Section: .. / 0702-advisories /
| /// File Name: |
sa24195.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for php. This fixes some vulnerabilities and a weakness, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24195/ | | File Size: | 2675 | | Last Modified: | Feb 21 00:41:49 2007 |
| MD5 Checksum: | 49fdc92b97d8abea3b73fdba6699302c |
|
| /// File Name: |
sa24204.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for poppler. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24204/ | | File Size: | 2613 | | Last Modified: | Feb 21 00:41:49 2007 |
| MD5 Checksum: | 757c547f9e31cd7632aafc5bcf0f2c73 |
|
| /// File Name: |
sa24215.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in the Linux Kernel, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24215/ | | File Size: | 2239 | | Last Modified: | Feb 21 00:41:49 2007 |
| MD5 Checksum: | 7b8f50de36ec984798c7cd33d1ed0788 |
|
| /// File Name: |
sa24216.txt |
Description:
|
Secunia Security Advisory - Marsu Pilami has discovered a vulnerability in News Rover, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24216/ | | File Size: | 2457 | | Last Modified: | Feb 21 00:41:49 2007 |
| MD5 Checksum: | 4bce33733a5796e73a64b215fc60d6e1 |
|
| /// File Name: |
sa24235.txt |
Description:
|
Secunia Security Advisory - Neel Mehta has reported a vulnerability in Sourcefire Intrusion Sensor, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24235/ | | File Size: | 2545 | | Last Modified: | Feb 21 00:41:49 2007 |
| MD5 Checksum: | 93eb515a5f118455fc158cf148952697 |
|
| /// File Name: |
sa24237.txt |
Description:
|
Secunia Security Advisory - Marsu Pilami has discovered a vulnerability in News File Grabber, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24237/ | | File Size: | 2529 | | Last Modified: | Feb 21 00:41:49 2007 |
| MD5 Checksum: | 8a75c83b05b6eb45f1153f6ae932cf7f |
|
| /// File Name: |
MDKSA-2007-043.txt |
Description:
|
Mandriva Security Advisory - Clam AntiVirus ClamAV before 0.90 does not close open file descriptors under certain conditions, which allows remote attackers to cause a denial of service (file descriptor consumption and failed scans) via CAB archives with a cabinet header record length of zero, which causes a function to return without closing a file descriptor. Directory traversal vulnerability in clamd in Clam AntiVirus ClamAV before 0.90 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the id MIME header parameter in a multi-part message.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 7865 | | Related CVE(s): | CVE-2007-0898, CVE-2007-0897 | | Last Modified: | Feb 19 20:32:27 2007 |
| MD5 Checksum: | 8069e7901e707d1a9208bbdcb33c9a41 |
|
| /// File Name: |
snort-preprocessor.txt |
Description:
|
Sourcefire has learned of a remotely exploitable vulnerability in the Snort DCE/RPC preprocessor. This preprocessor is vulnerable to a stack-based buffer overflow that could potentially allow attackers to execute code with the same privileges as the Snort binary. Sourcefire has prepared updates for Snort open-source software to address this issue. Snort Versions affected include Snort 2.6.1, 2.6.1.1, and 2.6.1.2 and Snort 2.7.0 beta 1.
| | Homepage: | http://www.snort.org/ | | File Size: | 2663 | | Related CVE(s): | CVE-2006-5276 | | Last Modified: | Feb 19 20:23:04 2007 |
| MD5 Checksum: | c9a6dc07a4be80810468e210655d24be |
|
| /// File Name: |
libevent-dos.txt |
Description:
|
A denial of service flaw exists in the parsing of DNS responses in libevent, specifically in the handling of label pointers. Versions 1.2 and 1.2a are affected.
