Current e-BulletinThe CCIP e-Bulletin provides a snapshot of security related news.
Read More
Latest Information Note VoIP. This report outlines characteristics and history of VoIP.
Read More
New Zealand Goverment

October 2009

The following table includes the Vulnerability Alerts for the month.

Note: These links reference external sites. CCIP can not accept responsibility for outdated links or such links contents.
Reference Description Date
Debian
Debian update for libhtml-parser-perl
31/10/09
Red Hat
Red Hat update for pidgin
31/10/09
Red Hat
Red Hat update for pidgin
31/10/09
F-Secure
F-Secure Products PDF Handling Security Bypass
30/10/09
Novell
Novell eDirectory Multiple Vulnerabilities
30/10/09
Red Hat
Fedora update for firefox
30/10/09
Microsoft
Microsoft Products GDI+ Multiple Vulnerabilities
30/10/09
OpenBSD
OpenBSD "ip_ctloutput()" and "ip6_ctloutput()" NULL Pointer Dereference
30/10/09
Slackware Linux
Slackware update for xpdf
30/10/09
Debian
Debian update for expat
30/10/09
Debian
Debian update for xulrunner
30/10/09
Red Hat
Fedora update for xulrunner
30/10/09
Microsoft
Microsoft Office Web Components Multiple Vulnerabilities
29/10/09
Opera Software
Opera Multiple Vulnerabilities
29/10/09
Red Hat
Red Hat update for firefox
28/10/09
Red Hat
Red Hat update for seamonkey
28/10/09
Sun Microsystems
Sun Solaris Trusted Extensions Policy Security Bypass
28/10/09
McAfee
McAfee Products PDF and TAR Handling Security Bypass
28/10/09
Red Hat
Red Hat update for samba
28/10/09
VMware
VMware Products Guest Privilege Escalation Vulnerability
28/10/09
VMware
VMware Products Directory Traversal File Disclosure Vulnerability
28/10/09
Red Hat
Red Hat update for samba
28/10/09
Mozilla Organization
Mozilla SeaMonkey Multiple Vulnerabilities
28/10/09
Mozilla Organization
Mozilla Firefox Multiple Vulnerabilities
28/10/09
Mozilla Organization
Mozilla Firefox Temporary File Download Manipulation Security Issue
28/10/09
Red Hat
Fedora update for python-markdown2
28/10/09
Red Hat
Fedora update for systemtap
28/10/09
Debian
Debian update for nginx
27/10/09
Red Hat
Fedora update for sahana
27/10/09
Red Hat
Fedora update for poppler
27/10/09
Red Hat
Fedora update for BackupPC
27/10/09
Red Hat
Fedora update for wordpress
27/10/09
Red Hat
Fedora update for jasper
27/10/09
Aruba Networks
Aruba Mobility Controller 802.11 Association Request Denial of Service
27/10/09
Red Hat
Fedora update for kernel
27/10/09
IBM
IBM Lotus Connections Mobile Activities Cross-Site Scripting
27/10/09
SuSE
SUSE Update for Multiple Packages
27/10/09
SuSE
SUSE update for apache2 and libapr1
27/10/09
Novell
SUSE update for acroread and acroread_ja
27/10/09
Sun Microsystems
Sun Java System Web Server Unspecified Buffer Overflow
27/10/09
Perl.org
Perl UTF-8 Denial of Service Vulnerability
27/10/09
Debian
Debian update for linux-2.6
27/10/09
Debian
Debian update for advi
27/10/09
Debian
Debian update for mimetex
27/10/09
Gentoo
Gentoo update for acroread
27/10/09
Debian
Debian update for smarty
27/10/09
Debian
Debian update for phpmyadmin
27/10/09
Debian
Debian update for kdelibs
27/10/09
Red Hat
Red Hat update for kernel
27/10/09
Debian
Debian update for mapserver
27/10/09
Gentoo
Gentoo update for pidgin
27/10/09
Canonical Ltd.
