[SECURITY] [DSA 2850-1] libyaml security update

2014-02-03 Thread Salvatore Bonaccorso
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-2850-1 secur...@debian.org http://www.debian.org/security/ Salvatore Bonaccorso January 31, 2014

CVE-2014-1213 - Denial of Service in Sophos Anti Virus

2014-02-03 Thread advisories
Vulnerability title: Denial of Service in Sophos Anti Virus CVE: CVE-2014-1213 Vendor: Sophos Product: Anti Virus Version: 10.0.11/Engine 3.48.x Reported by: Graham Sutherland Details: The following system objects do not have access control lists (ACLs) set, thus allowing any user to access and

[SECURITY] [DSA 2851-1] drupal6 security update

2014-02-03 Thread Salvatore Bonaccorso
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-2851-1 secur...@debian.org http://www.debian.org/security/ Salvatore Bonaccorso February 02, 2014

Security advisory, LedgerSMB 1.3.0-1.3.36

2014-02-03 Thread Chris Travers
Security Advisory: LedgerSMB 1.3.36, Improper Logout on Some Browsers Severity: Low (cvssv2 base score: 3.6, total 0.5) Remotely Exploitable: No Complexity of Attack: High Impact: Relatively low. Prerequisite for Attack: Physical Access to Previously Logged In Browser, so high complexity in