Section: .. / 0708-advisories /
| /// File Name: |
dumsdei.txt |
Description:
|
Doomsday versions 1.9.0-beta5.1 and below suffer from buffer overflow and format string vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related Exploit: | dumsdei.zip | | File Size: | 8349 | | Last Modified: | Aug 30 10:15:31 2007 |
| MD5 Checksum: | 3f4767bc7e6e053246ecf8f765f81257 |
|
| /// File Name: |
USN-507-1.txt |
Description:
|
Ubuntu Security Notice 507-1 - It was discovered that the TCP wrapper library was incorrectly allowing connections to services that did not specify server-side connection details. Remote attackers could connect to services that had been configured to block such connections. This only affected Ubuntu Feisty.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 3608 | | Last Modified: | Aug 30 10:12:46 2007 |
| MD5 Checksum: | af6c4b0f9373ea115dd1700086c18346 |
|
| /// File Name: |
TISA2007-13-Public.txt |
Description:
|
Team Intell Security Advisory TISA2007-13-Public - Multiple eScan products suffer from insecure file permissions.
| | Author: | Maldin d.o.o | | Homepage: | http://www.teamintell.com/ | | File Size: | 3337 | | Last Modified: | Aug 30 10:11:03 2007 |
| MD5 Checksum: | 5ca43c150a8716ff8903d7c997b8bf79 |
|
| /// File Name: |
TISA-2007-09-Public.txt |
Description:
|
Team Intell Security Advisory TISA2007-09-Public - Microsoft Windows suffers from multiple improper file path handling issues.
| | Author: | Maldin d.o.o | | Homepage: | http://www.teamintell.com/ | | File Size: | 9402 | | Last Modified: | Aug 30 10:10:09 2007 |
| MD5 Checksum: | 65a5036b96d93b9e78d3e9adc4ecc4f1 |
|
| /// File Name: |
sa26586.txt |
Description:
|
Secunia Security Advisory - Doz has reported some vulnerabilities in InterWorx-CP, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/26586/ | | File Size: | 2517 | | Last Modified: | Aug 30 10:03:56 2007 |
| MD5 Checksum: | 0823fd0394e19c07822e0566dbd84044 |
|
| /// File Name: |
dsa-1361-1.txt |
Description:
|
Debian Security Advisory 1361-1 - It was discovered that postfix-policyd, an anti-spam plugin for postfix, didn't correctly bounds-test incoming SMTP commands potentially allowing the remote exploitation of arbitrary code.
| | Homepage: | http://www.debian.org/security | | File Size: | 4818 | | Related CVE(s): | CVE-2007-3791 | | Last Modified: | Aug 30 10:01:42 2007 |
| MD5 Checksum: | 67f04b1d8cd694776f64781a246197ba |
|
| /// File Name: |
cisco-sa-20070829-ccm.txt |
Description:
|
Cisco Security Advisory - Cisco CallManager and Unified Communications Manager are vulnerable to cross-site Scripting (XSS) and SQL Injection attacks in the lang variable of the admin and user logon pages. A successful attack may allow an attacker to run JavaScript on computer systems connecting to CallManager or Unified Communications Manager servers, and has the potential to disclose information within the database.
| | Homepage: | http://www.cisco.com/ | | File Size: | 15768 | | Last Modified: | Aug 30 09:57:42 2007 |
| MD5 Checksum: | d9b5b4521e099a8c191e2a1814f08147 |
|
| /// File Name: |
enterprisedb-pointer.txt |
Description:
|
EnterpriseDB Advanced Server version 8.2 suffers from an uninitialized pointer vulnerability that may allow for remote code execution.
