.:[ packet storm ]:.
                           
four continents, one idea
four continents, one idea

 Section:  .. / 0711-advisories  /

Page 5 of 24
<< 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 >> Files 100 - 125 of 591
Currently sorted by: Last ModifiedSort By: File Name, File Size

 ///  File Name: sa27744.txt
Description:
Secunia Security Advisory - Slackware has issued an update for mozilla-thunderbird. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system.
Homepage:http://secunia.com/advisories/27744/
File Size:2740
Last Modified:Nov 26 22:39:55 2007
MD5 Checksum:f67a25a97af2b0aa04c06153ce53b475

 ///  File Name: sa27737.txt
Description:
Secunia Security Advisory - A vulnerability has been reported in feynmf, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
Homepage:http://secunia.com/advisories/27737/
File Size:2323
Last Modified:Nov 26 22:39:45 2007
MD5 Checksum:1c6d1e4fe5f0278f7ccd0737da2df703

 ///  File Name: sa27748.txt
Description:
Secunia Security Advisory - Tim Brown has discovered a vulnerability in phpMyAdmin, which can be exploited by malicious people to conduct cross-site scripting attacks.
Homepage:http://secunia.com/advisories/27748/
File Size:2601
Last Modified:Nov 26 22:39:45 2007
MD5 Checksum:d2defa7221977c680124ad9d1ea6f932

 ///  File Name: sa27751.txt
Description:
Secunia Security Advisory - A security issue has been reported in Invensys Wonderware InTouch, which potentially can be exploited by malicious users to compromise a vulnerable system.
Homepage:http://secunia.com/advisories/27751/
File Size:2656
Last Modified:Nov 26 22:39:45 2007
MD5 Checksum:fb7f4722d23bd00a2b7cea0b092a8175

 ///  File Name: dsa-1409-2.txt
Description:
Debian Security Advisory 1409-2 - The previous security update for samba introduced regressions in the handling of the depreciated filesystem smbfs. This update fixes the regression(s) whilst still fixing the security problems. Several local/remote vulnerabilities have been discovered in samba, a LanManager-like file and printer server for Unix. Alin Rad Pop of Secunia Research discovered that nmbd did not properly check the length of netbios packets. When samba is configured as a WINS server, a remote attacker could send multiple crafted requests resulting in the execution of arbitrary code with root privileges. Samba developers discovered that nmbd could be made to overrun a buffer during the processing of GETDC logon server requests. When samba is configured as a Primary or Backup Domain Controller, a remote attacker could send malicious logon requests and possibly cause a denial of service.
Homepage:http://www.debian.org/security
File Size:45730
Related CVE(s):CVE-2007-5398, CVE-2007-4572
Last Modified:Nov 26 22:34:18 2007
MD5 Checksum:c61953cd66f9d45ae2767f3433a17404

 ///  File Name: SSRT071498.txt
Description:
HP Security Bulletin - Various potential security vulnerabilities have been identified in Microsoft software that is running on the Storage Management Appliance (SMA). Some of these vulnerabilities may be pertinent to the SMA, please check the table in the Resolution section of this Security Bulletin.
Homepage:http://www.hp.com/
File Size:8493
Last Modified:Nov 26 22:29:13 2007
MD5 Checksum:6a9e01625b66130071659acf429cd464

 ///  File Name: sentinel-traverse.txt
Description:
A classic directory traversal condition exists within the Sentinel Protection Server. By sending in an HTTP GET request with a path of a file proceeded by and escaped traversal sequence, an attacker can leverage an arbitrary file access condition on the affected system. Sentinel Protection Server version 7.1 is affected.
Author:Corey Lebleu
Homepage:http://www.digitaldefense.net/
File Size:1157
Last Modified:Nov 26 22:22:51 2007
MD5 Checksum:1bf464d15cc6808d2e855feb01c1d0c7

 ///  File Name: citrix-weakcookie.txt
Description:
Citrix NetScaler version 8.0 suffers from a weakly encrypted cookie vulnerability in the web management interface.
Author:nnposter
File Size:2427
Last Modified:Nov 26 22:18:33 2007
MD5 Checksum:8cd1ed5dff39d61e48a4bd386c1acff0

