Home > Security > Advisories

Advisories

Mandriva Advisories

Updates for both security and non-functional packages are essential for a smooth-running system. Mandriva recommends that all users upgrade to the packages issued by any advisory to prevent problems with your system and unauthorized intrusion or denial of service attacks.

A graphical update utility called MandrivaUpdate is installed on your Mandriva Linux desktop. All you have to do is launch MandrivaUpdate to update your system through the GUI utility. The program lets you choose your FTP server within a list of server mirror. Then it fetches each update you have to make and lets you choose those you really need. In Mandrakelinux 8.x+, MandrakeUpdate has been replaced by the Software Manager.

Security update advisories are sent to the security mailing lists.

All security announcements and updated RPMs are signed with the GPG key of the Mandriva Security Team which is available for download.

Legend/Filters: Security Update Bugfix Update General Update


Date Advisory Synopsis
2003-09-30 MDKSA-2003:098 Updated openssl packages fix vulnerabilities
2003-09-18 MDKSA-2003:094 Updated MySQL packages fix buffer overflow vulnerability
2003-09-17 MDKSA-2003:092 Updated sendmail packages fix buffer overflow vulnerability
2003-09-17 MDKSA-2003:090-1 Updated openssh packages fix buffer management error
2003-09-16 MDKSA-2003:090 Updated openssh packages fix buffer management error
2003-08-26 MDKSA-2003:086 Updated sendmail packages fix vulnerability
2003-08-20 MDKSA-2003:084 Updated perl-CGI packages fix cross-site scripting vulnerabilities
2003-08-19 MDKSA-2003:073-1 Updated unzip packages fix vulnerability
2003-08-12 MDKSA-2003:082-1 Updated php packages fix vulnerabilities
2003-08-04 MDKSA-2003:082 Updated php packages fix vulnerabilities
2003-08-04 MDKSA-2003:081 Updated postfix packages fix remote DoS
2003-07-31 MDKSA-2003:080 Updated wu-ftpd packages fix remote root vulnerability
2003-07-23 MDKSA-2003:077 Updated phpgroupware packages fix multiple vulnerabilities
2003-07-21 MDKSA-2003:076 Updated nfs-utils packages fix buffer overflow
2003-07-15 MDKSA-2003:074 Updated kernel packages fix multiple vulnerabilities
2003-07-07 MDKSA-2003:073 Updated unzip packages fix vulnerability
2003-06-27 MDKSA-2003:072 Updated ypserv packages fix DoS vulnerability
2003-06-16 MDKSA-2003:068 Updated gzip packages fix insecure temporary file creation
2003-06-10 MDKSA-2003:065 Updated ghostscript packages fix vulnerability
2003-06-05 MDKSA-2003:064 Updated kon2 packages fix buffer overflow vulnerability
2003-05-29 MDKSA-2003:062 Updated cups packages fix Denial of Service vulnerability
2003-05-22 MDKSA-2003:061 Updated gnupg packages fix validation bug
2003-05-21 MDKSA-2003:060 Updated LPRng packages fix insecure temporary file vulnerability
2003-05-21 MDKSA-2003:059 Updated lpr packages fix local root vulnerability
2003-05-21 MDKSA-2003:058-1 Updated cdrecord packages fix local root compromise
2003-05-15 MDKSA-2003:058 Updated cdrecord packages fix local root compromise
2003-05-14 MDKSA-2003:057 Updated MySQL packages fix vulnerability
2003-05-14 MDKSA-2003:056 Updated xinetd packages fix DoS vulnerability
2003-05-07 MDKSA-2003:053-1 Updated mgetty packages fix vulnerabilities
2003-05-06 MDKSA-2003:054 Updated man packages fix vulnerability
2003-05-06 MDKSA-2003:053 Updated mgetty packages fix vulnerabilities
2003-04-28 MDKSA-2003:052 Updated snort packages fix remote vulnerability
2003-04-28 MDKSA-2003:017-1 Updated pam packages fix root authorization handling in pam_xauth module
2003-04-17 MDKSA-2003:030-1 Updated file packages fix stack overflow vulnerability
2003-04-16 MDKSA-2003:047 Updated xfsdump packages fix insecure file creation
2003-04-09 MDKSA-2003:038-1 Updated 2.4 kernel packages fix ptrace vulnerability
2003-04-07 MDKSA-2003:044 Updated samba packages fix remote root vulnerability
2003-04-01 MDKSA-2003:043 Updated krb5 packages fix multiple vulnerabilities
2003-04-01 MDKSA-2003:042 Updated sendmail packages fix local and remote vulnerability
