<rss version="0.92">
<channel>
<!--  Channel Information --> 
	<title>PatchQuest Security Alerts : All</title>
  	<link>http://secure.patchquest.com</link>
	<description>News from http://secure.patchquest.com</description>
	<language>en-us</language>
	<image>
		<url>http://secure.patchquest.com///images/icon/rss_logo.gif</url>
		<title>PatchQuest Security Alerts</title>
		<link>http://www.patchquest.com</link>
	</image>
	<!--  End of Channel Information --> 
	<!--  Item Details --> 
<item>
    <title>MSWU-114 : December 2007 cumulative time zone update for Microsoft Windows operating systems(KB942763)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-114</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-114' target=_blank&gt;MSWU-114&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; December 2007 cumulative time zone update for Microsoft Windows operating systems(KB942763)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;This update supersedes and replaces update 933360, which was released in August 2007. This update also includes additional time zone changes that were signed in to law after update 933360 was created.</description>
</item><item>
    <title>MSWU-117 : Outlook 2003 Junk E-mail Filter update(KB947944)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-117</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-117' target=_blank&gt;MSWU-117&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Outlook 2003 Junk E-mail Filter update(KB947944)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;This update provides the Junk E-mail Filter in Microsoft Office Outlook 2003 with a more current definition of which e-mail messages should be considered junk e-mail.</description>
</item><item>
    <title>MS08-017 : Vulnerabilities in Microsoft Office Web Components Could Allow Remote Code Execution (933103)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-017</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-017' target=_blank&gt;MS08-017&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Vulnerabilities in Microsoft Office Web Components Could Allow Remote Code Execution (933103)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;These vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</description>
</item><item>
    <title>MS08-016 : Vulnerabilities in Microsoft Office Could Allow Remote Code Execution (949030)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-016</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-016' target=_blank&gt;MS08-016&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Vulnerabilities in Microsoft Office Could Allow Remote Code Execution (949030)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;The Critical vulnerabilities in Microsoft Office that could allow remote code execution if a user opens a malformed Office file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</description>
</item><item>
    <title>MS08-015 : Vulnerability in Microsoft Outlook Could Allow Remote Code Execution (949031)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-015</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-015' target=_blank&gt;MS08-015&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Vulnerability in Microsoft Outlook Could Allow Remote Code Execution (949031)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;The vulnerability could allow remote code execution if Outlook is passed a specially crafted mail to URI. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</description>
</item><item>
    <title>MS08-014 : Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (949029)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-014</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-014' target=_blank&gt;MS08-014&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (949029)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;This security update resolves several privately reported and publicly reported vulnerabilities in Microsoft Office Excel that could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</description>
</item><item>
    <title>MSRT-001 : The Microsoft Windows Malicious Software Removal Tool (890830).</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSRT-001</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSRT-001' target=_blank&gt;MSRT-001&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; The Microsoft Windows Malicious Software Removal Tool (890830).&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Microsoft has released the Microsoft Windows Malicious Software Removal Tool to help remove specific, prevalent malicious software from computers that are running Microsoft Windows Server 2003, Microsoft Windows XP, or Microsoft Windows 2000. The Malicious Software Removal Tool supersedes all virus-cleaner tools that were previously released by Microsoft. You can download the Malicious Software Removal Tool from the Microsoft Download Center. You can also run an online version of the tool from the Malicious Software Removal Tool Web site on Microsoft.com. To run the Malicious Software Removal Tool from either location, you must log on to the computer by using an account that is a member of the Administrators group. If you are running Windows XP, Windows Server 2003, or Windows 2000, you can also run the Malicious Software Removal Tool from the Microsoft Update Web site or by using the Microsoft Update Automatic Updates functionality. If you have chosen not to use Microsoft Update, and you are running Windows XP or Windows Server 2003 Service Pack 1 (SP1), you may run the Malicious Software Removal Tool from the Windows Update Web site or by using the Windows Update Automatic Updates functionality.</description>
</item><item>
    <title>MS08-010 : Cumulative Security Update for Internet Explorer (944533)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-010</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-010' target=_blank&gt;MS08-010&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Cumulative Security Update for Internet Explorer (944533)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;This critical security update resolves three privately reported and one publicly reported vulnerabilities. The most serious of the vulnerabilities could allow remote code execution if a user viewed a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</description>
</item><item>
    <title>MS08-008 : Vulnerability in OLE Automation Could Allow Remote Code Execution (947890)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-008</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-008' target=_blank&gt;MS08-008&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Vulnerability in OLE Automation Could Allow Remote Code Execution (947890)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;This critical security update resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE) Automation. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</description>
</item><item>
    <title>MS08-006 : Vulnerability in Internet Information Services Could Allow Remote Code Execution (942830)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-006</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-006' target=_blank&gt;MS08-006&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Vulnerability in Internet Information Services Could Allow Remote Code Execution (942830)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;This important update resolves a privately reported vulnerability in Internet Information Services (IIS). A remote code execution vulnerability exists in the way that IIS handles input to ASP Web pages. An attacker who successfully exploited this vulnerability could then perform actions on the IIS server with the same rights as the Worker Process Identity (WPI). The WPI is configured with Network Service account privileges by default. IIS servers with ASP pages whose application pools are configured with a WPI that uses an account with administrative privileges could be more seriously impacted than IIS servers whose application pool is configured with the default WPI settings.</description>
</item><item>
    <title>MS08-005 : Vulnerability in Internet Information Services Could Allow Elevation of Privilege (942831)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-005</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-005' target=_blank&gt;MS08-005&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Vulnerability in Internet Information Services Could Allow Elevation of Privilege (942831)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;This important update resolves a privately reported vulnerability in Internet Information Services (IIS). A local attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</description>
