Friday's security updates
[Posted April 5, 2013 by n8willis]
Fedora has updated py-bcrypt (F17, F18; authentication bypass), firefox (F18; multiple vulnerabilities), thunderbird (F18; multiple
vulnerabilities), and xulrunner (F18;
multiple vulnerabilities).
Mageia has updated bind
(multiple vulnerabilities), dhcp
(denial of service), firefox (multiple
vulnerabilities), libxslt (denial of
service), and thunderbird (multiple
vulnerabilities).
Mandriva has updated bash
(denial of service), clamav (multiple
unspecified vulnerabilities), coreutils (multiple
vulnerabilities), cronie (information
disclosure), cups (unauthorized
administrative access), exif (denial of service), fetchmail (multiple vulnerabilities), and
libexif (multiple vulnerabilities).
Mandriva has also re-issued several earlier updates to
fix incorrectly-assigned advisory IDs: apache-mod_security, arpwatch, and automake. Today's bash update
was also issued earlier, at that time incorrectly labeled as MDVSA-2013:019.
openSUSE has updated apache2
(multiple vulnerabilities), dhcp
(denial of service), firefox (multiple
vulnerabilities), NRPE (code
execution), postgresql91 (multiple
vulnerabilities), and postgresql92
(multiple vulnerabilities).
Red Hat has updated openstack-glance (information leak), openstack-keystone (multiple
vulnerabilities), openstack-nova
(multiple vulnerabilities), and puppet
(multiple vulnerabilities).
Slackware has updated subversion (multiple denial-of-service
vulnerabilities).
Ubuntu has updated firefox
(multiple vulnerabilities) and unity-firefox-extension (multiple vulnerabilities).
(
Log in to post comments)