Automatically generated issue names

Some issues have not been assigned CVE names, but are still tracked by this database. In this case, the system automatically assigns a unique name. These names are not stable and can change when the database is updated, so they should not be used in external references.

The automatically generated names come in two flavors: the first kind starts with the string "TEMP-000000-". This means that no Debian bug has been assigned to this issue (or a bug has been created and is not recorded in this database). In the second kind of names, there is a Debian bug for the issue, and the "000000"part of the name is replaced with the Debian bug number.

BugDescription
TEMP-0000000-00657Fpure-ftpd-mysql: any problems with a home dir will allow rw to the entire filesystem
TEMP-0000000-0132B8too lenient UTF-8 decoder in kjs/function.cpp
TEMP-0000000-01E656Possible SQL injection in freeradius
TEMP-0000000-02F7ABfile descriptor leak when a Compose file uses the "include" directive
TEMP-0000000-050E10mailutils: sql injection vulnerability in sql authentication module
TEMP-0000000-071608shibboleth Single TransientID Mapped to Multiple Principals
TEMP-0000000-07A77Dphp-gettext XSS
TEMP-0000000-09234Cinsecure usage of temporary files in flash-kernel
TEMP-0000000-095B48Connection related DoS possibility in OmniORB 4
TEMP-0000000-0999A8syslog-ng dos
TEMP-0000000-099EACwerkzeug hashes its secret instead of using hmac
TEMP-0000000-0CA7E3XSS in press-this of wordpress
TEMP-0000000-106DD8linux-ftpd: null ptr dereference
TEMP-0000000-16E7F9Some security issues in mod_security
TEMP-0000000-196897htmlpurifier various
TEMP-0000000-19ACB2piwigo
TEMP-0000000-1A4150archivemail insecure temporary file issues
TEMP-0000000-1BD96BSeveral buffer overflows in termpkg
TEMP-0000000-1EF219heap-based buffer overflow in git-blame with long file names
TEMP-0000000-212AE3Unspeficied security issue in ipsec-tool's single DES support
TEMP-0000000-226F20Insecure temp file usage in thttpd's syslogtocern
TEMP-0000000-269968X launcher doesn't drop group privileges
TEMP-0000000-271E1Avpnc: config file path security hole
TEMP-0000000-2A2487radare-common insecure temp files handling
TEMP-0000000-2A36A7remote DoS when case of the characters of a nickname is modified
TEMP-0000000-2C7EFDincorrect handling of {$smarty.template} and {$smarty.current_dir}
TEMP-0000000-2D8F93isc-dhcp: omapi dos
TEMP-0000000-2EA6C5NULL dereferences, similar to Adobe's CVE-2009-0658
TEMP-0000000-3336BAhtdig: several unspecified security problems
TEMP-0000000-34EBC9rubygems: integrity violation
TEMP-0000000-376228webcam-server unspecified vulnerability
TEMP-0000000-3934DCxmail insecure temp files handling
TEMP-0000000-39D7FDcyrus-imapd allows user probes
TEMP-0000000-3A9B70several possible mysql 5.0 local DoS vulnerabilities
TEMP-0000000-3B586Fdirectory traversal
TEMP-0000000-3C6C99Insufficient filename sanitising in darcsweb
TEMP-0000000-3CC163nilfs-tools privilege escalation
TEMP-0000000-3D82DCaxel URL parser buffer overflow
TEMP-0000000-3EB501Possible problem with insecure usage of sscanf in obexftp client
TEMP-0000000-3F0E00tor insufficient authentication on control port
TEMP-0000000-3FD01Cinsecure filehandling in mysql_upgrade
TEMP-0000000-404599Multiple security problems in lbreakout2
TEMP-0000000-42228Bspip DoS
TEMP-0000000-425714argyll unsafe udev rules
TEMP-0000000-42BDFBmimep insecure tempfile usage and insecure calls to LaTeX and dvips
TEMP-0000000-43D999Insecure temp files in firehol
TEMP-0000000-477739mailscanner: lock/pid file location symlink attack
