<?xml version="1.0" encoding="ISO-8859-1"?>
<rss version="2.0">
<channel>
<title>VUPEN Linux Security Advisories</title>
<link>http://www.vupen.com/english</link>
<description>VUPEN - Linux Vulnerabilities and Security Advisories 24/7</description>
<language>en</language>
<copyright>Copyright (c) VUPEN.COM</copyright><item>
<title>VUPEN - Fedora Security Update Fixes Gnome-screensaver Security Bypass</title>
<link>http://www.vupen.com/english/advisories/2010/0328</link>
<description>A weakness has been identified in Fedora, which could be exploited by attackers to bypass security restrictions...</description>
<pubDate>2010-02-09</pubDate>
</item><item>
<title>VUPEN - Fedora Security Update Fixes Bugzilla Information Disclosure Issues</title>
<link>http://www.vupen.com/english/advisories/2010/0327</link>
<description>Two vulnerabilities have been identified in Fedora, which could be exploited by attackers to gain knowledge of sensitive information...</description>
<pubDate>2010-02-09</pubDate>
</item><item>
<title>VUPEN - Turbolinux Security Update Fixes GNU Gzip Two Vulnerabilities</title>
<link>http://www.vupen.com/english/advisories/2010/0326</link>
<description>Two vulnerabilities have been identified in Turbolinux, which could be exploited by attackers to compromise a vulnerable system...</description>
<pubDate>2010-02-09</pubDate>
</item><item>
<title>VUPEN - Turbolinux Security Update Fixes BIND Cache Poisoning Vulnerabilities</title>
<link>http://www.vupen.com/english/advisories/2010/0325</link>
<description>Multiple vulnerabilities have been identified in Turbolinux, which could be exploited to conduct cache poisoning attacks...</description>
<pubDate>2010-02-09</pubDate>
</item><item>
<title>VUPEN - SuSE Security Update Fixes Kernel Security Bypass and DoS Issues</title>
<link>http://www.vupen.com/english/advisories/2010/0324</link>
<description>Multiple vulnerabilities have been identified in openSUSE, which could be exploited by attackers or malicious users to cause a denial of service, bypass security restrictions or gain elevated privileges...</description>
<pubDate>2010-02-09</pubDate>
</item><item>
<title>VUPEN - Mandriva Security Update Fixes Kernel Memory Corruption Vulnerabilities</title>
<link>http://www.vupen.com/english/advisories/2010/0323</link>
<description>Two vulnerabilities have been identified in Mandriva, which could be exploited by local attackers to cause a denial of service or gain elevated privileges...</description>
<pubDate>2010-02-09</pubDate>
</item><item>
<title>VUPEN - Fedora Security Update Fixes Chrony Denial of Service Vulnerabilities</title>
<link>http://www.vupen.com/english/advisories/2010/0314</link>
<description>Multiple vulnerabilities have been identified in Fedora, which could be exploited by remote attackers to cause a denial of service...</description>
<pubDate>2010-02-08</pubDate>
</item><item>
<title>VUPEN - Fedora Security Update Fixes OCS Inventory NG Multiple Vulnerabilities</title>
<link>http://www.vupen.com/english/advisories/2010/0313</link>
<description>Multiple vulnerabilities have been identified in Fedora, which could be exploited by attackers to bypass security restrictions, disclose sensitive information or manipulate certain data...</description>
<pubDate>2010-02-08</pubDate>
</item><item>
<title>VUPEN - Mandriva Security Update Fixes Squid Denial of Service Vulnerability</title>
<link>http://www.vupen.com/english/advisories/2010/0312</link>
<description>A vulnerability has been identified in Mandriva, which could be exploited by attackers to cause a denial of service...</description>
<pubDate>2010-02-08</pubDate>
</item><item>
<title>VUPEN - SuSE Security Update Fixes Kernel Security Bypass and DoS Issues</title>
<link>http://www.vupen.com/english/advisories/2010/0306</link>
<description>Multiple vulnerabilities have been identified in SuSE, which could be exploited by attackers or malicious users to cause a denial of service or bypass security restrictions...</description>
<pubDate>2010-02-05</pubDate>
</item><item>
<title>VUPEN - Fedora Security Update Fixes Kernel Multiple Vulnerabilities</title>
<link>http://www.vupen.com/english/advisories/2010/0305</link>
<description>Multiple vulnerabilities have been identified in Fedora, which could be exploited by attackers or malicious users to cause a denial of service or gain elevated privileges...</description>
<pubDate>2010-02-05</pubDate>
</item><item>
<title>VUPEN - Fedora Security Update Fixes nss TLS Plaintext Injection Issue</title>
<link>http://www.vupen.com/english/advisories/2010/0304</link>
<description>A vulnerability has been identified in Fedora, which could be exploited by attackers to manipulate certain data and information...</description>
<pubDate>2010-02-05</pubDate>
</item><item>
<title>VUPEN - Fedora Security Update Fixes DokuWiki Cross Site Request Forgery</title>
<link>http://www.vupen.com/english/advisories/2010/0303</link>
<description>A vulnerability has been identified in Fedora, which could be exploited by attackers to bypass security restrictions...</description>
<pubDate>2010-02-05</pubDate>
</item><item>
<title>VUPEN - Fedora Security Update Fixes ejabberd Denial of Service Vulnerability</title>
<link>http://www.vupen.com/english/advisories/2010/0302</link>
<description>A vulnerability has been identified in Fedora, which could be exploited by attackers to cause a denial of service...</description>
<pubDate>2010-02-05</pubDate>
</item><item>
<title>VUPEN - Fedora Security Update Fixes GMime Buffer Overflow Vulnerability</title>
<link>http://www.vupen.com/english/advisories/2010/0301</link>
<description>A vulnerability has been identified in Fedora, which could be exploited by attackers to cause a denial of service or compromise a vulnerable system...</description>
<pubDate>2010-02-05</pubDate>
</item><item>
<title>VUPEN - Ubuntu Security Update Fixes Kernel Code Execution and DoS Issues</title>
<link>http://www.vupen.com/english/advisories/2010/0300</link>
<description>Multiple vulnerabilities have been identified in Ubuntu, which could be exploited by attackers to bypass restrictions, disclose sensitive information, cause a denial of service or compromise a vulnerable system...</description>
<pubDate>2010-02-05</pubDate>
</item><item>
<title>VUPEN - Debian Security Update Fixes Chrony Denial of Service Vulnerabilities</title>
<link>http://www.vupen.com/english/advisories/2010/0299</link>
<description>Multiple vulnerabilities have been identified in Debian, which could be exploited by remote attackers to cause a denial of service.

