★ wanayoo — archive 1999 http://www.linuxsecurity.com/advisories/linuxppc.htmlNouvelle recherche | Portail wanayoo
Advertise Here

   
Caldera
Corel
Debian
FreeBSD
LinuxPPC
Mandrake
NetBSD
OpenBSD
Other
Red Hat
Slackware
Stampede
StormLinux
SuSE
TurboLinux
 
LinuxPPC 1/31/2000 20:37


  • 11/12/1999 20:46 : LinuxPPC 1999: proftpd - Unspecified security fixes
    - Additional unspecified security fixes have resulted in another updated version of proftpd.

  • 11/11/1999 20:45 : LinuxPPC 1999: bind - Various security fixes
    - A bug in bind can allow remote users access to the systems as the bind user (typically root). A DoS attack using malformed TCP packets can pause bind. Several bugs can cause the server to crash due to remote attacks. If you are running bind it is recommended that you upgrade immediately.

  • 10/28/1999 20:45 : LinuxPPC 1999: ypserv buffer overflow and bug fixes
    - Multiple problems were found in the ypserv RPM. It is recommended that LinuxPPC users running NIS upgrade as soon as possible.

  • 10/23/1999 20:45 : LinuxPPC 1999: screen can create insecure pty's
    - Screen doesn't run suid root which can result in the creation of insecure PTY's.

  • 10/23/1999 20:44 : LinuxPPC 1999: wu-ftpd has additional buffer overflows
    - Additional buffer overflows were found in wu-ftpd.

  • 10/18/1999 20:44 : LinuxPPC 1999: rsh default misconfiguration
    - A misconfiguration in the default PAM setup can allow logins via rsh.

  • 10/18/1999 20:44 : LinuxPPC 1999: lpr race condition and bug fix
    - There is a race condition in lpr in which files were tested for permissions and then opened. Also, lpr doesn't do any checks before opening queued files as root which could allow somone to symlink to a file and print it regardless of access permissions.

  • 10/12/1999 20:44 : LinuxPPC 1999: PAM Security Fix
    - In certain network configurations pam may allow access to locked NIS accounts.

  • 10/2/1999 20:43 : LinuxPPC 1999: mutt buffer overflow fix
    - A properly formatted E-mail can exploit a buffer overflow in the text/enriched code of this E-mail client.

  • 9/25/1999 20:43 : LinuxPPC 1999: XFREE86 - Multiple bugs and security fixes
    - A number of significant bugs and security issues have been fixed with XFREE86. (Note: This is a significant upgrade)

  • 9/21/1999 20:43 : LinuxPPC 1999: proftpd, wu-ftpd vulnerabilities
    - The current version of proftpd (1.2.0pre6) still contains vulnerabilities, users should look to wu-ftpd as an alternative.

  • 9/18/1999 20:42 : LinuxPPC 1999: Samba contains multiple security flaws
    - There were several security flaws in older versions of Samba: a DOS attack could be performed against nmbd, a buffer overflow was present in nmbd and a race condition was present in smbmnt that could cause problems if installed suid root. Samba users should upgrade as soon as possible.

  • 9/18/1999 20:41 : LinuxPPC 1999: Lynx Security Vulnerability
    - When Lynx calls external programs (i.e. - telnet) is does not check on passed options. This could cause local files to be created or modified.

  • 9/18/1999 20:41 : LinuxPPC 1999: am-utils buffer overflow exploit
    - A buffer overflow in the amd daemon was actively being exploited to obtain root access. This upgrade should be performed as soon as possible.

  • 9/18/1999 20:41 : LinuxPPC 1999: vixie-cron buffer overflow
    - A vixie-cron buffer overflow exists that could allow users to gain root priveleges through the manipulation of environment variables.

  • 9/18/1999 20:42 : LinuxPPC 1999: libtermcap buffer overflow
    - A buffer overflow in a specific function of libtermcap could allow a user to execute arbitrary code if they were to supply their own termcap file.

  • 9/18/1999 20:42 : LinuxPPC 1999: in.telnetd denial-of-serive vulnerability fix
    - A vulnerability to a denial-of-service attack in in.telnetd has been fixed.

  • 9/17/1999 20:41 : LinuxPPC 1999: Various security fixed in proftpd
    - proftpd-1.2.0pre6 has been released with fixed various unspecified security vulnerabilities in 1.2.0pre5. It is recommeneded that all users of proftpd upgrade.

  • 9/16/1999 20:40 : LinuxPPC 1999: Multiple buffer overflows in mars-nwe (Linux NetWare Server) package
    - Several buffer overflows were discovered in the mars-nwe package. Since this package runs as root it is recommended that anyone using it upgrade.

  • 9/10/1999 20:37 : LinuxPPC 1999: Buffer Overflow present in proftpd
    - A buffer overflow vulnerabilty is present in proftpd. Anyonye running proftpd is advised to upgrade to the new RPM.

  • 9/10/1999 20:40 : LinuxPPC 1999: Buffer Overflow Problem in INN
    - Unexploited Buffer overflow present in INN versions 2.2 and earlier

  • 9/10/1999 20:39 : LinuxPPC 1999: Buffer Overflow Problem in the inews program
    - Package update for inews which fixes unexploited buffer overflow.

  • Contact Us | Legal Notice | About Our Site
    © Guardian Digital, Inc., 2000