</item><item>
    <title>MS08-003 : Vulnerability in Active Directory Could Allow Denial of Service (946538)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-003</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-003' target=_blank&gt;MS08-003&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Vulnerability in Active Directory Could Allow Denial of Service (946538)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;The vulnerability could allow a denial of service condition. On Windows Server 2003 and Windows XP an attacker must have valid logon credentials to exploit this vulnerability. An attacker who successfully exploited this vulnerability could cause the system to stop responding or automatically restart.</description>
</item><item>
    <title>MS08-001 : Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (941644)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-001</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MS08-001' target=_blank&gt;MS08-001&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (941644)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;This critical security update resolves two privately reported vulnerabilities. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.</description>
</item><item>
    <title>MSWU-113 : Update for Windows XP (KB942840)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-113</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-113' target=_blank&gt;MSWU-113&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Update for Windows XP (KB942840)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;The new garbage collector can significantly improve the performance of applications that create many objects, such as Ajax-style Web applications. </description>
</item><item>
    <title>MSWU-112 : Update for Windows Mail Junk E-mail Filter [December 2007] (KB905866)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-112</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-112' target=_blank&gt;MSWU-112&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Update for Windows Mail Junk E-mail Filter [December 2007] (KB905866)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;This update keep Microsoft Windows Mail up-to-date about which e-mail messages should be considered junk e-mail, and about which messages may contain phishing content.</description>
</item><item>
    <title>MSWU-111 : December 2007 cumulative time zone update for Microsoft Windows operating systems(942763)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-111</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-111' target=_blank&gt;MSWU-111&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; December 2007 cumulative time zone update for Microsoft Windows operating systems(942763)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;The update also includes other DST-related changes, time zone-related changes, and settings-related changes. Some of these changes have occurred since the products that are listed in the &quot;Applies to&quot; section were originally released. 
</description>
</item><item>
    <title>MSWU-115 : Update for Windows Installer (927891)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-115</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-115' target=_blank&gt;MSWU-115&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Update for Windows Installer (927891)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;The update addresses the following issue:

Your system may appear to become unresponsive when Windows Update or Microsoft Update is scanning for updates that use Windows installer, and you may notice that the CPU usage for the svchost process is showing 100%.

When you try to install an update from Windows Update or from Microsoft Update, you experience the following symptoms:

Your system may appear to become unresponsive when Windows Update or Microsoft Update is scanning for updates that use Windows Installer.
 

You receive an access violation error in svchost.exe. This access violation stops the Server service and the Workstation service.
 

A memory leak occurs when Windows Update or Microsoft Update is scanning for updates that use Windows Installer.
 

Windows Update or Microsoft Update scans take a very long time, sometimes hours, to complete.</description>
</item><item>
    <title>MSWU-116 : Files are corrupted on a Windows Server 2003-based computer when you try to use the local UNC path to copy the files(KB911897)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-116</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWU-116' target=_blank&gt;MSWU-116&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Files are corrupted on a Windows Server 2003-based computer when you try to use the local UNC path to copy the files(KB911897)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;This patch resolves the following vulnerability...

You use a computer that is running Microsoft Windows Server 2003 with Service Pack 1 (SP1). The file that you copy to the share is then corrupted. The data corruption appears in the Server Message Block (SMB) header that is embedded in the data of the destination file.
Furthermore, only the destination file appears corrupted, not the source file. The content of the destination file shows the following characters:
FF 53 4D 42 2F
These characters translate to an &quot;SMB WRITE AndX&quot; request.
For example, this problem may occur when Microsoft CRM publishes changes to the local Web server by copying the files to the following folder:
\Server_NameC$InetpubWwwroot</description>
</item><item>
    <title>MSWD-003 : Definition update 1.16.2425.4 for Windows Defender (Engine update  1.1.2306.0)</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWD-003</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=MSWD-003' target=_blank&gt;MSWD-003&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Definition update 1.16.2425.4 for Windows Defender (Engine update  1.1.2306.0)&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Definitions are files that behave like an encyclopedia of known spyware and other potentially unwanted software. Because spyware is continually being developed, Windows Defender relies on up-to-date definitions to determine whether software that is trying to install, run, or change settings on the computer is potentially harmful.</description>
</item><item>
    <title>PQAG-001 : PatchQuest Agent</title>  
    <link>http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=PQAG-001</link>
    <description>&lt;br&gt;&lt;b&gt; BulletinID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///ms/show_ms_advisory_details.php?value=PQAG-001' target=_blank&gt;PQAG-001&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; PatchQuest Agent&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt; </description>
</item><item>
    <title>RHSA-2006:0742-01 : Critical: elinks security update</title>  
    <link>http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0742-01</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0742-01' target=_blank&gt;RHSA-2006:0742-01&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Critical: elinks security update&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Elinks is a text mode Web browser used from the command line that supports
rendering modern web pages.
&lt;br&gt;&lt;br&gt;
An arbitrary file access flaw was found in the Elinks SMB protocol handler.
A malicious web page could have caused Elinks to read or write files with
the permissions of the user running Elinks. (CVE-2006-5925)
&lt;br&gt;&lt;br&gt;
All users of Elinks are advised to upgrade to this updated package, which
resolves this issue by removing support for the SMB protocol from Elinks.
&lt;br&gt;&lt;br&gt;
Note: this issue did not affect the Elinks package shipped with Red Hat
Enterprise Linux 3, or the Links package shipped with Red Hat Enterprise
Linux 2.1.</description>
</item><item>
    <title>RHSA-2006:0738-01 : Low: openssh security update</title>  
    <link>http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0738-01</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0738-01' target=_blank&gt;RHSA-2006:0738-01&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Low: openssh security update&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;OpenSSH is OpenBSD's SSH (Secure SHell) protocol implementation. This
package includes the core files necessary for both the OpenSSH client and
server.
