Bugzilla – Bug List
Home
|
New
|
Browse
|
Search
|
[?]
|
Reports
|
Requests
|
IDP Log In
|
Forgot Password
Sun Jul 21 2024 14:01:53 UTC
I'm Major Issue. My boss, General Failure, has some questions. Private Data will hand out the forms
Hide Search Description
Keywords:
security
101 bugs found.
ID
▲
Product
Comp
Assignee
Status
Resolution
Summary
Changed
71788
SUSE Security Incidents
Incidents
security-team
RESO
FIXE
VUL-0: CVE-2005-0711: Please update MySQL 4.1.10 to 4.1.10a before releasing SUSE Linux 9.3
2021-10-27
119383
SUSE LINUX 10.0
Security
forgotten_b5BnQSUi71
RESO
FIXE
Generic gssapi -lgssapi broken (libgssapi-0.3-2 & nfs-utils-1.0.7-13)
2005-10-11
124354
NDS SDK
LDAP Java SDK
jvincent
VERI
FIXE
LDAPConnection.setSocketFactory does not verify the user's rights
2007-05-14
141949
SUSE LINUX 10.0
YaST2
fehr
RESO
FIXE
/dev/loop* suggestion by Yast2 does not care about already used /dev/loop* devices.
2006-01-25
141950
SUSE LINUX 10.0
Installation
odabrunz
RESO
FIXE
the kernel of the installation dvd supports only 8 /dev/loop* . That is not enough for some setups.
2006-04-26
143425
SUSE LINUX 10.0
AppArmor
msvec
RESO
WONT
'complain' should report setting application to complain mode into system logs.
2007-11-16
146388
SUSE LINUX 10.0
Basesystem
werner
RESO
FIXE
ability to run some script/prog & start/restart services on start of boot.crypto & some script/prog on stop of boot.crypto .
2007-01-29
152123
openSUSE 11.0
AppArmor
security-team
RESO
WONT
SuSE 10.0 (and not only) supply kernels with no support for grsecurity nor even PaX & w/ this AppArmor is enabled for only some apps. :/
2008-03-06
153535
SUSE LINUX 10.0
Other
kssingvo
RESO
INVA
gpg has no default config file, also problems adding extentions, also some of gpg-related utils 've no man pages.
2006-03-01
153883
SUSE LINUX 10.0
Other
kssingvo
RESO
INVA
interactive help is not context oriented.
2006-03-01
159314
SUSE Linux 10.1
Basesystem
zpetrova
RESO
FIXE
gpgme-config, gpgme.h is missing in package 'gpgme' (gpgme-1.0.3-9)
2006-03-20
278171
openSUSE 10.2
Basesystem
mc
RESO
INVA
Possible root compromise in pam
2007-05-25
312725
Mono: Class Libraries
CORLIB
mono-bugs
RESO
FIXE
Missing bounds checking in Array.IList.this[] (patch and tests)
2007-09-15
313187
Mono: Class Libraries
CORLIB
bmaurer
RESO
FIXE
PrimalityTests.SmallPrimeSppTest doesn't work...
2007-09-15
313346
Mono: Class Libraries
System
mono-bugs
RESO
FIXE
SignedXml.CheckSignature() throws 'System.Security.Cryptography.CryptographicUnexpectedOperationException: missing key'
2007-09-15
313465
Mono: Class Libraries
System
mono-bugs
RESO
MOVE
Cannot find type `WindowsPrincipal'
2007-09-15
313466
Mono: Class Libraries
System
mono-bugs
RESO
MOVE
Cannot find type `WindowsPrincipal'
2007-09-15
313467
Mono: Class Libraries
System
mono-bugs
RESO
MOVE
Cannot find type `WindowsPrincipal'
2007-09-15
313977
Mono: Class Libraries
System
mono-bugs
RESO
FIXE
Key obtained from TripleDES SymmetricAlgorithm gets corrupted
2007-09-15
314092
Mono: Runtime
misc
mono-bugs
RESO
INVA
RSACryptoServiceProvider.ExportParameters method takes 35 seconds
2007-09-15
315023
Mono: Class Libraries
Sys.Web
gonzalo
RESO
FIXE
Setting Context.User does not update Thread.CurrentPrincipal
2007-09-15
316254
Mono: Class Libraries
CORLIB
spouliot
RESO
FIXE
BigInteger.Randomize doesn't work if BigInteger.BitCount == 0
2007-09-15
316327
Mono: Class Libraries
Sys.Web
gsanjay
RESO
FIXE
SmtpMail sends MailMessage Fields when it should not.
