Section: .. / 0802-advisories /
| /// File Name: |
sa28812.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for poppler. This fixes some vulnerabilities, which can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/28812/ | | File Size: | 13647 | | Last Modified: | Feb 6 20:07:43 2008 |
| MD5 Checksum: | b4d3aad511241691b6b0d377678e970b |
|
| /// File Name: |
sa28657.txt |
Description:
|
Secunia Security Advisory - Novell has acknowledged two security issues in ZENworks Patch Management, which can be exploited by malicious, local users to truncate arbitrary files and to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/28657/ | | File Size: | 2394 | | Last Modified: | Feb 6 20:07:33 2008 |
| MD5 Checksum: | 1d74402f1eb962646f9f30ced4189547 |
|
| /// File Name: |
sa28743.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for gnatsweb. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/28743/ | | File Size: | 2693 | | Last Modified: | Feb 6 20:07:33 2008 |
| MD5 Checksum: | fb5c584c88fa562e69ab669a6d99a264 |
|
| /// File Name: |
sa28769.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for python-cherrypy. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/28769/ | | File Size: | 2758 | | Last Modified: | Feb 6 20:07:33 2008 |
| MD5 Checksum: | 9f409ee48c1efe5a0a07d1dbac43b58a |
|
| /// File Name: |
sa28784.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Tk, which can potentially be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/28784/ | | File Size: | 2373 | | Last Modified: | Feb 6 20:07:33 2008 |
| MD5 Checksum: | 1f9e93a14b10f27eeb83f140608ca9cd |
|
| /// File Name: |
sa28802.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities with unknown impacts have been reported in Adobe Reader.
| | Homepage: | http://secunia.com/advisories/28802/ | | File Size: | 2012 | | Last Modified: | Feb 6 20:07:33 2008 |
| MD5 Checksum: | bc26421421934a0d69517ac732db9807 |
|
| /// File Name: |
sa28805.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Apple iPhoto, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28805/ | | File Size: | 2358 | | Last Modified: | Feb 6 20:07:33 2008 |
| MD5 Checksum: | 24bf57c54b768583a2c084a5a1b3e913 |
|
| /// File Name: |
sa28814.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for squid. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28814/ | | File Size: | 8034 | | Last Modified: | Feb 6 20:07:33 2008 |
| MD5 Checksum: | ef4565460f008915454335d1a1c866ad |
|
| /// File Name: |
sa28723.txt |
Description:
|
Secunia Security Advisory - David Kierznowski has reported a vulnerability in Livelink ECM, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/28723/ | | File Size: | 2435 | | Last Modified: | Feb 6 17:48:54 2008 |
| MD5 Checksum: | b3d0e5ce7e6f5b1eb2f29d4d78de19d8 |
|
| /// File Name: |
glsa-200802-02.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200802-02 - Luigi Auriemma discovered multiple buffer overflows in the D_NetPlayerEvent() function, the Msg_Write() function and the NetSv_ReadCommands() function. He also discovered errors when handling chat messages that are not NULL-terminated (CVE-2007-4642) or contain a short data length, triggering an integer underflow (CVE-2007-4643). Furthermore a format string vulnerability was discovered in the Cl_GetPackets() function when processing PSV_CONSOLE_TEXT messages (CVE-2007-4644). Versions less than or equal to 1.9.0-beta5.2 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 4054 | | Related CVE(s): | CVE-2007-4642, CVE-2007-4643, CVE-2007-4644 | | Last Modified: | Feb 6 17:48:35 2008 |
| MD5 Checksum: | 65fd343ccba638b72b11d03f55c43216 |
|
| /// File Name: |
glsa-200802-01.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200802-01 - The LWZReadByte() function in file IMG_gif.c and the IMG_LoadLBM_RW() function in file IMG_lbm.c each contain a boundary error that can be triggered to cause a static buffer overflow and a heap-based buffer overflow. The first boundary error comes from some old vulnerable GD PHP code (CVE-2006-4484). Versions less than 1.2.6-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3124 | | Related CVE(s): | CVE-2007-6697, CVE-2008-0544 | | Last Modified: | Feb 6 17:48:12 2008 |
| MD5 Checksum: | 482a29deac6a61b9ebe3fd9350656d94 |
|
| /// File Name: |
MDVSA-2008-036.txt |
Description:
|
Mandriva Linux Security Advisory - Wei Wang found that the SNMP discovery backend in CUPS did not correctly calculate the length of strings. If a user could be tricked into scanning for printers, a remote attacker could send a specially crafted packet and possibly execute arbitrary code. As well, the fix for CVE-2007-0720 in MDKSA-2007:086 caused another denial of service regression within SSL handling.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 8659 | | Related CVE(s): | CVE-2007-4045, CVE-2007-5849 | | Last Modified: | Feb 6 17:48:02 2008 |
| MD5 Checksum: | 353883d4cd49a9b873d5af1744f2627d |
|
| /// File Name: |
sa28789.txt |
Description:
|
Secunia Security Advisory - Alexander Concha has reported a vulnerability in WordPress MU, which can be exploited by malicious users to bypass certain security restrictions and to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28789/ | | File Size: | 2552 | | Last Modified: | Feb 6 17:46:20 2008 |
| MD5 Checksum: | fc91220b18c44b4b840a8389feb4178d |
|
| /// File Name: |
sa28810.txt |
Description:
|
Secunia Security Advisory - Pablo Gaston Milano has reported a vulnerability in Documentum Administrator and Documentum Webtop, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28810/ | | File Size: | 2592 | | Last Modified: | Feb 6 17:46:20 2008 |
| MD5 Checksum: | d1ae6ace5f6be9929c9f1ed7fc3a9cb0 |
|
| /// File Name: |
ZDI-08-003.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Symantec Backup Exec System Recovery Manager. Authentication is not required to exploit this vulnerability. Backup Exec System Recovery Manager versions 7.0 and 7.0.1 are affected.
