<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Wazi &#187; debian_linux</title>
	<atom:link href="http://olex.openlogic.com/wazi/tag/debian_linux/feed/" rel="self" type="application/rss+xml" />
	<link>http://olex.openlogic.com/wazi</link>
	<description>Thinking OPEN</description>
	<lastBuildDate>Fri, 06 Nov 2009 19:33:28 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.5</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Debian Linux 9.04 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2009/debian-linux-9-04-and-prior-high/</link>
		<comments>http://olex.openlogic.com/wazi/2009/debian-linux-9-04-and-prior-high/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/debian-linux-9-04-and-prior-high/</guid>
		<description><![CDATA[pam-auth-update for PAM, as used in Ubuntu 8.10 and 9.4, and Debian GNU/Linux, does not properly handle an "empty selection" for system authentication modules in certain rare configurations, which causes any attempt to be successful and allows remote attackers to bypass authentication....

CVE Identifier: CVE-2009-3232
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 9.04 and prior [High]
</ul>
<h3>Description</h3>
<p>pam-auth-update for PAM, as used in Ubuntu 8.10 and 9.4, and Debian GNU/Linux, does not properly handle an &#8220;empty selection&#8221; for system authentication modules in certain rare configurations, which causes any attempt to be successful and allows remote attackers to bypass authentication.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-3232" target="_blank">CVE-2009-3232</a><br />
Severity: High
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/debian-linux-9-04-and-prior-high/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 10 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2009/debian-linux-10-and-prior-medium/</link>
		<comments>http://olex.openlogic.com/wazi/2009/debian-linux-10-and-prior-medium/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/debian-linux-10-and-prior-medium/</guid>
		<description><![CDATA[xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments....

CVE Identifier: CVE-2009-1573
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 10 and prior [Medium]
</ul>
<h3>Description</h3>
<p>xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-1573" target="_blank">CVE-2009-1573</a><br />
Severity: Medium
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/debian-linux-10-and-prior-medium/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 4 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-4-and-prior-medium/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-4-and-prior-medium/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-4-and-prior-medium/</guid>
		<description><![CDATA[sshd in OpenSSH 4 on Debian GNU/Linux, and the 20070303 OpenSSH snapshot, allows remote authenticated users to obtain access to arbitrary SELinux roles by appending a :/ (colon slash) sequence, followed by the role name, to the username....

CVE Identifier: CVE-2008-3234
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 4 and prior [Medium]
</ul>
<h3>Description</h3>
<p>sshd in OpenSSH 4 on Debian GNU/Linux, and the 20070303 OpenSSH snapshot, allows remote authenticated users to obtain access to arbitrary SELinux roles by appending a :/ (colon slash) sequence, followed by the role name, to the username.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-3234" target="_blank">CVE-2008-3234</a><br />
Severity: Medium
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-4-and-prior-medium/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 4.0 and prior [Unknown Severity]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-unknown-severity/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-unknown-severity/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-unknown-severity/</guid>
		<description><![CDATA[The asn1 implementation in (a) the Linux kernel 2.4 before 2.4.36.6 and 2.6 before 2.6.25.5, as used in the cifs and ip_nat_snmp_basic modules; and (b) the gxsnmp package; does not properly validate length values during decoding of ASN.1 BER data, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) a length greater than the working buffer, which can lead to an unspecified overflow; (2) an oid length of zero, which can lead to an off-by-one error; or (3) an indefinite length for a primitive encoding....

CVE Identifier: CVE-2008-1673
Vulnerability Type(s): 
Severity: Unknown Severity
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 4.0 and prior [Unknown Severity]
</ul>
<h3>Description</h3>
<p>The asn1 implementation in (a) the Linux kernel 2.4 before 2.4.36.6 and 2.6 before 2.6.25.5, as used in the cifs and ip_nat_snmp_basic modules; and (b) the gxsnmp package; does not properly validate length values during decoding of ASN.1 BER data, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) a length greater than the working buffer, which can lead to an unspecified overflow; (2) an oid length of zero, which can lead to an off-by-one error; or (3) an indefinite length for a primitive encoding.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-1673" target="_blank">CVE-2008-1673</a><br />
Severity: Unknown Severity
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-unknown-severity/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 4.0 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-5/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-5/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-5/</guid>
		<description><![CDATA[The (1) sparc_mmap_check function in arch/sparc/kernel/sys_sparc.c and the (2) sparc64_mmap_check function in arch/sparc64/kernel/sys_sparc.c, in the Linux kernel 2.4 before 2.4.36.5 and 2.6 before 2.6.25.3, omit some virtual-address range (aka span) checks when the mmap MAP_FIXED bit is not set, which allows local users to cause a denial of service (panic) via unspecified mmap calls....

