Slackware Security Advisory - New mercurial packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix security issues.
e9a3e10f787f19af20556a8626c0eec971c3bc7891353842436625abb0d5e43c
De-Workshop Auto Workshop Portal version 1.0 suffers from a remote SQL injection vulnerability.
c7209a306e6ced6b8889e2b1bf366ddf07dd56722572489f3264a0003bd57460
De-Journal Academic Journal and Peer Review System version 1.0 suffers from a remote SQL injection vulnerability.
720a785e6381af5a5f86a54b8c798145d81b3faf8719782e5720d9dee371053e
Pluck CMS version 4.7.4 suffers from a cross site request forgery vulnerability.
49f4ac3f2d05457707a143d5c21e77ac3ac4d068da5364ca96bf90dc3b045a9a
De-Tutor version 1.0 suffers from a remote SQL injection vulnerability.
951c1f5e23eaa8e4f943bfa8bd3b8f63b8402a5368d5df8bf8a4fbca3aadc00b
Debian Linux Security Advisory 3932-1 - Several problems were discovered in Subversion, a centralized version control system.
a1bdde86fa5407458eda66de508e4072a37aa16fa1bdedce2c8ce794840af2d4
Debian Linux Security Advisory 3933-1 - Two vulnerabilities were found in the PJSIP/PJProject communication library, which may result in denial of service.
30e014a2b67c34791038c3854024e7c6718f91ef1c57bc78bf88bef6bdd6561b
Ubuntu Security Notice 3383-1 - Aleksandar Nikolic discovered a stack based buffer overflow when handling chunked encoding. An attacker could use this to cause a denial of service or possibly execute arbitrary code.
d7c0396f8bdb083d40f718df72795e6d257d1e8c292bfb46319c39bc2eb754ff
Apache Subversion has released version 1.9.7 which addresses an arbitrary code execution vulnerability.
585a9fde58f7e2538f6923e554f14c1d32f0baf2b51e326916874d231c289c2b
Red Hat Security Advisory 2017-2459-01 - The libsoup packages provide an HTTP client and server library for GNOME. Security Fix: A stack-based buffer overflow flaw was discovered within the HTTP processing of libsoup. A remote attacker could exploit this flaw to cause a crash or, potentially, execute arbitrary code by sending a specially crafted HTTP request to a server using the libsoup HTTP server functionality or by tricking a user into connecting to a malicious HTTP server with an application using the libsoup HTTP client functionality.
c321e39764d4ea90115daaa085e98f4fb231f535452f14a5c6e22c4c92dd6699