Home > Security > Advisories

Advisories

Mandriva Advisories

Updates for both security and non-functional packages are essential for a smooth-running system. Mandriva recommends that all users upgrade to the packages issued by any advisory to prevent problems with your system and unauthorized intrusion or denial of service attacks.

A graphical update utility called MandrivaUpdate is installed on your Mandriva Linux desktop. All you have to do is launch MandrivaUpdate to update your system through the GUI utility. The program lets you choose your FTP server within a list of server mirror. Then it fetches each update you have to make and lets you choose those you really need. In Mandrakelinux 8.x+, MandrakeUpdate has been replaced by the Software Manager.

Security update advisories are sent to the security mailing lists.

All security announcements and updated RPMs are signed with the GPG key of the Mandriva Security Team which is available for download.

Legend/Filters: Security Update Bugfix Update General Update


Date Advisory Synopsis
2005-06-30 MDKSA-2005:111 Updated 2.4 kernel packages fix multiple vulnerabilities
2005-01-25 MDKSA-2005:022 Updated kernel packages fix multiple vulnerabilities
2005-01-06 MDKSA-2005:001 Updated libtiff packages fix multiple vulnerabilities
2004-12-29 MDKSA-2004:164 Updated cups packages fix buffer overflow vulnerability
2004-12-13 MDKSA-2004:148 Updated iproute2 packages fix temporary file vulnerability
2004-12-06 MDKSA-2004:147 Updated openssl packages fix temporary file vulnerability
2004-12-06 MDKSA-2004:145 Updated rp-pppoe packages fix vulnerability
2004-12-06 MDKSA-2004:142 Updated gzip packages fix temporary file vulnerability
2004-11-15 MDKSA-2004:134 Updated apache packages fix buffer overflow in mod_include
2004-11-15 MDKSA-2004:133 Updated sudo packages fix vulnerability
2004-11-10 MDKSA-2004:130 Updated speedtouch packages fix format string vulnerability
2004-11-10 MDKSA-2004:129 Updated ez-ipupdate packages fix format string vulnerability
2004-11-04 MDKSA-2004:126 Updated shadow-utils packages fix security bypass vulnerability
2004-11-04 MDKSA-2004:125 Updated iptables packages fix vulnerability
2004-11-01 MDKSA-2004:122 Updated mod_ssl packages fix information disclosure vulnerability
2004-10-21 MDKSA-2004:116 Updated cups packages fix DoS vulnerabilities
2004-10-21 MDKSA-2004:112 Updated squid packages fix SNMP processing vulnerability
2004-10-19 MDKSA-2004:109 Updated libtiff packages fix multiple vulnerabilities
2004-09-27 MDKSA-2004:011-1 Updated NetPBM packages fix a number of temporary file bugs.
2004-08-31 MDKSA-2004:088 Updated krb5 packages fix multiple vulnerabilities
2004-08-26 MDKSA-2004:087 Updated kernel packages fix multiple vulnerabilities
2004-08-17 MDKSA-2004:083 Updated rsync packages fix remotely-exploitable vulnerability
2004-08-09 MDKSA-2004:080 Updated shorewall packages fix temporary file vulnerabilities
2004-08-04 MDKSA-2004:079 Updated libpng packages fix multiple vulnerabilities
2004-07-27 MDKSA-2004:075 Updated mod_ssl packages fix potential vulnerabilities
2004-07-22 MDKSA-2004:071 Updated samba packages fix vulnerability in SWAT, samba-server.
2004-07-14 MDKSA-2004:070 Updated freeswan and super-freeswan packages fix certificate chain authentication vulnerability
2004-07-14 MDKSA-2004:068 Updated php packages fix multiple vulnerabilities
2004-07-06 MDKSA-2004:066 Updated kernel packages fix multiple vulnerabilities
2004-06-29 MDKSA-2004:063 Updated libpng packages fix potential remote compromise
2004-06-23 MDKSA-2004:062 Updated kernel packages fix multiple vulnerabilities
2004-06-09 MDKSA-2004:056-1 Updated krb5 packages fix buffer overflow vulnerabilities
2004-06-03 MDKSA-2004:056 Updated krb5 packages fix buffer overflow vulnerabilities
2004-06-01 MDKSA-2004:054 Updated mod_ssl package fix remote vulnerability
2004-05-17 MDKSA-2004:046 Updated apache packages fix a number of vulnerabilities
2004-05-17 MDKSA-2004:045 Updated passwd packages fix vulnerabilities
2004-05-10 MDKSA-2004:042 Updated rsync packages fixes potential to write outside of directory tree.
2004-04-29 MDKSA-2004:040 Updated libpng packages fix vulnerability
2004-04-28 MDKSA-2004:038 Updated sysklogd packages fix vulnerability
2004-04-27 MDKSA-2004:037 Updated kernel packages fix multiple vulnerabilities
2004-04-21 MDKSA-2004:031-1 Updated utempter packages fix several vulnerabilities
2004-04-19 MDKSA-2004:035 Updated samba packages fix privilege escalation vulnerability
2004-04-19 MDKSA-2004:031 Updated utempter packages fix several vulnerabilities
