...]

Mandriva: 2013:038: freeradius (Apr 5)

Updated freeradius packages fixes security vulnerabilities: It was found that the unix module ignored the password expiration setting in /etc/shadow. If FreeRADIUS was configured to use this module for user authentication, this flaw could allow users with [More...]

Mandriva: 2013:036: exif (Apr 5)

A vulnerability has been discovered and corrected in exif: An integer overflow in the function jpeg_data_load_data in the exif program could cause a data read beyond the end of a buffer, causing an application crash or leakage of potentially sensitive information [More...]

Mandriva: 2013:037: fetchmail (Apr 5)

Multiple vulnerabilities has been found and corrected in fetchmail: Fetchmail version 6.3.9 enabled all SSL workarounds (SSL_OP_ALL) which contains a switch to disable a countermeasure against certain attacks against block ciphers that permit guessing the initialization vectors, [More...]

Mandriva: 2013:035: libexif (Apr 5)

Multiple vulnerabilities has been discovered and corrected in libexif: A heap-based out-of-bounds array read in the exif_entry_get_value function in libexif/exif-entry.c in libexif 0.6.20 and earlier allows remote attackers to cause a denial of service or possibly obtain [More...]

Mandriva: 2013:034: cups (Apr 5)

Updated cups packages fixes bugs and security vulnerabilities: During the process of CUPS socket activation code refactoring in favour of systemd capability a security flaw was found in the way CUPS service honoured Listen localhost:631 cupsd.conf configuration option. The [More...]

Mandriva: 2013:033: cronie (Apr 5)

Updated cronie package fixes the following issue: It was reported that cronie 1.4.8 would leak certain file descriptors. On systems where /etc/crontab is not world-readable this could be an information disclosure concern (CVE-2012-6097). [More...]

Mandriva: 2013:023-1: coreutils (Apr 5)

Multiple vulnerabilities has been found and corrected in coreutils: Long line inputs could trigger a segfault in the sort, uniq and join utilities (CVE-2013-0221, CVE-2013-0222, CVE-2013-0223). [More...]

Mandriva: 2013:032: bash (Apr 5)

A vulnerability was found and corrected in bash: A stack-based buffer overflow flaw was found in the way bash, the GNU Bourne Again shell, expanded certain /dev/fd file names when checking file names ('test' command) and evaluating /dev/fd file [More...]

Mandriva: 2013:030: arpwatch (Apr 5)

A vulnerability has been discovered and corrected in arpwatch: arpwatch 2.1a15, as used by Red Hat, Debian, Fedora, and possibly others, does not properly drop supplementary groups, which might allow attackers to gain root privileges by leveraging other vulnerabilities [More...]

Mandriva: 2013:031: automake (Apr 5)

A vulnerability has been discovered and corrected in automake: A race condition in automake (lib/am/distdir.am) could allow a local attacker to run arbitrary code with the privileges of the user running make distcheck (CVE-2012-3386). [More...]

Mandriva: 2013:029: apache-mod_security (Apr 5)

A vulnerability has been discovered and corrected in apache-mod_security: ModSecurity <= 2.6.8 is vulnerable to multipart/invalid part ruleset bypass, this was fixed in 2.7.0 (released on2012-10-16) [More...]

Mandriva: 2013:019: bash (Apr 4)

A vulnerability was found and corrected in bash: A stack-based buffer overflow flaw was found in the way bash, the GNU Bourne Again shell, expanded certain /dev/fd file names when checking file names ('test' command) and evaluating /dev/fd file [More...]

Mandriva: 2013:018: automake (Apr 4)

A vulnerability has been discovered and corrected in automake: A race condition in automake (lib/am/distdir.am) could allow a local attacker to run arbitrary code with the privileges of the user running make distcheck (CVE-2012-3386). [More...]

Mandriva: 2013:017: arpwatch (Apr 4)

A vulnerability has been discovered and corrected in arpwatch: arpwatch 2.1a15, as used by Red Hat, Debian, Fedora, and possibly others, does not properly drop supplementary groups, which might allow attackers to gain root privileges by leveraging other vulnerabilities [More...]

Mandriva: 2013:016: apache-mod_security (Apr 4)

A vulnerability has been discovered and corrected in apache-mod_security: ModSecurity <= 2.6.8 is vulnerable to multipart/invalid part ruleset bypass, this was fixed in 2.7.0 (released on2012-10-16) [More...]

Mandriva: 2013:015-1: apache (Apr 4)

Multiple vulnerabilities has been found and corrected in apache (ASF HTTPD): Various XSS (cross-site scripting vulnerability) flaws due to unescaped hostnames and URIs HTML output in mod_info, mod_status, mod_imagemap, [More...]


