[security] Security Advisories

Lorenzo Iannuzzi nakis a libero.it
Gio 15 Gen 2004 11:47:08 CET


http://www.debian.org/security/

The IA-64 maintainers fixed several security related bugs in the Linux
kernel 2.4.17 used for the IA-64 architecture, mostly by backporting
fixes from 2.4.18.

http://www.ncipher.com/support/advisories/

nCipher Security Advisory No. 8
payShield library may verify bad requests

http://www.kde.org/info/security/advisory-20040114-1.txt
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0988
http://marc.theaimsgroup.com/?l=tcpdump-workrs&m=107325073018070
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0989

Red Hat Security Advisory
Updated kdepim packages are now available that fix a local buffer
overflow vulnerability.
Updated tcpdump, libpcap, and arpwatch packages fix a number of
vulnerabilities in ISAKMP parsing.

http://www.tcpdump.org

SUSE Security Announcement
    Tcpdump is a well known tool for administrators to analyze network
    traffic.
      There is a bug in the tcpdump code responsible for handling ISAKMP
    messages. This bug allows remote attackers to destroy a current
    tcpdump session by tricking the tcpdump program with evil ISAKMP
    messages to enter an endless loop.

http://www.cert.org/advisories/CA-2004-01.html

   A   number   of   vulnerabilities  have  been  discovered  in 
various implementations of the multimedia telephony protocol H.323.
Voice over Internet Protocol (VoIP) and video conferencing equipment and
software can  use  these  protocols  to  communicate over a variety of
computer networks.
-- 

Ciao e alla prossima!
Lorenzo                                 nakis a libero.it

-------------- parte successiva --------------
Un allegato non testuale è stato rimosso....
Nome:        non disponibile
Tipo:        application/pgp-signature
Dimensione:  244 bytes
Descrizione: non disponibile
Url:         http://itlists.org/pipermail/security/attachments/20040115/5459fe0d/attachment.pgp 


Maggiori informazioni sulla lista security