| | Author: | Titon | | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3088 | | Related CVE(s): | CVE-2008-0457 | | Last Modified: | Feb 6 17:46:12 2008 |
| MD5 Checksum: | be7b33818fa9723d29f832bc0b43af58 |
|
| /// File Name: |
sa28698.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for postgresql. This fixes some vulnerabilities, which can be exploited by malicious users to gain escalated privileges or cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28698/ | | File Size: | 13761 | | Last Modified: | Feb 6 16:48:39 2008 |
| MD5 Checksum: | 3489c6c8adf4aaf46399e14bd3f6271c |
|
| /// File Name: |
sa28791.txt |
Description:
|
Secunia Security Advisory - An update has been released for Skype, which implements security enhancements to prevent compromise of users' systems.
| | Homepage: | http://secunia.com/advisories/28791/ | | File Size: | 3328 | | Last Modified: | Feb 6 16:48:39 2008 |
| MD5 Checksum: | 5c5b0afc5d0ccbe60a47ce24d32d993f |
|
| /// File Name: |
dsa-1483-1.txt |
Description:
|
Debian Security Advisory 1483-1 - The SNMP agent (snmp_agent.c) in net-snmp before 5.4.1 allows remote attackers to cause a denial of service (CPU and memory consumption) via a GETBULK request with a large max-repeaters value.
| | Homepage: | http://www.debian.org/security | | File Size: | 11204 | | Related CVE(s): | CVE-2007-5846 | | Last Modified: | Feb 6 16:44:28 2008 |
| MD5 Checksum: | 4d7aaaa50c6883af98328e3d067c37e3 |
|
| /// File Name: |
02.04.08-1.txt |
Description:
|
iDefense Security Advisory 02.04.08 - Remote exploitation of a denial of service vulnerability in Hewlett-Packard's Network Node Manager product allows attackers to crash the ovtopmd process. The ovtopmd process contains an implementation error, in which it attempts to access an invalid memory address based on data within the TCP stream. By sending a specially crafted request, an attacker can cause the service to crash. iDefense has confirmed this vulnerability in HP's OpenView Network Node Manager 7.5 with all updates applied as of May 14th, 2007.
| | Homepage: | http://www.idefense.com/ | | File Size: | 3311 | | Related CVE(s): | CVE-2008-0212 | | Last Modified: | Feb 6 14:49:22 2008 |
| MD5 Checksum: | 194a9bd39f153deec3701786f281e4bf |
|
| /// File Name: |
sa28788.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in the KAME Project, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28788/ | | File Size: | 2360 | | Last Modified: | Feb 6 14:35:54 2008 |
| MD5 Checksum: | e6b8d32fc981f772ee7e9b45434d0aff |
|
| /// File Name: |
sa28795.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in Sun JRE, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28795/ | | File Size: | 3841 | | Last Modified: | Feb 6 14:35:54 2008 |
| MD5 Checksum: | f825e79aef909a8a1f423cc10fb94061 |
|
| /// File Name: |
sa28816.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in NetBSD, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28816/ | | File Size: | 2282 | | Last Modified: | Feb 6 14:35:54 2008 |
| MD5 Checksum: | 25ec056678400c40cadcbab53a104e73 |
|
| /// File Name: |
SSRT080007.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP Virtual Rooms (HPVR) running on Microsoft Windows. The vulnerability could be exploited to allow remote execution of arbitrary code.
| | Homepage: | http://www.hp.com/ | | File Size: | 5896 | | Related CVE(s): | CVE-2008-0213 | | Last Modified: | Feb 6 14:35:44 2008 |
| MD5 Checksum: | 3b7aab986bdee3f31da45f4cfdbba919 |
|
| /// File Name: |
SSRT071474.txt |
Description:
|
HP Security Bulletin - Potential vulnerabilities have been identified with the HP Storage Essentials, Storage Resource Management (SRM) software. These vulnerabilities could be exploited remotely to allow unauthorized access to a managed device.
| | Homepage: | http://www.hp.com/ | | File Size: | 5660 | | Related CVE(s): | CVE-2008-0215 | | Last Modified: | Feb 6 14:34:47 2008 |
| MD5 Checksum: | 8e4181d858316a7c63dbf9b65d314726 |
|
| /// File Name: |
cybsec-dmcltrace.txt |
Description:
|
CYBSEC Security Advisory - An arbitrary file overwrite vulnerability exists in Documentum Administrator version 5.3.0.313 and Documentum Webtop version 5.3.0.317.
| | Author: | Pablo Gaston Milano | | Homepage: | http://www.cybsec.com/ | | File Size: | 3194 | | Last Modified: | Feb 5 21:59:41 2008 |
| MD5 Checksum: | 9a2676d44745cb034f65cd5ee372c2c7 |
|
|
|
|
|