Package: moodle
Version: 1.8.2.dfsg-3+lenny2
Severity: grave
Tags: security
Justification: user security hole
CVE-2009-4303[2]:
| Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores (1) password
| hashes and (2) unspecified "secrets" in backup files, which might
| allow attackers to obtain sensit
Well I do realize that the Moodle packaging team it's aware of this bugreport
anyway I attempted to fix some of the more serious problems that I think could
impact my system, so as normally a good friend of mine says, check with
upstream, well in this case not with upstream but with the package
Package: moodle
Version: 1.8.2.dfsg-3+lenny2
Severity: grave
Tags: security
Justification: user security hole
A serie of security issues are fixed on 1.8.11, also salted passwords are
enabled for new installations.
http://docs.moodle.org/en/Moodle_1.8.11_release_notes
Security issues
* MSA
Package: nvidia-kernel-2.6.18-5-486
Version: 1.0.8776+6etch1
Severity: critical
Tags: security
Justification: root security hole
I tested the current exploits published on securityfocus and all get me
a root shell from non privileged account. I would be glad if you can
patch this package.
-- Syst
4 matches
Mail list logo