&lt;br&gt;&lt;br&gt;
An authentication flaw was found in OpenSSH's privilege separation monitor.
If it ever becomes possible to alter the behavior of the unprivileged
process when OpenSSH is using privilege separation, an attacker may then be
able to login without possessing proper credentials. (CVE-2006-5794)
&lt;br&gt;&lt;br&gt;
Please note that this flaw by itself poses no direct threat to OpenSSH
users. Without another security flaw that could allow an attacker to alter
the behavior of OpenSSH's unprivileged process, this flaw cannot be
exploited. There are currently no known flaws to exploit this behavior. 
However, we have decided to issue this erratum to fix this flaw to reduce
the security impact if an unprivileged process flaw is ever found.
&lt;br&gt;&lt;br&gt;
Users of openssh should upgrade to these updated packages, which contain a
backported patch to resolve this issue.</description>
</item><item>
    <title>RHSA-2006:0735-01 : Critical: thunderbird security update</title>  
    <link>http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0735-01</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0735-01' target=_blank&gt;RHSA-2006:0735-01&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Critical: thunderbird security update&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Mozilla Thunderbird is a standalone mail and newsgroup client.
&lt;br&gt;&lt;br&gt;
Several flaws were found in the way Thunderbird processes certain malformed
Javascript code. A malicious HTML mail message could cause the execution of
Javascript code in such a way that could cause Thunderbird to crash or
execute arbitrary code as the user running Thunderbird. (CVE-2006-5463,
CVE-2006-5747, CVE-2006-5748)
&lt;br&gt;&lt;br&gt;
Several flaws were found in the way Thunderbird renders HTML mail messages.
A malicious HTML mail message could cause the mail client to crash or
possibly execute arbitrary code as the user running Thunderbird.
(CVE-2006-5464)
&lt;br&gt;&lt;br&gt;
A flaw was found in the way Thunderbird verifies RSA signatures. For RSA
keys with exponent 3 it is possible for an attacker to forge a signature
that would be incorrectly verified by the NSS library. Thunderbird as
shipped trusts several root Certificate Authorities that use exponent 3. An
attacker could have created a carefully crafted SSL certificate which would
be incorrectly trusted when their site was visited by a victim. This flaw
was previously thought to be fixed in Thunderbird 1.5.0.7, however Ulrich
Kuehn discovered the fix was incomplete (CVE-2006-5462)
&lt;br&gt;&lt;br&gt;
Users of Thunderbird are advised to upgrade to this update, which contains
Thunderbird version 1.5.0.8 that corrects these issues.</description>
</item><item>
    <title>RHSA-2006:0734-01 : Critical: seamonkey security update</title>  
    <link>http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0734-01</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0734-01' target=_blank&gt;RHSA-2006:0734-01&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Critical: seamonkey security update&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;SeaMonkey is an open source Web browser, advanced email and newsgroup
client, IRC chat client, and HTML editor.
&lt;br&gt;&lt;br&gt;
Several flaws were found in the way SeaMonkey processes certain malformed
Javascript code. A malicious web page could cause the execution of
Javascript code in such a way that could cause SeaMonkey to crash or
execute arbitrary code as the user running SeaMonkey. (CVE-2006-5463,
CVE-2006-5747, CVE-2006-5748)
&lt;br&gt;&lt;br&gt;
Several flaws were found in the way SeaMonkey renders web pages. A
malicious web page could cause the browser to crash or possibly execute
arbitrary code as the user running SeaMonkey. (CVE-2006-5464)
&lt;br&gt;&lt;br&gt;
A flaw was found in the way SeaMonkey verifies RSA signatures. For RSA keys
with exponent 3 it is possible for an attacker to forge a signature that
would be incorrectly verified by the NSS library. SeaMonkey as shipped
trusts several root Certificate Authorities that use exponent 3. An
attacker could have created a carefully crafted SSL certificate which be
incorrectly trusted when their site was visited by a victim. This flaw was
previously thought to be fixed in SeaMonkey 1.0.5, however Ulrich Kuehn
discovered the fix was incomplete (CVE-2006-5462)
&lt;br&gt;&lt;br&gt;
Users of SeaMonkey are advised to upgrade to these erratum packages, which
contains SeaMonkey version 1.0.6 that corrects these issues.</description>
</item><item>
    <title>RHSA-2006:0733-02 : Critical: firefox security update</title>  
    <link>http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0733-02</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0733-02' target=_blank&gt;RHSA-2006:0733-02&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Critical: firefox security update&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Mozilla Firefox is an open source Web browser.
&lt;br&gt;&lt;br&gt;
Several flaws were found in the way Firefox processes certain malformed
Javascript code. A malicious web page could cause the execution of
Javascript code in such a way that could cause Firefox to crash or execute
arbitrary code as the user running Firefox. (CVE-2006-5463, CVE-2006-5747,
CVE-2006-5748)
&lt;br&gt;&lt;br&gt;
Several flaws were found in the way Firefox renders web pages. A malicious
web page could cause the browser to crash or possibly execute arbitrary
code as the user running Firefox. (CVE-2006-5464) 
&lt;br&gt;&lt;br&gt;
A flaw was found in the way Firefox verifies RSA signatures. For RSA keys
with exponent 3 it is possible for an attacker to forge a signature that
would be incorrectly verified by the NSS library. Firefox as shipped trusts
several root Certificate Authorities that use exponent 3. An attacker could
have created a carefully crafted SSL certificate which be incorrectly
trusted when their site was visited by a victim. This flaw was previously
thought to be fixed in Firefox 1.5.0.7, however Ulrich Kuehn discovered the
fix was incomplete (CVE-2006-5462)
&lt;br&gt;&lt;br&gt;
Users of Firefox are advised to upgrade to these erratum packages, which
contain Firefox version 1.5.0.8 that corrects these issues.</description>
</item><item>
    <title>RHSA-2006:0730-01 : Important: php security update</title>  
    <link>http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0730-01</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0730-01' target=_blank&gt;RHSA-2006:0730-01&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Important: php security update&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Web server. 
