Ubuntu Security Notice 2746-1 – It was discovered that Simple Streams did not properly perform gpg verification in some situations. A remote attacker could use this to perform a man-in-the-middle attack and inject malicious content into the stream.
Monthly Archives: September 2015
Defaulting On Passwords (Part 1): r0_bot
Gentoo Linux Security Advisory 201509-01
Gentoo Linux Security Advisory 201509-1 – Multiple vulnerabilities have been found in NTP, the worst of which could lead to arbitrary code execution. Versions less than 4.2.8_p3 are affected.
Gentoo Linux Security Advisory 201509-02
Gentoo Linux Security Advisory 201509-2 – Multiple vulnerabilities have been found in cURL, the worst of which can allow remote attackers to cause Denial of Service condition. Versions less than 7.43.0 are affected.
Ubuntu Security Notice USN-2743-3
Ubuntu Security Notice 2743-3 – USN-2743-1 fixed vulnerabilities in Firefox. Future Firefox updates will require all addons be signed and unity-firefox-extension, webapps-greasemonkey and webaccounts-browser-extension will not go through the signing process. Because these addons currently break search engine installations (LP: #1069793), this update permanently disables the addons by removing them from the system. We apologize for any inconvenience. Various other issues were also addressed.
Debian Security Advisory 3367-1
Debian Linux Security Advisory 3367-1 – Multiple vulnerabilities were discovered in the dissectors/parsers for ZigBee, GSM RLC/MAC, WaveAgent, ptvcursor, OpenFlow, WCCP and in internal functions which could result in denial of service.
Bugtraq: [SECURITY] [DSA 3366-1] rpcbind security update
[SECURITY] [DSA 3366-1] rpcbind security update
Bugtraq: BMC-2015-0005: File inclusion vulnerability in "BIRT Viewer" servlet used in BMC Remedy AR Reporting
BMC-2015-0005: File inclusion vulnerability in “BIRT Viewer” servlet used in BMC Remedy AR Reporting
Bugtraq: BMC-2015-0006: File inclusion vulnerability in "BIRT Engine" servlet used in BMC Remedy AR Reporting
BMC-2015-0006: File inclusion vulnerability in “BIRT Engine” servlet used in BMC Remedy AR Reporting
Bugtraq: [SECURITY] [DSA 3367-1] wireshark security update
[SECURITY] [DSA 3367-1] wireshark security update