TEMP-0000000-481246libxslt segfault / DoS
TEMP-0000000-4AA1B8Insecure tempfile handling in openwebmail CGI scripts
TEMP-0000000-4C54C0atftp DoS
TEMP-0000000-4D04B7maradns: More frequent rekeying to mitigate possible AES attacks
TEMP-0000000-4E21BAxscreensaver: symlink attack enables local information disclosure
TEMP-0000000-506907unspecified Drupal SQL injection
TEMP-0000000-50D00EMultiple security problems in Quake 2
TEMP-0000000-516A9ENTFS driver for FUSE unspecified issue
TEMP-0000000-52FF39dokuwiki ACL bypass
TEMP-0000000-56C871Fixes permission check in QueriesController
TEMP-0000000-57BF72XSS in drupal printing module
TEMP-0000000-57F9DBFirefox Sage Extension Feed Script Insertion Vulnerability
TEMP-0000000-5865E4imms: Arbitrary command execution through inproper filename escaping
TEMP-0000000-589A35"slowloris" denial-of-service vulnerabilty in webservers
TEMP-0000000-58BE54lintian disclosure of file presense
TEMP-0000000-598804amanda code injection
TEMP-0000000-5AF47FRemote DoS vulnerabilities in postgrey
TEMP-0000000-5CAA34Unspecified issue in moodle's admin/delete.php
TEMP-0000000-62CF51Buffer overflow in libotr
TEMP-0000000-62D57Eapt-cacher arbitrary command execution
TEMP-0000000-6554CDVariable function calls in Smarty allow bypassing security settings
TEMP-0000000-673AE0ikiwiki allows web user to edit images and other non-page format files in the wiki
TEMP-0000000-6773DEinterchange potential HTTP response splitting vulnerability
TEMP-0000000-6B3154Various /tmp related security issues in cernlib
TEMP-0000000-6BC416flaw in NetX that allows arbitrary unsigned apps to set any java property
TEMP-0000000-6C56E3mantis multiple issues fixed in 1.0.7
TEMP-0000000-6CFAE4gallery2 session ID disclosure
TEMP-0000000-6D001Csmb4k security issue
TEMP-0000000-6DFD48Four potentially DoS exploitable deadlocks and leaks in kernel 2.6
TEMP-0000000-6F6CD4Insecure mailbox generation in passwd's useradd
TEMP-0000000-71A9D4Unspecified buffer overflow in Convert::UUlib perl module
TEMP-0000000-75B37Ainsufficient form variable escaping
TEMP-0000000-760107rtkit: failure to drop supplemental groups
TEMP-0000000-77E129mydms SQL injection
TEMP-0000000-782E47php-net-ping argument injection
TEMP-0000000-79CB2Campache DoS and CSRF
TEMP-0000000-7C1EF6SQL injecton vulnerabilities in vpopmail prior to 5.4.6
TEMP-0000000-7D3048Logging bypassing through SIGHUP in syslog-ng
TEMP-0000000-812BACphpbb 3.0.7 permissions bypass
TEMP-0000000-838979Escape href attribute in auto links
TEMP-0000000-844C33gnutls Adaptive Chosen Ciphertext Attack
TEMP-0000000-84AA65DoS against clamav through infinite loop in cli_rmdirs
TEMP-0000000-854787drupal6-mod-tagadelic XSS
TEMP-0000000-8648E9moinmoin XSS
TEMP-0000000-884233serveez: buffer overflow in header parser
TEMP-0000000-8D4A1Chostapd dos
TEMP-0000000-8DEC77Cross-Site-Scripting in Bugzilla
TEMP-0000000-8E8C20gforge arbitrary code execution through viewFile.php
TEMP-0000000-8F74CDunsafe temporary file in lintian's objdump-info
TEMP-0000000-8FB0B7XSS in drupal 6 calendar field
TEMP-0000000-9164B4unspecified steam cache vulnerability
TEMP-0000000-94515Fxile buffer overrun in terminal code
TEMP-0000000-97BE67cherokee 0.5.4 DoS
TEMP-0000000-9A49E3XSS vulnerability discovered -plugin-globalsearch
TEMP-0000000-9AC543mono xsp file disclosure
TEMP-0000000-9B3182schroot may use outdated configuration information
TEMP-0000000-9DA06Eopenslp: insecure cert validation through openssl api misuse
TEMP-0000000-9ED582Two DoS condition in ekg
TEMP-0000000-A2D002prelude-manager: password world-readable
TEMP-0000000-A2EB44Insecure tempfile in x-face-el
TEMP-0000000-A5538Flibpam-ssh: Inproper caching of pwd data with potential security implications
TEMP-0000000-A7D1F4PHP 5.2.9 curl safe_mode & open_basedir bypass
TEMP-0000000-A8955CKDE Kopete ICQ remote DoS
TEMP-0000000-AB5257dojo can be used as a redirector
TEMP-0000000-AD5F11kmd affected by binutils's ELF parser vulnerability
TEMP-0000000-AF79F8roundup: unspecified issue
TEMP-0000000-B138FBgstreamer ffmpeg missing checks of packet sizes, chunk sizes, and fragment positions
TEMP-0000000-B14A9Dmantis multiple issues
TEMP-0000000-B2D490moin: hierarchical ACLs security issue
TEMP-0000000-B446CFiodine: DoS against iodined triggerable by authenticated users
TEMP-0000000-B4B71FFix file indirectory injection
TEMP-0000000-B5C878backuppc: web frontend installed insecurely by default
TEMP-0000000-B8FCF5lcrash affected by libbfd integer overflows
TEMP-0000000-BA35FEcrash in the certificate verification logic
TEMP-0000000-BAC45Agaim crash when receiving an invalid UPnP response
TEMP-0000000-BB4B08zend framework multiple issues
TEMP-0000000-BBBF43Crypto weakness in Tor's handshaking process
TEMP-0000000-BC4C2Fnautilus: file preview html script execution
TEMP-0000000-BD20F7ZF2010-07
TEMP-0000000-C070DDntop: access.log permissions
TEMP-0000000-C0C622gstreamer-ffmpeg unspecified issue related to sps and pps ids
TEMP-0000000-C3D012multiple missing input sanity checks in KDE
TEMP-0000000-C43658bugzilla: unauthorized bug modification
TEMP-0000000-C46FADpam usb wrongly allows authentication without password in ssh sessions
TEMP-0000000-CD327Cremctl ACL bypass vulnerability
TEMP-0000000-CE781Fflaw that allows unsigned code to access any file on the machine (accessible to the user) and write to it.
TEMP-0000000-D0A7F0ircd-ratbox password disclosure during TLS handshake
TEMP-0000000-D61692unace unspecified security issue related to uninitialized variable
TEMP-0000000-D9D9B0lwat sometimes logs passwords in access.log
TEMP-0000000-DAA254fai tempfile vulnerability
TEMP-0000000-DAE756clamav: DoS through multiple empty Content-Disposition header lines
TEMP-0000000-DEED53unrar: opens /tmp/debug_unrar.txt
TEMP-0000000-E06059backup-manager: make sure password is not written to world-readable files
TEMP-0000000-E10713Multiple buffer overflows in gtetrinet
TEMP-0000000-E3DB33Several DoS possibilities of clients against the server in Freeciv
TEMP-0000000-E48B73rageirc IRC daemon always allows login with empty password
TEMP-0000000-E52D56Integer overflow in binutils' ELF parsing
TEMP-0000000-E9A545libetpan NULL deref
TEMP-0000000-EA71EFmoodle unspecified security bug in the forum module (discuss.php)
TEMP-0000000-EC3A6Emonkey DoS
TEMP-0000000-EEC6F6kernel: Signedness problems in net/core/filter
TEMP-0000000-F350A9Directory traversal in unzoo
TEMP-0000000-F4C8D1ejabberd HTML code injection
TEMP-0000000-F53EE40.1.1+dfsg-1 multiple issues
TEMP-0000000-F56399webkit info leak
TEMP-0000000-F647EFMissing safemode checks in PHP's _php_image_output functions
TEMP-0000000-FB3F88webalizer-stonesteps XSS
TEMP-0000000-FC3A86unspecified multiple Drupal vulnerabilies, likely some overlap with the next temp entry
TEMP-0000000-FC713Apythonpaste web root esacpe
TEMP-0000000-FD294Cmysql 5.0 several DoS vulns
TEMP-0000000-FE4944libhaml-ruby XSS issue
TEMP-0046709-935F97Insecure access control on GNU Mach's IO ports
TEMP-0105562-0FE13Bcrypt++ passes passwords through the command line
TEMP-0107374-DF37E7gnupg: inproper flagging of signatures as being local
TEMP-0149799-ABFD7Csanitizer bypassal through quoted file names
TEMP-0169793-0E1404libnss-ldap: DoS through truncated DNS queries
TEMP-0173238-677015Insecure temp files in lilo
TEMP-0183047-CE70BAfuzz: Insecure temp file usage
TEMP-0216566-EA84C5Insecure bounds checking in mpack's content parser
TEMP-0250106-DF1988Unspecified buffer overflow in libmng
TEMP-0253838-2AD268Minor local DoS as libldap
TEMP-0254101-876546Multiple buffer overflows in isoqlog
TEMP-0259987-89C19Cbash-completion: does not properly quote characters
TEMP-0264684-94ACC3Pavuk Digest Authentication Buffer Overflow
TEMP-0267040-058910Should include "UNRESTRICTED access to your computer" warning somewhere
TEMP-0267098-76A1A1Two vulnerabilities in sredird
TEMP-0269186-FFE79Fasciijump: /var/games/asciijump world writable
TEMP-0276789-AC8537Insecure tempfile usage in tleds
TEMP-0279163-95DF2EBarrendero spool world-readable
TEMP-0281448-00272AFormat string bug in sysklogd's syslog_tst sources
TEMP-0282565-080CCCphpwiki shares a cookie for all wikis on a host
TEMP-0282583-19BE25microcode.ctl downloads microcode w/o user confirmation
TEMP-0290047-4CE288Insecure temp files in linux-wlan-ng
TEMP-0290435-0B57B5tar's rmt command may have undesired side effects
TEMP-0290833-627E93Inconsistent escaping of user supplied data in dbauthpgsql.c
TEMP-0291452-29156Bgs-esp: Insecure usage of /tmp in source code
TEMP-0291613-A6DD69xshisen follows symlinks for shared gid games files
TEMP-0296112-517ED6libnet-ssleay-perl: /tmp/entropy insecure
TEMP-0298114-36C546nvi: init.d recover file security bugs
TEMP-0298929-838146Multiple security issues when using distcc without ssh auth
TEMP-0300560-C9B661downloads.ini writable by group users, world-readable
TEMP-0302454-1EA4A5trackballs: Follows symlinks as gid games
TEMP-0302790-27DC0Ahdup inproperly preserves permissions on directories
TEMP-0303991-0B8885Does not do escaping in mysql version - both a worrying flaw and stops adduser working
TEMP-0306076-4B7D89coreutils ignores umask when using -m in mkdir, mkfifo and mknod
TEMP-0307796-A364A7Missing input validation in xtradius
TEMP-0308737-BABD6AHeap overflow in libosip URI parsing
TEMP-0308783-360D88libxpm4: new s_popen() function is insecure garbage
TEMP-0311369-BF4422osh buffer overflow
TEMP-0313081-3428D4DoS triggering endless loops in findutils -follow option
TEMP-0313644-9251C3mkzopeinstance.py creates world-readable inituser file
TEMP-0317703-B6E618xsupplicant information leak
TEMP-0319489-1E8D79Buffer overflow in Description parsing
TEMP-0319661-CF4E1Exemeraldia games file overwrite
TEMP-0319686-D21D67xgalaga score file segfault
TEMP-0320150-40E143Integer overflow in ffmpeg's MPEG encoding
TEMP-0321446-AF9008clamav-getfile: Insecure use of temporary files
TEMP-0321447-C22A86Insecure usage of temporary files in x11perfcomp and other security issues
TEMP-0321470-3DB8C5wine: Unsafe use of temporary files in winelauncher
TEMP-0321473-A78C3DDoS to users to prevent usage of showpartial through _hard_ links
TEMP-0321566-40512Dfftw3-dev: Insecure tempfile usage in fftw-wisdom-to-conf script
TEMP-0321567-329716bugzilla: Maintainer's postinst script use temporary files in an unsafe way
TEMP-0322699-57F099fprobe-ng: Insecure default hash
TEMP-0324913-425151cplay - still unsafe temporary file handling vulnerable to symlink attacks
TEMP-0325080-6D2C4Fuser password file created by gajim is world-redable
TEMP-0325369-6C1D5Ekdebase uses urandom as an entropy source
TEMP-0327261-B6AE8Fwine-safe does not prompt the user/is registered in mailcap
TEMP-0328134-B819BCsnort: DoS in verbose mode
TEMP-0329365-8CCB8CInsecure pidfile handling in mailleds
TEMP-0329597-14A3D2egroupware unsafe use of /tmp for storing a log file
TEMP-0329597-F5A3A6SQL injection vulnerability in egroupware in account deletion
TEMP-0330627-887F38rkhunter: Insecure temporary file
TEMP-0331720-9168FEadduser's deluser creates backup files with world readable permissions
TEMP-0334193-23D83Axscreensaver does not maintain screen locks during upgrade
TEMP-0335996-97467Dntop format string vulnerability
TEMP-0336719-CA7663user logout in drupal has no effect
TEMP-0337492-CFA0CDInsecure temp files in note
TEMP-0338542-20361Edouble free() in libungif
TEMP-0340079-E5FD8CInsecure tempfile in libjpeg6b's exifautotran
TEMP-0340105-EE3BB8unsafe file permissions in vpnc
TEMP-0344000-4A049DWorld-readable config file with sensitive data in b2evolution
TEMP-0349528-9E59D3Buffer overflow in elog's header buffer
TEMP-0352723-F61961dpkg-sig: insecure temp file bug
TEMP-0358139-D2A6EEgauche-config rpath set to user home
TEMP-0358142-0BC2FFunixodbc rpath set to /home
TEMP-0358157-34A070fftw rpath set to user home
TEMP-0358166-12F63Fhamlib3-perl rpath set to user home
TEMP-0358369-7131E1tcpquota rpath set to user home
TEMP-0359745-ECBE05webalizer: symlink vulnerability
TEMP-0361653-A94AFDlibrsvg2 crash on certain svg files
TEMP-0361913-F8E45Alinphone insecure password leakage
TEMP-0364350-5A8D23typo3 mailforms can be abused to send spam
TEMP-0368804-259562ldap account manager sets trivial password instead of disabling it
TEMP-0369014-6AE03E'Cache' shell injection vulnerability
TEMP-0369542-32FFCAssmtp password leak
TEMP-0370144-2CA0D8specialy crafted WAV turns mkvmerge into a malloc bomb
TEMP-0375453-4F9189ldap account manager wrongly unlocks some passwords
TEMP-0376577-38D215uqwk buffer overflow
TEMP-0378411-57ACA8Buffer overflow in XML::Parser::Expat triggered by utf8
TEMP-0378412-67AD3DBuffer overflow in XML::Parser::Expat triggered by deep nesting
TEMP-0378571-06BD02courier-authdaemon: wrong socket permissions may lead to password disclosure
TEMP-0379922-FA0DE2double-free vulnerability in the Real Media demuxer
TEMP-0382132-C0E39Cdiffmon information leakage
TEMP-0382161-C88554realtime-lsm-source: wrong permissions might lead to local root
TEMP-0388608-F17697logrotate race condition could lead to file disclosure
TEMP-0391388-8371ADzabbix buffer overflows
TEMP-0391388-A7E978zabbix format string vulnerabilities
TEMP-0393846-B78E90motion insecure tempfile creation
TEMP-0397297-E6F2D0obexpushd arbitrary command execution
TEMP-0399226-A0B8DFyacas insecure rpath
TEMP-0399508-EC6FC8insecure rpath in libflash-mozplugin
TEMP-0400624-86BB88dsniff urlsnarf missing output sanitization
TEMP-0402316-613F61hinfo code injection
TEMP-0403141-57B365znc file access security hole
TEMP-0404640-30D504mt-daapd remote access & default password
TEMP-0404927-037F7Budev wrong permissions on raid devices
TEMP-0406285-531EEAbcfg2 password disclosure
TEMP-0406982-8DF6EBlibjabber DoS
TEMP-0407003-DA457Cvarious crashes and infinite loops in ffmpeg
TEMP-0407116-23D9EFwordpress unregister_globals workaround from 2.0.7
TEMP-0407605-7D944Enetpbm heap corruption
TEMP-0407607-240F77python-django flup/FastCGI/debugging issue
TEMP-0409062-BD7B6Dkaya buffer overflow, cross-site scripting and data leak
TEMP-0410557-009D67dokuwiki conf directory accessible by web users
TEMP-0410588-2CACBBamavids-new uses contrib/non-free packers without security support in default config
TEMP-0412143-62DE92vserver patch allows renice of processes in different context
TEMP-0412618-38583Eapg generates insecure passwords on 64-bit architectures
TEMP-0413629-0358E2buffer overruns in GIT's http-push.c, fixed in 1.5.0.3
TEMP-0414480-089D8Alow-entropy default passphrase in Debian's dtc-xen
