[SECURITY-L] Vulnerabilidades de seguranca (2)

Daniela Regina Barbetti Silva daniela em ccuec.unicamp.br
Qui Maio 23 16:09:57 -03 2002


Srs. Usuarios,

Atualizamos o site da Equipe de Seguranca em Sistemas e Redes
da Unicamp com os seguintes boletins de vulnerabilidades:


10/05/2002:
-----------
Caldera International, Inc. Security Advisory (CSSA-2002-020.0)
Assunto: Linux: icecast buffer overflows and denial-of-service. 
http://www.security.unicamp.br/docs/bugs/2002/05/v36.txt


13/05/2002:
-----------
Security Notice FreeBSD, Inc.  (FreeBSD-SN-02:02)
Assunto: security issues in ports.
http://www.security.unicamp.br/docs/bugs/2002/05/v33.txt

Anúncio de atualização do Conectiva Linux (CLA-2002:486)
Assunto: correção para instabilidade do pacote evolution. 
http://www.security.unicamp.br/docs/bugs/2002/05/v34.txt

CAIS-Alerta: CERT Advisory CA-2002-13 Buffer Overflow in Microsoft's 
http://www.security.unicamp.br/docs/bugs/2002/05/v35.txt

Caldera International, Inc. Security Advisory (CSSA-2002-018.1)
Assunto: Linux: REVISED: Race condition in fileutils.
http://www.security.unicamp.br/docs/bugs/2002/05/v38.txt

Red Hat, Inc. Red Hat Security Advisory (RHSA-2002:079-13)
Assunto: Updated Mozilla packages fix a security issue.
http://www.security.unicamp.br/docs/bugs/2002/05/v39.txt


14/05/2002:
-----------
Red Hat, Inc. Red Hat Security Advisory (RHSA-2002:065-13)
Assunto: Updated sharutils package fixes uudecode issue. 
http://www.security.unicamp.br/docs/bugs/2002/05/v37.txt


15/05/2002:
-----------
Cisco Security Advisory
Assunto: Transparent Cache Engine and Content Engine TCP Relay
Vulnerability.
http://www.security.unicamp.br/docs/bugs/2002/05/v40.txt

Cisco Security Advisory
Assunto: Content Service Switch HTTP Processing Vulnerabilities.
http://www.security.unicamp.br/docs/bugs/2002/05/v41.txt

Caldera International, Inc. Security Advisory (CSSA-2002-021.0)
Assunto: Linux: imapd buffer overflow when fetching partial mailbox
attributes.
http://www.security.unicamp.br/docs/bugs/2002/05/v42.txt

Microsoft Security Bulletin (MS02-023)
Assunto: Cumulative Patch for Internet Explorer (Q321232).
http://www.security.unicamp.br/docs/bugs/2002/05/v43.txt

Caldera International, Inc. Security Advisory (CSSA-2002-022.0)
Assunto: Linux: OpenSSH ticket and token passing buffer overflow. 
http://www.security.unicamp.br/docs/bugs/2002/05/v44.txt

SuSE Security Announcement (SuSE-SA:2002:018)
Assunto: vulnerabilidade de seguranca nos packages lukemftp, nkitb,
nkitserv. 
http://www.security.unicamp.br/docs/bugs/2002/05/v45.txt


16/05/2002:
-----------
Mandrake Linux Security Update Advisory (MDKSA-2002:031)
Assunto: vulnerabilidades de seguranca no GNU fileutils. 
http://www.security.unicamp.br/docs/bugs/2002/05/v46.txt

Mandrake Linux Security Update Advisory (MDKSA-2002:032)
Assunto: vulnerabilidade de seguranca no tcpdump. 
http://www.security.unicamp.br/docs/bugs/2002/05/v47.txt

Caldera International, Inc. Security Advisory (CSSA-2002-023.0)
Assunto: Linux: PHP multipart/form-data vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2002/05/v48.txt

SuSE Security Announcement (SuSE-SA:2002:017)
Assunto: vulnerabilidade de seguranca nos pacotes shadow/pam-modules.
http://www.security.unicamp.br/docs/bugs/2002/05/v57.txt


20/05/2002:
-----------
FreeBSD, Inc. Security Advisory (FreeBSD-SA-02:24.k5su)
Assunto: k5su utility does not honor `wheel' group.
http://www.security.unicamp.br/docs/bugs/2002/05/v49.txt

FreeBSD, Inc. Security Advisory (FreeBSD-SA-02:25)
Assunto: bzip2 contains multiple security vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2002/05/v50.txt

Caldera International, Inc. Security Advisory (CSSA-2002-SCO.19)
Assunto: OpenServer 5.0.5 OpenServer 5.0.6 : yppasswdd remotely 
exploitable buffer overflow. 
http://www.security.unicamp.br/docs/bugs/2002/05/v51.txt

Red Hat, Inc. Red Hat Security Advisory (RHSA-2002:047-10)
Assunto: Updated fetchmail packages available. 
http://www.security.unicamp.br/docs/bugs/2002/05/v52.txt


21/05/2002:
-----------
Mandrake Linux Security Update Advisory (MDKSA-2002:033)
Assunto: vulnerabilidade de seguranca no pacote webmin. 
http://www.security.unicamp.br/docs/bugs/2002/05/v53.txt


22/05/2002:
-----------
Cisco Security Advisory
Assunto: Multiple Vulnerabilities in Cisco IP Telephones. 
http://www.security.unicamp.br/docs/bugs/2002/05/v54.txt

SuSE Security Announcement (SuSE-SA:2002:019)
Assunto: vulnerabilidade de seguranca no dhcp/dhcp-server. 
http://www.security.unicamp.br/docs/bugs/2002/05/v55.txt

Microsoft Security Bulletin (MS02-024)
Assunto: Authentication Flaw in Windows Debugger can Lead to
Elevated Privileges (Q320206).
http://www.security.unicamp.br/docs/bugs/2002/05/v56.txt



--
Equipe de Seguranca em Sistemas e Redes
Unicamp - Universidade Estadual de Campinas
mailto:security em unicamp.br
http://www.security.unicamp.br    




Mais detalhes sobre a lista de discussão SECURITY-L