2007-09-15
316364
Mono: Class Libraries
CORLIB
spouliot
RESO
INVA
PasswordDeriveBytes results differ from Microsoft when used in non-PKCS5 compliant mode
2007-09-15
316552
Mono: Class Libraries
Mono.Security
spouliot
RESO
FIXE
BigInteger: Optimizations suggestions
2007-09-15
316586
Mono: Class Libraries
Mono.Security
spouliot
RESO
FIXE
BigInteger modular exponentiation doesn't work when modulus is power of 2
2007-09-15
316588
Mono: Class Libraries
Mono.Security
spouliot
VERI
FIXE
Montgomery implementation inefficient and insecure
2007-09-15
317236
Mono: Class Libraries
CORLIB
mono-bugs
RESO
INVA
RSACryptoServiceProvider fails to persist via CspProviderFlags.UseMachineKeyStore
2007-09-15
318593
Mono: Runtime
JIT
mono-bugs
VERI
INVA
WARNING **: : CreateThread error 0x2
2007-09-15
318688
Mono: Class Libraries
Mono.Security
spouliot
VERI
FIXE
SSL/TLS with certificates
2007-09-15
318706
Mono: Class Libraries
Sys.Web.Services
mono-bugs
RESO
FIXE
authentication fails for the microsoft mappoint webservice
2007-09-15
319622
Mono: Class Libraries
Mono.Security
spouliot
RESO
FIXE
WS over HTTPS
2007-09-15
320131
Mono: Tools
tools
mono-bugs
REOP
---
Local user can overwrite arbitrary file using mono-service
2007-09-15
320865
Mono: Class Libraries
Sys.Web
gonzalo
VERI
FIXE
Malformed URIs may expose OS files
2007-09-15
322577
Mono: Class Libraries
Sys.Web
mhabersack
RESO
FIXE
FormsAuthentication.SignOut() bug
2007-09-15
322714
Mono: Class Libraries
System.Security
spouliot
RESO
MOVE
PasswordDeriveBytes results differ from Microsoft when used in non-PKCS5 compliant mode
2007-09-15
323621
Mono: Class Libraries
CORLIB
mono-bugs
RESO
FIXE
Casting error using PrincipalPermission attribute
2007-09-15
323631
Mono: Class Libraries
Mono.Security
mono-bugs
NEW
---
Slow SSL Performance with Mono.Security and Novell LDAP library for C#
2007-10-28
323817
Mono: Runtime
misc
spouliot
RESO
FIXE
mono --security throws System.NullReferenceException
2007-09-15
324129
Mono: Class Libraries
Mono.Security
spouliot
RESO
FIXE
Two authenticode issues
2007-09-15
324141
Mono: Tools
tools
mono-bugs
RESO
FIXE
Bug in the signcode tool
2007-09-15
324523
Mono: Compilers
C#
rharinath
RESO
INVA
checked fails to detect integer overflow
2007-09-15
325486
Mono: Class Libraries
Mono.Security
miguel
CONF
---
Context.ClearKeyInfo doesn't zero-out secret keys
2011-07-20
345510
Mono: Class Libraries
CORLIB
mono-bugs
CONF
---
CryptoStream ignores the ICryptoTransform.CanTransformMultipleBlocks property when reading
2011-05-16
373632
openSUSE 10.3
YaST2
mzugec
RESO
FIXE
YaST should not echo password for WPA-EAP configuration
2021-02-26
411596
openSUSE 11.0
Network
forgotten_ZhJd0F0L3x
RESO
UPST
vpnc throws "interrupted system call"
2009-05-27
428015
openSUSE 11.1
Security
ralf
RESO
FEAT
OpenSUSE does not provide LDAP cached authentication
2008-10-06
480736
openSUSE 11.1
YaST2
fehr
RESO
FIXE
partitioner fails to display used mount point for encrypted filesystems when edit
2009-12-15
480738
openSUSE 11.1
YaST2
fehr
RESO
FIXE
yast2 fails to delete encrypted file
2009-12-10
480739
openSUSE 11.1
YaST2
fehr
RESO
FIXE
partitioner fails to add second crypted file
2009-12-16
480777
openSUSE 11.1
Basesystem
puzel
RESO
FIXE
yast2 created fstab entries for crypt files should be processed diffrently then now. (new loop dev should not be used unless luksClose is called on already used).
