Section: .. / 0711-advisories /
| /// File Name: |
sa27580.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for tcpdump. This fixes some vulnerabilities, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27580/ | | File Size: | 2492 | | Last Modified: | Nov 8 18:19:25 2007 |
| MD5 Checksum: | dffc4f0dc6b8987d805d34e16f80c335 |
|
| /// File Name: |
sa27590.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for pam. This fixes a vulnerability and a security issue, which can be exploited by malicious, local users to disclose sensitive information and by malicious users to inject certain data.
| | Homepage: | http://secunia.com/advisories/27590/ | | File Size: | 2911 | | Last Modified: | Nov 8 18:19:25 2007 |
| MD5 Checksum: | 97e67fad9e5d4cd7f57e7a10e8c13c1e |
|
| /// File Name: |
sa27592.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for wireshark. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27592/ | | File Size: | 2388 | | Last Modified: | Nov 8 18:19:25 2007 |
| MD5 Checksum: | d025bcb1d2dfab81b15f56b630f4b4c4 |
|
| /// File Name: |
glsa-200711-10.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200711-10 - IOActive discovered an error in the Mono.Math.BigInteger class, in the reduction step of the Montgomery-based Pow methods, that could lead to a buffer overflow. Versions less than 1.2.5.1-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3023 | | Related CVE(s): | CVE-2007-5197 | | Last Modified: | Nov 7 19:16:55 2007 |
| MD5 Checksum: | f7ebfe1aac97f36a4602daa6132aa460 |
|
| /// File Name: |
sa27552.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Sysinternals DebugView, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/27552/ | | File Size: | 2783 | | Last Modified: | Nov 7 19:16:43 2007 |
| MD5 Checksum: | 56d56489683d378894e113e3f169011e |
|
| /// File Name: |
sa27300.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in Link Grammar, which can be exploited by malicious people to compromise an application using the affected code.
| | Homepage: | http://secunia.com/advisories/27300/ | | File Size: | 2628 | | Last Modified: | Nov 7 19:16:30 2007 |
| MD5 Checksum: | 99a0744e0126c0ba1aca412587a73304 |
|
| /// File Name: |
sa27456.txt |
Description:
|
Secunia Security Advisory - Hector Manuel Escalona Mendoza has discovered some vulnerabilities in ManageEngine OpManager, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/27456/ | | File Size: | 2661 | | Last Modified: | Nov 7 19:16:30 2007 |
| MD5 Checksum: | ff03b329b95d45b3f7b98bc2b26ba6f8 |
|
| /// File Name: |
sa27503.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for sitebar. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks, or by malicious users to disclose potentially sensitive information and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27503/ | | File Size: | 2339 | | Last Modified: | Nov 7 19:16:30 2007 |
| MD5 Checksum: | c311b1300e7fa3dc0defc2c3792bc074 |
|
| /// File Name: |
sa27542.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in IBM Informix Dynamic Server, one of which has an unknown impact and another can be exploited to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27542/ | | File Size: | 2520 | | Last Modified: | Nov 7 19:16:30 2007 |
| MD5 Checksum: | 63481c934a4ddffc2ae974f35b3800ba |
|
| /// File Name: |
sa27551.txt |
Description:
|
Secunia Security Advisory - Aria-Security Team have discovered a security issue in MyWebFTP, which can be exploited by malicious people to gain knowledge of sensitive information.
| | Homepage: | http://secunia.com/advisories/27551/ | | File Size: | 2400 | | Last Modified: | Nov 7 19:16:30 2007 |
| MD5 Checksum: | b4db5aa2e953b33324482cacf4e4cca0 |
|
| /// File Name: |
sa27561.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in SSReader, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27561/ | | File Size: | 2509 | | Last Modified: | Nov 7 19:16:30 2007 |
| MD5 Checksum: | b39456d690b724be2893498d55268056 |
|
| /// File Name: |
11.07.07-1.txt |
Description:
|
iDefense Security Advisory 11.07.07 - Remote exploitation of a buffer overflow in the XDB.XDB_PITRIG_PKG.PITRIG_DROPMETADATA procedure in Oracle Corp.'s Database 10gR2 could allow a user with an authenticated session to execute arbitrary code in the context of the database account. iDefense has confirmed this vulnerability on Oracle Database 10g Release 2 with all Critical Patch Updates as of February 2007. Previous versions are suspected to be vulnerable.
| | Homepage: | http://www.idefense.com/ | | File Size: | 3300 | | Related CVE(s): | CVE-2007-4517 | | Last Modified: | Nov 7 19:16:25 2007 |
| MD5 Checksum: | a291bd96c2b3f9110f82d58663e9caab |
|
| /// File Name: |
glsa-200711-09.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200711-09 - Clemens Kolbitsch and Sylvester Keil reported an error when processing beacon frames with an overly large length value in the xrates element. Versions less than 0.9.3.3 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3076 | | Related CVE(s): | CVE-2007-5448 | | Last Modified: | Nov 7 15:46:11 2007 |
| MD5 Checksum: | 961d46ee34c3b0f35bcc3ccf242cf88e |
|
| /// File Name: |
dsa-1402-1.txt |
Description:
|
Debian Security Advisory 1402-1 - Steve Kemp from the Debian Security Audit project discovered that gforge, a collaborative development tool, used temporary files insecurely which could allow local users to truncate files upon the system with the privileges of the gforge user, or create a denial of service attack.