| | Author: | Jon Oberheide | | File Size: | 1834 | | Last Modified: | Feb 19 20:11:11 2007 |
| MD5 Checksum: | a21155e823885e05984c506fbe4cf71f |
|
| /// File Name: |
glsa-200702-08.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200702-08 - Chris Evans has discovered multiple buffer overflows in Sun JDK and Sun JRE possibly related to various AWT or font layout functions. Tom Hawtin has discovered an unspecified vulnerability in Sun JDK and Sun JRE relating to unintended applet data access. He has also discovered multiple other unspecified vulnerabilities in Sun JDK and Sun JRE allowing unintended Java applet or application resource acquisition. Additionally, a memory corruption error has been found in the handling of GIF images with zero width field blocks. Versions less than 1.5.0.10 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3865 | | Related CVE(s): | CVE-2006-6731, CVE-2006-6736, CVE-2006-6737, CVE-2006-6745, CVE-2007-0243 | | Last Modified: | Feb 19 20:01:11 2007 |
| MD5 Checksum: | afc5acc5c88524f859003134314f9e2c |
|
| /// File Name: |
glsa-200702-07.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200702-07 - A anonymous researcher discovered that an error in the handling of a GIF image with a zero width field block leads to a memory corruption flaw. Versions less than 1.5.0.10 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3977 | | Related CVE(s): | CVE-2007-0243 | | Last Modified: | Feb 19 20:00:40 2007 |
| MD5 Checksum: | 20842e6d08e51bf34ca2821f89367023 |
|
| /// File Name: |
glsa-200702-06.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200702-06 - An unspecified improper usage of an already freed context has been reported. Additionally, an assertion error could be triggered in the DNSSEC validation of some responses to type ANY queries with multiple RRsets. Versions less than 9.3.4 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3117 | | Related CVE(s): | CVE-2007-0493, CVE-2007-0494 | | Last Modified: | Feb 19 19:56:33 2007 |
| MD5 Checksum: | 10a59ea72a839fc8b8c79974e0e057a1 |
|
| /// File Name: |
sa24148.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for multiple packages. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service), bypass certain security restrictions, and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24148/ | | File Size: | 3211 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | 8ccd736f4fd7a919cddbb4a8db6bb32a |
|
| /// File Name: |
sa24153.txt |
Description:
|
Secunia Security Advisory - Michal Zalewski has discovered a weakness in Firefox, which can be exploited by malicious people to conduct phishing attacks.
| | Homepage: | http://secunia.com/advisories/24153/ | | File Size: | 2389 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | 5fed3c1235451712412784de5a63e09f |
|
| /// File Name: |
sa24161.txt |
Description:
|
Secunia Security Advisory - r0ut3r has discovered a vulnerability in VicFTPS, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24161/ | | File Size: | 2334 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | 1c1b6fabd668bff5fcd21e3b8bf5c603 |
|
| /// File Name: |
sa24176.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in DCC, which can potentially be exploited by malicious people to manipulate data.
| | Homepage: | http://secunia.com/advisories/24176/ | | File Size: | 2200 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | dfc3894edb41c4f308cd7d0fb5302121 |
|
| /// File Name: |
sa24177.txt |
Description:
|
Secunia Security Advisory - r0ut3r has discovered two vulnerabilities in Xpression News, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/24177/ | | File Size: | 2615 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | 52c0f74c44d7969f802b3330c692bcd9 |
|
| /// File Name: |
sa24181.txt |
Description:
|
Secunia Security Advisory - Jon Oberheide has reported a vulnerability in libevent, which can be exploited by malicious people to cause a DoS (Denial of Service) of applications using the library.
| | Homepage: | http://secunia.com/advisories/24181/ | | File Size: | 2411 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | 973635761c4662055372abdf5c9609c7 |
|
| /// File Name: |
sa24182.txt |
Description:
|
Secunia Security Advisory - ajann has discovered a vulnerability in VS-Gästebuch, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24182/ | | File Size: | 2445 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | 062b3f1bce441fac2c7267af41a773ad |
|
| /// File Name: |
sa24189.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for emul-linux-x86-java. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24189/ | | File Size: | 2373 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | afbda58ebbb52c1178f51c65b4f36909 |
|
| /// File Name: |
sa24191.txt |
Description:
|
Secunia Security Advisory - DNX has discovered a vulnerability in webSPELL, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/24191/ | | File Size: | 2523 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | 8e788bb9a644a4d2c345dd39eec55f01 |
|
| /// File Name: |
sa24194.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Ekiga, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24194/ | | File Size: | 2262 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | 969cb0b20066ed793d35adbf1355d3f4 |
|
| /// File Name: |
sa24202.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for sun-jdk and sun-jre-bin. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24202/ | | File Size: | 2469 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | 86ffbd18cf5522ea489045dabe331baf |
|
| /// File Name: |
sa24206.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious, local users to disclose potentially sensitive information, gain escalated privileges, or cause a DoS (Denial of Service), and by malicious people to cause a DoS.
| | Homepage: | http://secunia.com/advisories/24206/ | | File Size: | 3559 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | 04e4f09c5d9b594e83fdb3b30ab4e363 |
|
| /// File Name: |
sa24209.txt |
Description:
|
Secunia Security Advisory - chernobiLe has discovered a vulnerability in Turuncu Portal, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/24209/ | | File Size: | 2322 | | Last Modified: | Feb 19 17:55:20 2007 |
| MD5 Checksum: | 92b783fa58292954744c467c8f203d6d |
|
|
|
|
|