[SECURITY-L] Vulnerabilidades de Seguranca

CSIRT - UNICAMP security em unicamp.br
Qua Mar 15 10:50:37 -03 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Srs. Assinantes,

Atualizamos o site do CSIRT (Computer Security Incident Response Team) da Unicamp
com os seguintes boletins de vulnerabilidades:


Anúncio de Segurança do Conectiva Linux:
========================================
14/03/2006 - CLA-2006:1066 
Assunto: xpdf
http://www.security.unicamp.br/docs/bugs/2006/03/v053.txt

Debian Security Advisory:
=========================
14/03/2006 - DSA 1001-1
Assutno: crossfire 
http://www.security.unicamp.br/docs/bugs/2006/03/v057.txt

14/03/2006 - DSA 1000-1 
Assunto: libapreq2-perl 
http://www.security.unicamp.br/docs/bugs/2006/03/v056.txt

14/03/2006 - DSA 999-1 
Assunto: lurker 
http://www.security.unicamp.br/docs/bugs/2006/03/v055.txt

14/03/2006 - DSA 998-1 
Assunto: libextractor 
http://www.security.unicamp.br/docs/bugs/2006/03/v054.txt

13/03/2006 - DSA 997-1 
Assunto: bomberclone 
http://www.security.unicamp.br/docs/bugs/2006/03/v049.txt

13/03/2006 - DSA 996-1 
Assunto: libcrypt-cbc-perl 
http://www.security.unicamp.br/docs/bugs/2006/03/v046.txt

13/03/2006 - DSA 995-1 
Assunto: metamail 
http://www.security.unicamp.br/docs/bugs/2006/03/v042.txt

13/03/2006 - DSA 994-1 
Assunto: freeciv 
http://www.security.unicamp.br/docs/bugs/2006/03/v043.txt

10/03/2006 - DSA 992-1
Assunto: ffmpeg 
http://www.security.unicamp.br/docs/bugs/2006/03/v037.txt

10/03/2006 - DSA 991-1 
Assunto: zoo 
http://www.security.unicamp.br/docs/bugs/2006/03/v036.txt

10/03/2006 - DSA 993-1
Assunto: gnupg 
http://www.security.unicamp.br/docs/bugs/2006/03/v035.txt

10/03/2006 - DSA 919-2
Assunto: curl 
http://www.security.unicamp.br/docs/bugs/2006/03/v033.txt

10/03/2006 - DSA 990-1 
Assunto: bluez-hcidump 
http://www.security.unicamp.br/docs/bugs/2006/03/v032.txt

Fedora Update Notification:
===========================
13/03/2006 - FEDORA-2006-147 
Assunto: Fedora Core 4: gnupg 
http://www.security.unicamp.br/docs/bugs/2006/03/v050.txt

Gentoo Linux Security Advisory:
===============================
13/03/2006 - GLSA 200603-10 
Assunto: Cube: Multiple vulnerabilities 
http://www.security.unicamp.br/docs/bugs/2006/03/v040.txt

12/03/2006 - GLSA 200603-09 
Assunto: SquirrelMail: Cross-site scripting and IMAP command injection 
http://www.security.unicamp.br/docs/bugs/2006/03/v041.txt

10/03/2006 - GLSA 200603-08
Assunto: GnuPG: Incorrect signature verification
http://www.security.unicamp.br/docs/bugs/2006/03/v034.txt

10/03/2006 - GLSA 200603-07
Assunto: 10/03/2006 - GLSA 200603-07 - Potential insecure code generation 
http://www.security.unicamp.br/docs/bugs/2006/03/v038.txt

10/03/2006 - GLSA 200603-06 
Assunto: GNU tar: Buffer overflow 
http://www.security.unicamp.br/docs/bugs/2006/03/v031.txt

KDE Security Advisories:
========================
10/03/2006 
Assunto: kpdf/xpdf heap based buffer overflow
http://www.security.unicamp.br/docs/bugs/2006/03/v029.txt

Mandriva Linux Security Update Advisory:
========================================
13/03/2006 - MDKSA-2006:055 
Assunto: gnupg 
http://www.security.unicamp.br/docs/bugs/2006/03/v048.txt

09/03/2006 - MDKSA-2006:035-1
Assunto: php 
http://www.security.unicamp.br/docs/bugs/2006/03/v030.txt

Slackware Security Advisory:
============================
14/03/2006 - SSA:2006-072-02 
Assunto: gnupg 
http://www.security.unicamp.br/docs/bugs/2006/03/v052.txt

14/03/2006 - SSA:2006-072-01 
Assunto: kdegraphics
http://www.security.unicamp.br/docs/bugs/2006/03/v051.txt

Ubuntu Security Notice:
=======================
13/03/2006 - USN-264-1 
Assunto: gnupg vulnerability 
http://www.security.unicamp.br/docs/bugs/2006/03/v045.txt

13/03/2006 - USN-263-1
Assunto: linux-source-2.6.8.1/-2.6.10/-2.6.12 vulnerabilities 
http://www.security.unicamp.br/docs/bugs/2006/03/v039.txt

12/03/2006 - USN-262-1 
Assunto: installer vulnerability 
http://www.security.unicamp.br/docs/bugs/2006/03/v044.txt

US-CERT Technical Cyber Security Alert:
=======================================
14/03/2006 - TA06-073A 
Assunto: Microsoft Office and Excel Vulnerabilities
http://www.security.unicamp.br/docs/bugs/2006/03/v058.txt

- --
Computer Security Incident Response Team - CSIRT
Universidade Estadual de Campinas - UNICAMP
mailto:security at unicamp.br
http://www.security.unicamp.br
GnuPG Public Key: http://www.security.unicamp.br/security.asc

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (FreeBSD)

iD8DBQFEGBqh/UMb1l3gm8IRAmFeAKDmSjdntw/gQ586FNrk6DB9y1/8cgCfVtv8
Zz9n4HlbYXVOFqWMoeJGkRQ=
=yN6j
-----END PGP SIGNATURE-----



Mais detalhes sobre a lista de discussão SECURITY-L