[SECURITY-L] Vulnerabilidades de seguranca

CSIRT - UNICAMP security em unicamp.br
Sex Set 3 16:22:04 -03 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Srs. Usuarios,

Atualizamos o site do CSIRT (Computer Security Incident Response Team)
da Unicamp com os seguintes boletins de vulnerabilidades:


Fedora Update Notification:
- ---------------------------
02/09/2004 - FEDORA-2004-285
Assunto: Fedora Core 2: samba. 
http://www.security.unicamp.br/docs/bugs/2004/09/v11.txt

02/09/2004 - FEDORA-2004-284
Assunto: Fedora Core 1: samba. 
http://www.security.unicamp.br/docs/bugs/2004/09/v10.txt

01/09/2004 - FEDORA-2004-273
Assunto: Fedora Core 2: mc.
http://www.security.unicamp.br/docs/bugs/2004/09/v8.txt

01/09/2004 - FEDORA-2004-272
Assunto: Fedora Core 1: mc.
http://www.security.unicamp.br/docs/bugs/2004/09/v7.txt


Gentoo Linux Security Advisory:
- -------------------------------
03/09/2004 - GLSA 200409-07
Assunto: xv: Buffer overflows in image handling.
http://www.security.unicamp.br/docs/bugs/2004/09/v18.txt

03/09/2004 - UPDATE: GLSA 200408-22
Assunto: Mozilla, Firefox, Thunderbird, Galeon, Epiphany: New releases fix 
vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2004/09/v17.txt

02/09/2004 - GLSA 200409-06
Assunto: eGroupWare: Multiple XSS vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2004/09/v16.txt

02/09/2004 - GLSA 200409-05
Assunto: Gallery: Arbitrary command execution. 
http://www.security.unicamp.br/docs/bugs/2004/09/v15.txt

02/09/2004 - GLSA 200409-04
Assunto: Squid: Denial of service when using NTLM authentication. 
http://www.security.unicamp.br/docs/bugs/2004/09/v13.txt

02/09/2004 - GLSA 200409-03
Assunto: Python 2.2: Buffer overflow in getaddrinfo(). 
http://www.security.unicamp.br/docs/bugs/2004/09/v12.txt

01/09/2004 - GLSA 200409-02
Assunto: MySQL: Insecure temporary file creation in mysqlhotcopy. 
http://www.security.unicamp.br/docs/bugs/2004/09/v5.txt

01/09/2004 - GLSA 200409-01
Assunto: vpopmail: Multiple vulnerabilities.
http://www.security.unicamp.br/docs/bugs/2004/09/v4.txt


HP Security Bulletin:
- ---------------------
01/09/2004 - REVISED: HPSBUX011
Assunto: SSRT3657 rev.3 CDE libDtHelp.
http://www.security.unicamp.br/docs/bugs/2004/09/v2.txt


Mandrakelinux Security Update Advisory:
- ---------------------------------------
01/09/2004 - MDKSA-2004:088
Assunto: vulnerabilidade de seguranca no pacote krb5.
http://www.security.unicamp.br/docs/bugs/2004/09/v3.txt


SUSE Security Announcement:
- ---------------------------
02/09/2004 - SUSE-SA:2004:029
Assunto: vulnerabilidade de seguranca no pacote zlib. 
http://www.security.unicamp.br/docs/bugs/2004/09/v14.txt


Trustix Secure Linux Security Advisory:
- ---------------------------------------
02/09/2004 - #2004-0045
Assunto: vulnerabilidade de seguranca no pacote kerberos5.
http://www.security.unicamp.br/docs/bugs/2004/09/v9.txt


US-CERT Technical Cyber Security Alert:
- ---------------------------------------
01/09/2004 - TA04-245A
Assunto: Multiple Vulnerabilities in Oracle Products.
http://www.security.unicamp.br/docs/bugs/2004/09/v6.txt


- --
Computer Security Incident Response Team - CSIRT
Universidade Estadual de Campinas - UNICAMP
mailto:security at unicamp.br
http://www.security.unicamp.br
GnuPG Public Key: http://www.security.unicamp.br/security.asc

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (FreeBSD)

iD8DBQFBOMQ1/UMb1l3gm8IRAgbiAJsH7WqBvwmgLxH/jah9iaByyq5pugCeNS4K
nle3IzV5qo4PJ6ESkqOA25A=
=3rf0
-----END PGP SIGNATURE-----



Mais detalhes sobre a lista de discussão SECURITY-L