USN-909-1.txt

by on March 11, 2010 · 0 comments

in External News

Ubuntu Security Notice 909-1 – William Grant discovered that dpkg-source did not safely apply diffs when unpacking source packages. If a user or an automated system were tricked into unpacking a specially crafted source package, a remote attacker could modify files outside the target unpack directory, leading to a denial of service or potentially gaining access to the system.

See the original post here:
USN-909-1.txt

{ 0 comments }

Abton CMS suffers from a remote SQL injection vulnerability.

Go here to see the original:
abton-sql.txt

{ 0 comments }

ANE CMS version 1 suffers from a cross site scripting vulnerability.

Here is the original: 
ane-xss.txt

{ 0 comments }