It is currently Tue May 21, 2013 12:48 am

All times are UTC




Post new topic Reply to topic  [ 1 post ] 
Author Message
 Post subject: [Zenwalk 7.0 Security Bulletin] - 2011-05-10
PostPosted: Tue May 10, 2011 9:10 am 
Regular Zenwalker
Regular Zenwalker

Joined: Fri Mar 25, 2011 9:29 am
Posts: 60
Location: France
Vulnerability summary for the last week
Hello,
This message informs Zenwalk community about vulnerable packages (to be patched) found last weeks on Zenwalk 7.0 repositories.

New vulnerable packages found (summary) :
None

Still vulnerable packages (found last weeks) :
avahi (version 0.6.28)
feedparser (version 4.1)
glibc (version 2.13)
kernel (version 2.6.37.4)
libtiff (version 3.9.4)
logrotate (version 3.7.8)
logwatch (version 7.3.6)
openldap (version 2.4.20)
perl (version 5.12.3)
php (version 5.3.6)
postfix (version 2.6.5)
samba (version 3.5.8)
t1lib (version 5.1.2)
util-linux (version 2.19)
weechat (version 0.3.0)
wireshark (version 1.4.1)

Vulnerable since 2010 :
ardour (version 2.8.11)
bogofilter (version 1.2.1)
cvs (version 1.11.23)
ffmpeg (version 0.6.1)
fontforge (version 20100501)
gimp (version 2.6.11)
gnome-subtitles (version 1.0)
irssi (version 0.8.15)
libgdiplus (version 2.6.7)
libtiff (version 3.9.4)
mono (version 2.6.7)
openslp (version 1.2.1)
postgresql (version 8.3.7)
tuxguitar (version 1.2)
w3m (version 0.5.2)
wget (version 1.12)
wireshark (version 1.4.1)


The division of severities correspond to the following scores :
High - Vulnerabilities will be labeled High severity if they have a CVSS base score of 7.0 - 10.0
Medium - Vulnerabilities will be labeled Medium severity if they have a CVSS base score of 4.0 - 6.9
Low - Vulnerabilities will be labeled Low severity if they have a CVSS base score of 0.0 - 3.9

######################## HIGH Vulnerabilities ########################

-----
Vulnerable package found : php (version 5.3.6)
Impact (CVSS score) : 7.5/10
Published date time : 2011-03-18
Reference : http://cve.mitre.org/cgi-bin/cvename.cg ... -2011-1148
-----
Vulnerable package found : logwatch (version 7.3.6)
Impact (CVSS score) : 10.0/10
Published date time : 2011-02-25
Reference : http://cve.mitre.org/cgi-bin/cvename.cg ... -2011-1018
-----
Vulnerable package found : kernel (version 2.6.37.4)
Impact (CVSS score) : 7.2/10
Published date time : 2011-05-03
Reference : http://cve.mitre.org/cgi-bin/cvename.cg ... -2011-1495
-----
Vulnerable package found : wireshark (version 1.4.1)
Impact (CVSS score) : 10.0/10
Published date time : 2011-01-12
Reference : http://cve.mitre.org/cgi-bin/cvename.cg ... -2011-0444

######################## MEDIUM Vulnerabilities #####################


######################## LOW Vulnerabilities ########################



Notes :
Report generated mar. 10 mai 2011 10:53:43 CEST
Packages list source : http://viking.zenwalk.org/i486/snapshot/PACKAGES.TXT.gz
Vulnerabilities list source : http://static.nvd.nist.gov/feeds/xml/cv ... 0-2011.xml


 Profile Send private message  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 1 post ] 

All times are UTC


 Who is online

Users browsing this forum: No registered users and 2 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to: