| Main Archive Page > Month Archives > oss-security archives |
| Subject | Author | Date |
| [Openvas-devel] [oss-security] CVE Request -- openvas-scanner -- Insecure temporary file use by generation of an OVAL system characteristics document, when ovaldi support enabled | ||
| Tim Brown | 09 Sep 2011 | |
| Jan-Oliver Wagner | 09 Sep 2011 | |
| [oss-security] [Pkg-xfce-devel] Bug#639151: Bug#639151: Bug#639151: Local privilege escalation | ||
| Solar Designer | 05 Sep 2011 | |
| [oss-security] closed-list membership transition | ||
| Solar Designer | 19 Sep 2011 | |
| Ludwig Nussel | 19 Sep 2011 | |
| Solar Designer | 17 Sep 2011 | |
| Kees Cook | 16 Sep 2011 | |
| Yves-Alexis Perez | 16 Sep 2011 | |
| Kees Cook | 16 Sep 2011 | |
| [oss-security] CVE id request: masqmail | ||
| Josh Bressers | 09 Sep 2011 | |
| Nico Golde | 07 Sep 2011 | |
| [oss-security] CVE Request -- apt | ||
| Josh Bressers | 23 Sep 2011 | |
| Jamie Strandboge | 22 Sep 2011 | |
| [oss-security] CVE Request -- Django: v1.3.1, v1.2.7 multiple security flaws | ||
| dave bl | 15 Sep 2011 | |
| Henri Salo | 15 Sep 2011 | |
| Josh Bressers | 14 Sep 2011 | |
| Thijs Kinkhorst | 13 Sep 2011 | |
| Jan Lieskovsky | 11 Sep 2011 | |
| [oss-security] CVE Request -- drupal6-views_bulk_operations: XSS due improper escaping of a vocabulary help (SA-CONTRIB-2011-042) | ||
| Josh Bressers | 23 Sep 2011 | |
| Jan Lieskovsky | 22 Sep 2011 | |
| [oss-security] CVE Request -- evolution -- Uses insecure (non-SSL) connection when storing the sent message into the Sent folder | ||
| Josh Bressers | 09 Sep 2011 | |
| Jan Lieskovsky | 09 Sep 2011 | |
| [oss-security] CVE request -- kernel: b43: allocate receive buffers big enough for max frame len + offset | ||
| Eugene Teo | 14 Sep 2011 | |
| Petr Matousek | 14 Sep 2011 | |
| [oss-security] CVE request -- kernel: cifs: always do is_path_accessible check in cifs_mount | ||
| Eugene Teo | 26 Sep 2011 | |
| akuster | 23 Sep 2011 | |
| Josh Bressers | 14 Sep 2011 | |
| Petr Matousek | 14 Sep 2011 | |
| [oss-security] CVE request -- kernel: fuse: check size of FUSE_NOTIFY_INVAL_ENTRY message | ||
| Josh Bressers | 09 Sep 2011 | |
| Petr Matousek | 08 Sep 2011 | |
| [oss-security] CVE Request -- libfcgi-perl / perl-FCGI: Certain environment variables shared between first and subsequent HTTP requests | ||
| Moritz Muehlenhoff | 08 Sep 2011 | |
| Jan Lieskovsky | 08 Sep 2011 | |
| [oss-security] CVE Request -- openvas-scanner -- Insecure temporary file use by generation of an OVAL system characteristics document, when ovaldi support enabled | ||
| Josh Bressers | 09 Sep 2011 | |
| Tim Brown | 07 Sep 2011 | |
| Henri Doreau | 07 Sep 2011 | |
| Jan Lieskovsky | 07 Sep 2011 | |
| [oss-security] CVE Request -- Zikula (v1.3.x) -- XSS flaw due improper sanitization of 'themename' parameter by setting default, modifying and deleting themes | ||
| Josh Bressers | 09 Sep 2011 | |
| Jan Lieskovsky | 08 Sep 2011 | |
| [oss-security] CVE Request -- Zope/Plone -- Unspecified vulnerability in Zope v2.12.x and Zope v2.13.x allowing arbitrary code execution | ||
