LWN.net Logo

Security advisories for Friday

CentOS has updated libxml2 (buffer overflow).

Debian has updated the kernel (multiple vulnerabilities).

Fedora has updated wordpress (F8, F9: SQL column truncation), bitlbee (F8, F9: account hijack), httrack (F8, F9: buffer overflow), fedora-ds-base (F8: multiple vulnerabilities), wireshark (F8, F9: multiple vulnerabilities), poppler (F9: memory management bug), fedora-release (F9: new set of Fedora Updates and Updates Testing repo definitions), PackageKit (F9: new set of Fedora Updates and Updates Testing repo definitions), gnome-packagekit (F9: new set of Fedora Updates and Updates Testing repo definitions), pam_mount (F8, F9: arbitrary mounting of filesystems), libHX (F8, F9: arbitrary mounting of filesystems), tomcat6 (F9: multiple vulnerabilities), ipa (F8, F9: remote password exposure).

Mandriva has updated rsh (directory traversal), libxml2 (buffer overflow).

Ubuntu freetype (multiple vulnerabilities), libxml2 (denial of service).


(Log in to post comments)

Security advisories for Friday

Posted Sep 12, 2008 22:06 UTC (Fri) by jengelh (subscriber, #33263) [Link]

For the record, the problem was with pam_mount only. As it was decided to do a fast-forward in favor of a backport, the libHX update was slurped in.

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds