Updates for both security and non-functional packages are essential for a smooth-running system. Mandriva recommends that all users upgrade to the packages issued by any advisory to prevent problems with your system and unauthorized intrusion or denial of service attacks.

 

A graphical update utility called MandrivaUpdate is installed on your Mandriva Linux desktop. All you have to do is launch MandrivaUpdate to update your system through the GUI utility. The program lets you choose your FTP server within a list of server mirror. Then it fetches each update you have to make and lets you choose those you really need. In Mandrakelinux 8.x+, MandrakeUpdate has been replaced by the Software Manager.

 

Security update advisories are sent to the security mailing lists.

 

All security announcements and updated RPMs are signed with the GPG key of the Mandriva Security Team which is available for download.

 

Legend/Filters: Security Update Bugfix Update General Update


Date Advisory Synopsis
2003-04-03 MDKA-2003:003-1 Updated e2fsprogs packages provide updated support for ext2 partitions
2003-03-27 MDKSA-2003:039 Updated kernel22 packages fix multiple vulnerabilities
2003-03-25 MDKSA-2003:037 Updated glibc packages fix vulnerabilities in RPC XDR decoder
2003-03-25 MDKSA-2003:035 Updated openssl packages fix RSA-related insecurities
2003-03-24 MDKA-2003:003 Updated e2fsprogs packages provide updated support for ext2 partitions
2003-03-18 MDKSA-2003:033 Updated zlib packages fix buffer overrun vulnerability
2003-03-15 MDKSA-2003:032 Updated samba packages fix remote root vulnerability
2003-03-14 MDKSA-2003:031-1 Updated usermode packages remove insecure shutdown command
2003-03-12 MDKSA-2003:031 Updated usermode packages remove insecure shutdown command
2003-03-06 MDKSA-2003:030 Updated file packages fix stack overflow vulnerability
2003-03-03 MDKSA-2003:028 Updated sendmail packages fix remotely exploitable buffer overflow vulnerability
2003-03-03 MDKSA-2003:027 Updated tcpdump packages fix denial of service vulnerabilities
2003-02-26 MDKSA-2003:026 Updated shadow-utils packages fix improper mailspool ownership
2003-02-26 MDKSA-2003:025 Updated webmin packages fix session ID spoofing vulnerability
2003-02-24 MDKSA-2003:023 Updated lynx packages fix CRLF injection vulnerability
2003-02-24 MDKSA-2003:022 Updated vnc packages fix cookie vulnerability
2003-02-21 MDKSA-2003:021 Updated krb5 packages fix vulnerability in FTP client
2003-02-21 MDKSA-2003:020 Updated openssl packages fix timing-based attack vulnerability
2003-02-18 MDKSA-2003:018 Updated apcupsd packages fix buffer overflow and remove vulnerability
2003-02-18 MDKSA-2003:017 Updated pam packages fix root authorization handling in pam_xauth module
2003-02-11 MDKSA-2002:062-1 Updated postgresql packages fix various buffer overflows
2003-02-05 MDKSA-2003:015 Updated slocate packages fix buffer overflow
2003-02-03 MDKSA-2003:013 Updated MySQL packages fix DoS vulnerability
2003-02-03 MDKSA-2003:012 Updated vim packages fix arbitrary command execution vulnerability
2003-01-27 MDKSA-2003:011 Updated fetchmail packages fix remote exploit vulnerability
2003-01-21 MDKSA-2003:010-1 Updated printer-drivers packages fix local vulnerabilities
2003-01-21 MDKSA-2003:010 Updated printer-drivers packages fix local vulnerabilities
2003-01-20 MDKSA-2003:009 Updated cvs packages fix multiple vulnerabilities