| Josh Bressers | 30 Sep 2011 | |
| Jan Lieskovsky | 29 Sep 2011 | |
| [oss-security] CVE Request --- phpMyAdmin -- Multiple XSS flaws in versions v3.4.0 to v3.4.4 (PMASA-2011-14) | ||
| Josh Bressers | 30 Sep 2011 | |
| Steven M. Christey | 15 Sep 2011 | |
| Jan Lieskovsky | 15 Sep 2011 | |
| [oss-security] CVE request for bcfg2 (remote root) | ||
| Josh Bressers | 06 Sep 2011 | |
| Jonathan Wiltshire | 01 Sep 2011 | |
| [oss-security] CVE request for OpenTTD | ||
| Josh Bressers | 06 Sep 2011 | |
| Michael Lutz | 02 Sep 2011 | |
| [oss-security] CVE Request: Advanced Electron Forums (AEF) 1.0.9 <= Cross Site Request Forgery (CSRF) Vulnerability | ||
| Josh Bressers | 30 Sep 2011 | |
| YGN Ethical Hacker Group | 26 Sep 2011 | |
| [oss-security] CVE Request: BackupPC 3.2.1 fixes cross site scripting | ||
| Josh Bressers | 14 Sep 2011 | |
| Thijs Kinkhorst | 13 Sep 2011 | |
| [oss-security] CVE Request: ffmpeg/libav | ||
| Marc Deslauriers | 30 Sep 2011 | |
| Josh Bressers | 30 Sep 2011 | |
| Marc Deslauriers | 27 Sep 2011 | |
| [oss-security] CVE request: ffmpeg/libav insufficuent boundary check in CAVS decoding | ||
| Josh Bressers | 14 Sep 2011 | |
| Moritz Muehlenhoff | 13 Sep 2011 | |
| [oss-security] CVE request: heap overflow in tcptrack < 1.4.2 | ||
| Moritz Muehlenhoff | 13 Sep 2011 | |
| [oss-security] CVE request: heap-based buffer overflow in ldns | ||
| Josh Bressers | 30 Sep 2011 | |
| Vincent Danen | 24 Sep 2011 | |
| [oss-security] CVE request: is_a() function may allow arbitrary code execution in PHP 5.3.7/5.3.8 | ||
| Josh Bressers | 27 Sep 2011 | |
| Pierre Joye | 25 Sep 2011 | |
| Vincent Danen | 24 Sep 2011 | |
| [oss-security] CVE request: kernel: taskstats/procfs io infoleak | ||
| Vasiliy Kulikov | 21 Sep 2011 | |
| [oss-security] CVE Request: Missing input sanitation in various X GLX calls | ||
| Vincent Danen | 23 Sep 2011 | |
| Josh Bressers | 23 Sep 2011 | |
| Marcus Meissner | 22 Sep 2011 | |
| [oss-security] CVE Request: Multiple issues fixed in wireshark 1.6.2 | ||
| Josh Bressers | 14 Sep 2011 | |
| Steven M. Christey | 14 Sep 2011 | |
| Steven M. Christey | 14 Sep 2011 | |
| Josh Bressers | 14 Sep 2011 | |
| Huzaifa Sidhpurwala | 13 Sep 2011 | |
| [oss-security] CVE Request: OFED 1.5.2 /proc/net/sdpstats reading local denial of service/crash | ||
| Marcus Meissner | 07 Sep 2011 | |
| Petr Matousek | 07 Sep 2011 | |
| Marcus Meissner | 06 Sep 2011 | |
| [oss-security] CVE request: PunBB multiple XSS issues | ||
| Josh Bressers | 22 Sep 2011 | |
| Henri Salo | 18 Sep 2011 | |
| [oss-security] CVE request: Quassel < 0.7.3 CTCP request core DoS | ||
| Josh Bressers | 09 Sep 2011 | |
| Alex Legler | 08 Sep 2011 | |
| [oss-security] CVE Request: samba, cifs-utils | ||
| Josh Bressers | 30 Sep 2011 | |
| Marc Deslauriers | 27 Sep 2011 | |
| [oss-security] CVE Request: X.org ProcRenderGlyps input sanitation issue | ||
| Josh Bressers | 23 Sep 2011 | |
| Marcus Meissner | 22 Sep 2011 | |
