Section: .. / 0710-advisories /
| /// File Name: |
glsa-200710-31.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200710-31 - Michael A. Puls II discovered an unspecified flaw when launching external email or newsgroup clients. David Bloom discovered that when displaying frames from different websites, the same-origin policy is not correctly enforced. Versions less than 9.24 are affected.
| | Homepage: | http://security.gentoo.org/ | | File Size: | 3022 | | Related CVE(s): | CVE-2007-5540, CVE-2007-5541 | | Last Modified: | Oct 30 20:31:36 2007 |
| MD5 Checksum: | 7fab15791e85f4456625c973666069b1 |
|
| /// File Name: |
sa27327.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for seamonkey. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks, disclose sensitive information, conduct phishing attacks, manipulate certain data and compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27327/ | | File Size: | 3016 | | Last Modified: | Oct 22 18:55:04 2007 |
| MD5 Checksum: | b4a38ad0e551889558c06086552eabca |
|
| /// File Name: |
glsa-200710-16.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200710-16 - Aaron Plattner discovered a buffer overflow in the compNewPixmap() function when copying data from a large pixel depth pixmap into a smaller pixel depth pixmap. Versions less than 1.3.0.0-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3015 | | Related CVE(s): | CVE-2007-4730 | | Last Modified: | Oct 15 19:09:41 2007 |
| MD5 Checksum: | 310a6f8bc21186349eadb7e649e10a4a |
|
| /// File Name: |
sa27148.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft SharePoint Services and Office SharePoint Server, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/27148/ | | File Size: | 3010 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | 1fa6abf6d4f1e9232c278bc38dc7a7b8 |
|
| /// File Name: |
sa27356.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for seamonkey. This fixes some vulnerabilities and a weakness, which can be exploited by malicious people to disclose sensitive information, conduct phishing attacks, manipulate certain data, and potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27356/ | | File Size: | 3010 | | Last Modified: | Oct 24 23:40:24 2007 |
| MD5 Checksum: | c07b48437fc8c628da80bedae4c281dd |
|
| /// File Name: |
sa27421.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in the Hitachi Web Server, which can be exploited by malicious people to bypass certain security restrictions or conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/27421/ | | File Size: | 3008 | | Last Modified: | Oct 31 22:12:35 2007 |
| MD5 Checksum: | 3779c93b89c1caaaa8e4d1cd47a63ddc |
|
| /// File Name: |
glsa-200710-30-2.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200710-30:02 - Andy Polyakov reported a vulnerability in the OpenSSL toolkit, that is caused due to an unspecified off-by-one error within the DTLS implementation. Versions greater than or equal to 0.9.8f are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3006 | | Related CVE(s): | CVE-2007-4995 | | Last Modified: | Oct 30 20:31:44 2007 |
| MD5 Checksum: | d512f124ed8f60961db844caffc013cb |
|
| /// File Name: |
sa27399.txt |
Description:
|
Secunia Security Advisory - SUSE has issued updates for multiple packages. These fix some vulnerabilities, which can be exploited by malicious, local users to perform certain actions with escalated privileges, and by malicious people to conduct cross-site scripting attacks and compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27399/ | | File Size: | 2987 | | Last Modified: | Oct 30 19:58:14 2007 |
| MD5 Checksum: | 5f3aaa96ee8a096b691f2f3cd1122233 |
|
| /// File Name: |
sa27248.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in RealPlayer, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27248/ | | File Size: | 2984 | | Last Modified: | Oct 22 23:59:17 2007 |
| MD5 Checksum: | 3765e02043d3dbaf824a779d059d0f04 |
|
| /// File Name: |
sa26992.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for t1lib. This fixes a vulnerability, which can be exploited by malicious users to potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26992/ | | File Size: | 2983 | | Last Modified: | Oct 1 23:39:22 2007 |
| MD5 Checksum: | efeaa4149d8a9a128006e795bf800759 |
|
| /// File Name: |
NISR17102007A.txt |
Description:
|
NGSSoftware Insight Security Research Advisory - The Intermedia application, owned by CTXSYS, contains a package called CTX_DOC. This package contains multiple SQL injection flaws.
