[SECURITY-L] Vulnerabilidades de seguranca

CSIRT - UNICAMP security em unicamp.br
Qui Out 6 16:39:41 -03 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Srs. Assinantes,

Atualizamos o site do CSIRT (Computer Security Incident Response Team) da Unicamp
com os seguintes boletins de vulnerabilidades:


Fedora Update Notification:
===========================
30/09/2005 - FEDORA-2005-963
Assunto: Fedora Core 4: thunderbird. 
http://www.security.unicamp.br/docs/bugs/2005/09/v171.txt

30/09/2005 - FEDORA-2005-962
Assunto: Fedora Core 3: thunderbird.
http://www.security.unicamp.br/docs/bugs/2005/09/v170.txt

30/09/2005 - FEDORA-2005-955
Assunto: Fedora Core 3: abiword. 
http://www.security.unicamp.br/docs/bugs/2005/09/v169.txt

27/09/2005 - FEDORA-2005-941
Assunto: Fedora Core 3: HelixPlayer. 
http://www.security.unicamp.br/docs/bugs/2005/09/v168.txt

27/09/2005 - FEDORA-2005-940
Assunto: Fedora Core 4: HelixPlayer. 
http://www.security.unicamp.br/docs/bugs/2005/09/v167.txt

26/09/2005 - FEDORA-2005-934
Assunto: Fedora Core 3: epiphany. 
http://www.security.unicamp.br/docs/bugs/2005/09/v149.txt

26/09/2005 - FEDORA-2005-933
Assunto: Fedora Core 3: devhelp. 
http://www.security.unicamp.br/docs/bugs/2005/09/v148.txt

26/09/2005 - FEDORA-2005-932
Assunto: Fedora Core 3: mozilla. 
http://www.security.unicamp.br/docs/bugs/2005/09/v147.txt

26/09/2005 - FEDORA-2005-931
Assunto: Fedora Core 3: firefox. 
http://www.security.unicamp.br/docs/bugs/2005/09/v146.txt

26/09/2005 - FEDORA-2005-930
Assunto: Fedora Core 4: yelp. 
http://www.security.unicamp.br/docs/bugs/2005/09/v145.txt

26/09/2005 - FEDORA-2005-929
Assunto: Fedora Core 4: epiphany. 
http://www.security.unicamp.br/docs/bugs/2005/09/v144.txt

26/09/2005 - FEDORA-2005-928
Assunto: Fedora Core 4: devhelp. 
http://www.security.unicamp.br/docs/bugs/2005/09/v143.txt

26/09/2005 - FEDORA-2005-927
Assunto: Fedora Core 4: mozilla. 
http://www.security.unicamp.br/docs/bugs/2005/09/v142.txt

26/09/2005 - FEDORA-2005-926
Assunto: Fedora Core 4: firefox. 
http://www.security.unicamp.br/docs/bugs/2005/09/v141.txt

26/09/2005 - FEDORA-2005-932
Assunto: Fedora Core 3: mozilla.
http://www.security.unicamp.br/docs/bugs/2005/09/v140.txt
 

Gentoo Linux Security Advisory:
===============================
05/10/2005 - GLSA 200510-04
Assunto: Texinfo: Insecure temporary file creation. 
http://www.security.unicamp.br/docs/bugs/2005/10/v7.txt 

06/10/2005 - GLSA 200510-05
Assunto: Ruby: Security bypass vulnerability. 
http://www.security.unicamp.br/docs/bugs/2005/10/v5.txt 

06/10/2005 - GLSA 200510-06
Assunto: Dia: Arbitrary code execution through SVG import. 
http://www.security.unicamp.br/docs/bugs/2005/10/v4.txt 

04/10/2005 - GLSA 200510-03
Assunto: Uim: Privilege escalation vulnerability. 
http://www.security.unicamp.br/docs/bugs/2005/10/v3.txt 

03/10/2005 - GLSA 200510-02
Assunto: Berkeley MPEG Tools: Multiple insecure temporary files. 
http://www.security.unicamp.br/docs/bugs/2005/10/v2.txt 

03/10/2005 - GLSA 200510-01
Assunto: gtkdiskfree: Insecure temporary file creation.
http://www.security.unicamp.br/docs/bugs/2005/10/v1.txt 

30/09/2005 - GLSA 200509-21
Assunto: Hylafax: Insecure temporary file creation in xferfaxstats
script. 
http://www.security.unicamp.br/docs/bugs/2005/09/v157.txt 