Ubuntu update for poppler
27/10/09
IBM
IBM HTTP Server "mod_proxy_ftp" Two Vulnerabilities
27/10/09
HP
HP-UX Apache Web Server Suite Tomcat Multiple Vulnerabilities
22/10/09
IBM
IBM OS/400 HTTP Server mod_proxy Denial of Service
22/10/09
Research In Motion
RIM TeamOn Import Object ActiveX Control Buffer Overflow Vulnerability
22/10/09
Research In Motion
BlackBerry Desktop Software FlexNET Connect ActiveX Control Vulnerability
22/10/09
Research In Motion
BlackBerry Application Web Loader ActiveX Control Buffer Overflow
22/10/09
Oracle
Oracle Communications Order and Service Management Unspecified Vulnerability
22/10/09
BEA
Oracle BEA Products Multiple Vulnerabilities
21/10/09
Oracle
Oracle Application Server / Business Intelligence Multiple Vulnerabilities
21/10/09
Oracle
Oracle Database Multiple Vulnerabilities
21/10/09
Oracle
Oracle E-Business Suite Multiple Vulnerabilities
21/10/09
Red Hat
Fedora update for pidgin
21/10/09
Gentoo
Gentoo update for wget
21/10/09
Red Hat
Fedora update for xpdf
21/10/09
SuSE
SUSE update for MozillaFirefox
21/10/09
Blue Coat Systems
Blue Coat ProxySG TCP Implementation Denial of Service Vulnerabilities
21/10/09
Blue Coat Systems
Blue Coat Director TCP Implementation Denial of Service Vulnerability
21/10/09
IBM
IBM Rational AppScan Help Pages Cross-Site Scripting Vulnerability
21/10/09
IBM
IBM Installation Manager "iim" URI Handling Argument Injection
21/10/09
Debian
Debian update for bugzilla
21/10/09
IBM
IBM HTTP Server Apache Portable Runtime Integer Overflows
21/10/09
IBM
IBM Rational RequisitePro ReqWebHelp Cross-Site Scripting
21/10/09
IBM
IBM Rational RequisitePro ReqWebHelp Cross-Site Scripting
21/10/09
VMware
VMware Multiple Products Tomcat Vulnerabilities
21/10/09
VMware
VMware Products DHCP and JRE Multiple Vulnerabilities
21/10/09
Debian
Debian update for camlimages
17/10/09
Red Hat
Fedora update for perl-Net-OAuth
16/10/09
Sun Microsystems
Sun Solaris libpng Interlaced Images Information Disclosure
16/10/09
Red Hat
Fedora update for kernel
16/10/09
Red Hat
Red Hat update for kdegraphics
16/10/09
Red Hat
Red Hat update for kdegraphics
16/10/09
Red Hat
Fedora update for Django
16/10/09
Red Hat
Fedora update for phpMyAdmin
16/10/09
Red Hat
Red Hat update for cups
16/10/09
Red Hat
Red Hat update for xpdf
16/10/09
Red Hat
Red Hat update for gpdf
16/10/09
Debian
Debian update for mysql-ocaml
16/10/09
Red Hat
Red Hat update for xpdf
16/10/09
Red Hat
Red Hat update for poppler
16/10/09
Debian
Debian update for postgresql-ocaml
16/10/09
Debian
Debian update for pygresql
16/10/09
Red Hat
Red Hat update for java-1.4.2-ibm
15/10/09
Red Hat
Red Hat update for acroread
15/10/09
Sun Microsystems
Sun Solaris ZFS File Ownership Modification Security Issue
15/10/09
Cisco
Cisco Unified Presence Denial of Service Vulnerabilities
15/10/09
SuSE
SUSE Update for Multiple Packages
15/10/09
Sun Microsystems
Sun Solaris and Java Enterprise System Network Security Services Vulnerability
15/10/09
Debian
Debian update for samba
14/10/09
Red Hat
Fedora update for drupal-service_links
14/10/09
Red Hat
Fedora update for dnsmasq
14/10/09
Red Hat
