Cotygodniowe dziury 15 VII 2002
Blues
blues w ds6.pg.gda.pl
Pon, 15 Lip 2002, 10:30:39 CEST
Dla używających Tomcata:
16. Tomcat
Vendor: Apache Software Foundation
A vulnerability was reported in the Apache Tomcat server. A
remote user can conduct cross-site scripting attacks against Tomcat
users.
Impact: Disclosure of authentication information
Alert: http://securitytracker.com/alerts/2002/Jul/1004745.html
26. Icecast
Vendor: Icecast.org
An information disclosure vulnerability was reported in
Icecast. A remote user can determine if particular directories
exist on the server.
Impact: Disclosure of system information
Alert: http://securitytracker.com/alerts/2002/Jul/1004734.html
W naszym KDE3 jest to załatane - w KDE2 AFAIK nie...
37. Artswrapper
Vendor: aRts-project.org
A format string vulnerability was reported in the 'artswrapper'
program as distributed on Red Hat Linux and possibly other
Linux/UNIX distributions. A local user can gain root privileges on
the system.
Impact: Execution of arbitrary code via local system
Alert: http://securitytracker.com/alerts/2002/Jul/1004721.html
--
---------------------------------
pozdr. Paweł Gołaszewski
---------------------------------
CPU not found - software emulation...
Więcej informacji o liście dyskusyjnej pld-devel-pl