PDA

Archiv verlassen und diese Seite im Standarddesign anzeigen : Sicherheitsupdates Opensuse 10.3



Gargi
15.01.2008, 21:39
15.01.2008
libexif

Two bugs in libexif were identified by a Google Security Audit done by Meder Kydyraliev. CVE-2007-6351: Loading EXIF data could be used to cause a infinite recursion and crash CVE-2007-6352: Integer overflows in the thumbnail handler could be used to overflow buffers and potentially execute code or crash a program using libexif.


Bitte verwendet das Onlineupdate zur Aktualisierung Eures Systems!

cu
Gargi

Gargi
19.01.2008, 11:57
fileshareset

This update is necessary to support the new FlashPlayer version, which required XEmbed support.

kdelibs3

This update is necessary to support the new FlashPlayer version, which required XEmbed support.

xorg-x11-xnest

This update fixes various Xserver security issues. File existence disclosure vulnerability (CVE-2007-5958). XInput Extension Memory Corruption Vulnerability [IDEF2888 CVE-2007-6427]. TOG-CUP Extension Memory Corruption Vulnerability [IDEF2901 CVE-2007-6428]. EVI Extension Integer Overflow Vulnerability [IDEF2902 CVE-2007-6429]. MIT-SHM Extension Integer Overflow Vulnerability [IDEF2904 CVE-2007-6429]. XFree86-MISC Extension Invalid Array Index Vulnerability [IDEF2903 CVE-2007-5760]. PCF font parser vulnerability.


Bitte diese Patches über das online update installieren.

Hinweis: Bei der Installation (vermutlich des xorg Updates) kann es sein, dass der XServer erstmal nicht mehr startet. Das passierte mir mit meiner nvidia- Grafikkarte. Hier einfach das nvidia Treibermodul neu installieren. Dann startet der XServer wieder durch. Damit Ihr auf die Konsole kommt startet Opensuse mit dem Parameter init 3

cu
Gargi

Gargi
22.01.2008, 22:01
libxml2

libxml2 contained a DoS condition in xmlCurrentChar()'s UTF-8 processing. CVE-2007-6284 has been assigned to this problem.


Bitte updaten!

Gargi
24.01.2008, 18:46
xorg-x11-Xnest

The previous xorg-x11 security update contained a flaw. Due to this some applications using the X shared memory extension did not work properly anymore.

-----

Bitte updaten!

Gargi
25.01.2008, 18:12
xorg-X11-Xvnc

The previous xorg-x11 security update contained a flaw. Due to this some applications using the X shared memory extension did not work properly anymore.