Section: .. / 0612-advisories /
| /// File Name: |
sa23189.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in TWiki, which can be exploited by malicious people to disclose certain sensitive information.
| | Homepage: | http://secunia.com/advisories/23189/ | | File Size: | 3110 | | Last Modified: | Dec 6 03:07:49 2006 |
| MD5 Checksum: | 5bd75652aa676cf2b78379b630de8ad8 |
|
| /// File Name: |
sa23393.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Mandiant First Response, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and manipulate data, and by malicious people to cause a DoS.
| | Homepage: | http://secunia.com/advisories/23393/ | | File Size: | 3106 | | Last Modified: | Dec 19 20:15:33 2006 |
| MD5 Checksum: | 03c93722d1aef1e510188746f4eb3235 |
|
| /// File Name: |
sa23262.txt |
Description:
|
Secunia Security Advisory - Mariano Nuņez Di Croce has reported two vulnerabilities in SAP Internet Graphics Service (IGS), which can be exploited by malicious people to gain knowledge of various information, bypass certain security restrictions, manipulate data, or cause a DoS (Denial of Service),
| | Homepage: | http://secunia.com/advisories/23262/ | | File Size: | 3100 | | Last Modified: | Dec 7 07:24:29 2006 |
| MD5 Checksum: | 08ce479648433de08bd84f5b019327b9 |
|
| /// File Name: |
ZDI-06-043.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on systems with vulnerable installations of the Novell Netware Client. Versions 4.91 (SP1 and SP2) are affected. Authentication is not required to exploit this vulnerability.
| | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3098 | | Related CVE(s): | CVE-2006-5854 | | Last Modified: | Dec 6 03:44:45 2006 |
| MD5 Checksum: | ea0f9c391083b6b381c251cc34ef9ee2 |
|
| /// File Name: |
12.08.06-3.txt |
Description:
|
iDefense Security Advisory 12.08.06 - Sophos AntiVirus Engine is vulnerable to a Heap Overflow attack when scanning malformed CHM archives. Specifically, if the CHM file has a Window_size of 0 set in a LZX decompression header then memory corruption will occur. Sophos Antivirus for Linux product version 4.03 and engine version 4.05 are affected.
| | Author: | Damian Put | | Homepage: | http://www.idefense.com/ | | File Size: | 3098 | | Related CVE(s): | CVE-2006-5646 | | Last Modified: | Dec 11 16:48:35 2006 |
| MD5 Checksum: | 69c008e6faa57caf714a10cd1017f259 |
|
| /// File Name: |
sa23415.txt |
Description:
|
Secunia Security Advisory - Sergio Alvarez has reported a vulnerability in BitDefender Anti-Virus, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23415/ | | File Size: | 3097 | | Last Modified: | Dec 19 20:15:33 2006 |
| MD5 Checksum: | d877d42395ad02862f6d47252f4d23bc |
|
| /// File Name: |
sa23419.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for sql-ledger. This fixes some vulnerabilities, which can be exploited by malicious people to hijack user sessions and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23419/ | | File Size: | 3093 | | Last Modified: | Dec 19 20:15:33 2006 |
| MD5 Checksum: | 81170fbfb2a9c0dbd840a32629624379 |
|
| /// File Name: |
glsa-200612-13.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-13 - infamous41md has discovered that the ole_init_info function may allocate too little memory for storing the contents of an OLE document, resulting in a heap buffer overflow. Versions less than 1.14.2 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3087 | | Last Modified: | Dec 14 21:59:51 2006 |
| MD5 Checksum: | e0cb295ba2fa5a72d70eb19161444dce |
|
| /// File Name: |
sa23246.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in Citrix Presentation Server Client, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/23246/ | | File Size: | 3080 | | Last Modified: | Dec 7 07:24:29 2006 |
| MD5 Checksum: | 3f290daf62269499f05219b4ae1ddc34 |
|
| /// File Name: |
ZDI-06-047.txt |
Description:
|
ZDI-06-047: Microsoft Visual Studio WmiScriptUtils.dll Cross-Zone Scripting Vulnerability
| | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3080 | | Last Modified: | Dec 14 23:52:46 2006 |
| MD5 Checksum: | d7e0aed6dc9e552cfa10329e3273cf33 |
|
| /// File Name: |
DSA-1236-1.txt |
Description:
|
Debian Security Advisory 1236-1: Antti-Juhani Kaijanaho discovered that enemies-of-carlotta, a simple manager for mailing lists, does not properly sanitise email addresses before passing them through to the system shell.