| [oss-security] CVE request: XSS in status.net before 0.9.9 and 1.0.0beta2 | ||
| Josh Bressers | 22 Sep 2011 | |
| Hanno Böck | 19 Sep 2011 | |
| [oss-security] CVE Request? etherape remote crash (denial of service) | ||
| Josh Bressers | 22 Sep 2011 | |
| Marcus Meissner | 19 Sep 2011 | |
| [oss-security] CVE requests: <mantisbt-1.2.8 multiple vulnerabilities (1xLFI+XSS, 2xXSS) | ||
| Josh Bressers | 09 Sep 2011 | |
| Henri Salo | 08 Sep 2011 | |
| Nico Golde | 08 Sep 2011 | |
| David Hicks | 04 Sep 2011 | |
| David Hicks | 04 Sep 2011 | |
| [oss-security] CVE requests: Typo3 | ||
| Josh Bressers | 30 Sep 2011 | |
| Moritz Muehlenhoff | 26 Sep 2011 | |
| [oss-security] CVE-request: clamav floating point exception in OLE2 scanner DoS | ||
| Henri Salo | 24 Sep 2011 | |
| [oss-security] D-Link DCS-2121 Semicolon Vulnerability | ||
| Josh Bressers | 14 Sep 2011 | |
| Eren Türkay | 10 Sep 2011 | |
| [oss-security] ffmpeg issues | ||
| Michael Gilbert | 02 Sep 2011 | |
| Steven M. Christey | 02 Sep 2011 | |
| Michael Gilbert | 02 Sep 2011 | |
| [oss-security] Firefox: CVE-2011-3867 a dupe of CVE-2011-2998 | ||
| Moritz Muehlenhoff | 30 Sep 2011 | |
| [oss-security] Is there a maintainer for librsvg ? | ||
| Yves-Alexis Perez | 16 Sep 2011 | |
| Nicolas Grégoire | 15 Sep 2011 | |
| [oss-security] LZW decompression issues | ||
| Tavis Ormandy | 29 Sep 2011 | |
| Solar Designer | 29 Sep 2011 | |
| Joerg Sonnenberger | 29 Sep 2011 | |
| Tim Zingelman | 29 Sep 2011 | |
| Tomas Hoger | 29 Sep 2011 | |
| Solar Designer | 29 Sep 2011 | |
| Solar Designer | 29 Sep 2011 | |
| Florian Weimer | 28 Sep 2011 | |
| Tomas Hoger | 28 Sep 2011 | |
| Colin Percival | 28 Sep 2011 | |
| Solar Designer | 28 Sep 2011 | |
| Solar Designer | 28 Sep 2011 | |
| [oss-security] Please REJECT CVE-2011-2160 and CVE-2011-2162 in ffmpeg as duplicates (was: ffmpeg issues) | ||
| Michael Gilbert | 04 Sep 2011 | |
| [oss-security] rpm/librpm/rpm-python memory corruption pre-verification | ||
| nicolas vigier | 29 Sep 2011 | |
| yersinia | 28 Sep 2011 | |
| Tavis Ormandy | 27 Sep 2011 | |
| [oss-security] unauthorized deletion of file in Tahoe-LAFS | ||
| Zooko O'Whielacronx | 14 Sep 2011 | |
| [oss-security] Xen Security Advisory 4 (CVE-2011-2901) - Xen 3.3 vaddr validation | ||
| Xen.org security team | 02 Sep 2011 | |
| CVE Request -- apt | ||
| Jamie Strandboge | 22 Sep 2011 | |
| CVE request: is_a() function may allow arbitrary code execution in PHP 5.3.7/5.3.8 | ||
| Pierre Joye | 26 Sep 2011 | |
| Johannes Schlüter | 26 Sep 2011 | |
| Vincent Danen | 26 Sep 2011 | |
| Pierre Joye | 25 Sep 2011 | |
| Rasmus Lerdorf | 25 Sep 2011 | |
| Pierre Joye | 25 Sep 2011 | |
| Zeev Suraski | 25 Sep 2011 | |
| Pierre Joye | 25 Sep 2011 | |
| Stas Malyshev | 25 Sep 2011 | |
| Pierre Joye | 25 Sep 2011 | |
| Stas Malyshev | 25 Sep 2011 | |
| Stas Malyshev | 24 Sep 2011 | |
| Pierre Joye | 25 Sep 2011 | |
| lightdm issues | ||
| Josh Bressers | 09 Sep 2011 | |
| Yves-Alexis Perez | 07 Sep 2011 | |
| LZW decompression issues | ||
| Tavis Ormandy | 28 Sep 2011 | |