2003-04-01 MDKSA-2003:041 Updated mutt packages fix exploitable buffer overflow
2003-03-27 MDKSA-2003:039 Updated kernel22 packages fix multiple vulnerabilities
2003-03-25 MDKSA-2003:037 Updated glibc packages fix vulnerabilities in RPC XDR decoder
2003-03-25 MDKSA-2003:036 Updated netpbm packages fix math overflow errors
2003-03-25 MDKSA-2003:035 Updated openssl packages fix RSA-related insecurities
2003-03-25 MDKSA-2003:034 Updated rxvt packages fix escape sequence insecurities
2003-03-18 MDKSA-2003:033 Updated zlib packages fix buffer overrun vulnerability
2003-03-15 MDKSA-2003:032 Updated samba packages fix remote root vulnerability
2003-03-14 MDKSA-2003:031-1 Updated usermode packages remove insecure shutdown command
2003-03-12 MDKSA-2003:031 Updated usermode packages remove insecure shutdown command
2003-03-06 MDKSA-2003:030 Updated file packages fix stack overflow vulnerability
2003-03-06 MDKSA-2003:029 Updated snort packages fix buffer overflow vulnerability
2003-03-03 MDKSA-2003:028 Updated sendmail packages fix remotely exploitable buffer overflow vulnerability
2003-03-03 MDKSA-2003:027 Updated tcpdump packages fix denial of service vulnerabilities
2003-02-26 MDKSA-2003:026 Updated shadow-utils packages fix improper mailspool ownership
2003-02-26 MDKSA-2003:025 Updated webmin packages fix session ID spoofing vulnerability
2003-02-24 MDKSA-2003:023 Updated lynx packages fix CRLF injection vulnerability
2003-02-24 MDKSA-2003:022 Updated vnc packages fix cookie vulnerability
2003-02-21 MDKSA-2003:021 Updated krb5 packages fix vulnerability in FTP client
2003-02-21 MDKSA-2003:020 Updated openssl packages fix timing-based attack vulnerability
2003-02-18 MDKSA-2003:018 Updated apcupsd packages fix buffer overflow and remove vulnerability
2003-02-18 MDKSA-2003:017 Updated pam packages fix root authorization handling in pam_xauth module
2003-02-13 MDKSA-2003:016 Updated util-linux packages provide stronger randomness in mcookie
2003-02-11 MDKSA-2002:062-1 Updated postgresql packages fix various buffer overflows
2003-02-05 MDKSA-2003:015 Updated slocate packages fix buffer overflow
2003-02-03 MDKSA-2003:013 Updated MySQL packages fix DoS vulnerability
2003-02-03 MDKSA-2003:012 Updated vim packages fix arbitrary command execution vulnerability
2003-01-27 MDKSA-2003:011 Updated fetchmail packages fix remote exploit vulnerability
2003-01-21 MDKSA-2003:010-1 Updated printer-drivers packages fix local vulnerabilities
2003-01-21 MDKSA-2003:010 Updated printer-drivers packages fix local vulnerabilities
2003-01-20 MDKSA-2003:009 Updated cvs packages fix multiple vulnerabilities
2003-01-20 MDKSA-2003:008 Updated libpng packages fix potential remote compromise
2003-01-17 MDKSA-2003:007 Updated dhcp packages fix remote code execution vulnerability
2003-01-14 MDKSA-2003:006 Updated OpenLDAP packages fix multiple vulnerabilities
2003-01-14 MDKSA-2003:005 Updated leafnode packages fix remote DoS vulnerability
2003-01-13 MDKSA-2003:004 Updated KDE packages fix multiple vulnerabilities
2003-01-13 MDKSA-2002:073-1 Updated krb5 packages fix incorrect initscripts
2003-01-09 MDKSA-2003:003 Updated dhcpcd packages fix character expansion vulnerability
2003-01-09 MDKSA-2003:002 Updated xpdf packages fix integer overflow vulnerability
2003-01-09 MDKSA-2003:001 Updated CUPS packages fix multiple vulnerabilities
2002-12-18 MDKSA-2002:087 Updated MySQL packages fix multiple vulnerabilities
2002-12-11 MDKSA-2002:086 Updated wget packages fix directory traversal vulnerability
2002-12-02 MDKSA-2002:085 Updated WindowMaker packages fix buffer overflow vulnerability
2002-12-02 MDKSA-2002:084 Updated pine packages fix buffer overflow vulnerability
2002-11-28 MDKSA-2002:083 Updated sendmail packages fix smrsh insecurities
2002-11-25 MDKSA-2002:082 Updated python packages fix local arbitrary code execution vulnerability
2002-11-25 MDKSA-2002:081 Updated samba packages fix potential root compromise
2002-11-18 MDKSA-2002:078 Updated ypserv packages fix memory leak
2002-11-07 MDKSA-2002:076 Updated perl-MailTools packages fix arbitrary code execution vulnerability
