[SECURITY-L] Vulnerabilidades de seguranca

CSIRT - UNICAMP security em unicamp.br
Qua Mar 2 16:31:41 -03 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Srs. Assinantes,

Atualizamos o site do CSIRT (Computer Security Incident Response Team) da Unicamp
com os seguintes boletins de vulnerabilidades:


Anúncio de Segurança do Conectiva Linux:
========================================

Bugzilla Security Advisory:
===========================

CAIS-Alerta:
============

Cisco Security Advisory: 
========================
24/02/2005
Assunto: ACNS Denial of Service and Default Admin Password Vulnerabilities.
http://www.security.unicamp.br/docs/bugs/2005/02/v155.txt


Debian Security Advisory:
=========================
25/02/2005 - DSA 690-1
Assunto: vulnerabilidade de seguranca no pacote bsmtpd. 
http://www.security.unicamp.br/docs/bugs/2005/02/v150.txt

23/02/2005 - DSA 689-1
Assunto: vulnerabilidade de seguranca no pacote libapache-mod-python. 
http://www.security.unicamp.br/docs/bugs/2005/02/v149.txt

23/02/2005 - DSA 688-1
Assunto: vulnerabilidade de seguranca no pacote squid. 
http://www.security.unicamp.br/docs/bugs/2005/02/v148.txt


Fedora Legacy Update Advisory:
==============================
24/02/2005 - FLSA:2336
Assunto: Updated kernel packages fix security issues. 
http://www.security.unicamp.br/docs/bugs/2005/02/v154.txt

23/02/2005 - FLSA:2343
Assunto: Updated vim packages fix security issues. 
http://www.security.unicamp.br/docs/bugs/2005/02/v153.txt

23/02/2005 - FLSA:2043
Assunto: Updated zlib package fixes security issues. 
http://www.security.unicamp.br/docs/bugs/2005/02/v152.txt

23/02/2005 - FLSA:2005
Assunto: Updated gdk-pixbuf packages fix security flaws. 
http://www.security.unicamp.br/docs/bugs/2005/02/v151.txt

20/02/2005 - FLSA:2058
Assunto: Updated cdrtools packages fix a security issue.
http://www.security.unicamp.br/docs/bugs/2005/02/v140.txt

20/02/2005 - FLSA:1945
Assunto: Updated sox packages fix buffer overflows. 
http://www.security.unicamp.br/docs/bugs/2005/02/v139.txt

20/02/2005 - FLSA:1944
Assunto: GNOME VFS updates address extfs vulnerability.
http://www.security.unicamp.br/docs/bugs/2005/02/v138.txt


Fedora Update Notification:
===========================
26/02/2005 - FEDORA-2005-182
Assunto: Fedora Core 3: firefox. 
http://www.security.unicamp.br/docs/bugs/2005/02/v161.txt

25/02/2005 - FEDORA-2005-172
Assunto: Fedora Core 3: gaim. 
http://www.security.unicamp.br/docs/bugs/2005/02/v160.txt

25/02/2005 - FEDORA-2005-171
Assunto: Fedora Core 2: gaim. 
http://www.security.unicamp.br/docs/bugs/2005/02/v159.txt

22/02/2005 - FEDORA-2005-154
Assunto: Fedora Core 3: squid. 
http://www.security.unicamp.br/docs/bugs/2005/02/v147.txt

22/02/2005 - FEDORA-2005-153
Assunto: Fedora Core 2: squid. 
http://www.security.unicamp.br/docs/bugs/2005/02/v146.txt

22/02/2005 - FEDORA-2005-158
Assunto: Fedora Core 2: postgresql. 
http://www.security.unicamp.br/docs/bugs/2005/02/v145.txt

21/02/2005 - FEDORA-2005-160
Assunto: Fedora Core 3: gaim. 
http://www.security.unicamp.br/docs/bugs/2005/02/v144.txt

21/02/2005 - FEDORA-2005-159
Assunto: Fedora Core 2: gaim. 
http://www.security.unicamp.br/docs/bugs/2005/02/v143.txt


FreeBSD Security Advisory:
==========================

Gentoo Linux Security Advisory:
===============================
01/03/2005 - GLSA 200503-04
Assunto: phpWebSite: Arbitrary PHP execution and path disclosure. 
http://www.security.unicamp.br/docs/bugs/2005/03/v4.txt

01/03/2005 - GLSA 200503-03
Assunto: Gaim: Multiple Denial of Service issues. 
http://www.security.unicamp.br/docs/bugs/2005/03/v3.txt

01/03/2005 - GLSA 200503-02
Assunto: phpBB: Multiple vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2005/03/v2.txt

01/03/2005 - GLSA 200503-01
Assunto: Qt: Untrusted library search path.
http://www.security.unicamp.br/docs/bugs/2005/03/v1.txt

28/02/2005 - GLSA 200502-33
Assunto: MediaWiki: Multiple vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2005/02/v162.txt

23/02/2005 - GLSA 200502-29
Assunto: Cyrus IMAP Server: Multiple overflow vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2005/02/v142.txt

21/02/2005 - GLSA 200502-28
Assunto: PuTTY: Remote code execution. 
http://www.security.unicamp.br/docs/bugs/2005/02/v141.txt


HP Security Bulletin:
=====================
24/02/2005 - HPSBUX01119
Assunto: SSRT4694 rev.0 - HP-UX ftpd remote unauthorized access. 
http://www.security.unicamp.br/docs/bugs/2005/02/v156.txt


KDE Security Advisories:
========================
28/02/2005
Assunto: kppp Privileged fd Leak Vulnerability. 
http://www.security.unicamp.br/docs/bugs/2005/02/v163.txt


Mandrakelinux Security Update Advisory:
=======================================
24/02/2005 - MDKSA-2005:047
Assunto: vulnerabilidade de seguranca no pacote squid. 
http://www.security.unicamp.br/docs/bugs/2005/02/v158.txt

24/02/2005 - MDKSA-2005:046
Assunto: vulnerabilidade de seguranca no pacote uim. 
http://www.security.unicamp.br/docs/bugs/2005/02/v157.txt


Microsoft Security Bulletins:
=============================

Mozilla Security Advisory:
==========================

NetBSD Security Advisory:
=========================

Netwosix Linux Security Advisory:
=================================

OpenPKG Security Advisory:
==========================

Samba Security Release:
=======================

SCO Security Advisory:
======================
28/02/2005 - SCOSA-2005.3
Assunto: OpenServer 5.0.6 OpenServer 5.0.7 : A vulnerability in TCP.
http://www.security.unicamp.br/docs/bugs/2005/02/v164.txt
 

SGI Security Advisory:
======================

Slackware Security Advisory:
============================

SUSE Security Announcement:
===========================

Trustix Secure Linux Security Advisory:
=======================================

US-CERT Technical Cyber Security Alert:
=======================================


- --
Computer Security Incident Response Team - CSIRT
Universidade Estadual de Campinas - UNICAMP
mailto:security at unicamp.br
http://www.security.unicamp.br
GnuPG Public Key: http://www.security.unicamp.br/security.asc

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (FreeBSD)

iD8DBQFCJhSM/UMb1l3gm8IRAid9AKCMCjGx3ljpCw1eo8RemgQXvMdCSQCdGw+Q
N/DUa7O7XsaLxqZa0IedB4c=
=KuMu
-----END PGP SIGNATURE-----



Mais detalhes sobre a lista de discussão SECURITY-L