2003-01-20 MDKSA-2003:008 Updated libpng packages fix potential remote compromise
2003-01-17 MDKSA-2003:007 Updated dhcp packages fix remote code execution vulnerability
2003-01-14 MDKSA-2003:006 Updated OpenLDAP packages fix multiple vulnerabilities
2003-01-13 MDKSA-2003:004 Updated KDE packages fix multiple vulnerabilities
2003-01-13 MDKSA-2002:073-1 Updated krb5 packages fix incorrect initscripts
2003-01-09 MDKSA-2003:003 Updated dhcpcd packages fix character expansion vulnerability
2003-01-09 MDKSA-2003:002 Updated xpdf packages fix integer overflow vulnerability
2003-01-09 MDKSA-2003:001 Updated CUPS packages fix multiple vulnerabilities
2002-12-24 MDKA-2002:022 Updated urpmi and mdkonline packages provide better support
2002-12-18 MDKSA-2002:087 Updated MySQL packages fix multiple vulnerabilities
2002-12-11 MDKSA-2002:086 Updated wget packages fix directory traversal vulnerability
2002-12-02 MDKSA-2002:085 Updated WindowMaker packages fix buffer overflow vulnerability
2002-12-02 MDKSA-2002:084 Updated pine packages fix buffer overflow vulnerability
2002-11-28 MDKSA-2002:083 Updated sendmail packages fix smrsh insecurities
2002-11-25 MDKSA-2002:082 Updated python packages fix local arbitrary code execution vulnerability
2002-11-25 MDKSA-2002:081 Updated samba packages fix potential root compromise
2002-11-18 MDKSA-2002:078 Updated ypserv packages fix memory leak
2002-11-07 MDKSA-2002:076 Updated perl-MailTools packages fix arbitrary code execution vulnerability
2002-11-07 MDKSA-2002:075 Updated nss_ldap and pam_ldap packages fix buffer and format string vulnerabilities
2002-10-29 MDKSA-2002:073 Updated krb5 packages fix remote root vulnerability
2002-10-24 MDKSA-2002:072 Updated mod_ssl packages fix cross-site scripting vulnerability
2002-10-24 MDKSA-2002:071 Updated kdegraphics packages fix command execution vulnerabilities
2002-10-23 MDKSA-2002:070 Updated tetex packages fix command execution vulnerabilities
2002-10-21 MDKSA-2002:069 Updated gv/ggv packages fix command execution vulnerabilities
2002-10-15 MDKSA-2002:068 Updated apache packages fix multiple vulnerabilities
2002-10-10 MDKSA-2002:066 Updated tar packages fix directory traversal vulnerability
2002-10-10 MDKSA-2002:065 Updated unzip packages fix directory traversal vulnerability
2002-10-09 MDKSA-2002:064 Updated kdelibs packages fix cross-site scripting vulnerability
2002-10-01 MDKSA-2002:063 Updated fetchmail packages fix various vulnerabilities
2002-10-01 MDKSA-2002:062 Updated postgresql packages fix various buffer overflows
2002-09-23 MDKSA-2002:061 Updated glibc packages fix Sun RPC vulnerability
2002-09-23 MDKSA-2002:060 Updated tcltk packages fix local vulnerabilities
2002-09-10 MDKSA-2002:059 Updated php packages fix mail() vulnerability
2002-09-09 MDKSA-2002:058 Updated kdelibs packages fix SSL vulnerability
2002-09-09 MDKSA-2002:057 Updated krb5 packages fix remote root vulnerability
2002-09-05 MDKSA-2002:054-1 Updated gaim packages fix URL-handling insecurities
2002-09-04 MDKSA-2002:056 Loval root vulnerability in linuxconf
2002-08-29 MDKSA-2002:054 Updated gaim packages fix URL-handling insecurities
2002-08-28 MDKSA-2002:055 Updated hylafax packages fix multiple vulnerabilities
2002-08-15 MDKSA-2002:038-1 Updated bind packages fix buffer overflow
2002-08-14 MDKSA-2002:052 Updated sharutils packages fix local file vulnerability