TEMP-0414482-5BA32Cfile permission race conidition in Debian's dtc-xen
TEMP-0416296-75BF0COwl Intranet Engine multiple cross-site scripting, SQL-injection
TEMP-0417995-6A1CD7initramfs-tools creates /dev/root world-readable
TEMP-0418662-DC1CF3buffer overflow in mixmaster importing type 2 messages
TEMP-0425010-42F27Cmantis: information leak
TEMP-0425254-0F9CE1insecure tempfile in wdiff
TEMP-0427715-C31B61webpy HTTP response splitting vulnerability
TEMP-0434134-B27890dokuwiki XSS in spellchecker
TEMP-0435707-98CBD1teamspeak-server arbitrary file disclosure
TEMP-0454297-EACDD7exempi buffer overflow in GIF ReadHeader() function
TEMP-0456520-A0F651venkman preinst symlink dos
TEMP-0457947-284341pgp4pine off-by-one
TEMP-0464084-305C70greylistd bypass
TEMP-0464778-7EAAA3tdiary XSS
TEMP-0465561-A017B1minor cyrus sasl DoS
TEMP-0482385-09F6D5resizing the monitor with xrandr can crash xscreensaver
TEMP-0484639-8D3138missing sanity checks allow DoS via mis-formated timestamp
TEMP-0495542-A51430phpCAS XSS in final_uri; PHPCAS-52
TEMP-0495985-D91305tcpdf code execution via tcpdf tag
TEMP-0496462-B3176Finsecure temp file in nvi
TEMP-0497005-8CD734Overwrite certain images without notice
TEMP-0497005-A51CB0Overwrite symlink without check
TEMP-0497452-F45308nfdump vulnerable to symlink attacks
TEMP-0498901-F99C05unsafe use of tempfile in ssmclient
TEMP-0500180-9ABD38unsafe usage of temp file
TEMP-0500181-9ABD38unsafe usage of temp file
TEMP-0500295-A176F7possible script injection via /etc/wordpress/wp-config.php
TEMP-0500611-22A0F0jumpnbump: insecure temp file
TEMP-0503222-4ACACFXSS in book module in drupal
TEMP-0503222-760085local file inclusion in drupal
TEMP-0503750-D75E0Abalazar3: insecure temp file handling
TEMP-0504680-D4DC50yzis insecure temp file
TEMP-0504726-7A5872universalindentgui insecure usage of temp files
TEMP-0505326-BEA2C3typo3: passwords are not changeable bug in the backend
TEMP-0506625-71B0F6geda-gnetlist: sch2eaglepos.sh has insecure temp file handling
TEMP-0506961-3C07AFauctex insecure temp file
TEMP-0507482-9415A7Insecure tmpdir creation
TEMP-0508111-173336Insecure tempfile creation
TEMP-0513611-D1D676glpi sql injection
TEMP-0514151-B17364samba: Account locking out doesnt work with an LDAP backend
TEMP-0515104-609AB4nautilus: potential exploits via application launchers
TEMP-0515106-13A33Akonqueror: potential exploits via application launchers
TEMP-0516669-D6C1BFgit-core in Debian has non-root-owned files under /usr
TEMP-0517018-A83CE6sysvinit: no-root option in expert installer exposes locally exploitable security flaw
TEMP-0517020-915121thunar: potential exploits via application launchers
TEMP-0521107-09A165unsafe xfs
TEMP-0523476-4CE9EFpptp-linux: unrestrictive pptpsetup permissions
TEMP-0525820-07BBE3More file buffer overflows
TEMP-0526594-48E4C2moin: XSS in AttachFile.py via attachements
TEMP-0527476-471755prewkikka: pasword world-readable
TEMP-0528250-2E3658hex-a-hop: buffer overflow in loading save games
TEMP-0528434-FDFF92cron: Incomplete fix for CVE-2006-2607 (setgid() and initgroups() not checked
TEMP-0530245-C3F9D6udev: creates aacraid devices that are rw by group floppy
TEMP-0530430-B9B0E6mimedecode: potential dos/crash due to invalid input
TEMP-0531735-61C2C9OCS Inventory NG SQL Injection Vulnerability
TEMP-0532514-9137E0predictable random number generator used in web browsers
TEMP-0532740-DB1B64libdkim: signature parsing is not thread-safe
TEMP-0532990-F6E040ShowConfigTab unintentionally grants rights intended for SuperUsers
TEMP-0533670-BB9FF7pcsc-lite: creates world-writable directory
TEMP-0533673-74CBB6moin: heirarchical ACL vulnerability
