Cotygodniowe dziury 15 VII 2002

Blues blues w ds6.pg.gda.pl
Pon, 15 Lip 2002, 10:30:39 CEST


Dla używających Tomcata:

16. Tomcat

    Vendor: Apache Software Foundation

    A vulnerability was reported in the Apache Tomcat server.  A
    remote user can conduct cross-site scripting attacks against Tomcat
    users.

    Impact: Disclosure of authentication information

    Alert: http://securitytracker.com/alerts/2002/Jul/1004745.html


26. Icecast

    Vendor: Icecast.org

    An information disclosure vulnerability was reported in
    Icecast.  A remote user can determine if particular directories
    exist on the server.

    Impact: Disclosure of system information

    Alert: http://securitytracker.com/alerts/2002/Jul/1004734.html



W naszym KDE3 jest to załatane - w KDE2 AFAIK nie...

37. Artswrapper

    Vendor: aRts-project.org

    A format string vulnerability was reported in the 'artswrapper'
    program as distributed on Red Hat Linux and possibly other
    Linux/UNIX distributions.  A local user can gain root privileges on
    the system.

    Impact: Execution of arbitrary code via local system

    Alert: http://securitytracker.com/alerts/2002/Jul/1004721.html




-- 
---------------------------------
pozdr.  Paweł Gołaszewski        
---------------------------------
CPU not found - software emulation...



Więcej informacji o liście dyskusyjnej pld-devel-pl