CVE Identifier: CVE-2008-2137
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 4.0 and prior [Medium]
</ul>
<h3>Description</h3>
<p>The (1) sparc_mmap_check function in arch/sparc/kernel/sys_sparc.c and the (2) sparc64_mmap_check function in arch/sparc64/kernel/sys_sparc.c, in the Linux kernel 2.4 before 2.4.36.5 and 2.6 before 2.6.25.3, omit some virtual-address range (aka span) checks when the mmap MAP_FIXED bit is not set, which allows local users to cause a denial of service (panic) via unspecified mmap calls.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-2137" target="_blank">CVE-2008-2137</a><br />
Severity: Medium
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-5/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 4.5.14 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-4514-and-prior-medium/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-4514-and-prior-medium/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-4514-and-prior-medium/</guid>
		<description><![CDATA[The write_array_file function in utils/include.pl in GForge 4.5.14 updates configuration files by truncating them to zero length and then writing new data, which might allow attackers to bypass intended access restrictions or have unspecified other impact in opportunistic circumstances....

CVE Identifier: CVE-2008-0167
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 4.5.14 and prior [Medium]
</ul>
<h3>Description</h3>
<p>The write_array_file function in utils/include.pl in GForge 4.5.14 updates configuration files by truncating them to zero length and then writing new data, which might allow attackers to bypass intended access restrictions or have unspecified other impact in opportunistic circumstances.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-0167" target="_blank">CVE-2008-0167</a><br />
Severity: Medium
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-4514-and-prior-medium/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 4.0 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-4/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-4/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-4/</guid>
		<description><![CDATA[policyd-weight 0.1.14 beta-16 and earlier allows local users to modify or delete arbitrary files via a symlink attack on temporary files that are used when creating a socket....

CVE Identifier: CVE-2008-1569
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 4.0 and prior [Medium]
</ul>
<h3>Description</h3>
<p>policyd-weight 0.1.14 beta-16 and earlier allows local users to modify or delete arbitrary files via a symlink attack on temporary files that are used when creating a socket.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-1569" target="_blank">CVE-2008-1569</a><br />
Severity: Medium
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-4/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 1.0.1 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-101-and-prior-high/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-101-and-prior-high/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-101-and-prior-high/</guid>
		<description><![CDATA[w_editeur.c in XWine 1.0.1 for Debian GNU/Linux allows local users to overwrite or print arbitrary files via a symlink attack on the temporaire temporary file...

CVE Identifier: CVE-2008-0930
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 1.0.1 and prior [High]
</ul>
<h3>Description</h3>
<p>w_editeur.c in XWine 1.0.1 for Debian GNU/Linux allows local users to overwrite or print arbitrary files via a symlink attack on the temporaire temporary file.  NOTE: some of these details are obtained from third party information.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-0930" target="_blank">CVE-2008-0930</a><br />
Severity: High
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-101-and-prior-high/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 1.0.1 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-101-and-prior-medium/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-101-and-prior-medium/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-101-and-prior-medium/</guid>
		<description><![CDATA[w_export.c in XWine 1.0.1 on Debian GNU/Linux sets insecure permissions (0666) for /etc/wine/config, which might allow local users to execute arbitrary commands or cause a denial of service by modifying the file....

CVE Identifier: CVE-2008-0931
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 1.0.1 and prior [Medium]
</ul>
<h3>Description</h3>
<p>w_export.c in XWine 1.0.1 on Debian GNU/Linux sets insecure permissions (0666) for /etc/wine/config, which might allow local users to execute arbitrary commands or cause a denial of service by modifying the file.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-0931" target="_blank">CVE-2008-0931</a><br />
Severity: Medium
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-101-and-prior-medium/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 2008.0 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-20080-and-prior-medium/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-20080-and-prior-medium/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-20080-and-prior-medium/</guid>
		<description><![CDATA[Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitrary code via a postscript (.ps) file containing a long Range array in a .seticcspace operator....

