Red Hat Security Advisory 2015-0696-01 – FreeType is a free, high-quality, portable font engine that can open and manage font files. It also loads, hints, and renders individual glyphs efficiently. Multiple integer overflow flaws and an integer signedness flaw, leading to heap-based buffer overflows, were found in the way FreeType handled Mac fonts. If a specially crafted font file was loaded by an application linked against FreeType, it could cause the application to crash or, potentially, execute arbitrary code with the privileges of the user running the application.
Monthly Archives: March 2015
Ubuntu Security Notice USN-2535-1
Ubuntu Security Notice 2535-1 – Thomas Jarosch discovered that PHP incorrectly limited recursion in the fileinfo extension. A remote attacker could possibly use this issue to cause PHP to consume resources or crash, resulting in a denial of service. S. Paraschoudis discovered that PHP incorrectly handled memory in the enchant binding. A remote attacker could use this issue to cause PHP to crash, resulting in a denial of service, or possibly execute arbitrary code. Various other issues were also addressed.
GLSA 201503-11: OpenSSL: Multiple vulnerabilities
DSA-3197 openssl – security update
Multiple vulnerabilities have been discovered in OpenSSL, a Secure
Sockets Layer toolkit. The Common Vulnerabilities and Exposures project
identifies the following issues:
Vuln: Piwik 0.6 Through 0.6.3 Remote File Include Vulnerability
Piwik 0.6 Through 0.6.3 Remote File Include Vulnerability
Vuln: RSA Federated Identity Manager URI Redirection Vulnerability
RSA Federated Identity Manager URI Redirection Vulnerability
Vuln: Joomla Component 'com_youtube' SQL Injection Vulnerability
Joomla Component ‘com_youtube’ SQL Injection Vulnerability
CVE-2015-0664
The IPC channel in Cisco AnyConnect Secure Mobility Client 4.0(.00051) and earlier allows local users to write to arbitrary userspace memory locations, and consequently gain privileges, via crafted messages, aka Bug ID CSCus79195.
CVE-2015-0667
The Management Interface on Cisco Content Services Switch (CSS) 11500 devices 8.20.4.02 and earlier allows remote attackers to bypass intended restrictions on local-network device access via crafted SSH packets, aka Bug ID CSCut14855.
CVE-2015-0896
Multiple cross-site scripting (XSS) vulnerabilities in eXtplorer before 2.1.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.