&lt;br&gt;&lt;br&gt;
The Hardened-PHP Project discovered an overflow in the PHP htmlentities()
and htmlspecialchars() routines.  If a PHP script used the vulnerable
functions to parse UTF-8 data, a remote attacker sending a carefully
crafted request could trigger the overflow and potentially execute
arbitrary code as the 'apache' user. (CVE-2006-5465) 
&lt;br&gt;&lt;br&gt;
Users of PHP should upgrade to these updated packages which contain a
backported patch to correct this issue.</description>
</item><item>
    <title>RHSA-2006:0729-01 : Moderate: ruby security update</title>  
    <link>http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0729-01</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0729-01' target=_blank&gt;RHSA-2006:0729-01&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Moderate: ruby security update&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Ruby is an interpreted scripting language for object-oriented programming.
&lt;br&gt;&lt;br&gt;
A flaw was discovered in the way Ruby's CGI module handles certain
multipart/form-data MIME data. If a remote attacker sends a specially
crafted multipart-form-data request, it is possible to cause the ruby
CGI script to enter an infinite loop, causing a denial of service.
(CVE-2006-5467)
&lt;br&gt;&lt;br&gt;
Users of Ruby should upgrade to these updated packages which contain
backported patches and are not vulnerable to these issues.</description>
</item><item>
    <title>RHSA-2006:0727-01 : Moderate: texinfo security update</title>  
    <link>http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0727-01</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0727-01' target=_blank&gt;RHSA-2006:0727-01&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Moderate: texinfo security update&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Texinfo is a documentation system that can produce both online information
and printed output from a single source file.
&lt;br&gt;&lt;br&gt;
A buffer overflow flaw was found in Texinfo's texindex command. An attacker
could construct a carefully crafted Texinfo file that could cause texindex
to crash or possibly execute arbitrary code when opened. (CVE-2006-4810)
&lt;br&gt;&lt;br&gt;
A flaw was found in the way Texinfo's texindex command creates temporary
files. A local user could leverage this flaw to overwrite files the user
executing texindex has write access to. (CVE-2005-3011)
&lt;br&gt;&lt;br&gt;
Users of Texinfo should upgrade to these updated packages which contain
backported patches and are not vulnerable to these issues.</description>
</item><item>
    <title>RHSA-2006:0726-01 : Moderate: wireshark security update</title>  
    <link>http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0726-01</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0726-01' target=_blank&gt;RHSA-2006:0726-01&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Moderate: wireshark security update&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Wireshark is a program for monitoring network traffic.
&lt;br&gt;&lt;br&gt;
Several flaws were found in Wireshark's HTTP, WBXML, LDAP, and XOT protocol
dissectors. Wireshark could crash or stop responding if it read a malformed
packet off the network. (CVE-2006-4805, CVE-2006-5468, CVE-2006-5469,
CVE-2006-5740)
&lt;br&gt;&lt;br&gt;
A single NULL byte heap based buffer overflow was found in Wireshark's MIME
Multipart dissector. Wireshark could crash or possibly execute arbitrary
arbitrary code as the user running Wireshark. (CVE-2006-4574)
&lt;br&gt;&lt;br&gt;
Users of Wireshark should upgrade to these updated packages containing
Wireshark version 0.99.4, which is not vulnerable to these issues.</description>
</item><item>
    <title>RHSA-2006:0725-01 : Moderate: qt security update</title>  
    <link>http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0725-01</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0725-01' target=_blank&gt;RHSA-2006:0725-01&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Moderate: qt security update&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Qt is a software toolkit that simplifies the task of writing and
maintaining GUI (Graphical User Interface) applications for the X Window
System.
&lt;br&gt;&lt;br&gt;
An integer overflow flaw was found in the way Qt handled certain pixmap
images. If an application linked against Qt created a pixmap image in a
certain way, it could lead to a denial of service or possibly allow the
execution of arbitrary code. (CVE-2006-4811)
&lt;br&gt;&lt;br&gt;
Users of Qt should upgrade to these updated packages, which contain a
backported patch to correct this issue.</description>
</item><item>
    <title>RHSA-2006:0719-01 : Moderate: nss_ldap security update</title>  
    <link>http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0719-01</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID :&lt;/b&gt; &lt;a href='http://secure.patchquest.com///redhat/show_redhat_advisory_details.php?value=RHSA-2006:0719-01' target=_blank&gt;RHSA-2006:0719-01&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title :&lt;/b&gt; Moderate: nss_ldap security update&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;nss_ldap is a set of C library extensions that allow X.500 and LDAP
directory servers to be used as primary sources for aliases, ethers,
groups, hosts, networks, protocols, users, RPCs, services, and shadow
passwords.
&lt;br&gt;&lt;br&gt;
A flaw was found in the way nss_ldap handled a PasswordPolicyResponse
control sent by an LDAP server. If an LDAP server responded to an
authentication request with a PasswordPolicyResponse control, it was
possible for an application using nss_ldap to improperly authenticate
certain users. (CVE-2006-5170)
&lt;br&gt;&lt;br&gt;
This flaw was only exploitable within applications which did not properly
process nss_ldap error messages. Only xscreensaver is currently known to
exhibit this behavior.
