Mourning the loss of our friend, WhitPhil.
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
 
Linux and Unix
Tag Cloud
access audio black screen blue screen boot bsod connection crash dell desktop drivers dvd email error excel excel 2003 firefox hard drive hardware hdmi hijackthis internet keyboard laptop malware monitor motherboard network networking outlook problem processor recovery router safe mode slow sound spyware tdlwsp.dll trojan vba video virus vista vundo windows windows 7 windows vista windows xp wireless
Search
Search for:
Tech Support Guy Forums > Operating Systems > Linux and Unix >
Linux Vulnerabilities: Sep 26

Tip: Click here to scan for System Errors and Optimize PC performance
[ Sponsored Link ]

Closed Thread
 
Thread Tools
eddie5659's Avatar
Computer Specs
Moderator with 20,366 posts.
 
Join Date: Mar 2001
Location: Bradford, England
27-Sep-2001, 05:06 PM #1
Wink Linux Vulnerabilities: Sep 26
Hiya

wmaker/WindowMaker

The window manager Window Maker was found vulnerable to a buffer overflow
due to improper bounds checking when setting the window title.
An attacker can remotely exploit this buffer overflow by using malicious
web page titles or terminal escape sequences to set a excessively long
window title.
This attack can lead to remote command execution with the privileges of
the user running Window Maker

http://www.linuxsecurity.com/advisor...sory-1612.html

Mandrake Linux

Zen Parse discovered that an argument handling problem that exists in
the uucp package can allow a local attacker to gain access to the uucp
user or group

http://www.linuxsecurity.com/advisor...sory-1613.html

Updated man package fixing GID security problems

Updated man packages fixing a local GID man exploit and a
potential GID man to root exploit, as well as a problem with the
man paths of Red Hat Linux 5.x and 6.x

http://www.linuxsecurity.com/advisor...sory-1614.html

OpenSSH Security Advisory

Weakness in OpenSSH's source IP based access control
for SSH protocol v2 public key authentication

http://www.linuxsecurity.com/advisor...sory-1617.html

Squid multiple vulnerabilities

Vladimir Ivaschenko found a bug[1] which allows a remote attacker
to cause a DoS on the squid proxy service by sending mkdir ftp
requests.

Takashi Taniguchi found a bug[2] that allows malicious users to
do portscanning and other suspect activities using the proxy when
it's configured in "http accelerator mode

http://www.linuxsecurity.com/advisor...sory-1615.html

Red Hat

The initscript distributed with the setserial package (which is not
installed or enabled by default) uses predictable temporary file names, and
should not be used. setserial-2.17-4 and earlier versions are affected

http://www.linuxsecurity.com/advisor...sory-1616.html

Regards

eddie
__________________
Just go with the flow, like a twig on the shoulders of a mighty stream

Weekends I may be busy, so there may be a delay in replies.
Closed Thread Bookmark and Share

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Smart Search

Find your solution!



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.

Thread Tools


You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -5. The time now is 07:14 AM.
Copyright © 1996 - 2009 TechGuy, Inc. All rights reserved.
Powered by vBulletin, Copyright © 2000 - 2009, Jelsoft Enterprises Ltd.
Powered by Cermak Technologies, Inc.