CVE Identifier: CVE-2008-0411
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 2008.0 and prior [Medium]
</ul>
<h3>Description</h3>
<p>Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitrary code via a postscript (.ps) file containing a long Range array in a .seticcspace operator.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-0411" target="_blank">CVE-2008-0411</a><br />
Severity: Medium
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-20080-and-prior-medium/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 8 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-8-and-prior-high/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-8-and-prior-high/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-8-and-prior-high/</guid>
		<description><![CDATA[diatheke.pl in The SWORD Project Diatheke 1.5.9 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the range parameter....

CVE Identifier: CVE-2008-0932
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 8 and prior [High]
</ul>
<h3>Description</h3>
<p>diatheke.pl in The SWORD Project Diatheke 1.5.9 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the range parameter.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-0932" target="_blank">CVE-2008-0932</a><br />
Severity: High
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-8-and-prior-high/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 4.0 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-high/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-high/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-high/</guid>
		<description><![CDATA[misc.c in splitvt 1.6.6 and earlier does not drop group privileges before executing xprop, which allows local users to gain privileges....

CVE Identifier: CVE-2008-0162
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 4.0 and prior [High]
</ul>
<h3>Description</h3>
<p>misc.c in splitvt 1.6.6 and earlier does not drop group privileges before executing xprop, which allows local users to gain privileges.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-0162" target="_blank">CVE-2008-0162</a><br />
Severity: High
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-high/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 4.0 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-3/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-3/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-3/</guid>
		<description><![CDATA[lib/Driver/sql.php in Turba 2 (turba2) Contact Manager H3 2.1.x before 2.1.7 and 2.2.x before 2.2-RC3, as used in products such as Horde Groupware before 1.0.4 and Horde Groupware Webmail Edition before 1.0.5, does not properly check access rights, which allows remote authenticated users to modify address data via a modified object_id parameter to edit.php, as demonstrated by modifying a personal address book entry when there is write access to a shared address book....

CVE Identifier: CVE-2008-0807
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 4.0 and prior [Medium]
</ul>
<h3>Description</h3>
<p>lib/Driver/sql.php in Turba 2 (turba2) Contact Manager H3 2.1.x before 2.1.7 and 2.2.x before 2.2-RC3, as used in products such as Horde Groupware before 1.0.4 and Horde Groupware Webmail Edition before 1.0.5, does not properly check access rights, which allows remote authenticated users to modify address data via a modified object_id parameter to edit.php, as demonstrated by modifying a personal address book entry when there is write access to a shared address book.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-0807" target="_blank">CVE-2008-0807</a><br />
Severity: Medium
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-medium-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 4.0 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-high-4/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-high-4/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-high-4/</guid>
		<description><![CDATA[scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute arbitrary code by invoking scp, as implemented by OpenSSH, with the -F and -o options....

CVE Identifier: CVE-2007-6415
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 4.0 and prior [High]
</ul>
<h3>Description</h3>
<p>scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute arbitrary code by invoking scp, as implemented by OpenSSH, with the -F and -o options.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2007-6415" target="_blank">CVE-2007-6415</a><br />
Severity: High
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-40-and-prior-high-4/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 2008.0 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2008/debian-linux-20080-and-prior-medium-2/</link>
		<comments>http://olex.openlogic.com/wazi/2008/debian-linux-20080-and-prior-medium-2/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2008/debian-linux-20080-and-prior-medium-2/</guid>
		<description><![CDATA[The xmlCurrentChar function in libxml2 before 2.6.31 allows context-dependent attackers to cause a denial of service (infinite loop) via XML containing invalid UTF-8 sequences....

CVE Identifier: CVE-2007-6284
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 2008.0 and prior [Medium]
</ul>
<h3>Description</h3>
<p>The xmlCurrentChar function in libxml2 before 2.6.31 allows context-dependent attackers to cause a denial of service (infinite loop) via XML containing invalid UTF-8 sequences.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2007-6284" target="_blank">CVE-2007-6284</a><br />
Severity: Medium
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2008/debian-linux-20080-and-prior-medium-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux  [Low]</title>
		<link>http://olex.openlogic.com/wazi/2007/debian-linux-low/</link>
		<comments>http://olex.openlogic.com/wazi/2007/debian-linux-low/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2007/debian-linux-low/</guid>
		<description><![CDATA[The libdspam7-drv-mysql cron job in Debian GNU/Linux includes the MySQL dspam database password in a command line argument, which might allow local users to read the password by listing the process and its arguments....

