Security Advisories from 2010

[31 Dec 2010] DSA-2139 phpmyadmin - several vulnerabilities
[29 Dec 2010] DSA-2138 wordpress - SQL injection
[26 Dec 2010] DSA-2137 libxml2 - several vulnerabilities
[21 Dec 2010] DSA-2136 tor - buffer overflow
[21 Dec 2010] DSA-2135 xpdf - several vulnerabilities
[18 Dec 2010] DSA-2134 - upcoming changes in advisory format
[13 Dec 2010] DSA-2133 collectd - denial of service
[11 Dec 2010] DSA-2132 xulrunner - several vulnerabilities
[10 Dec 2010] DSA-2131 exim4 - arbitrary code execution
[10 Dec 2010] DSA-2130 bind9 - several vulnerabilities
[01 Dec 2010] DSA-2129 krb5 - checksum verification weakness
[01 Dec 2010] DSA-2128 libxml2 - invalid memory access
[28 Nov 2010] DSA-2127 wireshark - denial of service
[26 Nov 2010] DSA-2126 linux-2.6 - privilege escalation/denial of service/information leak
[22 Nov 2010] DSA-2125 openssl - buffer overflow
[01 Nov 2010] DSA-2124 xulrunner - several vulnerabilities
[01 Nov 2010] DSA-2123 nss - several vulnerabilities
[22 Oct 2010] DSA-2122 glibc - missing input sanitization
[19 Oct 2010] DSA-2121 typo3-src - several vulnerabilities
[12 Oct 2010] DSA-2120 postgresql-8.3 - privilege escalation
[12 Oct 2010] DSA-2119 poppler - several vulnerabilities
[08 Oct 2010] DSA-2118 subversion - logic flaw
[04 Oct 2010] DSA-2117 apr-util - denial of service
[04 Oct 2010] DSA-2116 freetype - integer overflow
[29 Sep 2010] DSA-2115 moodle - several vulnerabilities
[26 Sep 2010] DSA-2114 git-core - buffer overflow
[20 Sep 2010] DSA-2113 drupal6 - several vulnerabilities
[20 Sep 2010] DSA-2112 bzip2 - integer overflow
[19 Sep 2010] DSA-2111 squid3 - denial of service
[17 Sep 2010] DSA-2110 linux-2.6 - privilege escalation/denial of service/information leak
[16 Sep 2010] DSA-2109 samba - buffer overflow
[14 Sep 2010] DSA-2108 cvsnt - programming error
[09 Sep 2010] DSA-2107 couchdb - untrusted search path
[08 Sep 2010] DSA-2106 xulrunner - several vulnerabilities
[07 Sep 2010] DSA-2105 freetype - several vulnerabilities
[06 Sep 2010] DSA-2104 quagga - several vulnerabilities
[05 Sep 2010] DSA-2103 smbind - sql injection
[03 Sep 2010] DSA-2102 barnowl - unchecked return value
[31 Aug 2010] DSA-2101 wireshark - several vulnerabilities
[30 Aug 2010] DSA-2100 openssl - double free
[30 Aug 2010] DSA-2099 openoffice.org - buffer overflows
[29 Aug 2010] DSA-2098 typo3-src - several vulnerabilities
[29 Aug 2010] DSA-2097 phpmyadmin - insufficient input sanitising
[24 Aug 2010] DSA-2096 zope-ldapuserfolder - missing input validation
[23 Aug 2010] DSA-2095 lvm2 - insecure communication protocol
[19 Aug 2010] DSA-2094 linux-2.6 - privilege escalation/denial of service/information leak
[19 Aug 2010] DSA-2093 ghostscript - several vulnerabilities
[17 Aug 2010] DSA-2092 lxr-cvs - missing input sanitizing
[12 Aug 2010] DSA-2091 squirrelmail - No user-specific token implemented
[06 Aug 2010] DSA-2090 socat - incorrect user-input validation
[06 Aug 2010] DSA-2089 php5 - several vulnerabilities
[05 Aug 2010] DSA-2088 wget - missing input sanitization
[04 Aug 2010] DSA-2087 cabextract - programming error
[04 Aug 2010] DSA-2086 avahi - several vulnerabilities
[03 Aug 2010] DSA-2085 lftp - missing input validation
[03 Aug 2010] DSA-2084 tiff - integer overflows
[02 Aug 2010] DSA-2083 moin - missing input sanitization
[02 Aug 2010] DSA-2082 gmime2.2 - buffer overflow
[01 Aug 2010] DSA-2081 libmikmod - buffer overflow