2004-04-14 MDKSA-2004:030 Updated tcpdump packages fix several vulnerabilities
2004-04-14 MDKSA-2004:029 Updated kernel packages fix multiple vulnerabilities
2004-03-30 MDKSA-2004:025 Updated squid packages fix vulnerability
2004-03-17 MDKSA-2004:023 Updated openssl packages fix multiple vulnerabilities
2004-02-24 MDKSA-2004:015 Updated kernel packages fix multiple vulnerabilities
2004-02-11 MDKSA-2004:011 Updated NetPBM packages fix a number of temporary file bugs.
2004-02-04 MDKSA-2004:009 Updated glibc packages fix resolver vulnerabilities
2004-01-26 MDKSA-2004:008 Updated tcpdump packages fix several vulnerabilities
2004-01-07 MDKSA-2004:001 Updated kernel packages fix local root vulnerability
2003-12-08 MDKSA-2003:113 Updated screen packages fix buffer overflow vulnerability
2003-12-04 MDKSA-2003:111 Updated rsync packages fix heap overflow vulnerability
2003-12-01 MDKSA-2003:110 Updated kernel packages fix vulnerability
2003-11-28 MDKSA-2003:109 Updated gnupg packages fix vulnerability with ElGamal signing keys
2003-11-18 MDKSA-2003:107 Updated glibc packagess fix vulnerabilities
2003-11-12 MDKSA-2003:106 Updated fileutils and coreutils packages fix vulnerabilities
2003-11-03 MDKSA-2003:103 Updated apache packages fix vulnerabilities
2003-09-30 MDKSA-2003:098 Updated openssl packages fix vulnerabilities
2003-09-17 MDKSA-2003:090-1 Updated openssh packages fix buffer management error
2003-09-16 MDKSA-2003:090 Updated openssh packages fix buffer management error
2003-08-20 MDKSA-2003:084 Updated perl-CGI packages fix cross-site scripting vulnerabilities
2003-08-19 MDKSA-2003:073-1 Updated unzip packages fix vulnerability
2003-08-12 MDKSA-2003:082-1 Updated php packages fix vulnerabilities
2003-08-04 MDKSA-2003:082 Updated php packages fix vulnerabilities
2003-08-04 MDKSA-2003:081 Updated postfix packages fix remote DoS
2003-07-15 MDKSA-2003:074 Updated kernel packages fix multiple vulnerabilities
2003-07-07 MDKSA-2003:073 Updated unzip packages fix vulnerability
2003-06-16 MDKSA-2003:068 Updated gzip packages fix insecure temporary file creation
2003-05-29 MDKSA-2003:062 Updated cups packages fix Denial of Service vulnerability
2003-05-22 MDKSA-2003:061 Updated gnupg packages fix validation bug
2003-05-14 MDKSA-2003:056 Updated xinetd packages fix DoS vulnerability
2003-05-06 MDKSA-2003:054 Updated man packages fix vulnerability
2003-05-06 MDKSA-2003:053 Updated mgetty packages fix vulnerabilities
2003-04-28 MDKSA-2003:052 Updated snort packages fix remote vulnerability
2003-04-28 MDKSA-2003:017-1 Updated pam packages fix root authorization handling in pam_xauth module
2003-04-09 MDKSA-2003:038-1 Updated 2.4 kernel packages fix ptrace vulnerability
2003-04-07 MDKSA-2003:044 Updated samba packages fix remote root vulnerability
2003-04-01 MDKSA-2003:043 Updated krb5 packages fix multiple vulnerabilities
2003-03-25 MDKSA-2003:037 Updated glibc packages fix vulnerabilities in RPC XDR decoder
2003-03-25 MDKSA-2003:036 Updated netpbm packages fix math overflow errors
2003-03-25 MDKSA-2003:035 Updated openssl packages fix RSA-related insecurities
2003-03-18 MDKSA-2003:033 Updated zlib packages fix buffer overrun vulnerability
2003-03-15 MDKSA-2003:032 Updated samba packages fix remote root vulnerability
2003-03-14 MDKSA-2003:031-1 Updated usermode packages remove insecure shutdown command
2003-03-12 MDKSA-2003:031 Updated usermode packages remove insecure shutdown command
2003-03-06 MDKSA-2003:029 Updated snort packages fix buffer overflow vulnerability
2003-03-03 MDKSA-2003:027 Updated tcpdump packages fix denial of service vulnerabilities
2003-02-26 MDKSA-2003:026 Updated shadow-utils packages fix improper mailspool ownership
2003-02-25 MDKSA-2003:024 Updated packages fix multiple vulnerabilities
2003-02-24 MDKSA-2003:023 Updated lynx packages fix CRLF injection vulnerability
2003-02-21 MDKSA-2003:021 Updated krb5 packages fix vulnerability in FTP client
2003-02-21 MDKSA-2003:020 Updated openssl packages fix timing-based attack vulnerability
2003-02-18 MDKSA-2003:017 Updated pam packages fix root authorization handling in pam_xauth module
2003-02-03 MDKSA-2003:012 Updated vim packages fix arbitrary command execution vulnerability
2003-01-20 MDKSA-2003:008 Updated libpng packages fix potential remote compromise
2003-01-17 MDKSA-2003:007 Updated dhcp packages fix remote code execution vulnerability
2003-01-14 MDKSA-2003:006 Updated OpenLDAP packages fix multiple vulnerabilities
2003-01-09 MDKSA-2003:003 Updated dhcpcd packages fix character expansion vulnerability