[SECURITY-L] Vulnerabilidades de Seguranca

CSIRT - UNICAMP security em unicamp.br
Sex Mar 3 15:52:38 -03 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Srs. Assinantes,

Atualizamos o site do CSIRT (Computer Security Incident Response Team) da Unicamp
com os seguintes boletins de vulnerabilidades:


Debian Security Advisory:
=========================
02/03/2006 - DSA 984-1
Assunto: Xpdf
http://www.security.unicamp.br/docs/bugs/2006/03/v006.txt

28/02/2006 - DSA 983-1
Assunto: Pdftohtml 
http://www.security.unicamp.br/docs/bugs/2006/02/v141.txt

27/02/2006 - DSA 982-1
Assunto: Gpdf 
http://www.security.unicamp.br/docs/bugs/2006/02/v140.txt

22/02/2006 - DSA 980-1
Assunto: Tutos 
http://www.security.unicamp.br/docs/bugs/2006/02/v142.txt

26/02/2006 - DSA 981-1
Assunto: Bmv 
http://www.security.unicamp.br/docs/bugs/2006/02/v143.txt

Fedora Legacy Update Advisory:
==============================
01/03/2006 - FLSA:178989
Assunto: Updated perl-DBI package fixes security issue
http://www.security.unicamp.br/docs/bugs/2006/03/v005.txt

27/02/2006 - FLSA:181014
Assunto: Updated Gnutls packages fix security issues 
http://www.security.unicamp.br/docs/bugs/2006/02/v134.txt

27/02/2006 - FLSA:175818
Assunto: Updated Udev packages fix security issues 
http://www.security.unicamp.br/docs/bugs/2006/02/v133.txt

27/02/2006 - FLSA:157366
Assunto: Updated PostgreSQL packages fix security issues 
http://www.security.unicamp.br/docs/bugs/2006/02/v132.txt

27/02/2006 - FLSA:177326
Assunto: Updated Mod_Auth_PqSQL package fixes security issues 
http://www.security.unicamp.br/docs/bugs/2006/02/v131.txt

27/02/2006 - FLSA:177694
Assunto: Updated Auth_LDAP package fixes security issues 
http://www.security.unicamp.br/docs/bugs/2006/02/v130.txt

25/02/2006 - FLSA:176731
Assunto: Updated Perl packages fix security issues 
http://www.security.unicamp.br/docs/bugs/2006/02/v129.txt

25/02/2006 - FLSA:158543
Assunto: Updated Gaim packages fixes security issues 
http://www.security.unicamp.br/docs/bugs/2006/02/v128.txt

25/02/2006 - FLSA:138098
Assunto: Updated NFS-Utils packages fixes security issues 
http://www.security.unicamp.br/docs/bugs/2006/02/v127.txt

23/02/2006 - FLSA:162750
Assunto: Updated Sudo packages fix security issues 
http://www.security.unicamp.br/docs/bugs/2006/02/v126.txt

23/02/2006 - FLSA:180036-2
Assunto: Updated Firefox packages fixes security issues
http://www.security.unicamp.br/docs/bugs/2006/02/v125.txt

23/02/2006 - FLSA:180036-1 
Assunto: Updated Mozzila packages fix security issues 
http://www.security.unicamp.br/docs/bugs/2006/02/v124.txt


Fedora Update Notification:
===========================
02/03/2006 - FEDORA-2006-131
Assunto: Fedora Core 4: Kernel
http://www.security.unicamp.br/docs/bugs/2006/03/v004.txt

FreeBSD Security Advisory:
==========================
01/03/2006 - FreeBSD-SA-06:10.nfs
Assunto: Remote denial of service in NFS server 
http://www.security.unicamp.br/docs/bugs/2006/03/v002.txt

01/03/2006 - FreeBSD-SA-06:09.openssh
Assunto: Remote denial of service in OpenSSH
http://www.security.unicamp.br/docs/bugs/2006/03/v001.txt


Gentoo Linux Security Advisory:
===============================
26/02/2006 - GLSA 200602-14
Assunto: noweb: Insecure temporary file creation 
http://www.security.unicamp.br/docs/bugs/2006/02/v138.txt

26/02/2006 - GLSA 200602-13
Assunto: GraphicsMagick: Format string vulnerability 
http://www.security.unicamp.br/docs/bugs/2006/02/v139.txt

HP Security Bulletin:
=====================
27/02/2006 - HPSBMA02099 SSRT061118 rev.1
Assunto: HP System Management Homepage (SMH) Running on Windows: Remote Unauthorized Access 
http://www.security.unicamp.br/docs/bugs/2006/02/v144.txt


Mandriva Linux Security Update Advisory:
========================================
02/03/2006 - MDKSA-2006:052
Assunto: Mozzila-Thunderbird
http://www.security.unicamp.br/docs/bugs/2006/03/v007.txt

28/02/2006 - MDKSA-2006:051 
Assunto: Gettext 
http://www.security.unicamp.br/docs/bugs/2006/02/v123.txt

27/02/2006 - MDKSA-2006:050 
Assunto: Unzip 
http://www.security.unicamp.br/docs/bugs/2006/02/v122.txt

27/02/2006 - MDKSA-2006:049 
Assunto: Squirrelmail 
http://www.security.unicamp.br/docs/bugs/2006/02/v121.txt

24/02/2006 - MDKSA-2006:048 
Assunto:  mplayer 
http://www.security.unicamp.br/docs/bugs/2006/02/v118.txt

22/02/2006 - MDKSA-2006:047
Assunto:  metamail.
http://www.security.unicamp.br/docs/bugs/2006/02/v117.txt


SUSE Security Announcement:
===========================
24/02/2006 - SUSE-SA:2006:010
Assunto: Heimdal 
http://www.security.unicamp.br/docs/bugs/2006/02/v135.txt

Trustix Secure Linux Security Advisory:
=======================================
24/02/2006 - #2006-0010
Assunto:  sudo, tar 
http://www.security.unicamp.br/docs/bugs/2006/02/v137.txt

17/02/2006 - #2006-0008
Assunto: gnupg, gnutls, libtasnl, postgresql 
http://www.security.unicamp.br/docs/bugs/2006/02/v136.txt

Ubuntu Security Notice:
=======================
01/03/2006 - USN-259-1
Assunto: irssi-text vulnerability
http://www.security.unicamp.br/docs/bugs/2006/03/v002.txt

27/02/2006 - USN-258-1 
Assunto:  postgresql-7.4, postgresql-8.0, postgresql vulnerability 
http://www.security.unicamp.br/docs/bugs/2006/02/v120.txt

23/02/2006 - USN-257-1 
Assunto:  tar vulnerability 
http://www.security.unicamp.br/docs/bugs/2006/02/v119.txt

- --
Computer Security Incident Response Team - CSIRT
Universidade Estadual de Campinas - UNICAMP
mailto:security at unicamp.br
http://www.security.unicamp.br
GnuPG Public Key: http://www.security.unicamp.br/security.asc

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (FreeBSD)

iD8DBQFECI/V/UMb1l3gm8IRAhGDAKCxLnMiepPNrLRtQbswae9JVxVLXQCfVgLw
1XAjY/n4Js9STN8EPQ3AP+o=
=RcCv
-----END PGP SIGNATURE-----



Mais detalhes sobre a lista de discussão SECURITY-L