 ///  File Name: yahooutf7-xss.txt
Description:
Yahoo! suffered from a cross site scripting vulnerability using UTF-7. This has been fixed already.
Author:HASEGAWA Yosuke
File Size:1462
Last Modified:Nov 26 22:15:52 2007
MD5 Checksum:ae5efe8d557f6c417545242adfecd106

 ///  File Name: glsa-200711-34.txt
Description:
Gentoo Linux Security Advisory GLSA 200711-34 - Multiple issues were found in the teTeX 2 codebase that CSTeX builds upon (GLSA 200709-17, GLSA 200711-26). CSTeX also includes vulnerable code from the GD library (GLSA 200708-05), from Xpdf (GLSA 200709-12, GLSA 200711-22) and from T1Lib (GLSA 200710-12). Versions less than 2.0.2-r2 are affected.
Homepage:http://security.gentoo.org
File Size:4114
Last Modified:Nov 26 22:14:38 2007
MD5 Checksum:c33d31a631b5831bdc0888c4124f1862

 ///  File Name: glsa-200711-33.txt
Description:
Gentoo Linux Security Advisory GLSA 200711-33 - Josh Burley reported that nss_ldap does not properly handle the LDAP connections due to a race condition that can be triggered by multi-threaded applications using nss_ldap, which might lead to requested data being returned to a wrong process. Versions less than 258 are affected.
Homepage:http://security.gentoo.org
File Size:3064
Related CVE(s):CVE-2007-5794
Last Modified:Nov 26 22:07:53 2007
MD5 Checksum:91fbe75e5024d67237681c85d6b56e08

 ///  File Name: php524-unsecure.txt
Description:
PHP versions 5.2.4 and below suffer from a htaccess safemode and open_basedir bypass vulnerability via mail.force_extra_parameters.
Author:Maksymilian Arciemowicz
Homepage:http://securityreason.com/
File Size:7785
Related CVE(s):CVE-2007-3378
Last Modified:Nov 26 22:06:53 2007
MD5 Checksum:877976e6ec9433c29493a93433f0964a

 ///  File Name: dsa-1412-1.txt
Description:
Debian Security Advisory 1412-1 - Several vulnerabilities have been discovered in Ruby, an object-oriented scripting language. It was discovered that the Ruby HTTP(S) module performs insufficient validation of SSL certificates, which may lead to man-in-the-middle attacks. It was discovered that the Ruby modules for FTP, Telnet, IMAP, POP and SMTP perform insufficient validation of SSL certificates, which may lead to man-in-the-middle attacks.
Homepage:http://www.debian.org/security
File Size:17960
Related CVE(s):CVE-2007-5162, CVE-2007-5770
Last Modified:Nov 26 22:04:41 2007
MD5 Checksum:7ed208a8827375254093620d6928cd88

 ///  File Name: dsa-1411-1.txt
Description:
Debian Security Advisory 1411-1 - Several vulnerabilities have been discovered in Ruby, an object-oriented scripting language. It was discovered that the Ruby HTTP(S) module performs insufficient validation of SSL certificates, which may lead to man-in-the-middle attacks. It was discovered that the Ruby modules for FTP, Telnet, IMAP, POP and SMTP perform insufficient validation of SSL certificates, which may lead to man-in-the-middle attacks.
Homepage:http://www.debian.org/security
File Size:5533
Related CVE(s):CVE-2007-5162, CVE-2007-5770
Last Modified:Nov 26 22:04:17 2007
MD5 Checksum:e010c9333d7617194bd9ea2dd48ed563

 ///  File Name: dsa-1410-1.txt
Description:
Debian Security Advisory 1410-1 - Several vulnerabilities have been discovered in Ruby, an object-oriented scripting language. It was discovered that the Ruby HTTP(S) module performs insufficient validation of SSL certificates, which may lead to man-in-the-middle attacks. It was discovered that the Ruby modules for FTP, Telnet, IMAP, POP and SMTP perform insufficient validation of SSL certificates, which may lead to man-in-the-middle attacks.
Homepage:http://www.debian.org/security
File Size:36378
Related CVE(s):CVE-2007-5162, CVE-2007-5770
Last Modified:Nov 26 22:03:30 2007
MD5 Checksum:60a89e291c4c26e67721240a8b989b61

 ///  File Name: MDKSA-2007-224-2.txt
Description:
Mandriva Linux Security Advisory - The samba developers discovered that nmbd could be made to overrun a buffer during the processing of GETDC logon server requests. If samba is configured as a Primary or Backup Domain Controller, this could be used by a remote attacker to send malicious logon requests and possibly cause a denial of service. As well, Alin Rad Pop of Secunia Research found that nmbd did not properly check the length of netbios packets. If samba is configured as a WINS server, this could be used by a remote attacker able to send multiple crafted requests to nmbd, resulting in the execution of arbitrary code with root privileges. The update packages on Corporate Server 4.0 resulted in the nmbd daemon crashing at startup. This update provides a newer version of samba (3.0.23d) that does not exhibit this behaviour.
Homepage:http://www.mandriva.com/security/
File Size:5799
Related CVE(s):CVE-2007-5398, CVE-2007-4572
Last Modified:Nov 26 21:18:13 2007
MD5 Checksum:af94122a03abb9e752f705e053cd564a

 ///  File Name: sa27738.txt
Description:
Secunia Security Advisory - Adrian Pastor has reported some vulnerabilities in Linksys WAG54GS, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks.
Homepage:http://secunia.com/advisories/27738/
File Size:3095
Last Modified:Nov 26 21:10:48 2007
MD5 Checksum:e56a4b5999b6d60da209274381149c14

 ///  File Name: sa27739.txt
Description:
Secunia Security Advisory - Gentoo has issued an update for feynmf. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
Homepage:http://secunia.com/advisories/27739/
File Size:2191
Last Modified:Nov 26 21:10:48 2007
MD5 Checksum:48f302842a164c2488cb37c9ead988bf

 ///  File Name: sa27755.txt
Description:
Secunia Security Advisory - h07 has discovered a vulnerability in Apple QuickTime, which can be exploited by malicious people to compromise a user's system.
Homepage:http://secunia.com/advisories/27755/
File Size:2737
Last Modified:Nov 26 21:10:48 2007
MD5 Checksum:0508607272787bf95c93a2d85daeafaf

 ///  File Name: sa27759.txt
Description:
Secunia Security Advisory - Gentoo has acknowledged some vulnerabilities in cstetex, where some have unknown impacts and others can be exploited by malicious, local users to disclose and manipulate sensitive information, or by malicious users and malicious people to compromise a vulnerable system.
Homepage:http://secunia.com/advisories/27759/
File Size:2742
Last Modified:Nov 26 21:10:48 2007
MD5 Checksum:368dbc2e13b7032c1cd6f312008ef308

 ///  File Name: sa27761.txt
Description:
Secunia Security Advisory - A vulnerability has been reported in IRC Services, which can be exploited by malicious people to cause a DoS (Denial of Service).
Homepage:http://secunia.com/advisories/27761/
File Size:2392
Last Modified:Nov 26 21:10:48 2007
MD5 Checksum:45b9c251b9281da5d47e86f4ca50dbdb

 ///  File Name: sa27764.txt
Description:
Secunia Security Advisory - Debian has issued an update for ruby1.8. This fixes some security issues, which can be exploited by malicious people to conduct spoofing attacks.
Homepage:http://secunia.com/advisories/27764/
File Size:34093
Last Modified:Nov 26 21:10:48 2007
MD5 Checksum:c85b27e7a7f2255c7ee87956bd390e24

 ///  File Name: sa27768.txt
Description:
Secunia Security Advisory - Gentoo has issued an update for nss_ldap. This fixes a security issue, which can be exploited by malicious people to manipulate certain data.
Homepage:http://secunia.com/advisories/27768/
File Size:2163
Last Modified:Nov 26 21:10:48 2007
MD5 Checksum:d304b0788bc6c530ee358a86550329ca

 ///  File Name: sa27769.txt
Description:
Secunia Security Advisory - Debian has issued an update for libopenssl-ruby. This fixes some security issues, which can be exploited by malicious people to conduct spoofing attacks.
Homepage:http://secunia.com/advisories/27769/
File Size:4894
Last Modified:Nov 26 21:10:48 2007
MD5 Checksum:9524ac92071237d99d367749cea312d1

 ///  File Name: sa27771.txt
Description:
Secunia Security Advisory - A security issue has been reported in Liferea, which can be exploited by malicious, local users to gain escalated privileges.
Homepage:http://secunia.com/advisories/27771/
File Size:2560
Last Modified:Nov 26 21:10:48 2007
MD5 Checksum:0553c4b5215f2d9b50d6e341fa31a248