[SECURITY] [DSA 2414-1] fex security update

2012-02-22 Thread Nico Golde
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2413-1 secur...@debian.org http://www.debian.org/security/Nico Golde February 21, 2012

Multiple security vulnerabilities in Tremulous 1.1.0, GPP1, and unofficial MG and TJW engines

2012-02-22 Thread Simon McVittie
Background == Tremulous is a team-based FPS game with RTS elements. Its engine and game logic are based on the GPL source release of the Quake III Arena engine and game logic by id Software. The de facto upstream developer of the Quake III engine is now another fork, ioquake3; in

[ MDVSA-2012:022 ] libpng

2012-02-22 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2012:022 http://www.mandriva.com/security/

Multiple XSS in Chyrp

2012-02-22 Thread advisory
Advisory ID: HTB23073 Product: Chyrp Vendor: Chyrp Vulnerable Version(s): 2.5b1 and probably prior Tested Version: 2.5b1 Vendor Notification: 1 February 2012 Vendor Patch: 2 February 2012 Public Disclosure: 22 February 2012 Vulnerability Type: Cross Site Scripting (XSS) CVE Reference(s):

[ MDVSA-2012:023 ] libxml2

2012-02-22 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2012:023 http://www.mandriva.com/security/