&lt;br&gt;&lt;br&gt;
All users of nss_ldap should upgrade to these updated packages, which
contain a backported patch that resolves this issue.</description>
</item><item>
    <title>DSA-1205-1 : New thttpd packages fix insecure temporary file creation</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA-1205-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA-1205-1' PatchQuest Security Alerts target=_blank&gt;DSA-1205-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New thttpd packages fix insecure temporary file creation&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Marco d'Itri discovered that thttpd, a small, fast and secure webserver,
makes use of insecure temporary files when its logfiles are rotated,
which might lead to a denial of service through a symlink attack.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) this problem has been fixed in
version 2.23beta1-3sarge2
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) this problem has been fixed in
version 2.23beta1-5
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your thttpd package.</description>
</item><item>
    <title>DSA 1204-1 : New ingo1 packages fix arbitrary shell command execution</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1204-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1204-1' PatchQuest Security Alerts target=_blank&gt;DSA 1204-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New ingo1 packages fix arbitrary shell command execution&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;It was discovered that the Ingo email filter rules manager performs 
insufficient escaping of user-provided data in created procmail rules
files, which allows the execution of arbitrary shell commands.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge), this problem has been fixed in
version 1.0.1-1sarge1.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid), this problem has been fixed in
version 1.1.2-1.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your ingo1 package.</description>
</item><item>
    <title>DSA 1203-1 : New libpam-ldap packages fix access control bypass</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1203-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1203-1' PatchQuest Security Alerts target=_blank&gt;DSA 1203-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New libpam-ldap packages fix access control bypass&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Steve Rigler discovered that the PAM module for authentication against
LDAP servers processes PasswordPolicyReponse control messages incorrectly,
which might lead to an attacker being able to login into a suspended
system account.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) this problem has been fixed in
version 178-1sarge3. Due to technical problems with the security
buildd infrastructure this update lacks a build for the Sun Sparc
architecture. It will be released as soon as the problems are resolved.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) this problem has been fixed in
version 180-1.2.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your libpam-ldap package.</description>
</item><item>
    <title>DSA 1202-1 : New screen packages fix arbitrary code execution</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1202-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1202-1' PatchQuest Security Alerts target=_blank&gt;DSA 1202-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New screen packages fix arbitrary code execution&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;'cstone' and Rich Felker discovered that specially crafted UTF-8 sequences
may lead an out of bands memory write when displayed inside the screen
terminal multiplexer, allowing denial of service and potentially the
execution of arbitrary code.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) this problem has been fixed in
version 4.0.2-4.1sarge1. Due to technical problems with the security
buildd infrastructure this update lacks a build for the Sun Sparc
architecture. It will be released as soon as the problems are resolved.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) this problem has been fixed in
version 4.0.3-0.1.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your screen package.</description>
</item><item>
    <title>DSA 1201-1 : New ethereal packages fix denial of service</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1201-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1201-1' PatchQuest Security Alerts target=_blank&gt;DSA 1201-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New ethereal packages fix denial of service&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Several remote vulnerabilities have been discovered in the Ethereal network
scanner. The Common Vulnerabilities and Exposures project identifies the
following problems:
&lt;br&gt;&lt;br&gt;
CVE-2005-4574
&lt;br&gt;&lt;br&gt;
    It was discovered that the MIME multipart dissector is vulnerable to
    denial of service caused by an off-by-one overflow.
&lt;br&gt;&lt;br&gt;
CVE-2006-4805
&lt;br&gt;&lt;br&gt;
    It was discovered that the XOT dissector is vulnerable to denial
    of service caused by memory corruption.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) these problems have been fixed in
version 0.10.10-2sarge9. Due to technical problems with the security
buildd infrastructure this update lacks builds for the hppa and sparc
architecture. They will be released as soon as the problems are resolved.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) these problems will be fixed soon.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your ethereal packages.</description>
</item><item>
    <title>DSA 1200-1 : New Qt packages fix integer overflow</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1200-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1200-1' PatchQuest Security Alerts target=_blank&gt;DSA 1200-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New Qt packages fix integer overflow&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;An integer overflow has been found in the pixmap handling routines in
the Qt GUI libraries.  This could allow an attacker to cause a denial of
service and possibly execute arbitrary code by providing a specially
crafted image file and inducing the victim to view it in an application
based on Qt.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge), this problem has been fixed in
version 3:3.3.4-3sarge1
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid), this problem has been fixed in
versions 3:3.3.7-1 and 4.2.1-1.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your qt-x11-free packages.</description>
</item><item>
    <title>DSA 1199-1 : New webmin packages fix input validation problems</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1199-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1199-1' PatchQuest Security Alerts target=_blank&gt;DSA 1199-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New webmin packages fix input validation problems&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Several vulnerabilities have been identified in webmin, a web-based
administration toolkit.
&lt;br&gt;&lt;br&gt;
CVE-2005-3912
 A format string vulnerability in miniserv.pl could allow an
 attacker to cause a denial of service by crashing the
 application or exhausting system resources, and could
 potentially allow arbitrary code execution.
&lt;br&gt;&lt;br&gt;
CVE-2006-3392
 Improper input sanitization in miniserv.pl could allow an
 attacker to read arbitrary files on the webmin host by providing
 a specially crafted URL path to the miniserv http server.
