[SECURITY-L] Vulnerabilidades de seguranca

CSIRT - UNICAMP security em unicamp.br
Qua Out 26 16:02:23 -02 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Srs. Assinantes,

Atualizamos o site do CSIRT (Computer Security Incident Response Team) da Unicamp
com os seguintes boletins de vulnerabilidades:


CAIS-Alerta:
============
21/10/2005
Assunto: Multiplas Vulnerabilidades em Produtos Oracle. 
http://www.security.unicamp.br/docs/bugs/2005/10/v169.txt

20/10/2005
Assunto: ERRATA - Vulnerabilidade no Pre-processador Back Orifice do Snort. 
http://www.security.unicamp.br/docs/bugs/2005/10/v168.txt


Cisco Security Advisory:
========================
19/10/2005
Assunto: Cisco 11500 Content Services Switch SSL Malformed Client
Certificate Vulnerability.
http://www.security.unicamp.br/docs/bugs/2005/10/v180.txt


Debian Security Advisory:
=========================
26/10/2005 - DSA 548-2
Assunto: imlib. 
http://www.security.unicamp.br/docs/bugs/2005/10/v177.txt

25/10/2005 - DSA 871-2
Assunto: libgda2. 
http://www.security.unicamp.br/docs/bugs/2005/10/v176.txt

25/10/2005 - DSA 871-1
Assunto: libgda2. 
http://www.security.unicamp.br/docs/bugs/2005/10/v175.txt

25/10/2005 - DSA 870-1
Assunto: sudo.
http://www.security.unicamp.br/docs/bugs/2005/10/v174.txt

21/10/2005 - DSA 869-1
Assunto: eric. 
http://www.security.unicamp.br/docs/bugs/2005/10/v173.txt

20/10/2005 - DSA 868-1
Assunto: mozilla-thunderbird.
http://www.security.unicamp.br/docs/bugs/2005/10/v170.txt

20/10/2005 - DSA 867-1
Assunto: module-assistant. 
http://www.security.unicamp.br/docs/bugs/2005/10/v172.txt

20/10/2005 - DSA 866-1
Assunto: mozilla. 
http://www.security.unicamp.br/docs/bugs/2005/10/v171.txt


Fedora Update Notification:
===========================
26/10/2005 - FEDORA-2005-1030
Assunto: Fedora Core 3: pam. 
http://www.security.unicamp.br/docs/bugs/2005/10/v189.txt


Gentoo Linux Security Advisory:
===============================
25/10/2005 - GLSA 200510-21
Assunto: phpMyAdmin: Local file inclusion and XSS vulnerabilities. 
http://www.security.unicamp.br/docs/bugs/2005/10/v184.txt

25/10/2005 - GLSA 200510-20
Assunto: Zope: File inclusion through RestructuredText. 
http://www.security.unicamp.br/docs/bugs/2005/10/v183.txt

22/10/2005 - GLSA 200510-19
Assunto: cURL: NTLM username stack overflow. 
http://www.security.unicamp.br/docs/bugs/2005/10/v182.txt


Mandriva Linux Security Update Advisory:
========================================
25/10/2005 - MDKSA-2005:193
Assunto: ethereal. 
http://www.security.unicamp.br/docs/bugs/2005/10/v167.txt

20/10/2005 - MDKSA-2005:192
Assunto: xli. 
http://www.security.unicamp.br/docs/bugs/2005/10/v166.txt

20/10/2005 - MDKSA-2005:191
Assunto: ruby. 
http://www.security.unicamp.br/docs/bugs/2005/10/v165.txt

20/10/2005 - MDKSA-2005:190
Assunto: nss_ldap. 
http://www.security.unicamp.br/docs/bugs/2005/10/v164.txt

20/10/2005 - MDKSA-2005:189
Assunto: imap. 
http://www.security.unicamp.br/docs/bugs/2005/10/v163.txt

20/10/2005 - MDKSA-2005:188
Assunto: graphviz. 
http://www.security.unicamp.br/docs/bugs/2005/10/v162.txt

20/10/2005 - MDKSA-2005:187
Assunto: dia. 
http://www.security.unicamp.br/docs/bugs/2005/10/v161.txt

17/10/2005 - MDKSA-2005:186
Assunto: lynx.
http://www.security.unicamp.br/docs/bugs/2005/10/v160.txt
 

Microsoft Security Bulletins:
=============================
11/10/2005
Assunto: Microsoft Security Bulletin Summary for October 2005.
http://www.security.unicamp.br/docs/bugs/2005/10/v185.txt


SCO Security Advisory:
======================
20/10/2005 - SCOSA-2005.40
Assunto: OpenServer 5.0.7 : authsh and backupsh buffer overflow.
http://www.security.unicamp.br/docs/bugs/2005/10/v179.txt


Trustix Secure Linux Security Advisory:
=======================================
21/10/2005 - #2005-0059
Assunto: apache, lynx, mod_php4, openssl, php4, php, squid, texinfo, wget.
http://www.security.unicamp.br/docs/bugs/2005/10/v181.txt


Ubuntu Security Notice:
=======================
20/10/2005 - USN-211-1
Assunto: enigmail vulnerability. 
http://www.security.unicamp.br/docs/bugs/2005/10/v178.txt


US-CERT Technical Cyber Security Alert:
=======================================
19/10/2005 - TA05-292A
Assunto: Oracle Products Contain Multiple Vulnerabilities.
http://www.security.unicamp.br/docs/bugs/2005/10/v188.txt

18/10/2005 - TA05-291A
Assunto: Snort Back Orifice Preprocessor Buffer Overflow. 
http://www.security.unicamp.br/docs/bugs/2005/10/v187.txt

11/10/2005 - TA05-284A
Assunto: Microsoft Windows, Internet Explorer, and Exchange Server
Vulnerabilities.
http://www.security.unicamp.br/docs/bugs/2005/10/v186.txt


- --
Computer Security Incident Response Team - CSIRT
Universidade Estadual de Campinas - UNICAMP
mailto:security at unicamp.br
http://www.security.unicamp.br
GnuPG Public Key: http://www.security.unicamp.br/security.asc

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (FreeBSD)

iD8DBQFDX8Rr/UMb1l3gm8IRAolRAJ44n+trYUdx7Ajhl7xuVA5D4k/EtgCgzf0u
FsDhfIdDn3+JSHmlKQ5IIi8=
=6+ad
-----END PGP SIGNATURE-----



Mais detalhes sobre a lista de discussão SECURITY-L