Section: .. / 0702-advisories /
| /// File Name: |
sa24015.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for libgtop2. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/24015/ | | File Size: | 8627 | | Last Modified: | Feb 4 23:30:20 2007 |
| MD5 Checksum: | 72422c368a1aea047b0e00b39555ea1f |
|
| /// File Name: |
sa24021.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for samba. This fixes some vulnerabilities, which can be exploited by malicious users to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24021/ | | File Size: | 8483 | | Last Modified: | Feb 6 22:53:09 2007 |
| MD5 Checksum: | 2a642cf0aa451858dcdc7efe3f0fab15 |
|
| /// File Name: |
sa24050.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for postgresql. This fixes some vulnerabilities, which can be exploited by malicious people to gain knowledge of potentially sensitive information or cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24050/ | | File Size: | 8421 | | Last Modified: | Feb 7 23:22:52 2007 |
| MD5 Checksum: | 812cdfd9fd022e17cf417eca7a20bbb2 |
|
| /// File Name: |
MDKSA-2007-043.txt |
Description:
|
Mandriva Security Advisory - Clam AntiVirus ClamAV before 0.90 does not close open file descriptors under certain conditions, which allows remote attackers to cause a denial of service (file descriptor consumption and failed scans) via CAB archives with a cabinet header record length of zero, which causes a function to return without closing a file descriptor. Directory traversal vulnerability in clamd in Clam AntiVirus ClamAV before 0.90 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the id MIME header parameter in a multi-part message.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 7865 | | Related CVE(s): | CVE-2007-0898, CVE-2007-0897 | | Last Modified: | Feb 19 20:32:27 2007 |
| MD5 Checksum: | 8069e7901e707d1a9208bbdcb33c9a41 |
|
| /// File Name: |
MDKSA-2007-039.txt |
Description:
|
Mandriva Linux Security Advisory - The GdkPixbufLoader function in GIMP ToolKit (GTK+) in GTK 2 (gtk2) allows context-dependent attackers to cause a denial of service (crash) via a malformed image file. The version of libgtk+2.0 shipped with Mandriva Linux 2007 fails various portions of the lsb-test-desktop test suite, part of LSB 3.1 certification testing.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 7569 | | Related CVE(s): | CVE-2007-0010 | | Last Modified: | Feb 8 00:36:15 2007 |
| MD5 Checksum: | 643f32d39f38c0b82fd18855faf533bc |
|
| /// File Name: |
sa24152.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Windows and Microsoft Office, which can be exploited by malicious people to compromise a users system.
| | Homepage: | http://secunia.com/advisories/24152/ | | File Size: | 7255 | | Last Modified: | Feb 14 14:41:53 2007 |
| MD5 Checksum: | 5158d66d71f28b7dab87a45ad67a2ab3 |
|
| /// File Name: |
sa24241.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for php. This fixes some vulnerabilities, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24241/ | | File Size: | 7216 | | Last Modified: | Feb 22 21:32:16 2007 |
| MD5 Checksum: | 3a0d87bebf37653fcb6b59603a632ec7 |
|
| /// File Name: |
sa24140.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for samba. This fixes a vulnerability, which can be exploited by malicious users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24140/ | | File Size: | 7209 | | Last Modified: | Feb 16 01:49:41 2007 |
| MD5 Checksum: | 8cc9b00006ceec95be72367cd0685e14 |
|
| /// File Name: |
MDKSA-2007-041.txt |
Description:
|
Mandriva Security Advisory - Vladimir Nadvornik discovered a buffer overflow in GraphicsMagick and ImageMagick allows user-assisted attackers to cause a denial of service and possibly execute execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 7112 | | Related CVE(s): | CVE-2007-0770 | | Last Modified: | Feb 13 01:31:58 2007 |
| MD5 Checksum: | 628ffe56a059bca2328160725c889212 |
|
| /// File Name: |
sa24277.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for nspr and nss. This fixes two vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24277/ | | File Size: | 6988 | | Last Modified: | Feb 27 11:54:22 2007 |
| MD5 Checksum: | 5138f2261433eee3f73f2d529f793ea4 |
|
| /// File Name: |
xbox-pwn.txt |
Description:
|
A vulnerability has been discovered in the Xbox 360 hypervisor that allows privilege escalation into hypervisor mode. Together with a method to inject data into non-privileged memory areas, this vulnerability allows an attacker with physical access to an Xbox 360 to run arbitrary code such as alternative operating systems with full privileges and full hardware access.