2002-11-07 MDKSA-2002:075 Updated nss_ldap and pam_ldap packages fix buffer and format string vulnerabilities
2002-10-31 MDKSA-2002:074 Updated mozilla packages fix multiple vulnerabilities
2002-10-29 MDKSA-2002:073 Updated krb5 packages fix remote root vulnerability
2002-10-24 MDKSA-2002:072 Updated mod_ssl packages fix cross-site scripting vulnerability
2002-10-24 MDKSA-2002:071 Updated kdegraphics packages fix command execution vulnerabilities
2002-10-23 MDKSA-2002:070 Updated tetex packages fix command execution vulnerabilities
2002-10-21 MDKSA-2002:069 Updated gv/ggv packages fix command execution vulnerabilities
2002-10-15 MDKSA-2002:068 Updated apache packages fix multiple vulnerabilities
2002-10-10 MDKSA-2002:066 Updated tar packages fix directory traversal vulnerability
2002-10-10 MDKSA-2002:065 Updated unzip packages fix directory traversal vulnerability
2002-10-09 MDKSA-2002:064 Updated kdelibs packages fix cross-site scripting vulnerability
2002-10-01 MDKSA-2002:063 Updated fetchmail packages fix various vulnerabilities
2002-10-01 MDKSA-2002:062 Updated postgresql packages fix various buffer overflows
2002-09-23 MDKSA-2002:061 Updated glibc packages fix Sun RPC vulnerability
2002-09-23 MDKSA-2002:060 Updated tcltk packages fix local vulnerabilities
2002-09-09 MDKSA-2002:058 Updated kdelibs packages fix SSL vulnerability
2002-09-09 MDKSA-2002:057 Updated krb5 packages fix remote root vulnerability
2002-09-04 MDKSA-2002:056 Loval root vulnerability in linuxconf
2002-08-29 MDKSA-2002:054 Updated gaim packages fix URL-handling insecurities
2002-08-28 MDKSA-2002:055 Updated hylafax packages fix multiple vulnerabilities
2002-08-26 MDKSA-2002:053 Updated xinetd packages fix remote DoS
2002-08-15 MDKSA-2002:038-1 Updated bind packages fix buffer overflow
2002-08-14 MDKSA-2002:052 Updated sharutils packages fix local file vulnerability
2002-08-14 MDKSA-2002:051 Updated xchat packages fix /dns command insecurities
2002-08-13 MDKSA-2002:050 Updated glibc packages fix buffer overflow
2002-08-13 MDKSA-2002:049 Updated libpng packages fix buffer overflow
2002-08-08 MDKSA-2002:048 Updated mod_ssl packages fix buffer overflow
2002-08-08 MDKSA-2002:047 Updated util-linux packages fix temporary file race
2002-08-06 MDKSA-2002:046-1 Updated openssl packages fix various vulnerabilities
2002-07-30 MDKSA-2002:046 Updated openssl packages fix various vulnerabilities
2002-07-29 MDKSA-2002:045 Updated mm packages fix temporary file vulnerability
2002-07-17 MDKSA-2002:044 Updated squid packages fix multiple vulnerabilities
2002-07-04 MDKSA-2002:042 Updated LPRng packages fix insecure default configuration
2002-07-04 MDKSA-2002:041 Updated kernel packages fix multiple vulnerabilities
2002-07-02 MDKSA-2002:040-1 Updated openssh packaegs fix remote vulnerability
2002-06-24 MDKSA-2002:040 Updated openssh packages provide privilege separation
2002-06-22 MDKSA-2002:039-2 Updated apache packages fix remotely exploitable conditions
2002-06-21 MDKSA-2002:039-1 Updated apache packages fix DoS vulnerability
2002-06-04 MDKSA-2002:038 Updated bind packages fix DoS vulnerability
2002-05-29 MDKSA-2002:037 Updated dhcp packages fix format string vulnerability
2002-05-28 MDKSA-2002:036 Updated fetchmail packages fix array bounds checking
2002-05-28 MDKSA-2002:035 Updated perl-Digest-MD5 packages fix improper MD5 digest generation
2002-05-27 MDKSA-2002:034 Updated imap packages fix buffer overflow vulnerability
2002-05-21 MDKSA-2002:033 Updated webmin packages fix buffer overflow vulnerability
2002-05-16 MDKSA-2002:032 Updated tcpdump packages fix buffer overflows
2002-05-16 MDKSA-2002:031 Updated fileutils packages fix race condition in rm
2002-05-09 MDKSA-2002:030 Temporary fix for iptables NAT/ICMP information leak
2002-04-25 MDKSA-2002:029 Updated imlib packages fix image viewing vulnerabilities
2002-04-25 MDKSA-2002:028 Updated sudo packages fix heap corruption vulnerability
2002-04-16 MDKSA-2002:027 Updated squid packages fix DoS vulnerability
2002-04-11 MDKSA-2002:026 Updated libsafe packages fix inadequate format string protection