| | Author: | David Litchfield | | Homepage: | http://www.ngssoftware.com/ | | File Size: | 2980 | | Last Modified: | Oct 18 18:15:19 2007 |
| MD5 Checksum: | 6391108725892efacb180aa8e5d0112b |
|
| /// File Name: |
sa27182.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for tk. This fixes a vulnerability, which can potentially be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/27182/ | | File Size: | 2969 | | Last Modified: | Oct 19 11:32:30 2007 |
| MD5 Checksum: | 6ff90141af4eda6dcea79ff7195eb00d |
|
| /// File Name: |
glsa-200710-14.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200710-14 - Daniel B. Cid discovered that DenyHosts used an incomplete regular expression to parse failed login attempts, a different issue than GLSA 200701-01. Versions less than 2.6-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2962 | | Related CVE(s): | CVE-2007-4323 | | Last Modified: | Oct 15 19:08:52 2007 |
| MD5 Checksum: | 1aa762c9d1c32d75860754a54bfaa5ff |
|
| /// File Name: |
d3engfspb.txt |
Description:
|
The Doom 3 engine suffers from a format string vulnerability. Doom 3 versions 1.3.1 and below, Quake 4 versions 1.4.2 and below, and Prey versions 1.3 and below are affected.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related Exploit: | d3engfspb.zip | | File Size: | 2953 | | Last Modified: | Oct 2 00:35:26 2007 |
| MD5 Checksum: | deed2567fa26aed88ab08bc35c53f2e5 |
|
| /// File Name: |
sa27388.txt |
Description:
|
Secunia Security Advisory - Multiple vulnerabilities have been discovered in Symantec Mail Security for Domino, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27388/ | | File Size: | 2940 | | Last Modified: | Oct 26 17:34:44 2007 |
| MD5 Checksum: | 5f5282c9855ffe7aebf0c4e5e607252c |
|
| /// File Name: |
sa27291.txt |
Description:
|
Secunia Security Advisory - Greg Knaddison has reported a vulnerability in the Token module for Drupal, which can be exploited by malicious users to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/27291/ | | File Size: | 2935 | | Last Modified: | Oct 22 14:39:08 2007 |
| MD5 Checksum: | f29f90fe117e5bcc7068db2ee0ae77b1 |
|
| /// File Name: |
sa27016.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for mplayer. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27016/ | | File Size: | 2934 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | dbde644cdd0cecdafa40ccd189edcbd4 |
|
| /// File Name: |
sa27424.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in OpenLDAP, which can be exploited by malicious users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27424/ | | File Size: | 2922 | | Last Modified: | Oct 29 15:14:57 2007 |
| MD5 Checksum: | 12be4cff66ada9daa2770506d45d140c |
|
| /// File Name: |
sa27358.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for blam. This package has been rebuilt against a new version of the firefox package. This fixes some vulnerabilities and weaknesses, which can be exploited by malicious people to disclose sensitive information, conduct phishing attacks, manipulate certain data, and potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27358/ | | File Size: | 2916 | | Last Modified: | Oct 25 17:09:54 2007 |
| MD5 Checksum: | b15cefddc08afab6eae3d8a074cd1397 |
|
| /// File Name: |
sa27151.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Word, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27151/ | | File Size: | 2909 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | 85ee80a97a8238db93e401b3e44ff97b |
|
| /// File Name: |
sa27341.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in HP OpenView Configuration Management (CM) Infrastructure (Radia) and Client Configuration Manager (CCM), which can be exploited by malicious people to disclose potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/27341/ | | File Size: | 2909 | | Last Modified: | Oct 25 16:56:56 2007 |
| MD5 Checksum: | 5222965ded05d0ce33a71d5c83951668 |
|
| /// File Name: |
sa27193.txt |
Description:
|
Secunia Security Advisory - Cisco has acknowledged some vulnerabilities in Cisco PIX and ASA appliances, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27193/ | | File Size: | 2904 | | Last Modified: | Oct 19 11:32:30 2007 |
| MD5 Checksum: | ab458d0ca3db265b9fd379ae39d6bdcb |
|
| /// File Name: |
glsa-200710-05.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200710-05 - Raphael Marichez discovered that the DataLoader::doStart() method creates temporary files in an insecure manner and executes them. Versions less than 1.5.7 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2902 | | Related CVE(s): | CVE-2007-4631 | | Last Modified: | Oct 8 20:38:40 2007 |
| MD5 Checksum: | 602429e7adb1a1d4a2f88c01a311fe18 |
|
| /// File Name: |
sa27376.txt |
Description:
|
Secunia Security Advisory - Multiple vulnerabilities have been discovered in activePDF DocConverter, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27376/ | | File Size: | 2896 | | Last Modified: | Oct 26 17:34:44 2007 |
| MD5 Checksum: | 51f3c1156c314e0355ed58699720381c |
|
| /// File Name: |
sa27095.txt |
Description:
|
Secunia Security Advisory - shinnai has discovered two vulnerabilities in Pegasus Imaging ImagXpress, which can be exploited by malicious people to overwrite or delete arbitrary files.
| | Homepage: | http://secunia.com/advisories/27095/ | | File Size: | 2886 | | Last Modified: | Oct 8 18:53:41 2007 |
| MD5 Checksum: | 0c511287183bf51938e27b1f218cdc60 |
|
|
|
|
|