[SECURITY] [DSA 2925-1] rxvt-unicode security update

2014-05-08 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2925-1 secur...@debian.org http://www.debian.org/security/Moritz Muehlenhoff May 08, 2014

Directory Traversal Vulnerability in VMTurbo Operations Manager 4.5 or earlier

2014-05-08 Thread jpecou
Product: VM Turbo Operations Manager Vendor: VM Turbo Vulnerable Version(s): 4.5.x earlier Tested Version: 4.0 Advisory Publication: April 11, 2014 Vendor Notification: April 11, 2014 Public Disclosure: May 8, 2014 Vulnerability Type: Directory Traversal Discovered and Provided: (Jamal Pecou) S

[ MDVSA-2014:083 ] mediawiki

2014-05-08 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:083 http://www.mandriva.com/en/support/security/ __

[ MDVSA-2014:082 ] python-imaging

2014-05-08 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:082 http://www.mandriva.com/en/support/security/ __

[ MDVSA-2014:080 ] openssl

2014-05-08 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:080 http://www.mandriva.com/en/support/security/ __

[ MDVSA-2014:081 ] apache-mod_security

2014-05-08 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:081 http://www.mandriva.com/en/support/security/ __

[security bulletin] HPSBMU02935 rev.3 - HP LoadRunner Virtual User Generator, Remote Code Execution, Disclosure of information

2014-05-08 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c03969437 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c03969437 Version: 3 HPSBMU02935

[RT-SA-2014-003] Metadata Information Disclosure in OrbiTeam BSCW

2014-05-08 Thread RedTeam Pentesting GmbH
Advisory: Metadata Information Disclosure in OrbiTeam BSCW RedTeam Pentesting discovered an information disclosure vulnerability in OrbiTeam's BSCW collaboration software. An unauthenticated attacker can disclose metadata about internal objects which are stored in BSCW. Details === Product:

SEC Consult SA-20140508-0 :: Multiple critical vulnerabilities in AVG Remote Administration

2014-05-08 Thread SEC Consult Vulnerability Lab
SEC Consult Vulnerability Lab Security Advisory < 20140508-0 > === title: Multiple critical vulnerabilities product: AVG Remote Administration vulnerable version: all - except issue #2