&lt;br&gt;&lt;br&gt;
CVE-2006-4542
 Improper handling of null characters in URLs in miniserv.pl
 could allow an attacker to conduct cross-site scripting attacks,
 read CGI program source code, list local directories, and
 potentially execute arbirary code.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge), these problems have been fixed in
version 1.180-3sarge1
&lt;br&gt;&lt;br&gt;
Webmin is not included in unstable (sid) or testing (etch), so these
problems are not present.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your webmin (1.180-3sarge1) package.</description>
</item><item>
    <title>DSA 1198-1 : New python2.3 packages fix arbitrary code execution</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1198-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1198-1' PatchQuest Security Alerts target=_blank&gt;DSA 1198-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New python2.3 packages fix arbitrary code execution&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Benjamin C. Wiley Sittler discovered that the repr() of the Python 
interpreter allocates insufficient memory when parsing UCS-4 Unicode
strings, which might lead to execution of arbitrary code through
a buffer overflow.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) this problem has been fixed in
version 2.3.5-3sarge2. Due to build problems this update lacks fixed
packages for the Alpha and Sparc architectures. Once they are sorted
out, fixed binaries will be released.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) this problem has been fixed in
version 2.3.5-16.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your Python 2.3 packages.</description>
</item><item>
    <title>DSA 1197-1 : New python2.4 packages fix arbitrary code execution</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1197-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1197-1' PatchQuest Security Alerts target=_blank&gt;DSA 1197-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New python2.4 packages fix arbitrary code execution&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Benjamin C. Wiley Sittler discovered that the repr() of the Python 
interpreter allocates insufficient memory when parsing UCS-4 Unicode
strings, which might lead to execution of arbitrary code through
a buffer overflow.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) this problem has been fixed in
version 2.4.1-2sarge1. Due to build problems this update lacks fixed
packages for the m68k architecture. Once they are sorted out, binaries
for m68k will be released.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) this problem has been fixed in
version 2.4.4-1.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your Python 2.4 packages.</description>
</item><item>
    <title>DSA 1196-1 : New clamav packages fix arbitrary code execution</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1196-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1196-1' PatchQuest Security Alerts target=_blank&gt;DSA 1196-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New clamav packages fix arbitrary code execution&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Several remote vulnerabilities have been discovered in the ClamAV malware
scan engine, which may lead to the execution of arbitrary code. The
Common Vulnerabilities and Exposures project identifies the following
problems:
&lt;br&gt;&lt;br&gt;
CVE-2006-4182
&lt;br&gt;&lt;br&gt;
    Damian Put discovered a heap overflow error in the script to rebuild
    PE files, which could lead to the execution of arbitrary code.
&lt;br&gt;&lt;br&gt;
CVE-2006-5295
&lt;br&gt;&lt;br&gt;
    Damian Put discovered that missing input sanitising in the CHM
    handling code might lead to denial of service.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) these problems have been fixed in
version 0.84-2.sarge.11. Due to technical problems with the build host
this update lacks a build for the Sparc architecture. It will be
provided soon.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) these problems have been fixed in
version 0.88.5-1.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your clamav packages.</description>
</item><item>
    <title>DSA 1195-1 : new openssl096 packages fix denial of service</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1195-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1195-1' PatchQuest Security Alerts target=_blank&gt;DSA 1195-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;new openssl096 packages fix denial of service&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Multiple vulnerabilities have been discovered in the OpenSSL
cryptographic software package that could allow an attacker to launch
a denial of service attack by exhausting system resources or crashing
processes on a victim's computer.
&lt;br&gt;&lt;br&gt;
CVE-2006-3738
        Tavis Ormandy and Will Drewry of the Google Security Team
        discovered a buffer overflow in SSL_get_shared_ciphers utility
        function, used by some applications such as exim and mysql.  An
        attacker could send a list of ciphers that would overrun a
        buffer.
&lt;br&gt;&lt;br&gt;
CVE-2006-4343
        Tavis Ormandy and Will Drewry of the Google Security Team
        discovered a possible DoS in the sslv2 client code.  Where a
        client application uses OpenSSL to make a SSLv2 connection to
        a malicious server that server could cause the client to
        crash.
&lt;br&gt;&lt;br&gt;
CVE-2006-2940
        Dr S N Henson of the OpenSSL core team and Open Network
        Security recently developed an ASN1 test suite for NISCC
        (www.niscc.gov.uk). When the test suite was run against
        OpenSSL a DoS was discovered.
&lt;br&gt;&lt;br&gt;
        Certain types of public key can take disproportionate amounts
        of time to process. This could be used by an attacker in a
        denial of service attack.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) these problems have been fixed in
version 0.9.6m-1sarge4
&lt;br&gt;&lt;br&gt;
This package exists only for compatibility with older software, and is
not present in the unstable or testing branches of Debian.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your openssl096 package.  Note that
services linking against the openssl shared libraries will need to be
restarted. Common examples of such services include most Mail
Transport Agents, SSH servers, and web servers.</description>
</item><item>
    <title>DSA 1194-1 : New libwmf packages fix arbitrary code execution</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1194-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1194-1' PatchQuest Security Alerts target=_blank&gt;DSA 1194-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New libwmf packages fix arbitrary code execution&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;It was discovered that an integer overflow in libwmf, the library to read
Windows Metafile Format files, can be exploited to execute arbitrary code
if a crafted WMF file is parsed.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) this problem has been fixed in
version 0.2.8.3-2sarge1.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) this problem has been fixed in
version 0.2.8.4-2.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your libwmf package.</description>
</item><item>
    <title>DSA 1193-1 : New XFree86 packages fix several vulnerabilities</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1193-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1193-1' PatchQuest Security Alerts target=_blank&gt;DSA 1193-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New XFree86 packages fix several vulnerabilities&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Several vulnerabilities have been discovered in the X Window System,
which may lead to the execution of arbitrary code or denial of service.