[01 Aug 2010] DSA-2080 ghostscript - several vulnerabilities
[31 Jul 2010] DSA-2079 mapserver - several vulnerabilities
[31 Jul 2010] DSA-2078 kvirc - programming error
[29 Jul 2010] DSA-2077 openldap - several vulnerabilities
[27 Jul 2010] DSA-2076 gnupg2 - use-after-free
[27 Jul 2010] DSA-2075 xulrunner - several vulnerabilities
[21 Jul 2010] DSA-2074 ncompress - integer underflow
[20 Jul 2010] DSA-2073 mlmmj - insufficient input sanitising
[19 Jul 2010] DSA-2072 libpng - several vulnerabilities
[14 Jul 2010] DSA-2071 libmikmod - buffer overflows
[14 Jul 2010] DSA-2070 freetype - several vulnerabilities
[11 Jul 2010] DSA-2069 znc - denial of service
[11 Jul 2010] DSA-2068 python-cjson - buffer overflow
[02 Jul 2010] DSA-2067 mahara - several vulnerabilities
[01 Jul 2010] DSA-2066 wireshark - several vulnerabilities
[27 Jun 2010] DSA-2065 kvirc - several vulnerabilities
[27 Jun 2010] DSA-2064 xulrunner - several vulnerabilities
[17 Jun 2010] DSA-2063 pmount - insecure temporary file
[17 Jun 2010] DSA-2062 sudo - missing input sanitization
[16 Jun 2010] DSA-2061 samba - memory corruption
[13 Jun 2010] DSA-2060 cacti - insufficient input sanitization
[10 Jun 2010] DSA-2059 pcsc-lite - buffer overflow
[10 Jun 2010] DSA-2058 glibc, eglibc - multiple vulnerabilities
[07 Jun 2010] DSA-2057 mysql-dfsg-5.0 - several vulnerabilities
[06 Jun 2010] DSA-2056 zonecheck - missing input sanitizing
[05 Jun 2010] DSA-2055 openoffice.org - macro execution
[04 Jun 2010] DSA-2054 bind9 - DNS cache poisoning
[25 May 2010] DSA-2053 linux-2.6 - privilege escalation/denial of service/information leak
[24 May 2010] DSA-2052 krb5 - null pointer dereference
[24 May 2010] DSA-2051 postgresql-8.3 - several vulnerabilities
[24 May 2010] DSA-2050 kdegraphics - several vulnerabilities
[23 May 2010] DSA-2049 barnowl - buffer overflow
[22 May 2010] DSA-2048 dvipng - buffer overflow
[17 May 2010] DSA-2047 aria2 - insufficient input sanitising
[13 May 2010] DSA-2046 phpgroupware - several vulnerabilities
[11 May 2010] DSA-2045 libtheora - integer overflow
[11 May 2010] DSA-2044 mplayer - integer overflow
[11 May 2010] DSA-2043 vlc - integer overflow
[05 May 2010] DSA-2042 iscsitarget - format string
[03 May 2010] DSA-2041 mediawiki - Cross-Site Request Forgery
[02 May 2010] DSA-2040 squidguard - buffer overflow
[23 Apr 2010] DSA-2039 cacti - missing input sanitising
[18 Apr 2010] DSA-2038 pidgin - several vulnerabilities
[17 Apr 2010] DSA-2037 kdm (kdebase) - race condition
[17 Apr 2010] DSA-2036 jasper - programming error
[17 Apr 2010] DSA-2035 apache2 - multiple issues
[17 Apr 2010] DSA-2034 phpmyadmin - several vulnerabilities
[15 Apr 2010] DSA-2033 ejabberd - heap overflow
[11 Apr 2010] DSA-2032 libpng - several vulnerabilities
[11 Apr 2010] DSA-2031 krb5 - use-after-free
[06 Apr 2010] DSA-2030 mahara - sql injection
[05 Apr 2010] DSA-2029 imlib2 - several vulnerabilities
[05 Apr 2010] DSA-2028 xpdf - multiple vulnerabilities
[03 Apr 2010] DSA-2027 xulrunner - several vulnerabilities
[02 Apr 2010] DSA-2026 netpbm-free - stack-based buffer overflow
[31 Mar 2010] DSA-2025 icedove - several vulnerabilities
[31 Mar 2010] DSA-2024 moin - insufficient input sanitising
[28 Mar 2010] DSA-2023 curl - buffer overflow
[23 Mar 2010] DSA-2022 mediawiki - several vulnerabilities
[22 Mar 2010] DSA-2021 spamass-milter - missing input sanitization
