Report an Incident

If you are a CNI organisation and you have encountered or suspect a cyber threat, please complete and return an Incident Reporting Form.

All incident reports provided to the CCIP are treated in the strictest of confidence. Please see our Confidentiality Charter for more details. Read More


New at CCIP

Current e-Bulletin The CCIP e-Bulletin provides a snapshot of security related news
Read More


New Zealand Government Website

May 2006

The following table includes the Vulnerability Alerts for the month.
Note: These links reference external sites. CCIP can not accept responsibility for outdated links or such links contents.
Reference Description Date
Debian
kernel-source-2.4.17 -- several vulnerabilities
31/05/06
Ubuntu
nagios vulnerability
31/05/06
Mandriva
Updated mpg123 packages fix DoS vulnerability
30/05/06
Symantec
AntiVirus and Client Security Remote Buffer Overflow Vulnerability
29/05/06
Docebo
Multiple File Inclusion Vulnerabilities
25/05/06
SGI
Advanced Linux Environment Multiple Updates
25/05/06
UnixWare
update for Sendmail
24/05/06
Debian
update for nagios
24/05/06
HP
Tru64 UNIX Firefox/Mozilla Application Suite Vulnerability
24/05/06
HP-UX
Motif Applications libXpm Image Decoding Vulnerabilities
24/05/06
Suse
Updates for Multiple Packages
23/05/06
Secunia
Microsoft Word Zero Day Exploit
22/05/06
Novell
Novell eDirectory iMonitor Unspecified Buffer Overflow Vulnerability
19/05/06
Hitachi
Hitachi EUR Unspecified SQL Injection Vulnerability
18/05/06
Sun
Sun Java System Directory Server Authentication Bypass
18/05/06
FreeFTPd
FreeFTPd SFTP Key Exchange Algorithm String Buffer Overflow
18/05/06
Adder
AdderLink IP Unspecified VNC Vulnerability
17/05/06
Nagios
Nagios Content-Length Integer Overflow Vulnerability
17/05/06
RealVNC
RealVNC Password Authentication Bypass Vulnerability
16/05/06
SUSE
SUSE Updates for Multiple Packages
16/05/06
Raydium
Raydium Multiple Vulnerabilities
16/05/06
GNUnet
GNUnet Empty UDP Datagram Denial of Service Vulnerability
16/05/06
Secunia
FreeSSHd Key Exchange Algorithm String Buffer Overflow
15/05/06
Apple
Mac OS X Security Update Fixes Multiple Vulnerabilities
15/05/06
Apple
QuickTime 7.1 update fixes multiple buffer overflow vulnerabilities
12/05/06
Adobe
Dreamweaver Server Behavior SQL Injection vulnerability
12/05/06
Verisign
I-Nav ActiveX Control Code Execution Vulnerability
12/05/06
Mandriva
Updated xine-ui packages fix format string vulnerabilities
12/05/06
redhat
tar security update
11/05/06
Novell
Security fix for NDPS/iPrint module DPRPCNLM.NLM
10/05/06
Microsoft
Vulnerabilities in Macromedia Flash Player from Adobe Could Allow Remote Code Execution
10/05/06
Microsoft
Vulnerability in Microsoft Distributed Transaction Coordinator Could Allow Denial of Service
10/05/06
Microsoft
Vulnerability in Microsoft Exchange Could Allow Remote Code Execution
10/05/06
redhat
ruby security update
10/05/06
Linux Kernel
Multiple vulnerabilities in Linux SCTP 2.6.16
10/05/06
Sophos
Sophos Anti-Virus Cabinet File Processing Memory Corruption
10/05/06
Samba
rsync 2.6.8 release fixes buffer overflow in extended attribute support
09/05/06
Cisco
Response to PIX/ASA/FWSM Websense/N2H2 Content Filter Bypass
09/05/06
AWStats
AWStats "migrate" Shell Command Injection Vulnerability
09/05/06
Debian
cgiirc -- buffer overflows
09/05/06
Nagios
Nagios Content-Length Handling Buffer Overflow Vulnerability
09/05/06
UNIRAS
Multiple patches for IBM Tivoli Directory Server, Tivoli Identity Manager and Websphere Application Server
08/05/06
Computer Associates
Important Security Notice for CAIRIM LMP for z/OS
08/05/06
Kerio
Kerio WinRoute Firewall Protocol Inspection Denial of Service
08/05/06
Sun
Security Vulnerability in the Xorg(1) Version of the Render Extension
08/05/06
PHP
PHP Multiple Unspecified Vulnerabilities
08/05/06
Firefox
Security Advisory 2006-30
04/05/06
HP
HP Oracle for OpenView Multiple Vulnerabilities
01/05/06