2011-02-23
530212
Mono: Class Libraries
System.Security
miguel
NEW
---
Unable to access named keystores.
2011-07-20
533189
openSUSE 11.2
KDE4 Workspace
llunak
RESO
FIXE
[Fix_is_Ready:11.2]fingerprint reader messes up login and kills possibility of unlocking locked session
2010-03-25
540966
openSUSE 11.2
Basesystem
pbaudis
RESO
FIXE
unscd still runs as user nobody (also nscd does)
2010-02-01
554819
openSUSE 11.1
X11 Applications
prusnak
RESO
FIXE
psi suddenly dropped gpg support 'due to buggy qt version'
2010-05-01
556916
WebYaST
Unspecified
mvidner
RESO
FIXE
WebYAST RC2 sending random binary data to language.xml causes persistent dbus errors
2011-01-26
560323
WebYaST
Frontend
security-team
RESO
FIXE
VUL-0: WebYAST RC2 persistent XSS vulnerability at webclient
2011-01-26
560340
WebYaST
Architecture
mvidner
RESO
FIXE
VUL-0: WebYAST RC2 persistent XSS vulnerability at webservice systemtime
2011-01-26
560723
WebYaST
Architecture
mvidner
RESO
FIXE
VUL-0: WebYAST webservice network/dns.xml fuzzing caused memory consumption (fork)
2011-10-21
580264
WebYaST
Status
schubi
RESO
WORK
Security problem - status module show more actions then intended
2011-01-26
580272
WebYaST
Policy management
jreidinger
RESO
FIXE
Security problem - permissions module show more actions then intended
2011-01-26
580453
WebYaST
Architecture
jreidinger
RESO
FIXE
Security problem - application controller add more actions then intended
2011-01-26
581265
WebYaST
Architecture
mkudlvasr
RESO
FIXE
Security problem - Eula show more actions then is intended
2010-03-02
588727
WebYaST
Repositories
lslezak
RESO
FIXE
XSS attack vulnerability in repositories module
2010-03-17
588742
WebYaST
Repositories
lslezak
RESO
FIXE
XSS attack vulnerability with alias
2010-03-17
591345
WebYaST
Architecture
security-team
RESO
FIXE
VUL-0: CVE-2010-1507: WebYaST generates installation specific secret key during RPM installation
2013-11-20
613238
openSUSE 11.3
Other
dmueller
RESO
FIXE
openSUSE Factory non-oss: Update flash-player
2010-06-11
616267
WebYaST
Session management
jreidinger
RESO
FIXE
VUL-0: AUDIT-0: WebYaST: roles management
2011-01-26
618212
openSUSE 11.3
Commercial
bili
VERI
FIXE
Adobe Reader (acroread) on Factory: Update to security-fixed version
2010-07-21
628950
WebYaST
Session management
jreidinger
VERI
FIXE
User without any permissions can login successfully.
