Section: .. / 0801-advisories /
| /// File Name: |
glsa-200801-21.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200801-21 - Miroslav Lichvar discovered that the xdg-open and xdg-email shell scripts do not properly sanitize their input before processing it. Versions less than 1.0.2-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2964 | | Related CVE(s): | CVE-2008-0386 | | Last Modified: | Jan 31 23:23:26 2008 |
| MD5 Checksum: | ae2e54c93e009d1196f63b44369e372b |
|
| /// File Name: |
sa28337.txt |
Description:
|
Secunia Security Advisory - r3dm0v3 has reported some vulnerabilities in PortalApp, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks or bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/28337/ | | File Size: | 2961 | | Last Modified: | Jan 10 03:17:01 2008 |
| MD5 Checksum: | 32a2b63deab9d415419f73bb2d340da7 |
|
| /// File Name: |
sa28243.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for typo3-src. This fixes a vulnerability, which can be exploited by malicious users to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/28243/ | | File Size: | 2956 | | Last Modified: | Jan 3 13:16:15 2008 |
| MD5 Checksum: | c0880f0e301bf204146d84d2079af0f4 |
|
| /// File Name: |
sa28020.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in IMP Webmail Client and Horde Groupware Webmail Edition, which can be exploited by malicious people to bypass certain security restrictions and manipulate data.
| | Homepage: | http://secunia.com/advisories/28020/ | | File Size: | 2952 | | Last Modified: | Jan 11 12:37:52 2008 |
| MD5 Checksum: | 7847d0f77e0b643d2f6426745b02df42 |
|
| /// File Name: |
sa28458.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for libxml2. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28458/ | | File Size: | 2950 | | Last Modified: | Jan 14 21:34:40 2008 |
| MD5 Checksum: | e430da612164cfe0aa6c57ea608be23e |
|
| /// File Name: |
dsa-1456-1.txt |
Description:
|
Debian Security Advisory 1456-1 - Daniel B. Cid discovered that fail2ban, a tool to block IP addresses that cause login failures, is too liberal about parsing SSH log files, allowing an attacker to block any IP address.
| | Homepage: | http://www.debian.org/security | | File Size: | 2948 | | Related CVE(s): | CVE-2007-4321 | | Last Modified: | Jan 10 03:56:22 2008 |
| MD5 Checksum: | 357bf1534b3a8974f4f11f7a453f6ab9 |
|
| /// File Name: |
sa28497.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities and a security issue have been reported in Apple iPhone and iPod touch, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass certain security restrictions, or to compromise a vulnerable device.
| | Homepage: | http://secunia.com/advisories/28497/ | | File Size: | 2943 | | Last Modified: | Jan 16 23:45:41 2008 |
| MD5 Checksum: | 2714095b8bb0cb1cb13d561ad49874db |
|
| /// File Name: |
sa28682.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Coppermine Photo Gallery, which can be exploited by malicious people to conduct cross-site scripting attacks and by malicious users to conduct SQL injection attacks or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28682/ | | File Size: | 2943 | | Last Modified: | Jan 31 01:45:53 2008 |
| MD5 Checksum: | a471c6077d92f3c7459e641be5270419 |
|
| /// File Name: |
sa28431.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for madwifi-source. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28431/ | | File Size: | 2942 | | Last Modified: | Jan 16 00:28:37 2008 |
| MD5 Checksum: | e182ce67f77b6fc5ef87c3608c7955bb |
|
| /// File Name: |
glsa-200801-20.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200801-20 - Brad Fitzpatrick reported that the xmlCurrentChar() function does not properly handle some UTF-8 multibyte encodings. Versions less than 2.6.30-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2928 | | Related CVE(s): | CVE-2007-6284 | | Last Modified: | Jan 30 19:35:20 2008 |
| MD5 Checksum: | babc5646802512595cd30bd3764acf17 |
|
| /// File Name: |
sa28689.txt |
Description:
|
Secunia Security Advisory - IBM has acknowledged some vulnerabilities in Informix Storage Manager, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28689/ | | File Size: | 2926 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 7458ddb90d5580bb962b49d15eb8f729 |
|
| /// File Name: |
sa28496.txt |
Description:
|
Secunia Security Advisory - Elazar Broad has reported some vulnerabilities in Macrovision FLEXnet Connect, which can be exploited by malicious people to overwrite arbitrary files and compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28496/ | | File Size: | 2920 | | Last Modified: | Jan 16 00:28:37 2008 |
| MD5 Checksum: | da9240686fea71affdaa59414e7ff6ca |
|
| /// File Name: |
sa28318.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in PHP, where some have unknown impact and others can be exploited by malicious users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/28318/ | | File Size: | 2906 | | Last Modified: | Jan 3 20:06:34 2008 |
| MD5 Checksum: | 58002d2c8b4ab09b7ff0eeabf67366aa |
|
| /// File Name: |
sa28360.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for e2fsprogs. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/28360/ | | File Size: | 2906 | | Last Modified: | Jan 8 20:11:40 2008 |
| MD5 Checksum: | 777dd672289f627d6675481620ed8134 |
|
| /// File Name: |
sa28324.txt |
Description:
|
Secunia Security Advisory - Luigi Auriemma has discovered some vulnerabilities in yaSSL, which can be exploited by malicious people to cause a DoS (Denial of Service) and to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/28324/ | | File Size: | 2901 | | Last Modified: | Jan 8 11:51:15 2008 |
| MD5 Checksum: | 05bc05f285aff73ee30ab309c9adc22a |
|
| /// File Name: |
sa28415.txt |
Description:
|
Secunia Security Advisory - AmnPardaz Security Research Team have discovered two vulnerabilities in bloofoxCMS, which can be exploited by malicious people to disclose sensitive information or to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/28415/ | | File Size: | 2893 | | Last Modified: | Jan 21 19:58:06 2008 |
| MD5 Checksum: | f595a45e1ba81fb1675c6b1aa03f6e9e |
|
| /// File Name: |
sa28645.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for ruby. This fixes some security issues, which can be exploited by malicious people to conduct spoofing attacks.
| | Homepage: | http://secunia.com/advisories/28645/ | | File Size: | 2883 | | Last Modified: | Jan 31 20:56:43 2008 |
| MD5 Checksum: | fa73cdbbe70a0d46c8a5343528e0f9b7 |
|
| /// File Name: |
sa28525.txt |
Description:
|
Secunia Security Advisory - Fujitsu has acknowledged a vulnerability in Interstage HTTP Server, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/28525/ | | File Size: | 2882 | | Last Modified: | Jan 18 03:50:24 2008 |
| MD5 Checksum: | a386914c98b51e55d3c178c1c077c2f2 |
|
| /// File Name: |
dsa-1465-1.txt |
Description:
|
Debian Security Advisory 1465-1 - Felipe Sateler discovered that apt-listchanges, a package change history notification tool, used unsafe paths when importing its python libraries. This could allow the execution of arbitrary shell commands if the root user executed the command in a directory which other local users may write to.
| | Homepage: | http://www.debian.org/security | | File Size: | 2880 | | Related CVE(s): | CVE-2008-0302 | | Last Modified: | Jan 18 04:44:06 2008 |
| MD5 Checksum: | 4a76a6c200cfa119e85d92a4d859a153 |
|
| /// File Name: |
glsa-200801-18.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200801-18 - Kazehakase includes a copy of PCRE which is vulnerable to multiple buffer overflows and memory corruptions vulnerabilities (GLSA 200711-30). Versions less than 0.5.0 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2877 | | Last Modified: | Jan 30 19:34:42 2008 |
| MD5 Checksum: | 02d72e2e36ca3363000d6e1079f5e01c |
|
| /// File Name: |
sa28519.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Adobe Dreamweaver and Adobe Contribute, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/28519/ | | File Size: | 2865 | | Last Modified: | Jan 18 03:50:24 2008 |
| MD5 Checksum: | bd8f326539d17674cf059e974d90bd6c |
|
| /// File Name: |
sa28439.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for libxml2. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28439/ | | File Size: | 2864 | | Last Modified: | Jan 11 12:37:52 2008 |
| MD5 Checksum: | a20cd27f10acef2662c7e24064e8a456 |
|
| /// File Name: |
sa28359.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in PostgreSQL, which can be exploited by malicious users to gain escalated privileges or to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28359/ | | File Size: | 2850 | | Last Modified: | Jan 7 14:23:40 2008 |
| MD5 Checksum: | c641e59c1599ffa52b9b0674feb3d19c |
|
| /// File Name: |
sa28640.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in SDL_image, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/28640/ | | File Size: | 2849 | | Last Modified: | Jan 25 02:43:48 2008 |
| MD5 Checksum: | ce39d4b00105883e2f6d4b957c561e89 |
|
| /// File Name: |
glsa-200801-22-02.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200801-22:02 - Luigi Auriemma reported a heap-based buffer overflow within the handshakeHTTP() function when processing HTTP requests. Versions less than 0.1218 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2846 | | Related CVE(s): | CVE-2007-6454 | | Last Modified: | Jan 31 23:23:42 2008 |
| MD5 Checksum: | 3978ace13523e798b19aa1203f0cd950 |
|
|
|
|
|