Wednesday's security updates
[Posted January 7, 2009 by corbet]
Wednesday's security updates
[Security] Posted Jan 7, 2009 18:33 UTC (Wed) by corbet
Fedora has updated
am-utils (F9: temporary file vulnerability),
avahi (F10:
denial of service),
p7zip (F8, F9,
F10: "archive formats issues"),
proftpd (F8, F9,
F10: cross-site request forgery),
samba (F10: privilege escalation),
thunderbird (F8, F9,
F10: multiple
vulnerabilities),
xterm (F8, F9,
F10: command execution via escape
sequences), and
zoneminder (F10: wrong permissions on
zm.conf).
Red Hat has updated thunderbird
(multiple vulnerabilities),
xen (denial of service and symbolic link
vulnerabilities),
openssl (certificate verification flaw),
gnome-vfs (buffer overflow from 2005),
dbus (denial of service),
lcms (input validation flaws),
xterm (command execution via escape
sequences),
and hanterm-xf (the xterm flaw again).
Ubuntu has updated thunderbird (6.06
LTS, 7.10, 8.04LTS, and 8.10: multiple
vulnerabilities).
Comments (none posted)