Security Advisories from 2012

[24 May 2012] DSA-2480 request-tracker3.8 - several vulnerabilities
[23 May 2012] DSA-2479 libxml2 - off-by-one
[23 May 2012] DSA-2478 sudo - parsing error
[20 May 2012] DSA-2477 sympa - authorization bypass
[19 May 2012] DSA-2476 pidgin-otr - format string vulnerability
[17 May 2012] DSA-2475 openssl - integer underflow
[16 May 2012] DSA-2474 ikiwiki - cross-site scripting
[16 May 2012] DSA-2473 openoffice.org - buffer overflow
[15 May 2012] DSA-2472 gridengine - privilege escalation
[13 May 2012] DSA-2471 ffmpeg - several vulnerabilities
[11 May 2012] DSA-2470 wordpress - several vulnerabilities
[10 May 2012] DSA-2469 linux-2.6 - privilege escalation/denial of service
[09 May 2012] DSA-2468 libjakarta-poi-java - unbounded memory allocation
[09 May 2012] DSA-2467 mahara - insecure defaults
[09 May 2012] DSA-2466 rails - cross site scripting
[09 May 2012] DSA-2465 php5 - several vulnerabilities
[08 May 2012] DSA-2464 icedove - several vulnerabilities
[02 May 2012] DSA-2463 samba - missing permission checks
[03 May 2012] DSA-2462 imagemagick - several vulnerabilities
[26 Apr 2012] DSA-2461 spip - several vulnerabilities
[25 Apr 2012] DSA-2460 asterisk - several vulnerabilities
[04 May 2012] DSA-2459 quagga - several vulnerabilities
[13 May 2012] DSA-2458 iceape - several vulnerabilities
[13 May 2012] DSA-2457 iceweasel - several vulnerabilities
[23 Apr 2012] DSA-2456 dropbear - use after free
[20 Apr 2012] DSA-2455 typo3-src - missing input sanitization
[24 Apr 2012] DSA-2454 openssl - multiple vulnerabilities
[16 Apr 2012] DSA-2453 gajim - several vulnerabilities
[15 Apr 2012] DSA-2452 apache2 - insecure default configuration
[13 Apr 2012] DSA-2451 puppet - several vulnerabilities
[12 Apr 2012] DSA-2450 samba - privilege escalation
[12 Apr 2012] DSA-2449 sqlalchemy - missing input sanitization
[10 Apr 2012] DSA-2448 inspircd - buffer overflow
[04 Apr 2012] DSA-2447 tiff - integer overflow
[04 Apr 2012] DSA-2446 libpng - incorrect memory handling
[31 Mar 2012] DSA-2445 typo3-src - several vulnerabilities
[29 Mar 2012] DSA-2444 tryton-server - privilege escalation
[26 Mar 2012] DSA-2443 linux-2.6 - privilege escalation/denial of service
[31 Mar 2012] DSA-2442 openarena - UDP traffic amplification
[25 Mar 2012] DSA-2441 gnutls26 - missing bounds check
[24 Mar 2012] DSA-2440 libtasn1-3 - missing bounds check
[22 Mar 2012] DSA-2439 libpng - buffer overflow
[22 Mar 2012] DSA-2438 raptor - programming error
[21 Mar 2012] DSA-2437 icedove - several vulnerabilities
[19 Mar 2012] DSA-2436 libapache2-mod-fcgid - inactive resource limits
[19 Mar 2012] DSA-2435 gnash - several vulnerabilities
[19 Mar 2012] DSA-2434 nginx - sensitive information leak
[15 Mar 2012] DSA-2433 iceweasel - several vulnerabilities
[12 Mar 2012] DSA-2432 libyaml-libyaml-perl - format string vulnerabilities
[11 Mar 2012] DSA-2431 libdbd-pg-perl - format string vulnerabilities
[10 Mar 2012] DSA-2430 python-pam - double free
[07 Mar 2012] DSA-2429 mysql-5.1 - several vulnerabilities
[07 Mar 2012] DSA-2428 freetype - several vulnerabilities
