[security] Security Advisories

Lorenzo Iannuzzi nakis a libero.it
Mer 4 Feb 2004 11:57:47 CET


http://lwn.net/Articles/69375/

Red Hat fixes multiple temporary file vulnerabilities in NetPBM, a
buffer overflow in mc, an information leak in util-linux and several
minor kernel vulnerabilities. 

Debian fixes a buffer overflow in crawl.

http://www.debian.org/security/

kernel-patch-2.4.17-mips

RedHat and SuSE kernel and security teams revealed an integer overflow
in the do_brk() function of the Linux kernel allows local users to
gain root privileges.

http://microsoft.com/technet/security/bulletin/MS04-004.asp
http://www.kb.cert.org/vuls/id/784102
http://www.kb.cert.org/vuls/id/413886
http://www.kb.cert.org/vuls/id/652278

   Microsoft Internet Explorer (IE) contains multiple vulnerabilities,
   the most serious of which could allow a remote attacker to execute
   arbitrary code with the privileges of the user running IE.

http://www.cisco.com/warp/public/707/cisco-sa-20040203-cat6k.shtml

A layer 2 frame (as defined in the Open System Interconnection Reference
Model) that is encapsulating a layer 3 packet (IP, IPX, etc.) may cause
Cisco 6000/6500/7600 series systems with Multilayer Switch Feature Card
2 (MSFC2) that have a FlexWAN or Optical Services Module (OSM) or that
run 12.1(8b)E14 to freeze or reset, if the actual length of this frame
is inconsistent with the length of the encapsulated layer 3 packet.
-- 

Ciao e alla prossima!
Lorenzo                                 nakis a libero.it
-------------- parte successiva --------------
Un allegato non testuale è stato rimosso....
Nome:        non disponibile
Tipo:        application/pgp-signature
Dimensione:  244 bytes
Descrizione: non disponibile
Url:         http://itlists.org/pipermail/security/attachments/20040204/d1f7cd8d/attachment.pgp 


Maggiori informazioni sulla lista security