[slackware-security] mozilla-firefox (SSA:2011-174-01)

2011-06-29 Thread Slackware Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 [slackware-security] mozilla-firefox (SSA:2011-174-01) New mozilla-firefox packages are available for Slackware 13.0, 13.1, 13.37, and -current to fix security issues. Here are the details from the Slackware 13.37 ChangeLog:

Off-by-one in Sybase Advantage Server 10.0.0.3

2011-06-29 Thread Luigi Auriemma
### Luigi Auriemma Application: Sybase Advantage Server http://www.sybase.com/products/databasemanagement/advantagedatabaseserver Versions: = 10.0.0.3 Platforms:Windows,

APPLE-SA-2011-06-28-1 Java for Mac OS X 10.6 Update 5

2011-06-29 Thread Apple Product Security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 APPLE-SA-2011-06-28-1 Java for Mac OS X 10.6 Update 5 Java for Mac OS X 10.6 Update 5 is now available and addresses the following: Java Available for: Mac OS X v10.6.6 and later, Mac OS X Server v10.6.6 and later Impact: Multiple vulnerabilities

XSS in FlatPress

2011-06-29 Thread advisory
Vulnerability ID: HTB23022 Reference: http://www.htbridge.ch/advisory/xss_in_flatpress.html Product: FlatPress Vendor: Edoardo Vacchi ( http://flatpress.org ) Vulnerable Version: 0.1010.1 and probably prior Tested on: 0.1010.1 Vendor Notification: 07 June 2011 Vulnerability Type: XSS (Cross

Re: Perfect PDF products distributed with vulnerable MSVC++ libraries

2011-06-29 Thread Jeffrey Walton
On Tue, Jun 21, 2011 at 7:22 AM, Brad Hards br...@frogmouth.net wrote: On Sunday 19 June 2011 11:37:33 Stefan Kanthak wrote: soft Xpansion www.soft-xpansion.com distributes their (freeware) products Perfect PDF 7 Master and Perfect PDF 7 Reader (the current files are dated 2011-05-10) with