[20 Mar 2010] DSA-2020 ikiwiki - insufficient input sanitization
[20 Mar 2010] DSA-2019 pango1.0 - missing input sanitization
[18 Mar 2010] DSA-2018 php5 - DoS (crash)
[15 Mar 2010] DSA-2017 pulseaudio - insecure temporary directory
[13 Mar 2010] DSA-2016 drupal6 - several vulnerabilities
[15 Mar 2010] DSA-2015 drbd8 - privilege escalation
[12 Mar 2010] DSA-2014 moin - several vulnerabilities
[11 Mar 2010] DSA-2013 egroupware - several vulnerabilities
[11 Mar 2010] DSA-2012 linux-2.6 - privilege escalation/denial of service
[10 Mar 2010] DSA-2011 dpkg - path traversal
[10 Mar 2010] DSA-2010 kvm - privilege escalation/denial of service
[09 Mar 2010] DSA-2009 tdiary - insufficient input sanitising
[08 Mar 2010] DSA-2008 typo3-src - several vulnerabilities
[03 Mar 2010] DSA-2007 cups - format string vulnerability
[02 Mar 2010] DSA-2006 sudo - several vulnerabilities
[27 Feb 2010] DSA-2005 linux-2.6.24 - privilege escalation/denial of service/sensitive memory leak
[28 Feb 2010] DSA-2004 samba - several vulnerabilities
[22 Feb 2010] DSA-2003 linux-2.6 - privilege escalation/denial of service
[19 Feb 2010] DSA-2002 polipo - denial of service
[19 Feb 2010] DSA-2001 php5 - multiple vulnerabilities
[18 Feb 2010] DSA-2000 ffmpeg-debian - several vulnerabilities
[18 Feb 2010] DSA-1999 xulrunner - several vulnerabilities
[17 Feb 2010] DSA-1998 kdelibs - buffer overflow
[14 Feb 2010] DSA-1997 mysql-dfsg-5.0 - several vulnerabilities
[12 Feb 2010] DSA-1996 linux-2.6 - privilege escalation/denial of service/sensitive memory leak
[12 Feb 2010] DSA-1995 openoffice.org - several vulnerabilities
[11 Feb 2010] DSA-1994 ajaxterm - weak session IDs
[10 Feb 2010] DSA-1993 otrs2 - sql injection
[04 Feb 2010] DSA-1992 chrony - several vulnerabilities
[04 Feb 2010] DSA-1991 squid/squid3 - denial of service
[03 Feb 2010] DSA-1990 trac-git - shell command injection
[02 Feb 2010] DSA-1989 fuse - denial of service
[02 Feb 2010] DSA-1988 qt4-x11 - several vulnerabilities
[02 Feb 2010] DSA-1987 lighttpd - denial of service
[02 Feb 2010] DSA-1986 moodle - several vulnerabilities
[31 Jan 2010] DSA-1985 sendmail - insufficient input validation
[30 Jan 2010] DSA-1984 libxerces2-java - denial of service
[30 Jan 2010] DSA-1983 wireshark - several vulnerabilities
[29 Jan 2010] DSA-1982 hybserv - denial of service
[28 Jan 2010] DSA-1981 maildrop - privilege escalation
[27 Jan 2010] DSA-1980 ircd-hybrid/ircd-ratbox - integer underflow/denial of service
[27 Jan 2010] DSA-1979 lintian - multiple vulnerabilities
[26 Jan 2010] DSA-1978 phpgroupware - several vulnerabilities
[25 Jan 2010] DSA-1977 python2.4 python2.5 - several vulnerabilities
[22 Jan 2010] DSA-1976 dokuwiki - several vulnerabilities
[20 Jan 2010] DSA-1974 gzip - several vulnerabilities
[19 Jan 2010] DSA-1973 glibc, eglibc - information disclosure
[17 Jan 2010] DSA-1972 audiofile - buffer overflow
[15 Jan 2010] DSA-1971 libthai - integer overflow
[13 Jan 2010] DSA-1970 openssl - denial of service
[12 Jan 2010] DSA-1969 krb5 - integer underflow
[08 Jan 2010] DSA-1968 pdns-recursor - several vulnerabilities
[07 Jan 2010] DSA-1967 transmission - directory traversal
[07 Jan 2010] DSA-1966 horde3 - insufficient input sanitising
[06 Jan 2010] DSA-1965 phpldapadmin - missing input sanitising

You can get the latest Debian security advisories by subscribing to our debian-security-announce mailing list. You can also browse the archives for the list.