Red Hat: 2013:0737-01: subversion: Moderate Advisory (Apr 11)

Updated subversion packages that fix multiple security issues are now available for Red Hat Enterprise Linux 5 and 6. The Red Hat Security Response Team has rated this update as having moderate [More...]

Red Hat: 2013:0730-01: flash-plugin: Critical Advisory (Apr 10)

An updated Adobe Flash Player package that fixes multiple security issues is now available for Red Hat Enterprise Linux 5 and 6 Supplementary. The Red Hat Security Response Team has rated this update as having critical [More...]

Red Hat: 2013:0729-01: haproxy: Moderate Advisory (Apr 9)

An updated haproxy package that fixes one security issue is now available for Red Hat OpenShift Enterprise 1.1.3. The Red Hat Security Response Team has rated this update as having moderate [More...]

Red Hat: 2013:0727-01: kvm: Important Advisory (Apr 9)

Updated kvm packages that fix three security issues are now available for Red Hat Enterprise Linux 5. The Red Hat Security Response Team has rated this update as having [More...]

Red Hat: 2013:0728-01: rubygem packages: Moderate Advisory (Apr 9)

This update fixes one security issue in multiple rubygem packages for Red Hat OpenShift Enterprise 1.1.3. The Red Hat Security Response Team has rated this update as having moderate [More...]

Red Hat: 2013:0714-01: stunnel: Moderate Advisory (Apr 8)

An updated stunnel package that fixes one security issue is now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having moderate [More...]

Red Hat: 2013:0710-01: puppet: Important Advisory (Apr 4)

Updated puppet packages that fix several security issues are now available for Red Hat OpenStack Folsom. The Red Hat Security Response Team has rated this update as having [More...]

Red Hat: 2013:0709-01: openstack-nova: Moderate Advisory (Apr 4)

Updated openstack-nova packages that fix two security issues and various bugs are now available for Red Hat OpenStack Folsom. The Red Hat Security Response Team has rated this update as having moderate [More...]

Red Hat: 2013:0707-01: openstack-glance: Moderate Advisory (Apr 4)

Updated openstack-glance packages that fix one security issue and various bugs are now available for Red Hat OpenStack Folsom. The Red Hat Security Response Team has rated this update as having moderate [More...]

Red Hat: 2013:0708-01: openstack-keystone: Moderate Advisory (Apr 4)

Updated openstack-keystone packages that fix two security issues and various bugs are now available for Red Hat OpenStack Folsom. The Red Hat Security Response Team has rated this update as having moderate [More...]


(Apr 7)

New seamonkey packages are available for Slackware 13.37, 14.0, and -current to fix security issues. [More Info...]

(Apr 5)

New subversion packages are available for Slackware 13.0, 13.1, 13.37, 14.0, and -current to fix security issues. [More Info...]


Ubuntu: 1799-1: NVIDIA graphics drivers vulnerability (Apr 10)

NVIDIA graphics drivers could be made to run programs as an administrator.

Ubuntu: 1798-1: Linux kernel (EC2) vulnerabilities (Apr 8)

Several security issues were fixed in the kernel.

Ubuntu: 1797-1: Linux kernel (OMAP4) vulnerabilities (Apr 8)

Several security issues were fixed in the kernel.

Ubuntu: 1796-1: Linux kernel vulnerabilities (Apr 8)

Several security issues were fixed in the kernel.

Ubuntu: 1795-1: Linux kernel (Quantal HWE) vulnerabilities (Apr 8)

Several security issues were fixed in the kernel.

Ubuntu: 1794-1: Linux kernel (OMAP4) vulnerabilities (Apr 8)

Several security issues were fixed in the kernel.

Ubuntu: 1793-1: Linux kernel vulnerabilities (Apr 8)

Several security issues were fixed in the kernel.

Ubuntu: 1792-1: Linux kernel vulnerabilities (Apr 8)

Several security issues were fixed in the kernel.

Ubuntu: 1791-1: Thunderbird vulnerabilities (Apr 8)

Several security issues were fixed in Thunderbird.

Ubuntu: 1786-2: Unity Firefox Extension update (Apr 4)

This update provides a compatible version of Unity Firefox Extension forFirefox 20.

Ubuntu: 1786-1: Firefox vulnerabilities (Apr 4)

Firefox could be made to crash or run programs as your login if itopened a malicious website.

Ubuntu: 1790-1: Libav vulnerabilities (Apr 4)

Libav could be made to crash or run programs as your login if it opened aspecially crafted file.

Ubuntu: 1789-1: PostgreSQL vulnerabilities (Apr 4)

Several security issues were fixed in PostgreSQL.