2002-08-14 MDKSA-2002:051 Updated xchat packages fix /dns command insecurities
2002-08-13 MDKSA-2002:050 Updated glibc packages fix buffer overflow
2002-08-13 MDKSA-2002:049 Updated libpng packages fix buffer overflow
2002-08-08 MDKSA-2002:048 Updated mod_ssl packages fix buffer overflow
2002-08-08 MDKSA-2002:047 Updated util-linux packages fix temporary file race
2002-08-06 MDKSA-2002:046-1 Updated openssl packages fix various vulnerabilities
2002-07-30 MDKSA-2002:046 Updated openssl packages fix various vulnerabilities
2002-07-29 MDKSA-2002:045 Updated mm packages fix temporary file vulnerability
2002-07-29 MDKA-2002:010 New XFS-related packages provide proper XFS support for new kernels
2002-07-17 MDKSA-2002:044 Updated squid packages fix multiple vulnerabilities
2002-07-04 MDKSA-2002:042 Updated LPRng packages fix insecure default configuration
2002-07-04 MDKSA-2002:041 Updated kernel packages fix multiple vulnerabilities
2002-07-02 MDKSA-2002:040-1 Updated openssh packaegs fix remote vulnerability
2002-07-02 MDKA-2002:008 New rpm-macros packages provide new RPM macros
2002-06-24 MDKSA-2002:040 Updated openssh packages provide privilege separation
2002-06-22 MDKSA-2002:039-2 Updated apache packages fix remotely exploitable conditions
2002-06-21 MDKSA-2002:039-1 Updated apache packages fix DoS vulnerability
2002-06-04 MDKSA-2002:038 Updated bind packages fix DoS vulnerability
2002-05-29 MDKSA-2002:037 Updated dhcp packages fix format string vulnerability
2002-05-28 MDKSA-2002:036 Updated fetchmail packages fix array bounds checking
2002-05-27 MDKSA-2002:034 Updated imap packages fix buffer overflow vulnerability
2002-05-21 MDKSA-2002:033 Updated webmin packages fix buffer overflow vulnerability
2002-05-16 MDKSA-2002:032 Updated tcpdump packages fix buffer overflows
2002-05-16 MDKSA-2002:031 Updated fileutils packages fix race condition in rm
2002-05-09 MDKSA-2002:030 Temporary fix for iptables NAT/ICMP information leak
2002-04-25 MDKSA-2002:029 Updated imlib packages fix image viewing vulnerabilities
2002-04-25 MDKSA-2002:028 Updated sudo packages fix heap corruption vulnerability
2002-04-17 MDKSA-2002:024-1 Updated rsync packages fix multiple vulnerabilities
2002-04-16 MDKSA-2002:027 Updated squid packages fix DoS vulnerability
2002-04-11 MDKSA-2002:026 Updated libsafe packages fix inadequate format string protection
2002-03-13 MDKSA-2002:024 Updated rsync packages fix multiple vulnerabilities
2002-03-13 MDKSA-2002:023-1 Updated zlib-related packages fix double free vulnerability
2002-03-12 MDKSA-2002:023 Updated zlib-related packages fix double free vulnerability
2002-03-12 MDKSA-2002:022 Updated zlib packages fix double free vulnerability
2002-03-07 MDKSA-2002:021 Updated mod_frontpage packages fix a buffer overflow vulnerability
2002-03-07 MDKSA-2002:020 Updated mod_ssl packages fix a buffer overflow vulnerability
2002-03-07 MDKSA-2002:019 Updated openssh packages fix local root vulnerability
2002-02-28 MDKSA-2002:018 Updated cyrus-sasl packages fix format string vulnerability
2002-02-28 MDKSA-2002:017 Updated php packages fix file upload vulnerability
2002-02-28 MDKA-2002:003 Updated postfix packages fix SASL support
2002-02-21 MDKSA-2002:016 Updated squid packages fix several insecurities
2002-02-15 MDKSA-2002:015 Updated cups packages fix potential buffer overflows
2002-02-15 MDKSA-2002:014 Updated ucd-snmp packages fix multiple vulnerabilities
