[SECURITY-L] Vulnerabilidades de seguranca

CSIRT - UNICAMP security em unicamp.br
Sex Nov 12 16:45:13 -02 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Srs. Assinantes,

Atualizamos o site do CSIRT (Computer Security Incident Response Team) da Unicamp
com os seguintes boletins de vulnerabilidades:


Cisco Security Advisory: 
- ------------------------
11/11/2004
Assunto: Crafted Timed Attack Evades Cisco Security Agent Protections. 
http://www.security.unicamp.br/docs/bugs/2004/11/v78.txt


Debian Security Advisory:
- -------------------------
09/11/2004 - DSA 592-1
Assunto: vulnerabilidade de seguranca no pacote ez-ipupdate. 
http://www.security.unicamp.br/docs/bugs/2004/11/v81.txt


Fedora Update Notification:
- ---------------------------
11/11/2004 - FEDORA-2004-414
Assunto: Fedora Core 2: unarj. 
http://www.security.unicamp.br/docs/bugs/2004/11/v79.txt


Gentoo Linux Security Advisory:
- -------------------------------
11/11/2004 - GLSA 200411-22
Assunto: Davfs2, lvm-user: Insecure tempfile handling. 
http://www.security.unicamp.br/docs/bugs/2004/11/v77.txt

11/11/2004 - GLSA 200411-21
Assunto: Samba: Remote Denial of Service 
http://www.security.unicamp.br/docs/bugs/2004/11/v76.txt

11/11/2004 - GLSA 200411-20
Assunto: ez-ipupdate: Format string vulnerability. 
http://www.security.unicamp.br/docs/bugs/2004/11/v75.txt

10/11/2004 - GLSA 200411-19
Assunto: Pavuk: Multiple buffer overflows.
http://www.security.unicamp.br/docs/bugs/2004/11/v74.txt

10/11/2004 - GLSA 200411-18
Assunto: Apache 2.0: Denial of Service by memory consumption.
http://www.security.unicamp.br/docs/bugs/2004/11/v73.txt


US-CERT Technical Cyber Security Alert:
- ---------------------------------------
11/11/2004 - TA04-316A
Assunto: Cisco IOS Input Queue Vulnerability.
http://www.security.unicamp.br/docs/bugs/2004/11/v80.txt 


- --
Computer Security Incident Response Team - CSIRT
Universidade Estadual de Campinas - UNICAMP
mailto:security at unicamp.br
http://www.security.unicamp.br
GnuPG Public Key: http://www.security.unicamp.br/security.asc

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (FreeBSD)

iD8DBQFBlQR4/UMb1l3gm8IRAmm+AJ9+TO110JqeiPWrv7fjt+lWV7aF4QCfdWR4
DaIly1eagUlTge5ey6KsXcw=
=AJzV
-----END PGP SIGNATURE-----



Mais detalhes sobre a lista de discussão SECURITY-L