2011-01-26
633409
Moonlight
media
mono-bugs
NEW
---
[DRM] Implement a DRM stack
2011-08-22
645432
openSUSE 11.4
Other
bili
RESO
FIXE
Factory: Update to Adobe Reader (acroread) 9.4 (Security update)
2010-10-12
650132
openSUSE 11.4
Basesystem
pbaudis
RESO
FIXE
Factory: Update GLIBC for security update
2012-09-13
675039
SUSE Security Incidents
General
security-team
RESO
FIXE
VUL-0: CVE-2011-0467: Studio: SQL injections
2018-03-05
675377
openSUSE 11.4
GNOME
gnome-bugs
RESO
FIXE
Fingerprint based authentication hangs when coming from screen-lock / stand by
2013-11-23
680124
openSUSE Tumbleweed
GNOME
gnome-bugs
RESO
WONT
[12.3] When Fingerprint authentication is enabled, a username has still to be given
2013-01-18
680129
openSUSE 12.1
GNOME
gnome-bugs
RESO
UPST
When Fingerprint authentication is enabled, Evolution requires manually unlocking keyring
2011-03-18
680132
openSUSE 12.1
GNOME
gnome-bugs
RESO
DUPL
When Fingerprint authentication is enabled, only one attempt is possible
2017-08-12
686881
SUSE Security Incidents
General
schubi
RESO
FIXE
rubygem-passenger: PassengerLoggingAgent runs as user nobody
2015-03-30
691364
SUSE Security Incidents
General
security-team
RESO
FIXE
VUL-0: CVE-2011-1753: jabberd: multiple jabber servers vulnerable to denial of service
2021-08-11
720601
openSUSE 12.1
Development
crrodriguez
RESO
FIXE
segmentation fault in svn
2022-02-16
729316
openSUSE.org
3rd party software
wolfgang
RESO
FIXE
Bug: update to MozillaFirefox 8.0 'seems corrupted' or fails 'Digest verification'
2011-11-12
760292
openSUSE 12.2
Network
vbotka
RESO
DUPL
Networkmanager Wlan works poorly
2012-10-08
765475
SUSE Security Incidents
Incidents
security-team
RESO
FIXE
VUL-1: python-tornado: Tornado v2.2.1 tornado.web.RequestHandler.set_header() fix to prevent header injection
2012-06-18
774523
SUSE Security Incidents
Incidents
security-team
RESO
FIXE
VUL-1: CVE-2012-3412: kernel: sfc: threats for DOS attacks in linux ethernet( sfc) driver
2019-08-27
783195
SUSE Security Incidents
Incidents
radmanic
VERI
WONT
VUL-1: install-chef-suse.sh: tmp file issues and insecure permission on files containing confidential data
2017-04-15
786276
WebYaST
Packaging/Deployment
lslezak
RESO
WONT
collectd and webyast are not started after SLMS add-on installation
2015-03-12
816137
SUSE Security Incidents
General
vuntz
RESO
FIXE
VUL-1: openstack-keystone: CVE-2013-1977,CVE-2013-2006 : password and admin_token should be secret
2013-11-27
864659
openSUSE.org
3rd party software
wolfgang
RESO
WONT
mozilla/firefox27: Bug
2018-04-19
903989
openSUSE Distribution
Security
Sascha.Manns
REOP
---
lynis permissions needs small changes.
2022-03-04
1018648
openSUSE Distribution
Security
security-team
RESO
FIXE
VUL-0: CVE-2017-5330: ark: does not handle executable scripts safely
2017-05-28
1021364
SUSE Security Incidents
Incidents
security-team
RESO
FIXE
VUL-1: CVE-2016-10165: lcms2: heap OOB read parsing crafted ICC profile
2022-06-23
1062326
openSUSE Distribution
Firefox
bnc-team-mozilla
RESO
FIXE
Busy Mozilla Firefox 52.4 leaks file descriptor when uploading a file
2018-09-15
1087749
openSUSE Distribution
Basesystem
josef.moellers
RESO
INVA
pam_mount with LUKS encrypted /home partition unwarily umounts /home at logout
2018-05-04
1089654
SUSE Security Incidents
Incidents
jmassaguerpla
RESO
FIXE
VUL-0: CVE-2018-1002100: kubernetes: Kubectl copy doesn't check for paths outside of the destination directory
2018-07-18
1158723
openSUSE Tumbleweed
Security
jengelh
RESO
FIXE
nftables should be build with python and json enabled
2021-02-17
1179293
openSUSE Distribution
Installation
yast2-maintainers
RESO
WONT
Unlock disk by entering password only once
2020-12-14
1180070
openSUSE Tumbleweed
Bootloader
bootloader-maintainers
NEW
---
Make bootloader automatically pass encryption key to kernel during boot
2023-11-15
1180071
openSUSE Tumbleweed
YaST2
yast2-maintainers
RESO
FEAT
Allow YaST to Force a Seperate Unencrypted Boot Partition
2021-01-14
1181852
SUSE Security Incidents
Incidents
jsegitz
RESO
FIXE
VUL-0: CVE-2021-25313: Rancher: XSS on /v3/cluster/
2021-06-01
1216680
openSUSE Tumbleweed
Security
security-team
RESO
FIXE
Unattended boot with TPM2 allows downgrading kernel and rootfs
2024-01-04
101 bugs found.
Change Columns
Edit Search
as