The Common Vulnerabilities and Exposures project identifies the
following problems:
&lt;br&gt;&lt;br&gt;
CVE-2006-3467
&lt;br&gt;&lt;br&gt;
    Chris Evan discovered an integer overflow in the code to handle
    PCF fonts, which might lead to denial of service if a malformed
    font is opened.
&lt;br&gt;&lt;br&gt;
CVE-2006-3739
&lt;br&gt;&lt;br&gt;
    It was discovered that an integer overflow in the code to handle
    Adobe Font Metrics might lead to the execution of arbitrary code.
&lt;br&gt;&lt;br&gt;
CVE-2006-3740
&lt;br&gt;&lt;br&gt;
    It was discovered that an integer overflow in the code to handle
    CMap and CIDFont font data might lead to the execution of arbitrary
    code.
&lt;br&gt;&lt;br&gt;
CVE-2006-4447
&lt;br&gt;&lt;br&gt;
    The XFree86 initialization code performs insufficient checking of
    the return value of setuid() when dropping privileges, which might
    lead to local privilege escalation.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) these problems have been fixed in
version 4.3.0.dfsg.1-14sarge2. This release lacks builds for the
Motorola 680x0 architecture, which failed due to diskspace constraints
on the build host. They will be released once this problem has been
resolved.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) these problems have been fixed
in version 1:1.2.2-1 of libxfont and version 1:1.0.2-9 of xorg-server.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your XFree86 packages.</description>
</item><item>
    <title>DSA 1192-1 : New Mozilla packages fix several vulnerabilities</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1192-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1192-1' PatchQuest Security Alerts target=_blank&gt;DSA 1192-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New Mozilla packages fix several vulnerabilities&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;CVE-2006-4568 CVE-2006-4570 CVE-2006-4571
BugTraq ID     : 20042
&lt;br&gt;&lt;br&gt;
Several security related problems have been discovered in Mozilla and
derived products.  The Common Vulnerabilities and Exposures project
identifies the following vulnerabilities:
&lt;br&gt;&lt;br&gt;
CVE-2006-2788
&lt;br&gt;&lt;br&gt;
    Fernando Ribeiro discovered that a vulnerability in the getRawDER
    functionallows remote attackers to cause a denial of service
    (hang) and possibly execute arbitrary code.
&lt;br&gt;&lt;br&gt;
CVE-2006-4340
&lt;br&gt;&lt;br&gt;
    Daniel Bleichenbacher recently described an implementation error
    in RSA signature verification that cause the application to
    incorrectly trust SSL certificates.
&lt;br&gt;&lt;br&gt;
CVE-2006-4565, CVE-2006-4566
&lt;br&gt;&lt;br&gt;
    Priit Laes reported that that a JavaScript regular expression can
    trigger a heap-based buffer overflow which allows remote attackers
    to cause a denial of service and possibly execute arbitrary code.
&lt;br&gt;&lt;br&gt;
CVE-2006-4568
&lt;br&gt;&lt;br&gt;
    A vulnerability has been discovered that allows remote attackers
    to bypass the security model and inject content into the sub-frame
    of another site.
&lt;br&gt;&lt;br&gt;
CVE-2006-4570
&lt;br&gt;&lt;br&gt;
    Georgi Guninski demonstrated that even with JavaScript disabled in
    mail (the default) an attacker can still execute JavaScript when a
    mail message is viewed, replied to, or forwarded.
&lt;br&gt;&lt;br&gt;
CVE-2006-4571
&lt;br&gt;&lt;br&gt;
    Multiple unspecified vulnerabilities in Firefox, Thunderbird and
    SeaMonkey allow remote attackers to cause a denial of service,
    corrupt memory, and possibly execute arbitrary code.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) these problems have been fixed in
version 1.7.8-1sarge7.3.1.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your Mozilla package.</description>
</item><item>
    <title>DSA 1191-1 : New Mozilla Thunderbird packages fix several vulnerabilities</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1191-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1191-1' PatchQuest Security Alerts target=_blank&gt;DSA 1191-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New Mozilla Thunderbird packages fix several vulnerabilities&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;CVE-2006-4568 CVE-2006-4570 CVE-2006-4571
BugTraq ID     : 20042
&lt;br&gt;&lt;br&gt;
Several security related problems have been discovered in Mozilla and
derived products such as Mozilla Thunderbird.  The Common
Vulnerabilities and Exposures project identifies the following
vulnerabilities:
&lt;br&gt;&lt;br&gt;
CVE-2006-2788
&lt;br&gt;&lt;br&gt;
    Fernando Ribeiro discovered that a vulnerability in the getRawDER
    functionallows remote attackers to cause a denial of service
    (hang) and possibly execute arbitrary code.
&lt;br&gt;&lt;br&gt;
CVE-2006-4340
&lt;br&gt;&lt;br&gt;
    Daniel Bleichenbacher recently described an implementation error
    in RSA signature verification that cause the application to
    incorrectly trust SSL certificates.
&lt;br&gt;&lt;br&gt;
CVE-2006-4565, CVE-2006-4566
&lt;br&gt;&lt;br&gt;
    Priit Laes reported that that a JavaScript regular expression can
    trigger a heap-based buffer overflow which allows remote attackers
    to cause a denial of service and possibly execute arbitrary code.
&lt;br&gt;&lt;br&gt;
CVE-2006-4568
&lt;br&gt;&lt;br&gt;
    A vulnerability has been discovered that allows remote attackers
    to bypass the security model and inject content into the sub-frame
    of another site.