CVE Identifier: CVE-2007-6418
Vulnerability Type(s): 
Severity: Low
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux  [Low]
</ul>
<h3>Description</h3>
<p>The libdspam7-drv-mysql cron job in Debian GNU/Linux includes the MySQL dspam database password in a command line argument, which might allow local users to read the password by listing the process and its arguments.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2007-6418" target="_blank">CVE-2007-6418</a><br />
Severity: Low
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2007/debian-linux-low/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 1.1 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2007/debian-linux-11-and-prior-high/</link>
		<comments>http://olex.openlogic.com/wazi/2007/debian-linux-11-and-prior-high/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2007/debian-linux-11-and-prior-high/</guid>
		<description><![CDATA[Send ICMP Nasty Garbage (sing) on Debian GNU/Linux allows local users to append to arbitrary files and gain privileges via the -L (output log file) option...

CVE Identifier: CVE-2007-6211
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 1.1 and prior [High]
</ul>
<h3>Description</h3>
<p>Send ICMP Nasty Garbage (sing) on Debian GNU/Linux allows local users to append to arbitrary files and gain privileges via the -L (output log file) option.  NOTE: this issue is only a vulnerability in limited environments, since sing is not installed setuid, and the administrator would need to override a non-setuid default during installation.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2007-6211" target="_blank">CVE-2007-6211</a><br />
Severity: High
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2007/debian-linux-11-and-prior-high/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 2008.0 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2007/debian-linux-20080-and-prior-high/</link>
		<comments>http://olex.openlogic.com/wazi/2007/debian-linux-20080-and-prior-high/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2007/debian-linux-20080-and-prior-high/</guid>
		<description><![CDATA[Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attackers to execute arbitrary code by switching from byte to Unicode (UTF) characters in a regular expression....

CVE Identifier: CVE-2007-5116
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 2008.0 and prior [High]
</ul>
<h3>Description</h3>
<p>Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attackers to execute arbitrary code by switching from byte to Unicode (UTF) characters in a regular expression.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2007-5116" target="_blank">CVE-2007-5116</a><br />
Severity: High
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2007/debian-linux-20080-and-prior-high/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 4.0 and prior [Low]</title>
		<link>http://olex.openlogic.com/wazi/2007/debian-linux-40-and-prior-low-2/</link>
		<comments>http://olex.openlogic.com/wazi/2007/debian-linux-40-and-prior-low-2/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2007/debian-linux-40-and-prior-low-2/</guid>
		<description><![CDATA[iSCSI Enterprise Target (iscsitarget) 0.4.15 uses weak permissions for /etc/ietd.conf, which allows local users to obtain passwords....

CVE Identifier: CVE-2007-5827
Vulnerability Type(s): 
Severity: Low
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 4.0 and prior [Low]
</ul>
<h3>Description</h3>
<p>iSCSI Enterprise Target (iscsitarget) 0.4.15 uses weak permissions for /etc/ietd.conf, which allows local users to obtain passwords.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2007-5827" target="_blank">CVE-2007-5827</a><br />
Severity: Low
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2007/debian-linux-40-and-prior-low-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Debian Linux 22.1 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2007/debian-linux-221-and-prior-medium/</link>
		<comments>http://olex.openlogic.com/wazi/2007/debian-linux-221-and-prior-medium/#comments</comments>
		<pubDate>Tue, 30 Nov 1999 06:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[debian_linux]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2007/debian-linux-221-and-prior-medium/</guid>
		<description><![CDATA[The hack-local-variables function in Emacs before 22.2, when enable-local-variables is set to :safe, does not properly search lists of unsafe or risky variables, which might allow user-assisted attackers to bypass intended restrictions and modify critical program variables via a file containing a Local variables declaration....

CVE Identifier: CVE-2007-5795
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Debian Linux 22.1 and prior [Medium]
</ul>
<h3>Description</h3>
<p>The hack-local-variables function in Emacs before 22.2, when enable-local-variables is set to :safe, does not properly search lists of unsafe or risky variables, which might allow user-assisted attackers to bypass intended restrictions and modify critical program variables via a file containing a Local variables declaration.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2007-5795" target="_blank">CVE-2007-5795</a><br />
Severity: Medium
</p>

<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2007/debian-linux-221-and-prior-medium/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
