ALT-BU-2014-2982-1
Branch sisyphus update bulletin.
Package libkeybinder updated to version 0.3.0-alt2.git20120617 for branch sisyphus in task 130167.
Closed bugs
module is installed into wrong directory
Closed vulnerabilities
BDU:2015-04141
Уязвимость функционала для работ с аргументами переменной длины vararg интерпретатора скриптов Lua, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2015-04142
Уязвимость функционала для работ с аргументами переменной длины vararg интерпретатора скриптов Lua, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2014-5461
Buffer overflow in the vararg functions in ldo.c in Lua 5.1 through 5.2.x before 5.2.3 allows context-dependent attackers to cause a denial of service (crash) via a small number of arguments to a function with a large number of fixed arguments.
- http://advisories.mageia.org/MGASA-2014-0414.html
- http://advisories.mageia.org/MGASA-2014-0414.html
- openSUSE-SU-2014:1145
- openSUSE-SU-2014:1145
- 59890
- 59890
- 60869
- 60869
- 61411
- 61411
- DSA-3015
- DSA-3015
- DSA-3016
- DSA-3016
- http://www.lua.org/bugs.html#5.2.2-1
- http://www.lua.org/bugs.html#5.2.2-1
- MDVSA-2015:144
- MDVSA-2015:144
- [oss-security] 20140821 CVE request: possible overflow in vararg functions
- [oss-security] 20140821 CVE request: possible overflow in vararg functions
- [oss-security] 20140821 Re: CVE request: possible overflow in vararg functions
- [oss-security] 20140821 Re: CVE request: possible overflow in vararg functions
- [oss-security] 20140827 Re: Lua CVE request [was Re: CVE request: possible overflow in vararg functions]
- [oss-security] 20140827 Re: Lua CVE request [was Re: CVE request: possible overflow in vararg functions]
- 69342
- 69342
- USN-2338-1
- USN-2338-1
- GLSA-201701-53
- GLSA-201701-53
- GLSA-202305-23
- GLSA-202305-23
Package phpMyAdmin updated to version 4.2.8.1-alt1 for branch sisyphus in task 130195.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2014-6300
Cross-site scripting (XSS) vulnerability in the micro history implementation in phpMyAdmin 4.0.x before 4.0.10.3, 4.1.x before 4.1.14.4, and 4.2.x before 4.2.8.1 allows remote attackers to inject arbitrary web script or HTML, and consequently conduct a cross-site request forgery (CSRF) attack to create a root account, via a crafted URL, related to js/ajax.js.
- openSUSE-SU-2014:1150
- openSUSE-SU-2014:1150
- http://www.phpmyadmin.net/home_page/security/PMASA-2014-10.php
- http://www.phpmyadmin.net/home_page/security/PMASA-2014-10.php
- 69790
- 69790
- https://github.com/phpmyadmin/phpmyadmin/commit/33b39f9f1dd9a4d27856530e5ac004e23b30e8ac
- https://github.com/phpmyadmin/phpmyadmin/commit/33b39f9f1dd9a4d27856530e5ac004e23b30e8ac
- GLSA-201505-03
- GLSA-201505-03