| | Author: | Anonymous Hacker | | File Size: | 6956 | | Last Modified: | Mar 5 23:24:06 2007 |
| MD5 Checksum: | 04d35c943641f1ddf43aadb85b76cf24 |
|
| /// File Name: |
sa24178.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for the kernel. This fixes a vulnerability, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24178/ | | File Size: | 6823 | | Last Modified: | Feb 16 01:49:41 2007 |
| MD5 Checksum: | 00d1b257bd9fdc30e48a45578cbd7b08 |
|
| /// File Name: |
sa24326.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for php. This fixes some vulnerabilities and a weakness, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service), and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24326/ | | File Size: | 6537 | | Last Modified: | Feb 27 11:54:22 2007 |
| MD5 Checksum: | db23a114fa3560eb5310b09447fc1926 |
|
| /// File Name: |
sa24236.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for php. This fixes some vulnerabilities, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24236/ | | File Size: | 6516 | | Last Modified: | Feb 23 17:44:59 2007 |
| MD5 Checksum: | 6a11eb71cfb3c62d2cbce0a1688a92af |
|
| /// File Name: |
sa24135.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and manipulate data, and by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24135/ | | File Size: | 6494 | | Last Modified: | Feb 16 01:49:41 2007 |
| MD5 Checksum: | f6df0af4e650fd25a2e3903c0ad1c282 |
|
| /// File Name: |
SSRT071300.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP OpenView Storage Data Protector running on HP-UX with PHSS_35149 or PHSS_35150 installed and Solaris with DPSOL_00229 installed. The vulnerability could be exploited by a local user to execute arbitrary code.
| | Homepage: | http://www.hp.com | | File Size: | 6147 | | Last Modified: | Feb 13 00:36:38 2007 |
| MD5 Checksum: | 2e05d8c33fca388466119fcfc16048c2 |
|
| /// File Name: |
SYMSA-2007-002.txt |
Description:
|
Symantec Vulnerability Research SYMSA-2007-002 - Palm OS Treo smartphones are equipped with a system password lock to secure contents of handheld data from unauthorized access. When this lock is engaged, Treo's built-in Find feature is still accessible and can be used to perform searches on text in Treo applications and databases (e.g. SMS Messages, Memos, Calendar, Tasks, etc). Search results are accessible, and depending on their size, may be truncated. An attacker may use this vulnerability to retrieve information from a locked device.
| | Author: | J.R. Wikes, Matt Cooley, Scott King | | Homepage: | http://www.symantec.com/research | | File Size: | 6124 | | Related CVE(s): | CVE-2007-0859 | | Last Modified: | Feb 14 15:26:06 2007 |
| MD5 Checksum: | 245f920185e5a29e93c6666977ff1d45 |
|
| /// File Name: |
SSRT071302.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP-UX running SLSd. The vulnerability could be exploited by a remote unauthorized user to create arbitrary files leading to root access.
| | Homepage: | http://www.hp.com | | File Size: | 6042 | | Last Modified: | Feb 14 17:11:01 2007 |
| MD5 Checksum: | 015956da27b510da97dcffecbe7db1ef |
|
| /// File Name: |
MDKSA-2007-035.txt |
Description:
|
Mandriva Linux Security Advisory - Buffer overflow in the gdImageStringFTEx function in gdft.c in the GD Graphics Library 2.0.33 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted string with a JIS encoded font.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 5939 | | Related CVE(s): | CVE-2007-0455 | | Last Modified: | Feb 7 23:50:55 2007 |
| MD5 Checksum: | b0e2205e003202d4cdf6601c6145583c |
|
| /// File Name: |
SSRT061233.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP-UX running ARPA transport. The vulnerability could be exploited by a local user to create a Denial of Service (DoS).
| | Homepage: | http://www.hp.com | | File Size: | 5911 | | Last Modified: | Feb 14 17:12:02 2007 |
| MD5 Checksum: | 4d278250b558285d4cbbf240c2e8652d |
|
| /// File Name: |
SSRT071297.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP Serviceguard for Linux that may allow remote unauthorized access.
| | Homepage: | http://www.hp.com | | File Size: | 5869 | | Last Modified: | Feb 16 02:25:36 2007 |
| MD5 Checksum: | 50621fe0d24d852fce9647398549b1ed |
|
| /// File Name: |
sa24271.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for ekiga and gnomemeeting. This fixes a vulnerability, which can be exploited by malicious people to potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24271/ | | File Size: | 5836 | | Last Modified: | Feb 22 21:32:16 2007 |
| MD5 Checksum: | c2259a459c6a631a1735d37bf9ebcb19 |
|
| /// File Name: |
FreeBSD-SA-07-02.bind.txt |
Description:
|
FreeBSD Security Advisory - A remote attacker sending a type * (ANY) query to an authoritative DNS server for a DNSSEC signed zone can cause the named(8) daemon to exit, resulting in a Denial of Service.
| | Homepage: | http://security.freebsd.org/ | | File Size: | 5755 | | Related CVE(s): | CVE-2007-0493, CVE-2007-0494 | | Last Modified: | Feb 13 01:25:31 2007 |
| MD5 Checksum: | 7dd0ce5e15ea2a438e64c71a1c893c96 |
|
| /// File Name: |
sa24205.txt |
Description:
|
Secunia Security Advisory - Multiple vulnerabilities have been reported in Mozilla Firefox, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting and spoofing attacks, gain knowledge of sensitive information, and potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24205/ | | File Size: | 5703 | | Last Modified: | Feb 27 11:54:01 2007 |
| MD5 Checksum: | 9ecbde98fc9137237a6a2ebf1a003d40 |
|
| /// File Name: |
sa24117.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for moin and moin1.3. This fixes some vulnerabilities, which can be exploited by malicious users to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/24117/ | | File Size: | 5568 | | Last Modified: | Feb 12 19:06:32 2007 |
| MD5 Checksum: | cfd93893846783a66dd43a8b2cb74cb4 |
|
|
|
|
|