Section: .. / 0703-advisories /
| /// File Name: |
sa24625.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for squid. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24625/ | | File Size: | 4439 | | Last Modified: | Mar 28 04:15:18 2007 |
| MD5 Checksum: | 7c3cf7728a01047bd94a4936fd43f691 |
|
| /// File Name: |
sa24591.txt |
Description:
|
Secunia Security Advisory - Slackware has issued an update for libwpd. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/24591/ | | File Size: | 2341 | | Last Modified: | Mar 28 04:15:18 2007 |
| MD5 Checksum: | 13064b8fec10dd757f798dd8432f8b46 |
|
| /// File Name: |
sa24587.txt |
Description:
|
Secunia Security Advisory - Park Gyu Tae has reported a vulnerability in SignKorea's SKCommAX ActiveX control, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24587/ | | File Size: | 2470 | | Last Modified: | Mar 28 04:15:18 2007 |
| MD5 Checksum: | 6ec698b086e241b80e0a736b14ba65e5 |
|
| /// File Name: |
glsa-200703-24.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200703-24 - mgv includes code from gv that does not properly boundary check user-supplied data before copying it into process buffers. Versions less than or equal to 3.1.5 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3038 | | Related CVE(s): | CVE-2006-5864 | | Last Modified: | Mar 27 05:45:02 2007 |
| MD5 Checksum: | 38bd5e4e89fca134cde78bb1b571463e |
|
| /// File Name: |
USN-442-1.txt |
Description:
|
Ubuntu Security Notice 442-1 - Ulf Harnhammar of Secunia Research discovered that Evolution did not correctly handle format strings when displaying shared memos. If a remote attacker tricked a user into viewing a specially crafted shared memo, they could execute arbitrary code with user privileges.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 7566 | | Related CVE(s): | CVE-2007-1002 | | Last Modified: | Mar 27 05:44:52 2007 |
| MD5 Checksum: | 3e3dbb8356f31c519561d2ff221e1274 |
|
| /// File Name: |
oem-redir.txt |
Description:
|
The Oracle Enterprise Manager suffers from a redirection flaw that may assist in phishing attacks.
| | Author: | Handrix | | Homepage: | http://www.morx.org/ | | File Size: | 2002 | | Last Modified: | Mar 27 05:29:55 2007 |
| MD5 Checksum: | 033d99bac182853107210e8d1fa68133 |
|
| /// File Name: |
USN-441-1.txt |
Description:
|
Ubuntu Security Notice 441-1 - A flaw was discovered in Squid's handling of the TRACE request method which could lead to a crash. Remote attackers with access to the Squid server could send malicious TRACE requests, and cause a denial of service.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 3580 | | Related CVE(s): | CVE-2007-1560 | | Last Modified: | Mar 27 05:00:28 2007 |
| MD5 Checksum: | 42382dc09fbda524e07c489a924a9da1 |
|
| /// File Name: |
sa24654.txt |
Description:
|
Secunia Security Advisory - CrYpTiC MauleR has discovered a vulnerability in the Fizzle extension for Firefox, which can be exploited by malicious people to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/24654/ | | File Size: | 2298 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | d5187af030c64b2a124e36cf457f7300 |
|
| /// File Name: |
sa24653.txt |
Description:
|
Secunia Security Advisory - ajann has reported a vulnerability in eWebquiz, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/24653/ | | File Size: | 2217 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | c073670eb2778bd65dfc48a4a06766f5 |
|
| /// File Name: |
sa24652.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in B21Soft's BASP21, which can be exploited by malicious people to send out unsolicited mail.
| | Homepage: | http://secunia.com/advisories/24652/ | | File Size: | 2439 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | e0b5806f10704c6ae1f24feed1c14f5a |
|
| /// File Name: |
sa24650.txt |
Description:
|
Secunia Security Advisory - SGI has issued multiple updates for SGI Advanced Linux Environment. These fix some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting and spoofing attacks, gain knowledge of potentially sensitive information, cause a DoS (Denial of Service) and potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24650/ | | File Size: | 2606 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | b7fac147742a519ae89c04cae573d614 |
|
| /// File Name: |
sa24640.txt |
Description:
|
Secunia Security Advisory - ajann has reported a vulnerability in Active Newsletter, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/24640/ | | File Size: | 2356 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | e08180b33f2651b3e4b5226d2e7e89d7 |
|
| /// File Name: |
sa24637.txt |
Description:
|
Secunia Security Advisory - Hessam-x has discovered a vulnerability in PBLang, which can be exploited by malicious users to compromise vulnerable systems.
