|
|
The central voice for Linux and Open Source security news.
Tags: announce mdva, linuxsecurity, security announce, security announce mdva, security update
Author: Ryan W. Maple |
based on editor's review
![]() Editor reviews are provided by professional editors who evaluate a blog based on the following criteria: Frequency of Updates, Relevance of Content, Site Design, and Writing Style.
|
Fedora 10 httpd-2.2.14-1.fc10Dec 9, 2009
LinuxSecurity.com:
This update contains the latest stable release of Apache httpd. Three security
fixes are included, along with several minor bug fixes. A flaw was found in
the way the TLS/SSL (Transport Layer Security/Secure Sockets Layer)...
Fedora 12 nss-util-3.12.5-1.fc12.1Dec 9, 2009
LinuxSecurity.com:
Update to 3.12.5 This update fixes the following security flaw:
CVE-2009-3555 TLS: MITM attacks via session renegotiation
Fedora 10 rubygem-actionpack-2.1.1-5.fc10Dec 9, 2009
LinuxSecurity.com:
Two security issues are found on activepack shipped on Fedora 10. One bug is
that there is a weakness in the strip_tags function in ruby on rails (bug
542786, CVE-2009-4214). Another one is a possibility to circumvent...
Ubuntu: Linux kernel vulnerabilitiesDec 9, 2009
LinuxSecurity.com:
David Ford discovered that the IPv4 defragmentation routine did not
correctly handle oversized packets. A remote attacker could send
specially crafted traffic that would cause a system to crash, leading
to a denial of service. (The...
Mandriva: kernelDec 9, 2009
LinuxSecurity.com:
Some vulnerabilities were discovered and corrected in the Linux
2.6 kernel:
Memory leak in the appletalk subsystem in the Linux kernel 2.4.x
through 2.4.37.6 and 2.6.x through 2.6.31, when the appletalk and
ipddp modules are loaded...
|
||
|
||