| | Author: | Joxean Koret | | File Size: | 3616 | | Last Modified: | Aug 30 09:56:13 2007 |
| MD5 Checksum: | da54cbb2e122235868424854d9d11ac9 |
|
| /// File Name: |
sa26644.txt |
Description:
|
Secunia Security Advisory - Will Dormann has reported some vulnerabilities in the Oracle JInitiator beans.ocx ActiveX control, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26644/ | | File Size: | 2586 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | 9ab439fcc9daa2538267241e078301a0 |
|
| /// File Name: |
sa26639.txt |
Description:
|
Secunia Security Advisory - rgod has discovered a vulnerability in PostCast Server, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26639/ | | File Size: | 2368 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | 66184d8108c8f25c9b73f85944e89db9 |
|
| /// File Name: |
sa26638.txt |
Description:
|
Secunia Security Advisory - R00T[ATI] has discovered a vulnerability in Micro CMS, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/26638/ | | File Size: | 2463 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | 38a3e4a0d58537d338b6a49fc779e0d0 |
|
| /// File Name: |
sa26634.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for rsync. This fixes a vulnerability, which can potentially be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26634/ | | File Size: | 3672 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | 815be2a72b59df370f10e6582bcb6238 |
|
| /// File Name: |
sa26631.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in JRockit, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, to cause a DoS (Denial of Service), or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26631/ | | File Size: | 3848 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | 8b66fa11e45ef07a872587e85686eaf4 |
|
| /// File Name: |
sa26627.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in PDFedit, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26627/ | | File Size: | 2178 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | 47de920adb7714675827d8b261587534 |
|
| /// File Name: |
sa26626.txt |
Description:
|
Secunia Security Advisory - Robert Buchholz has reported a vulnerability in Star, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26626/ | | File Size: | 2420 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | 432dd1c25beb46334c8e0f8cd1ff41f7 |
|
| /// File Name: |
sa26620.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for the kernel. This fixes some security issues and vulnerabilities, which can be exploited by malicious, local users to disclose potentially sensitive information, cause a DoS (Denial of Service), and by malicious people to cause a DoS.
| | Homepage: | http://secunia.com/advisories/26620/ | | File Size: | 4141 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | f522c89366fa24e875ed7cd02fd752b3 |
|
| /// File Name: |
sa26603.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for tar. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26603/ | | File Size: | 5541 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | f75b9bab1165ab350dfd9e3873e9d87c |
|
| /// File Name: |
sa26595.txt |
Description:
|
Secunia Security Advisory - Katatafish has reported a vulnerability in SomeryC, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26595/ | | File Size: | 2487 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | 749004ca7454e18871cefc89837c7666 |
|
| /// File Name: |
sa26594.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for vim. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26594/ | | File Size: | 22035 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | 16148bd095fdba1fc9e6b01c3e3ca8b2 |
|
| /// File Name: |
sa26539.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities and security issues have been reported in BEA Weblogic, which can be exploited by malicious people to gain access to sensitive information or to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/26539/ | | File Size: | 4098 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | a28886ecc41d65097b64dd890ff55c5f |
|
| /// File Name: |
sa26374.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered multiple vulnerabilities in Novell Client, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26374/ | | File Size: | 2742 | | Last Modified: | Aug 30 02:11:25 2007 |
| MD5 Checksum: | 83576c924c39cf30a6d8e6e79ea58901 |
|
| /// File Name: |
USN-469-2.txt |
Description:
|
Ubuntu Security Notice 469-2 - USN-469-1 fixed vulnerabilities in the Mozilla Thunderbird email client. The updated Thunderbird version broken compatibility with the Enigmail plugin. This update corrects the problem.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 5236 | | Related CVE(s): | CVE-2007-1558, CVE-2007-2867, CVE-2007-2868 | | Last Modified: | Aug 29 06:41:59 2007 |
| MD5 Checksum: | d6065899ef69d1526f395fc58b659828 |
|
| /// File Name: |
USN-506-1.txt |
Description:
|
Ubuntu Security Notice 506-1 - Dmitry V. Levin discovered that tar did not correctly detect the ".." file path element when unpacking archives. If a user or an automated system were tricked into unpacking a specially crafted tar file, arbitrary files could be overwritten with user privileges.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 4824 | | Related CVE(s): | CVE-2007-4131 | | Last Modified: | Aug 29 06:40:39 2007 |
| MD5 Checksum: | 32687fc87da2b79105619cb2047b7328 |
|
| /// File Name: |
USN-505-1.txt |
Description:
|
Ubuntu Security Notice 505-1 - Ulf Harnhammar discovered that vim does not properly sanitize the "helptags_one()" function when running the "helptags" command. By tricking a user into running a crafted help file, a remote attacker could execute arbitrary code with the user's privileges.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 22721 | | Related CVE(s): | CVE-2007-2953 | | Last Modified: | Aug 29 06:39:32 2007 |
| MD5 Checksum: | 53db9796ef8862d6d9999eb93f9283e1 |
|
|
|
|
|