30/09/2005 - GLSA 200509-20
Assunto: AbiWord: RTF import stack-based buffer overflow. 
http://www.security.unicamp.br/docs/bugs/2005/09/v159.txt 

29/09/2005 - GLSA 200509-11:02
Assunto: Mozilla Suite, Mozilla Firefox: Multiple vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2005/09/v158.txt 

27/09/2005 - GLSA 200509-19
Assunto: PHP: Vulnerabilities in included PCRE and XML-RPC
libraries.
http://www.security.unicamp.br/docs/bugs/2005/09/v156.txt 

26/09/2005 - GLSA 200509-18
Assunto: Qt: Buffer overflow in the included zlib library.
http://www.security.unicamp.br/docs/bugs/2005/09/v155.txt 


Mandriva Linux Security Update Advisory:
========================================
03/10/2005 - MDKSA-2005:171
Assunto: kernel
http://www.security.unicamp.br/docs/bugs/2005/10/v10.txt 

27/09/2005 - MDKSA-2005:169
Assunto: mozilla-firefox 
http://www.security.unicamp.br/docs/bugs/2005/09/v173.txt 

27/09/2005 - MDKSA-2005:170
Assunto: mozilla 
http://www.security.unicamp.br/docs/bugs/2005/09/v172.txt 


Slackware Security Advisory:
============================
26/09/2005 - SSA:2005-269-02
Assunto: X.Org pixmap overflow. 
http://www.security.unicamp.br/docs/bugs/2005/09/v154.txt

26/09/2005 - SSA:2005-269-01
Assunto: Mozilla/Firefox. 
http://www.security.unicamp.br/docs/bugs/2005/09/v153.txt


SUSE Security Announcement:
===========================
26/09/2005 - SUSE-SA:2005:056
Assunto: XFree86-server,xorg-x11-server. 
http://www.security.unicamp.br/docs/bugs/2005/09/v152.txt


Ubuntu Security Notice:
=======================
04/10/2005 - USN-193-1
Assunto: dia vulnerability. 
http://www.security.unicamp.br/docs/bugs/2005/10/v9.txt

06/10/2005 - USN-194-1
Assunto: texinfo vulnerability. 
http://www.security.unicamp.br/docs/bugs/2005/10/v8.txt

04/10/2005 - USN-155-3
Assunto: mozilla-locale-... updates.
http://www.security.unicamp.br/docs/bugs/2005/10/v6.txt

30/09/2005 - USN-192-1
Assunto: squid vulnerability. 
http://www.security.unicamp.br/docs/bugs/2005/09/v166.txt

29/09/2005 - USN-191-1
Assunto: unzip vulnerability. 
http://www.security.unicamp.br/docs/bugs/2005/09/v165.txt

29/09/2005 - USN-190-1
Assunto: net-snmp vulnerability. 
http://www.security.unicamp.br/docs/bugs/2005/09/v164.txt

29/09/2005 - USN-189-1
Assunto: cpio vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2005/09/v163.txt

29/09/2005 - USN-188-1
Assunto: abiword vulnerability. 
http://www.security.unicamp.br/docs/bugs/2005/09/v162.txt

25/09/2005 - USN-187-1
Assunto: linux-source-2.6.10, linux-source-2.6.8.1 vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2005/09/v161.txt

25/09/2005 - USN-186-2
Assunto: mozilla-firefox vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2005/09/v160.txt

25/09/2005 - USN-187-1
Assunto: linux-source-2.6.10, linux-source-2.6.8.1 vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2005/09/v151.txt

25/09/2005 - USN-186-2
Assunto: mozilla-firefox vulnerabilities.
http://www.security.unicamp.br/docs/bugs/2005/09/v150.txt
 

- --
Computer Security Incident Response Team - CSIRT
Universidade Estadual de Campinas - UNICAMP
mailto:security at unicamp.br
http://www.security.unicamp.br
GnuPG Public Key: http://www.security.unicamp.br/security.asc

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (FreeBSD)

iD8DBQFDRX0s/UMb1l3gm8IRAlqPAJ9P0RGeIvd5Y7keiTOO07/GevcXPwCg6b3e
HMLA3TaKZWND1rK7XEV/7kU=
=fRip
-----END PGP SIGNATURE-----



Mais detalhes sobre a lista de discussão SECURITY-L