[06 Mar 2012] DSA-2427 imagemagick - several vulnerabilities
[06 Mar 2012] DSA-2426 gimp - several vulnerabilities
[04 Mar 2012] DSA-2425 plib - buffer overflow
[04 Mar 2012] DSA-2424 libxml-atom-perl - XML external entity expansion
[02 Mar 2012] DSA-2423 movabletype-opensource - several vulnerabilities
[09 May 2012] DSA-2422 file - missing bounds checks
[29 Feb 2012] DSA-2421 moodle - several vulnerabilities
[28 Feb 2012] DSA-2420 openjdk-6 - several vulnerabilities
[27 Feb 2012] DSA-2419 puppet - several vulnerabilities
[27 Feb 2012] DSA-2418 postgresql-8.4 - several vulnerabilities
[22 Feb 2012] DSA-2417 libxml2 - computational denial of service
[22 Feb 2012] DSA-2416 notmuch - information disclosure
[21 Feb 2012] DSA-2415 libmodplug - several vulnerabilities
[25 Feb 2012] DSA-2414 fex - insufficient input sanitization
[20 Feb 2012] DSA-2413 libarchive - buffer overflows
[19 Feb 2012] DSA-2412 libvorbis - buffer overflow
[19 Feb 2012] DSA-2411 mumble - information disclosure
[15 Feb 2012] DSA-2410 libpng - integer overflow
[15 Feb 2012] DSA-2409 devscripts - several vulnerabilities
[13 Feb 2012] DSA-2408 php5 - several vulnerabilities
[09 Feb 2012] DSA-2407 cvs - heap overflow
[09 Feb 2012] DSA-2406 icedove - several vulnerabilities
[06 Feb 2012] DSA-2405 apache2 - multiple issues
[05 Feb 2012] DSA-2404 xen-qemu-dm-4.0 - buffer overflow
[06 Feb 2012] DSA-2403 php5 - code injection
[02 Feb 2012] DSA-2402 iceape - several vulnerabilities
[02 Feb 2012] DSA-2401 tomcat6 - several vulnerabilities
[02 Feb 2012] DSA-2400 iceweasel - several vulnerabilities
[31 Jan 2012] DSA-2399 php5 - several vulnerabilities
[31 Mar 2012] DSA-2398 curl - several vulnerabilities
[29 Jan 2012] DSA-2397 icu - buffer underflow
[27 Jan 2012] DSA-2396 qemu-kvm - buffer underflow
[27 Jan 2012] DSA-2395 wireshark - buffer underflow
[27 Jan 2012] DSA-2394 libxml2 - several vulnerabilities
[25 Jan 2012] DSA-2393 bip - buffer overflow
[23 Jan 2012] DSA-2392 openssl - out-of-bounds read
[22 Jan 2012] DSA-2391 phpmyadmin - several vulnerabilities
[15 Jan 2012] DSA-2390 openssl - several vulnerabilities
[15 Jan 2012] DSA-2389 linux-2.6 - privilege escalation/denial of service/information leak
[14 Jan 2012] DSA-2388 t1lib - several vulnerabilities
[11 Jan 2012] DSA-2387 simplesamlphp - insufficient input sanitation
[10 Jan 2012] DSA-2386 openttd - several vulnerabilities
[10 Jan 2012] DSA-2385 pdns - packet loop
[04 Feb 2012] DSA-2384 cacti - several vulnerabilities
[08 Jan 2012] DSA-2383 super - buffer overflow
[07 Jan 2012] DSA-2382 ecryptfs-utils - multiple vulnerabilities
[06 Jan 2012] DSA-2381 squid3 - invalid memory deallocation
[04 Jan 2012] DSA-2380 foomatic-filters - shell command injection
[04 Jan 2012] DSA-2379 krb5 - several vulnerabilities
[03 Jan 2012] DSA-2378 ffmpeg - several vulnerabilities
[01 Jan 2012] DSA-2377 cyrus-imapd-2.2 - NULL pointer dereference

You can get the latest Debian security advisories by subscribing to our debian-security-announce mailing list. You can also browse the archives for the list.