Mandriva Linux Security Advisory 2011-005 - Array index error in the PK and VF font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer. Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer. Integer overflow in the TFM font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer. The updated packages have been patched to correct these issues.
8a323bca36e45ebc77d98eb8446f88075869ded4422a4035e079a4b5a1b2786e
HP Security Bulletin HPSBMA02624 SSRT100195 - A potential vulnerability has been identified with HP LoadRunner. The vulnerability could be remotely exploited to allow execution of arbitrary code. Revision 1 of this advisory.
9b6f2aa5b9992d926f70e072ae047596c67fcd66aef085a447731298d368bc36
Ubuntu Security Notice 1042-2 - USN-1042-1 fixed vulnerabilities in PHP5. The fix for CVE-2010-3436 introduced a regression in the open_basedir restriction handling code. This update fixes the problem. We apologize for the inconvenience. It was discovered that attackers might be able to bypass open_basedir() restrictions by passing a specially crafted filename.
b6593210ed89d10deae731c59b512141e3e4e05f73b0bce7953da22579e92b62