The first issue is caused due to Chronyd replying to all "cmdmon" packets with "NOHOSTACCESS" messages even for unauthorized hosts, which could allow attackers to cause a high CPU or network usage.

The second vulnerability is caused due to the client logging facility of Chronyd not limiting memory that is used to store client information, which could be exploited to exhaust all memory resources by sending specially crafted NTP or cmdmon packets.

The third issue is caused due to the syslog facility of Chronyd not limiting the size of data to be logged when receiving packets from unauthorized hosts, which could be exploited to exhaust all available disk resources....</description>
<pubDate>2010-02-05</pubDate>
</item><item>
<title>VUPEN - Debian Security Update Fixes Squid Denial of Service Vulnerabilities</title>
<link>http://www.vupen.com/english/advisories/2010/0298</link>
<description>Two vulnerabilities have been identified in Debian, which could be exploited by attackers to cause a denial of service...</description>
<pubDate>2010-02-05</pubDate>
</item><item>
<title>VUPEN - NetBSD Security Update Fixes "azalia" and "hdaudio" Vulnerability</title>
<link>http://www.vupen.com/english/advisories/2010/0293</link>
<description>A vulnerability has been identified in NetBSD, which could be exploited by local attackers to cause a denial of service...</description>
<pubDate>2010-02-04</pubDate>
</item><item>
<title>VUPEN - Debian Security Update Fixes Trac-git Code Execution Vulnerability</title>
<link>http://www.vupen.com/english/advisories/2010/0292</link>
<description>A vulnerability has been identified in Debian, which could be exploited by remote attackers to compromise a vulnerable system...</description>
<pubDate>2010-02-04</pubDate>
</item>
</channel>
</rss>