Section: .. / 0612-advisories /
| /// File Name: |
sa23116.txt |
Description:
|
Secunia Security Advisory - Aria-Security has reported some vulnerabilities in cPanel, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/23116/ | | File Size: | 3294 | | Last Modified: | Dec 6 03:07:49 2006 |
| MD5 Checksum: | b5e5ca26592619aca6db2fcfe62e0138 |
|
| /// File Name: |
12.08.06-2.txt |
Description:
|
iDefense Security Advisory 12.08.06 - Sophos AntiVirus Engine is vulnerable to a Memory Corruption vulnerability when scanning malformed CHM archives. This memory corruption vulnerability can be triggered when Sophos Antivirus engine scans a malformed CHM file which has a large name length specified in a CHM chunk header. Affected includes Sophos Small business edition (Linux) product version 4.06.1 and engine version 2.34.3.
| | Author: | Damian Put | | Homepage: | http://www.idefense.com/ | | File Size: | 3289 | | Related CVE(s): | CVE-2006-5647 | | Last Modified: | Dec 11 16:47:03 2006 |
| MD5 Checksum: | 1b7f4f23ff6d7e3952f59e7327585d13 |
|
| /// File Name: |
glsa-200612-12.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-12 - F-Prot Antivirus version 4.6.7 fixes a heap-based buffer overflow, an infinite loop, and other unspecified vulnerabilities. Versions less than 4.6.7 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3271 | | Last Modified: | Dec 14 21:59:44 2006 |
| MD5 Checksum: | a3edad08b495c2bd64ce74b596e116b3 |
|
| /// File Name: |
caid-34870.txt |
Description:
|
Multiple instances of improper handling of NULL buffers in CA Anti-Virus allow local attackers to cause a denial of service condition. This issue affects only consumer CA Anti-Virus products.
| | Author: | Ken Williams | | Homepage: | http://ca.com/catalk.htm | | File Size: | 3266 | | Last Modified: | Dec 14 21:35:07 2006 |
| MD5 Checksum: | 263be2e3b35d09d31bb9a82e2e464ab6 |
|
| /// File Name: |
glsa-200612-17.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-17 - A format string vulnerability was found in the sqllog function from the SQL accounting code for radiusd. That function is only used if one or more of the postgresql, mysql or odbc USE flags are enabled, which is not the default, except for the server 2006.1 and 2007.0 profiles which enable the mysql USE flag. Versions less than 1.4 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3263 | | Last Modified: | Dec 14 22:00:22 2006 |
| MD5 Checksum: | 1f2b36743f2675aaf1d4b1df06c476cb |
|
| /// File Name: |
sa23177.txt |
Description:
|
Secunia Security Advisory - TippingPoint Security Research Team has reported some vulnerabilities in Tivoli Storage Manager, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23177/ | | File Size: | 3252 | | Last Modified: | Dec 6 03:07:49 2006 |
| MD5 Checksum: | 00047a736c41fa6ab02991ada1115d1a |
|
| /// File Name: |
glsa-200612-03.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-03 - Hugh Warrington has reported a boundary error in GnuPG, in the ask_outfile_name() function from openfile.c: the make_printable_string() function could return a string longer than expected. Additionally, Tavis Ormandy of the Gentoo Security Team reported a design error in which a function pointer can be incorrectly dereferenced. Versions less than 1.4.6 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3226 | | Last Modified: | Dec 11 17:00:01 2006 |
| MD5 Checksum: | 9435c6adca0c17d1867da56d22f28d4c |
|
| /// File Name: |
sa23308.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/23308/ | | File Size: | 3219 | | Last Modified: | Dec 14 10:45:41 2006 |
| MD5 Checksum: | d8e20849ea24e51f2de58a94fe199679 |
|
| /// File Name: |
sa23315.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in ProNews, which can be exploited by malicious people to bypass security restrictions, conduct SQL injection attacks, and conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/23315/ | | File Size: | 3217 | | Last Modified: | Dec 14 10:45:41 2006 |
| MD5 Checksum: | f768acb2ed38a30f769bedd105e4db15 |
|
| /// File Name: |
n.runs-SA-2006.004.txt |
Description:
|
ESET NOD32 Antivirus suffers from a arbitrary code execution vulnerability. Versions prior to 1.1743 are affected.
| | Author: | Sergio Alvarez | | Homepage: | http://www.nruns.com/ | | File Size: | 3213 | | Last Modified: | Dec 22 01:10:26 2006 |
| MD5 Checksum: | bcf4e953377560b703e9250d30f8f620 |
|
| /// File Name: |
CYBSEC-Arbitrary.txt |
Description:
|
CYBSEC Security Advisory - A specially crafted HTTP request can remove any file located in SAP IGS file-system. SAP IGS versions 6.40 Patchlevel 16 and below and 7.00 Patchlevel 6 and below are affected.