&lt;br&gt;&lt;br&gt;
CVE-2006-4570
&lt;br&gt;&lt;br&gt;
    Georgi Guninski demonstrated that even with JavaScript disabled in
    mail (the default) an attacker can still execute JavaScript when a
    mail message is viewed, replied to, or forwarded.
&lt;br&gt;&lt;br&gt;
CVE-2006-4571
&lt;br&gt;&lt;br&gt;
    Multiple unspecified vulnerabilities in Firefox, Thunderbird and
    SeaMonkey allow remote attackers to cause a denial of service,
    corrupt memory, and possibly execute arbitrary code.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) these problems have been fixed in
version 1.0.2-2.sarge1.0.8c.1.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) these problems have been fixed in
version 1.5.0.7-1.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your Mozilla Thunderbird packages.</description>
</item><item>
    <title>DSA 1190-1 : New maxdb-7.5.00 packages fix execution of arbitrary code</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1190-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1190-1' PatchQuest Security Alerts target=_blank&gt;DSA 1190-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New maxdb-7.5.00 packages fix execution of arbitrary code&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Oliver Karow discovered that the WebDBM frontend of the MaxDB database
performs insufficient sanitising of requests passed to it, which might
lead to the execution of arbitrary code.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) this problem has been fixed in
version 7.5.00.24-4.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) this problem will be fixed soon.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your maxdb-7.5.00 package.</description>
</item><item>
    <title>DSA 1189-1 : New openssh-krb5 packages fix denial of service and potential execution of arbitrary code</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1189-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1189-1' PatchQuest Security Alerts target=_blank&gt;DSA 1189-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New openssh-krb5 packages fix denial of service and potential execution of arbitrary code&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;Several remote vulnerabilities have been discovered in OpenSSH, a free
implementation of the Secure Shell protocol, which may lead to denial of
service and potentially the execution of arbitrary code. The Common
Vulnerabilities and Exposures project identifies the following problems:
&lt;br&gt;&lt;br&gt;
CVE-2006-4924
&lt;br&gt;&lt;br&gt;
    Tavis Ormandy of the Google Security Team discovered a denial of
    service vulnerability in the mitigation code against complexity
    attacks, which might lead to increased CPU consumption until a
    timeout is triggered. This is only exploitable if support for 
    SSH protocol version 1 is enabled.
&lt;br&gt;&lt;br&gt;
CVE-2006-5051
&lt;br&gt;&lt;br&gt;
    Mark Dowd discovered that insecure signal handler usage could
    potentially lead to execution of arbitrary code through a double
    free. The Debian Security Team doesn't believe the general openssh
    package without Kerberos support to be exploitable by this issue.
    However, due to the complexity of the underlying code we will
    issue an update to rule out all eventualities.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) these problems have been fixed in
version 3.8.1p1-7sarge1.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) these problems have been fixed in
version 4.3p2-4 of openssh. openssh-krb5 will soon be converted towards
a transitional package against openssh.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your openssh-krb5 packages.</description>
</item><item>
    <title>DSA 1188-1 : New mailman packages fix several problems</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1188-1</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1188-1' PatchQuest Security Alerts target=_blank&gt;DSA 1188-1&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New mailman packages fix several problems&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;BugTraq ID     : 19831
&lt;br&gt;&lt;br&gt;
Several security related problems have been discovered in mailman, the
web-based GNU mailing list manager.  The Common Vulnerabilities and
Exposures project identifies the following problems:
&lt;br&gt;&lt;br&gt;
CVE-2006-3636
&lt;br&gt;&lt;br&gt;
    Moritz Naumann discovered several cross-site scripting problems
    that could allow remote attackers to inject arbitrary web script
    or HTML.
&lt;br&gt;&lt;br&gt;
CVE-2006-4624
&lt;br&gt;&lt;br&gt;
    Moritz Naumann discovered that a remote attacker can inject
    arbitrary strings into the logfile.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) this problem has been fixed in
version 2.1.5-8sarge5.
&lt;br&gt;&lt;br&gt;
For the unstable distribution (sid) this problem has been fixed in
version 2.1.8-3.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your mailman package.</description>
</item><item>
    <title>DSA 1185-2 : New openssl packages fix arbitrary code execution</title> 
    <link>http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1185-2</link>
    <description>&lt;br&gt;&lt;b&gt;AdvisoryID : &lt;/b&gt;&lt;a href='http://secure.patchquest.com///debian/show_debian_advisory_details.php?value=DSA 1185-2' PatchQuest Security Alerts target=_blank&gt;DSA 1185-2&lt;/a&gt;&lt;br&gt;&lt;b&gt;Title : &lt;/b&gt;New openssl packages fix arbitrary code execution&lt;br&gt;&lt;br&gt;&lt;b&gt;Summary : &lt;/b&gt;&lt;br&gt;The fix used to correct CVE-2006-2940 introduced code that could lead to
the use of uninitialized memory.  Such use is likely to cause the
application using the openssl library to crash, and has the potential to
allow an attacker to cause the execution of arbitrary code.
&lt;br&gt;&lt;br&gt;
For the stable distribution (sarge) these problems have been fixed in
version 0.9.7e-3sarge4.
&lt;br&gt;&lt;br&gt;
For the unstable and testing distributions (sid and etch,
respectively), these problems will be fixed in version 0.9.7k-3 of the
openssl097 compatibility libraries, and version 0.9.8c-3 of the
openssl package.
&lt;br&gt;&lt;br&gt;
We recommend that you upgrade your openssl package.  Note that
services linking against the openssl shared libraries will need to be
restarted. Common examples of such services include most Mail
Transport Agents, SSH servers, and web servers.</description>
</item></channel>
</rss>