Fedora update for dopewars
14/10/09
Red Hat
Fedora update for deltarpm
14/10/09
Adobe Systems
Adobe Reader/Acrobat Arbitrary Multiple Vulnerabilities
14/10/09
Microsoft
Microsoft Products GDI+ Multiple Vulnerabilities
14/10/09
Microsoft
Microsoft Windows Privilege Escalation and Denial of Service
14/10/09
Microsoft
Microsoft Local Security Authority Subsystem Denial of Service
14/10/09
Microsoft
Microsoft Indexing Service ActiveX Control Memory Corruption
14/10/09
Microsoft
Microsoft Windows CryptoAPI Two Spoofing Vulnerabilities
14/10/09
Microsoft
Microsoft Office ActiveX Controls Multiple Vulnerabilities
14/10/09
Microsoft
Microsoft Windows ActiveX Controls ATL "OleLoadFromStream()" Vulnerability
14/10/09
Microsoft
Microsoft Silverlight Common Language Runtime Vulnerability
14/10/09
Microsoft
Microsoft .NET Framework Multiple Vulnerabilities
14/10/09
Microsoft
Microsoft Internet Explorer Multiple Vulnerabilities
14/10/09
Microsoft
Microsoft Internet Information Services FTP Server NLST Buffer Overflow
14/10/09
Microsoft
Microsoft IIS FTP Server Recursive Listing Denial of Service
14/10/09
Microsoft
Microsoft Windows Media Player ASF Processing Vulnerability
14/10/09
Microsoft
Microsoft Windows SMBv2 Multiple Vulnerabilities
14/10/09
Microsoft
Microsoft Windows Media Runtime Code Execution Vulnerability
14/10/09
Debian
Debian update for kvm
14/10/09
Sun Microsystems
Sun Solaris Thunderbird Network Security Services Vulnerabilities
14/10/09
Skype Technologies
Skype Extras Manager Unspecified Vulnerability
14/10/09
Debian
Debian update for xmltooling, opensaml2, and shibboleth-sp2
13/10/09
Debian
Debian update for python-django
12/10/09
Sun Microsystems
Sun Solaris Tomcat Multiple Vulnerabilities
12/10/09
Adobe Systems
Adobe Reader/Acrobat Arbitrary Code Execution Vulnerability
09/10/09
VMware
VMware Authorization Service Denial of Service Vulnerability
09/10/09
IBM
IBM AIX rpc.cmsd Buffer Overflow Vulnerability
08/10/09
Red Hat
Red Hat update for postgresql
08/10/09
Red Hat
Red Hat update for postgresql
08/10/09
Debian
Debian update for graphicsmagick
08/10/09
Symantec
Symantec SecurityExpressions Cross-Site Scripting and Script Insertion
08/10/09
Sun Microsystems
Sun VirtualBox "VBoxNetAdpCtl" Privilege Escalation
08/10/09
HP
HP LoadRunner XUpload ActiveX Control Insecure Method
07/10/09
Debian
Debian update for elinks
07/10/09
Cisco
Linksys WRT54GC Cross-Site Request Forgery Vulnerability
07/10/09
Apache Software Foundation
Apache mod_proxy_ftp FTP Command Injection
07/10/09
Apache Software Foundation
Apache Two Denial of Service Vulnerabilities
07/10/09
McAfee
McAfee Email and Web Security Appliance TCP Implementation Denial of Service
07/10/09
OpenBSD
OpenBSD XMM Exceptions Denial of Service Vulnerability
07/10/09
Debian
Debian update for mediawiki1.7
07/10/09
Red Hat
Red Hat update for xen
07/10/09
Debian
Debian update for openswan
07/10/09
Red Hat
Fedora update for samba
07/10/09
Red Hat
Fedora update for kernel
07/10/09
IBM
IBM Informix Products Setnet32 Utility ".nfx" Processing Buffer Overflow
07/10/09
Debian
Debian update for strongswan
07/10/09
FreeBSD Project