2002-02-11 MDKSA-2002:013 Updated openldap packages fix permissions vulnerability
2002-02-07 MDKSA-2002:012 Updated groff packages fix buffer overflow
2002-02-05 MDKA-2002:002 Updated slocate packages fix segfault
2002-01-31 MDKSA-2002:011 Updated gzip packages fix buffer overflow
2002-01-28 MDKSA-2002:010 Updated enscript packages fix temporary file vulnerability
2002-01-28 MDKSA-2002:009 Updated rsync packages fix unsigned insecurities
2002-01-22 MDKSA-2002:008 Updated jmcce packages fix temporary file vulnerability
2002-01-18 MDKSA-2002:007 Updated at packages fix exploitable heap corruption
2002-01-17 MDKSA-2002:006 Updated xchat packages fix CTCP vulnerability
2002-01-17 MDKSA-2002:005 Updated proftpd packages fix remote DoS vulnerability
2002-01-17 MDKSA-2002:002-1 Updated mutt packages fix buffer overflow
2002-01-16 MDKSA-2002:004 Updated stunnel packages fix format string vulnerability
2002-01-15 MDKSA-2002:003 Updated sudo packages fix local root vulnerability
2002-01-08 MDKSA-2002:002 Updated mutt packages fix buffer overflow
2002-01-08 MDKSA-2002:001 Updated bind packages fix permission insecurities
2001-12-19 MDKSA-2001:095 Updated glibc packages fix buffer overflow vulnerability
2001-12-19 MDKSA-2001:094 Updated libgtop packages fix buffer overflow and format string vulnerabilities
2001-12-19 MDKA-2001:024 Updated samba packages provide WinXP support
2001-12-17 MDKSA-2001:093 Updated krb5 packages fix buffer overflow in telnet
2001-12-17 MDKA-2001:023 Updated flex packages fix improper declaration if isatty()
2001-12-13 MDKSA-2001:092 Updated openssh packages fix local vulnerability with UseLogin
2001-12-12 MDKSA-2001:091 Updated passwd packages fix lack of md5 support
2001-11-29 MDKSA-2001:090 Updated wu-ftpd packages fix potential remote root compromise
2001-11-29 MDKSA-2001:089 Updated postfix packages fix potential remote DoS
2001-11-27 MDKSA-2001:077-1 Updated apache packages fix a number of vulnerabilities
2001-11-26 MDKSA-2001:079-2 Updated kernel 2.4 packages fix multiple insecurities
2001-11-21 MDKSA-2001:088 Updated squid packages fix potential DoS
2001-11-21 MDKSA-2001:087 Updated expect packages fix potential root compromise
2001-11-21 MDKA-2001:022 Updated pspell packages fix spelling problems in Evolution
2001-11-20 MDKSA-2001:086 Updated tetex packages fix temporary file insecurities
2001-11-20 MDKSA-2001:085 Updated procmail packages fix crash insecurities
2001-11-20 MDKSA-2001:082-1 Updated kernel 2.2 packages fix additional remote vulnerability
2001-11-20 MDKSA-2001:079-1 Updated kernel 2.4 packages fix multiple insecurities
2001-11-20 MDKSA-2001:053-1 Updated gnupg packages fix write permissions due to setgid bit
2001-11-01 MDKSA-2001:084 Updated util-linux packages fix insecurities in /bin/login
2001-11-01 MDKSA-2001:083 Updated htdig packages fix insecurities in htsearch
2001-10-26 MDKSA-2001:082 Updated kernel 2.2 packages fix two local vulnerabilities
2001-10-18 MDKA-2001:019 Updated locales-it packages fix missing locale
2001-10-18 MDKA-2001:018 Updated initscripts packages fix various problems
2001-10-16 MDKSA-2001:081 Updated openssh packages fix dishonored key option
2001-10-15 MDKA-2001:017 Updated xcin packages fix problems with bimsphone.so
2001-10-10 MDKA-2001:016 Updated mozilla packages fix Euro display problems
2001-10-08 MDKSA-2001:079 Disable devfs due to local root compromise