A security vulnerability has been identified and fixed in pidgin: It has been discovered that eight denial of service conditions exist in libpurple all due to insufficient validation of the return value from purple_base64_decode. Invalid or malformed data received in place of a valid base64-encoded value in portions of the Yahoo!, MSN, MySpaceIM, and XMPP protocol plugins and the NTLM authenticati ...

Allow to use ddf1 raid and to manage unpartitionned dmraid. It also offers to install onto dmraid or existing lvm without using manual partitionning. Update: drakx-installer-stage2 packages was missing with the MDVA-2010:062 advisory. The missing packages being provided with this advisory.

nautilus-sendto would crash on startup. This update was rebuilt with the right linking flags corrects the problem.

This update package contains a fix for Philco OEM systems, and does not offer to upgrade them to latest distribution versions.

This update fixes a wrong notice message for updates regarding the reports of supported and unsupported packages .

A vulnerability was discovered and fixed in kolab-horde-framework: Unspecified vulnerability in Kolab Webclient before 1.2.0 in Kolab Server before 2.2.3 allows attackers to have an unspecified impact via vectors related to an image upload form. Packages for 2008.0 and 2009.0 are provided as of the Extended Maintenance Program

Update of ldetect-lst to add the support of new Intel GPU: Atom Pineview G, Atom Pineview GM, Intel B43 and Intel Core i3/i5 IGP. Also update the monitor DB to add two new Samsung SyncMaster devices.

Multiple vulnerabilities has been found and corrected in freetype2: The FT_Stream_EnterFrame function in base/ftstream.c in FreeType before 2.4.2 does not properly validate certain position values, which allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted font file . Array index error in the t42_parse_sfnts function in type42/t42parse.c in FreeTyp ...

A problem was discovered in the mysqld init script which under certain circumstances could cause the service to exit too quickly, giving the [ OK ] status and before the mysql server was really started and bound to the mysql socket or IP address. This caused a problem for products like Pulse2. The corrected packages solves this problem. Packages for 2008.0 and 2009.0 are provided due to the Extend ...

Multiple vulnerabilities has been found and corrected in cups: CUPS in does not properly handle HTTP headers and HTML templates, which allows remote attackers to conduct cross-site scripting attacks and HTTP response splitting attacks via vectors related to the product"s web interface, the configuration of the print system, and the titles of printed jobs . Use-after-free vulnerability in the ...