FreeBSD Privilege Escalation Vulnerabilities
07/10/09
FreeBSD Project
FreeBSD Devfs / VFS NULL Pointer Dereference Privilege Escalation
07/10/09
Debian
Debian update for postgresql
07/10/09
Slackware Linux
Slackware update for samba
07/10/09
Novell
Novell eDirectory Cross-Site Scripting Vulnerability
07/10/09
SugarCRM
SugarCRM Cross-Site Scripting Vulnerability
07/10/09
Red Hat
Red Hat update for elinks
07/10/09
VMware
VMware Fusion Denial of Service and Privilege Escalation
07/10/09
Samba Team
Samba Information Disclosure and Denial of Service
05/10/09
Red Hat
Red Hat update for kernel
05/10/09
Red Hat
Red Hat update for openssh
05/10/09
Google
Google Chrome Floating Point Parsing Buffer Overflow
05/10/09
HP
HP-UX update for Kerberos
05/10/09
IBM
IBM Lotus Quickr Multiple Script Insertion Vulnerabilities
05/10/09
Sun Microsystems
Sun Solaris IP Module and STREAMS Framework Denial of Service
05/10/09
Sun Microsystems
Sun Solaris 8 IP Module and STREAMS Framework Denial of Service
05/10/09
Novell
Novell NetWare RPC CALLIT Buffer Overflow Vulnerability
05/10/09
Samba Team
Samba Information Disclosure and Denial of Service
05/10/09
Red Hat
Red Hat update for kernel
05/10/09
Red Hat
Red Hat update for openssh
05/10/09
Google
Google Chrome Floating Point Parsing Buffer Overflow
05/10/09
HP
HP-UX update for Kerberos
05/10/09
IBM
IBM Lotus Quickr Multiple Script Insertion Vulnerabilities
05/10/09
Sun Microsystems
Sun Solaris IP Module and STREAMS Framework Denial of Service
05/10/09
Sun Microsystems
Sun Solaris 8 IP Module and STREAMS Framework Denial of Service
05/10/09
Novell
Novell NetWare RPC CALLIT Buffer Overflow Vulnerability
05/10/09
Samba Team
Samba Information Disclosure and Denial of Service
05/10/09
Red Hat
Red Hat update for kernel
05/10/09
Red Hat
Red Hat update for openssh
05/10/09
Google
Google Chrome Floating Point Parsing Buffer Overflow
05/10/09
HP
HP-UX update for Kerberos
05/10/09
IBM
IBM Lotus Quickr Multiple Script Insertion Vulnerabilities
05/10/09
Sun Microsystems
Sun Solaris IP Module and STREAMS Framework Denial of Service
05/10/09
Sun Microsystems
Sun Solaris 8 IP Module and STREAMS Framework Denial of Service
05/10/09
Novell
Novell NetWare RPC CALLIT Buffer Overflow Vulnerability
05/10/09
IBM
IBM AIX NFSv4 Two Vulnerabilities
01/10/09
Oracle
Oracle Document Capture BlackIceDEVMODE Arbitrary Command Execution
01/10/09
Adobe Systems
Adobe Photoshop Elements Active File Monitor Service Privilege Escalation
01/10/09
Sun Microsystems
Sun libxml2 DTD Parsing Denial of Service Vulnerabilities
01/10/09
Sun Microsystems
Sun Solaris Samba ACL Security Bypass
01/10/09
IBM
IBM Installation Manager "iim" URI Handling Argument Injection
01/10/09
IBM
IBM Tivoli Composite Application Manager for WebSphere Cross-Site Scripting
01/10/09
Red Hat
Red Hat update for kernel
01/10/09

About this Site & Accessibility | Legal, Privacy & Copyright Information | Sitemap | newzealand.govt.nz

Accessibility Page: 0 | Homepage: 1 | Sitemap: 2 | About CCIP: 4 | Vulnerabilities: 5 | Incidents: 6 | Newsroom: 7 | gcsb.govt.nz: 8 | Contact CCIP: 9 | Skip Link: [ | newzealand.govt.nz: /