[ MDVSA-2012:159 ] freeradius

2012-10-04 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2012:159 http://www.mandriva.com/security/

ANNOUNCE: RFIDIOt v1.0d released and code migration

2012-10-04 Thread Adam Laurie
I've migrated the RFIDIOt source code to https://github.com/AdamLaurie/RFIDIOt. I realised one of the reasons I haven't been doing many updates is because it's always such a faff getting a new tarball together, updating the webpage etc., etc. Now, should you be vaguely interested, you can

XnView JLS File Decompression Heap Overflow

2012-10-04 Thread Joseph Sheridan
XnView JLS File Decompression Heap Overflow Summary XnView Formats PlugIn is prone to an overflow condition. The JLS Plugin (xjpegls.dll) library fails to properly sanitize user-supplied input resulting in a heap-based buffer overflow. With a specially crafted JLS compressed image file, a

Vulnerable MSVC++ 2008 runtime libraries distributed with and installed by Ogg DirectShow filters

2012-10-04 Thread Stefan Kanthak
Hi @ll, the Ogg DirectShow filters available from http://www.xiph.org/dshow/ are distributed with and install vulnerable MSVC++ 2008 runtime libraries MSVC?90.DLL. See http://support.microsoft.com/kb/2467174 and http://support.microsoft.com/kb/2538243 resp.