TEMP-0535159-76AB98ser2net DoS
TEMP-0535881-957F77clamav scanner bypass with archives
TEMP-0535886-8B62DCapache2: htaccess override
TEMP-0535946-7636B8libio-socket-ssl-perl: partial hostname matching vulnerability
TEMP-0537604-F35BD7insecure tmp file vulnerability in slim
TEMP-0539699-BC7A2Bxscreensaver: local screen lock bypassable via low resolution video devices
TEMP-0540606-8877D9php5: 'open_basedir' bypass
TEMP-0547140-24A459SA-CORE-2009-008
TEMP-0548909-2413C6xen-tools: world readable disk image files
TEMP-0549871-4C71ACkfreebsd: Devfs / VFS NULL pointer race condition
TEMP-0551907-963784mandos 0600 file being included in initrd
TEMP-0552518-ADA4BAeglibc: ldd arbitrary code execution
TEMP-0555308-79E91Cxserver-xorg: inherits user's mask
TEMP-0555668-4795ADelfsign uses cryptographically weak md5 hashes
TEMP-0560087-F084E6xpat2: save game permissions issue
TEMP-0560108-565B70browser-based css info disclosure
TEMP-0560895-39B4B0gnome-screensaver inhibitor not removed when connection is closed
TEMP-0566142-F12930sudosh3: many security weaknesses
TEMP-0566326-9A899Fsqlite: info leak
TEMP-0567175-3A30A9gmetad incorrect file permissions
TEMP-0568486-B6FCB6browser javascript document.write denial-of-service
TEMP-0568925-CB8E83esmtp: world-readable config file
TEMP-0569506-737DDEirssi emote leak
TEMP-0569658-1D2B13multiple mod_security issues
TEMP-0570011-670DB5phpbb3 weak captcha
TEMP-0570713-FED4BBffmpeg potentially remaining vulnerabilities after DSA 2000
TEMP-0571151-9735FDmultiple typo issues
TEMP-0578928-72FBC5gnome-orca: shell access without logon
TEMP-0579087-7F12A8prosody password world-readable
TEMP-0579136-23AF31webkit info disclosure/segfault
TEMP-0580120-33FF40mediatomb directory traversal
TEMP-0581058-CF1E8Dnumpy memory corruption
TEMP-0582798-329FE7wicd changes permissions of resolv.conf
TEMP-0592115-F98F5Csignature verification issue
TEMP-0593829-E6A4BCconfig file world readable
TEMP-0597382-058DA8mingetty directory traversal
TEMP-0601525-BEBB65libgd2: gdImageColorTransparent can write outside buffer
TEMP-0601585-D41D8C
TEMP-0603436-5CA466pam_pgsql overflow
TEMP-0605160-28DAD2insecure python path handling
TEMP-0606657-A0D78Awordpress: insufficient permissions verification on XMLRPC interface
TEMP-0607494-376E2EXSS in ftpls
TEMP-0608822-E0260Ccalibre XSS
TEMP-0608822-EF2F16calibre file disclosure
TEMP-0608979-E8B8DFCrash with long HOME environment variable
TEMP-0608980-E8B8DFCrash with long HOME environment variable
TEMP-0608981-E607B0Crash with long GGI_DISPLAY environment variable
TEMP-0609096-D41D8C
TEMP-0609212-CA8607multiple spip issues
TEMP-0612034-33CBADaptitude tempfile
TEMP-0612668-CE1EF5evince segfault
TEMP-0613312-84D729kfreebsd dos
TEMP-0615118-2DDE11python2.6: distutils world-readable password
TEMP-0625868-9433A0fglrx-driver xauth cookie leak
TEMP-0627936-75D3F5unspecified security vulnerabilities
TEMP-0631437-206E95unspecified security vulnerabilities from 4.3.7
TEMP-0632260-7A1354stardict: minor information disclosure
TEMP-0635836-4F6C5Cminissdpd multiple issues
TEMP-0646758-12F1BDspip path disclosure
TEMP-0649113-5F7BC7spip privilege escalation
TEMP-0649113-869F0Dspip XSS
TEMP-0651931-477350bokken: insecure tempfile
TEMP-0654341-5A7001inkscape files unexpectedly read from /tmp
TEMP-0655496-A31522as31 insecure tempfile
TEMP-0661037-1A43A9sbuild privilege escalation
TEMP-0668082-83D2E0libpng electric fence crash
TEMP-0668087-2BC9BCtiff electric fence crashes
TEMP-0672961-92221Ctwo XSS

Search for package or bug name: Reporting problems

Home - Testing Security Team - Debian Security - Source (SVN)