| | Homepage: | http://www.debian.org/security | | File Size: | 8173 | | Related CVE(s): | CVE-2007-3921 | | Last Modified: | Nov 7 15:30:00 2007 |
| MD5 Checksum: | 17dfaca82f3706e5ee00af94e90356b1 |
|
| /// File Name: |
glsa-200711-08.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200711-08 - An off-by-one error when handling ICC profile chunks in the png_set_iCCP() function was discovered. George Cook and Jeff Phillips reported several errors in pngrtran.c, the use of logical instead of a bitwise functions and incorrect comparisons. Tavis Ormandy reported out-of-bounds read errors in several PNG chunk handling functions. Versions less than 1.2.21-r3 are affected.
| | Homepage: | http://security.gentoo.org/ | | File Size: | 3469 | | Related CVE(s): | CVE-2007-5266, CVE-2007-5268, CVE-2007-5269 | | Last Modified: | Nov 7 15:29:21 2007 |
| MD5 Checksum: | 91774f16eb2509bc91fb7173604d093c |
|
| /// File Name: |
glsa-200711-07.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200711-07 - Slythers Bro discovered multiple integer overflows in the imageop module, one of them in the tovideo() method, in various locations in files imageop.c, rbgimgmodule.c, and also in other files. Versions less than 2.4.4-r6 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3584 | | Related CVE(s): | CVE-2007-4965 | | Last Modified: | Nov 7 15:28:11 2007 |
| MD5 Checksum: | 5e6a79a6694e21971b2fc94f992cac20 |
|
| /// File Name: |
glsa-200711-06.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200711-06 - Multiple cross-site scripting vulnerabilities have been discovered in mod_status and mod_autoindex. An error has been discovered in the recall_headers() function in mod_mem_cache. The mod_cache module does not properly sanitize requests before processing them. The Prefork module does not properly check PID values before sending signals. The mod_proxy module does not correctly check headers before processing them. Versions less than 2.2.6 are affected.
| | Homepage: | http://security.gentoo.org/ | | File Size: | 3980 | | Related CVE(s): | CVE-2006-5752, CVE-2007-1862, CVE-2007-1863, CVE-2007-3304, CVE-2007-3847, CVE-2007-4465 | | Last Modified: | Nov 7 15:27:55 2007 |
| MD5 Checksum: | d0a654e53e1d16a9c2a5fa25a6c1337f |
|
| /// File Name: |
secunia-xpdf.txt |
Description:
|
Secunia Research has discovered some vulnerabilities in Xpdf, which can be exploited by malicious people to compromise a user's system. An array indexing error, integer overflow, and boundary error all exist. Xpdf version 3.02 with the xpdf-3.02pl1.patch is affected.
| | Author: | Alin Rad Pop | | Homepage: | http://secunia.com/ | | File Size: | 4883 | | Related CVE(s): | CVE-2007-4352, CVE-2007-5392, CVE-2007-5393 | | Last Modified: | Nov 7 15:26:29 2007 |
| MD5 Checksum: | 799a1d5d74d1d0cd593022e5323f4b12 |
|
| /// File Name: |
secunia-abiword.txt |
Description:
|
Secunia Research has discovered a vulnerability in AbiWord Link Grammar, which can be exploited by malicious people to compromise an application using the library. Version 4.2.4 is affected.
| | Author: | Alin Rad Pop | | Homepage: | http://secunia.com/ | | File Size: | 4543 | | Related CVE(s): | CVE-2007-5395 | | Last Modified: | Nov 7 15:23:18 2007 |
| MD5 Checksum: | 1c86e3f869d0038b2ad11508623a5f58 |
|
| /// File Name: |
secunia-linkgrammar.txt |
Description:
|
Secunia Research has discovered a vulnerability in Link Grammar, which can be exploited by malicious people to compromise an application using the affected code. Version 4.1b is affected.
| | Author: | Alin Rad Pop | | Homepage: | http://secunia.com/ | | File Size: | 4479 | | Related CVE(s): | CVE-2007-5395 | | Last Modified: | Nov 7 15:22:13 2007 |
| MD5 Checksum: | e57538a745ad765db929c35cbe71ad93 |
|
| /// File Name: |
sa26462.txt |
Description:
|
Secunia Security Advisory - Joren McReynolds has reported some vulnerabilities in Cisco Unified Meeting Place, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/26462/ | | File Size: | 2646 | | Last Modified: | Nov 7 15:19:41 2007 |
| MD5 Checksum: | 5d7412f778dc6ecbd761e2fd96d707c4 |
|
| /// File Name: |
sa27260.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered some vulnerabilities in Xpdf, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27260/ | | File Size: | 2919 | | Last Modified: | Nov 7 15:19:41 2007 |
| MD5 Checksum: | 56c8ff59a18a850f0ff3f9219435cf31 |
|
| /// File Name: |
sa27340.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in the AbiWord Link Grammar library, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27340/ | | File Size: | 2496 | | Last Modified: | Nov 7 15:19:41 2007 |
| MD5 Checksum: | 81f952bd11b1cc09cda93c51db67579b |
|
| /// File Name: |
sa27556.txt |
Description:
|
Secunia Security Advisory - Chris has reported a vulnerability in the Cypress script for BitchX, which can be exploited by malicious people to disclose potentially sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27556/ | | File Size: | 2615 | | Last Modified: | Nov 7 15:19:41 2007 |
| MD5 Checksum: | dbc030238f597808ec0092f859609b5a |
|
| /// File Name: |
sa27530.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in Plone, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27530/ | | File Size: | 2578 | | Last Modified: | Nov 7 02:58:22 2007 |
| MD5 Checksum: | 0ac8fc2d69614ceaa2ec4c6735ae43a6 |
|
|
|
|
|