| | Homepage: | http://secunia.com/advisories/24637/ | | File Size: | 2319 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | 09edd42aed51b620cca5cffedb92fe98 |
|
| /// File Name: |
sa24635.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in IDA Pro, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/24635/ | | File Size: | 2405 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | 38eb9fee93ab5b185a5d91ac3fa4cb53 |
|
| /// File Name: |
sa24634.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Sun Java System Directory Server, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24634/ | | File Size: | 3106 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | 07b4c64e4e11a5a47f058ca06bdf9666 |
|
| /// File Name: |
sa24627.txt |
Description:
|
Secunia Security Advisory - A security issue has been reported in TrueCrypt, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24627/ | | File Size: | 2111 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | 9d5118a74854d315f629b8c402955014 |
|
| /// File Name: |
sa24623.txt |
Description:
|
Secunia Security Advisory - Alexander Klink has reported a vulnerability in dproxy, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24623/ | | File Size: | 2269 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | 08a16f2c32e450b0b06a8cb33b081cf9 |
|
| /// File Name: |
sa24619.txt |
Description:
|
Secunia Security Advisory - Winny Thomas has discovered a vulnerability in Mercur Messaging 2005, which can be exploited by malicious users to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24619/ | | File Size: | 2431 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | 5125e3e1a666cd10727ab51f4c0724ae |
|
| /// File Name: |
sa24556.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in WinDVD, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24556/ | | File Size: | 2313 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | e0a9b778743afd0cf9c4c1ad231268d7 |
|
| /// File Name: |
sa24554.txt |
Description:
|
Secunia Security Advisory - d3nx has reported a vulnerability in Oracle Application Server 10g, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/24554/ | | File Size: | 2498 | | Last Modified: | Mar 27 03:03:50 2007 |
| MD5 Checksum: | bc48a5c0a5ae11fb18674e738119d31c |
|
| /// File Name: |
03.23.07-2.txt |
Description:
|
iDefense Security Advisory 03.23.07 - Remote exploitation of a design error vulnerability in Sun Microsystems Inc.'s Java System Directory Server 5.2 may cause a denial of service (DoS) condition. Due to a design error in the clean-up code following certain types of failed queries, it is possible to cause the server to call the free() function on an address obtained from uninitialized memory. This can result in an invalid memory reference leading to denial of service. iDefense has confirmed Sun Java System Directory Server 5.2 Directory Server 5.2 2005Q4 is affected by this vulnerability. Previous versions are also suspected to be vulnerable.
| | Homepage: | http://www.idefense.com/ | | File Size: | 3456 | | Related CVE(s): | CVE-2006-4175 | | Last Modified: | Mar 24 03:06:07 2007 |
| MD5 Checksum: | b26c06cca2e2250afd1b18efa83ab2b3 |
|
| /// File Name: |
03.23.07-1.txt |
Description:
|
iDefense Security Advisory 03.23.07 - Remote exploitation of a password bypass vulnerability in DataRescue Inc.'s IDA Pro Remote Debugger Server allows attackers to execute arbitrary code under the context of the user who is running the remote debugger server. iDefense has confirmed the existence of this vulnerability in the remote debugger server for Windows and Linux from IDA Pro versions 5.0 and 5.1. It is suspected that the MacOS X version and earlier versions are also affected.
| | Author: | enhalos | | Homepage: | http://www.idefense.com/ | | File Size: | 3994 | | Last Modified: | Mar 24 03:05:08 2007 |
| MD5 Checksum: | 4e0caef6b3f01e800f6daff9d177c1e6 |
|
| /// File Name: |
phpftp.txt |
Description:
|
PHP version 5.1.6 is susceptible to a CRLF injection vulnerability via its ftp function.
| | Author: | fangxiaodun | | File Size: | 877 | | Last Modified: | Mar 24 02:55:38 2007 |
| MD5 Checksum: | 5bc360bc13704702828042809a3e986a |
|
| /// File Name: |
dsa-1272-1.txt |
Description:
|
Debian Security Advisory 1272-1 - Moritz Jodeit discovered an off-by-one buffer overflow in tcpdump, a powerful tool for network monitoring and data acquisition, which allows denial of service.
| | Homepage: | http://www.debian.org/security | | File Size: | 4935 | | Related CVE(s): | CVE-2007-1218 | | Last Modified: | Mar 24 02:50:26 2007 |
| MD5 Checksum: | 967484a637f57ff0a8471d719be2af2e |
|
|
|
|
|