<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
  <channel>
    <title>LinuxSecurity.com - Security Advisories</title>
    <link>http://www.linuxsecurity.com/</link>
    <description>The central voice for Linux and Open Source security news.</description>
    <language>en-us</language>
    <generator>update-rss-feeds.pl (1.01)</generator>

  <item>
    <title>Gentoo: InspIRCd Denial of Service</title>
    <link>http://www.linuxsecurity.com/content/view/136736?rdf</link>
    <pubDate>Fri, 09 May 2008 10:33:00 +0000</pubDate>
    <description>&#60;b&#62;LinuxSecurity.com&#60;/b&#62;: A buffer overflow in InspIRCd allows remote attackers to cause a Denial of Service.</description>
    <guid isPermaLink='true'>http://www.linuxsecurity.com/content/view/136736?rdf</guid>
    <source url='http://www.linuxsecurity.com'>LinuxSecurity.com</source>
  </item>

  <item>
    <title>Gentoo: Linux Terminal Server Project Multiple vulnerabilities</title>
    <link>http://www.linuxsecurity.com/content/view/136735?rdf</link>
    <pubDate>Fri, 09 May 2008 10:27:00 +0000</pubDate>
    <description>&#60;b&#62;LinuxSecurity.com&#60;/b&#62;: Multiple vulnerabilities have been discovered in components shipped with LTSP which allow remote attackers to compromise terminal clients.</description>
    <guid isPermaLink='true'>http://www.linuxsecurity.com/content/view/136735?rdf</guid>
    <source url='http://www.linuxsecurity.com'>LinuxSecurity.com</source>
  </item>

  <item>
    <title>Gentoo: Firebird Data disclosure</title>
    <link>http://www.linuxsecurity.com/content/view/136734?rdf</link>
    <pubDate>Fri, 09 May 2008 10:12:00 +0000</pubDate>
    <description>&#60;b&#62;LinuxSecurity.com&#60;/b&#62;: Firebird allows remote connections to the administrative account without verifying credentials.</description>
    <guid isPermaLink='true'>http://www.linuxsecurity.com/content/view/136734?rdf</guid>
    <source url='http://www.linuxsecurity.com'>LinuxSecurity.com</source>
  </item>

  <item>
    <title>Mandriva: Updated hal-info package fixes resume issue</title>
    <link>http://www.linuxsecurity.com/content/view/136731?rdf</link>
    <pubDate>Thu, 08 May 2008 21:59:00 +0000</pubDate>
    <description>&#60;b&#62;LinuxSecurity.com&#60;/b&#62;:   An updated hal-info package fixes resume from suspend to RAM on HP 6710b systems.  It had previously failed with a black screen on Mandriva Linux 2008.0.</description>
    <guid isPermaLink='true'>http://www.linuxsecurity.com/content/view/136731?rdf</guid>
    <source url='http://www.linuxsecurity.com'>LinuxSecurity.com</source>
  </item>

  <item>
    <title>Mandriva: Updated ImageMagick packages fix vulnerabilities</title>
    <link>http://www.linuxsecurity.com/content/view/136729?rdf</link>
    <pubDate>Thu, 08 May 2008 19:46:00 +0000</pubDate>
    <description>&#60;b&#62;LinuxSecurity.com&#60;/b&#62;: A heap-based buffer overflow vulnerability was found in how ImageMagick parsed XCF files.  If ImageMagick opened a specially-crafted XCF file, it could be made to overwrite heap memory beyond the bounds of its allocated memory, potentially allowing an attacker to execute arbitrary code on the system running ImageMagick (CVE-2008-1096). </description>
    <guid isPermaLink='true'>http://www.linuxsecurity.com/content/view/136729?rdf</guid>
    <source url='http://www.linuxsecurity.com'>LinuxSecurity.com</source>
  </item>

  <item>
    <title>Ubuntu:  GStreamer Good Plugins vulnerability</title>
    <link>http://www.linuxsecurity.com/content/view/136728?rdf</link>
    <pubDate>Thu, 08 May 2008 18:03:00 +0000</pubDate>
    <description>&#60;b&#62;LinuxSecurity.com&#60;/b&#62;:  It was discovered that Speex did not properly validate its input when  processing Speex file headers. If a user or automated system were  tricked into opening a specially crafted Speex file, an attacker could  create a denial of service in applications linked against Speex or  possibly execute arbitrary code as the user invoking the program. </description>
    <guid isPermaLink='true'>http://www.linuxsecurity.com/content/view/136728?rdf</guid>
    <source url='http://www.linuxsecurity.com'>LinuxSecurity.com</source>
  </item>

  </channel>
</rss>