| | Author: | Mariano Nunez Di Croce | | Homepage: | http://www.cybsec.com | | File Size: | 3196 | | Last Modified: | Dec 6 07:50:01 2006 |
| MD5 Checksum: | d57a01a5b3d05aaf6ecec121dbb72fec |
|
| /// File Name: |
sa23168.txt |
Description:
|
Secunia Security Advisory - r0ut3r has reported some vulnerabilities in Quick.Cart, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/23168/ | | File Size: | 3190 | | Last Modified: | Dec 6 03:07:49 2006 |
| MD5 Checksum: | a8595c6bb5c6801401cead9aff9dc5d2 |
|
| /// File Name: |
sa23407.txt |
Description:
|
Secunia Security Advisory - rgod has discovered some vulnerabilities in PHP-Update, which can be exploited by malicious people to bypass certain security restrictions and by malicious users to compromise vulnerable systems and manipulate data.
| | Homepage: | http://secunia.com/advisories/23407/ | | File Size: | 3184 | | Last Modified: | Dec 20 23:30:34 2006 |
| MD5 Checksum: | 4f3dbe6b792dcba1a37988d8c1549668 |
|
| /// File Name: |
sa23187.txt |
Description:
|
Secunia Security Advisory - Sun has acknowledged a vulnerability in Sun Solaris, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/23187/ | | File Size: | 3183 | | Last Modified: | Dec 6 03:07:49 2006 |
| MD5 Checksum: | aa686351b1a563b16fde96f70ab8ab8c |
|
| /// File Name: |
sa23497.txt |
Description:
|
Secunia Security Advisory - nuffsaid has discovered some vulnerabilities in Irokez CMS, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23497/ | | File Size: | 3182 | | Last Modified: | Dec 27 23:54:47 2006 |
| MD5 Checksum: | cfc8113798561d499e8f0b8fa0e90192 |
|
| /// File Name: |
sa23426.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in CA's Portal technology, which potentially can be exploited by malicious users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/23426/ | | File Size: | 3177 | | Last Modified: | Dec 20 23:30:34 2006 |
| MD5 Checksum: | 1fbcb359fd19ca04ee2deb914fa8c360 |
|
| /// File Name: |
CYBSEC-SAP-IGS.txt |
Description:
|
CYBSEC Security Advisory - Undocumented features have been discovered in SAP IGS service, some of which may signify security risks. SAP IGS versions 6.40 Patchlevel 15 and below and 7.00 Patchlevel 3 and below are affected.
| | Author: | Mariano Nunez Di Croce | | Homepage: | http://www.cybsec.com | | File Size: | 3173 | | Last Modified: | Dec 6 07:48:57 2006 |
| MD5 Checksum: | ed52b8035c0c9f2625fff8c9fbdacce2 |
|
| /// File Name: |
glsa-200612-20.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-20 - M. Joonas Pihlaja discovered several buffer overflows in loader_argb.c, loader_png.c, loader_lbm.c, loader_jpeg.c, loader_tiff.c, loader_tga.c, loader_pnm.c and an out-of-bounds memory read access in loader_tga.c. Versions less than 1.3.0 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3166 | | Last Modified: | Dec 22 01:17:08 2006 |
| MD5 Checksum: | b6280592846dc94c99dfa386c24f1058 |
|
| /// File Name: |
sa23410.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in the Project and Project issue tracking modules for Drupal, which can be exploited by malicious users to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/23410/ | | File Size: | 3160 | | Last Modified: | Dec 19 20:15:33 2006 |
| MD5 Checksum: | fe7b4805ad41bb11b723c801c4fb0afb |
|
| /// File Name: |
sa23195.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in SquirrelMail, which can be exploited by malicious people to conduct cross-site scripting and script insertion attacks.
| | Homepage: | http://secunia.com/advisories/23195/ | | File Size: | 3130 | | Last Modified: | Dec 6 03:07:49 2006 |
| MD5 Checksum: | 8a13750f772f170b02314120272da43d |
|
| /// File Name: |
sa23372.txt |
Description:
|
Secunia Security Advisory - Qx has reported some vulnerabilities in ScriptMate User Manager, which can be exploited by malicious users to conduct SQL injection and script insertion attacks, and by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/23372/ | | File Size: | 3128 | | Last Modified: | Dec 19 20:15:33 2006 |
| MD5 Checksum: | 0d59474109dda28429b9f3e22c90de90 |
|
| /// File Name: |
sa23221.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Intel LAN drivers, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/23221/ | | File Size: | 3126 | | Last Modified: | Dec 7 07:24:29 2006 |
| MD5 Checksum: | 4c3926c826f6432dc3c19c24fd699296 |
|
| /// File Name: |
sa23185.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in various JustSystems products, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/23185/ | | File Size: | 3121 | | Last Modified: | Dec 6 03:07:49 2006 |
| MD5 Checksum: | 658a7c13c482e8097827903f7e1e2035 |
|
| /// File Name: |
OpenPKG-SA-2006.042.txt |
Description:
|
OpenPKG Security Advisory - OpenSER versions 1.1.0 and below suffer from a buffer overflow vulnerability.
| | Homepage: | http://www.openpkg.org/security/ | | File Size: | 3118 | | Last Modified: | Dec 28 01:56:30 2006 |
| MD5 Checksum: | 61ce17402a56099668af12ea20964b09 |
|
| /// File Name: |
glsa-200612-16.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-16 - Teemu Salmela discovered that Links does not properly validate smb:// URLs when it runs smbclient commands. Versions less than 2.1_pre26 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3114 | | Last Modified: | Dec 14 22:00:15 2006 |
| MD5 Checksum: | 62e45d337d85ef1d4311a4071b4fc681 |
|
|
|
|
|