| | Homepage: | http://www.debian.org/security | | File Size: | 3072 | | Last Modified: | Dec 14 22:42:17 2006 |
| MD5 Checksum: | e3f93518e3400c6aa8542c43f694303d |
|
| /// File Name: |
glsa-200611-24.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200611-24 - Tavis Ormandy of the Google Security Team discovered several vulnerabilities in the LZH decompression component used by LHa. The make_table function of unlzh.c contains an array index error and a buffer overflow vulnerability. The build_tree function of unpack.c contains a buffer underflow vulnerability. Additionally, unlzh.c contains a code that could run in an infinite loop. Versions less than 114i-r6 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3064 | | Last Modified: | Dec 1 01:13:18 2006 |
| MD5 Checksum: | e8f90cedfeba359e26eddfe8d70a0e81 |
|
| /// File Name: |
glsa-200612-08.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-08 - The SeaMonkey project is vulnerable to arbitrary JavaScript bytecode execution and arbitrary code execution. Versions less than 1.0.6 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3050 | | Last Modified: | Dec 11 17:03:46 2006 |
| MD5 Checksum: | 79bf640cedc37859e97af278488a5fc5 |
|
| /// File Name: |
sa23205.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Word, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/23205/ | | File Size: | 3045 | | Last Modified: | Dec 11 16:29:46 2006 |
| MD5 Checksum: | 0ccacfb65810faf9e5e30a121a2e3c8c |
|
| /// File Name: |
sa23398.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in Sun Java JRE (Java Runtime Environment), which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/23398/ | | File Size: | 3041 | | Last Modified: | Dec 20 23:30:34 2006 |
| MD5 Checksum: | 29d7a792685bcbd86640642d23106e74 |
|
| /// File Name: |
sa23269.txt |
Description:
|
Secunia Security Advisory - Slackware has issued an update for gnupg. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23269/ | | File Size: | 3040 | | Last Modified: | Dec 7 09:56:14 2006 |
| MD5 Checksum: | b669ef9617d70b8364ac4fa3aed1f1ad |
|
| /// File Name: |
n.runs-SA-2006.005.txt |
Description:
|
NOD32 Antivirus software versions prior 1.1743 suffer from an arbitrary code execution flaw.
| | Author: | Sergio Alvarez | | Homepage: | http://www.nruns.com/ | | File Size: | 3023 | | Last Modified: | Dec 22 01:30:31 2006 |
| MD5 Checksum: | 71f7684a19a0c5a1f9e2a99803f7c984 |
|
| /// File Name: |
OpenPKG-SA-2006.038.txt |
Description:
|
OpenPKG Security Advisory OpenPKG-SA-2006.038 - The archive format utility GNU tar, versions up to and including 1.16, allows user-assisted attackers to overwrite arbitrary files via a TAR format file that contains a "GNUTYPE_NAMES" record with a symbolic link.
| | Homepage: | http://www.openpkg.org/security/ | | File Size: | 3016 | | Related CVE(s): | CVE-2006-6097, CVE-2002-1216 | | Last Modified: | Dec 8 23:52:57 2006 |
| MD5 Checksum: | ffcbff6b98fa861839e87d505859987c |
|
| /// File Name: |
sa23325.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in Sophos Anti-Virus, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/23325/ | | File Size: | 3007 | | Last Modified: | Dec 14 10:45:41 2006 |
| MD5 Checksum: | d9d785772e076e9d628a06abf776741b |
|
| /// File Name: |
glsa-200612-14.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200612-14 - Trac allows users to perform certain tasks via HTTP requests without performing correct validation on those requests. Versions less than 0.10.1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3003 | | Last Modified: | Dec 14 21:59:59 2006 |
| MD5 Checksum: | df24557a7418fd51f15df73b378f6243 |
|
| /// File Name: |
sa23157.txt |
Description:
|
Secunia Security Advisory - Eric Detoisien has reported a vulnerability in Novell ZENWorks Asset Management, which potentially can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23157/ | | File Size: | 3000 | | Last Modified: | Dec 6 03:07:49 2006 |
| MD5 Checksum: | 924da49b6d3bbcb84664f4f9336e5a10 |
|
| /// File Name: |
sa23504.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for squirrelmail. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and script insertion attacks.
| | Homepage: | http://secunia.com/advisories/23504/ | | File Size: | 2972 | | Last Modified: | Dec 29 16:04:15 2006 |
| MD5 Checksum: | 8555277683f57a89662508a685c249d7 |
|
| /// File Name: |
ZDI-06-044.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of the Adobe Download Manager versions 2.1 and below. User interaction is required to exploit this vulnerability in that the target must visit a malicious page.
| | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 2963 | | Related CVE(s): | CVE-2006-5856 | | Last Modified: | Dec 7 10:46:38 2006 |
| MD5 Checksum: | 1c024272f1a97efe22209ae164b86e01 |
|
| /// File Name: |
sa23233.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Adobe Download Manager, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/23233/ | | File Size: | 2947 | | Last Modified: | Dec 7 07:24:29 2006 |
| MD5 Checksum: | 97979974f39cecac439b63c750dae3b9 |
|
| /// File Name: |
sa23313.txt |
Description:
|
Secunia Security Advisory - Mr_KaLiMaN has discovered some vulnerabilities in KDPics, which can be exploited by malicious people to conduct cross-site scripting attacks or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23313/ | | File Size: | 2934 | | Last Modified: | Dec 11 16:29:46 2006 |
| MD5 Checksum: | 189ffdf158be74e05384f473ee0c9828 |
|
|
|
|
|