Mandriva

15 May

CVE-2012-2612

The DiagTraceHex function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatch ...

CVE-2012-2611

The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200. ...

CVE-2012-2514

The DiagiEventSource function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Disp ...

CVE-2012-2513

The Diaginput function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher ...

CVE-2012-2512

The DiagTraceStreamI function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Disp ...

CVE-2012-2511

The DiagTraceAtoms function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispat ...

14 May

CVE-2012-2333

Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1 ...

CVE-2012-2277

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5. ...

CVE-2012-2276

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5. ...

CVE-2012-1804

Progea Movicon before 11.3 allows remote attackers to cause a denial of service (out-of-bounds r ...

Óâåäîìëåíèÿ 22 - 36 of 831
First | Prev. | 1 2 3 4 5 6 7 8 9 10 11 | Next | Last 

[ MDVA-2008:143 ] x11-driver-video-intel

Some recent intel graphics cards (Series 4) triggered a random freeze or a reboot of some machines when the graphical interface was loaded.

15 october, 2008

[ MDVSA-2008:210-1 ] mono

CRLF injection vulnerability in Sys.Web in Mono 2.0 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the query string.

11 october, 2008

[ MDVSA-2008:211 ] cups

A buffer overflow in the SGI image format decoding routines used by the CUPS image converting filter imagetops was discovered.

11 october, 2008

[ MDVA-2008:142 ] gdb

A bug was found in the gdb package that prevented the build of the gdbserver binary and its manpage.

11 october, 2008

[ MDVA-2008:141 ] mdkonline

This update ensures distribution upgrade notification is not detected in incorrect cases and the distribution upgrade confirmation dialog is not displayed after security updates are applied.

11 october, 2008

[ MDVA-2008:140 ] symlinks

The symlinks program did not work on files larger than 2GB, reporting the error Value too large for defined data type.

10 october, 2008

[ MDVA-2008:139 ] lirc

The lirc_dev module contained in the dkms-lirc package shipped with Mandriva Linux 2009 contains a bug which would cause it to crash (oops) immediately on load.

10 october, 2008

[ MDVA-2008:138 ] mdkonline

The updated mdkonline package improves the upgrade process to Mandriva Linux 2009.0 and includes many other bugfixes and enhancements.

10 october, 2008

[ MDVA-2008:135-1 ] draksnapshot

This update fixes several issues in draksnapshot: The draksnapshot applet received the following fixes: - on desktop startup, it will wait for 30s before checking for available disc so that notification is positioned at the right place, on the applet icon - it prevents crashing if DBus is not reachable, and reports DBus errors - it prevents crashing if DBus is active, but HAL is not (#44434) - if all discs are unmounted, the applet will hide (#41176) - it prevents running more than once - it uses HAL in order to detect discs available for backup, thus fixing detecting some internal SATA discs as discs available for backup (#41107) It also uses new icons from Mandriva Linux 2009.0.

10 october, 2008

[ MDVA-2008:137 ] drakxtools

These updated packages improve the urpmi graphical interface and add support for online distribution upgrades.

09 october, 2008

[ MDVA-2008:136 ] urpmi

These updated packages add support for notification of new distribution releases and allow users to easily upgrade Mandriva Linux 2008.1 to future Mandriva Linux releases online.

09 october, 2008

[ MDVA-2008:135 ] draksnapshot

This update fixes several issues in draksnapshot: The draksnapshot applet received the following fixes: - on desktop startup, it will wait for 30s before checking for available disc so that notification is positioned at the right place, on the applet icon - it prevents crashing if DBus is not reachable, and reports DBus errors - it prevents crashing if DBus is active, but HAL is not (#44434) - if all discs are unmounted, the applet will hide (#41176) - it prevents running more than once - it uses HAL in order to detect discs available for backup, thus fixing detecting some internal SATA discs as discs available for backup (#41107) It also uses new icons from Mandriva Linux 2009.0.

09 october, 2008

[ MDVA-2008:134 ] rpm

This package update adds support for LZMA compression in rpm.

08 october, 2008

[ MDVA-2008:133 ] timezone

Updated timezone packages are being provided for older Mandriva Linux systems that do not contain new Daylight Savings Time information and Time Zone information for some locations.

08 october, 2008

[ MDVA-2008:132 ] mandriva-release

mandriva-release for Mandriva 2008 Spring should contain a product_branch set to Official, and not devel, otherwise it could lead to an error with the new mdkonline.

04 october, 2008

Óâåäîìëåíèÿ 22 - 36 of 831
First | Prev. | 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 | Next | Last

CVE-2012-2612

The DiagTraceHex function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2611

The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2, when a certain Developer Trace configuration is enabled, allows remote attackers to execu ...

15 may, 2012

CVE-2012-2514

The DiagiEventSource function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2513

The Diaginput function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2512

The DiagTraceStreamI function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2511

The DiagTraceAtoms function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2333

Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC encryption, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecif ...

14 may, 2012

CVE-2012-2277

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (pvcontrol.exe process hang) via \n (line feed) characters in the Id fields of ...

14 may, 2012

CVE-2012-2276

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via input data that (1) lacks FIPS ...

14 may, 2012

CVE-2012-1804

Progea Movicon before 11.3 allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption) via a crafted HTTP request.

14 may, 2012

Firefox 8/9 AttributeChildRemoved() Use-After-Free Exploit

Target: Mozilla Firefox 8.x, 9.x
Impact: Code execution

MS12-027 MSCOMCTL ActiveX Buffer Overflow Exploit (meta)

Target: MSCOMCTL ActiveX
Impact: Code execution

Microsoft Windows RDP PoC (CVE-2012-0002)

Target: Microsoft Windows XP, 2003, Vista, 7, 2008
Impact: Code execution