Section: .. / 0804-advisories /
| /// File Name: |
sa29667.txt |
Description:
|
Secunia Security Advisory - t0pP8uZz & xprog have reported a vulnerability in PHP Photo Gallery (Advanced Web Photo Gallery), which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/29667/ | | File Size: | 2318 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | ae1a85d71a1ff35599096a3dc0634bd4 |
|
| /// File Name: |
sa29676.txt |
Description:
|
Secunia Security Advisory - Slackware has issued an update for openssh. This fixes a vulnerability, which can be exploited by malicious, local users to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/29676/ | | File Size: | 3352 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | fe132394016b98283d6dde340697da42 |
|
| /// File Name: |
sa29680.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for alsaplayer. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/29680/ | | File Size: | 23737 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 2c705b49b7932e19dde48f9b01846150 |
|
| /// File Name: |
sa29681.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for unzip. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/29681/ | | File Size: | 2009 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | b2c9ee2d57ff9f47e1335bd932fb3791 |
|
| /// File Name: |
sa29683.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for openssh. This fixes a weakness and a vulnerability, which can be exploited by malicious, local users to bypass certain security restrictions or to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/29683/ | | File Size: | 2159 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 3091f710882a270b1c18ca21ac0e5aa4 |
|
| /// File Name: |
sa29684.txt |
Description:
|
Secunia Security Advisory - jiko has discovered some vulnerabilities in Blogator-script, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/29684/ | | File Size: | 2701 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | c6272a0518c133af1aab2d95f71d14e6 |
|
| /// File Name: |
sa29686.txt |
Description:
|
Secunia Security Advisory - A vulnerability and a weakness have been reported in cwRsync, which can be exploited by malicious, local users to bypass certain security restrictions or to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/29686/ | | File Size: | 2273 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 32f4a265da8d1e9bd106e087276323fe |
|
| /// File Name: |
sa29688.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for mapserver. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks or to potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/29688/ | | File Size: | 12766 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 4b6034d2bef9774f24f6a4916936ffe3 |
|
| /// File Name: |
sa29693.txt |
Description:
|
Secunia Security Advisory - rPath has issued an update for OpenSSH. This fixes a weakness, which can be exploited by malicious, local users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/29693/ | | File Size: | 2192 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | fc083b7f3a7fa5570db2ce9c927013e3 |
|
| /// File Name: |
sa29695.txt |
Description:
|
Secunia Security Advisory - rPath has issued an update for wireshark. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29695/ | | File Size: | 2052 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 672d88bd8dc1254cd83c19d2baec460c |
|
| /// File Name: |
sa29697.txt |
Description:
|
Secunia Security Advisory - t0pP8uZz & xprog have discovered a vulnerability in Comdev News Publisher, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/29697/ | | File Size: | 2435 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 511823c9a736824d512e4e17c820445d |
|
| /// File Name: |
sa29700.txt |
Description:
|
Secunia Security Advisory - t0pP8uZz has reported a vulnerability in Xpoze, which can be exploited by malicious users to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/29700/ | | File Size: | 2328 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 752592c8288fc227fbfadfdf0c868f42 |
|
| /// File Name: |
sa29703.txt |
Description:
|
Secunia Security Advisory - t0pP8uZz has reported a vulnerability in PIGMy-SQL, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/29703/ | | File Size: | 2220 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 1e904fce268fcfa8f32792d906533112 |
|
| /// File Name: |
sa29705.txt |
Description:
|
Secunia Security Advisory - S@BUN has reported a vulnerability in Site Sift Listings, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/29705/ | | File Size: | 2140 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 37a44102629ad1b405c73b6e78f3a9cc |
|
| /// File Name: |
sa29706.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for mysql. This fixes a security issue and two vulnerabilities, which can be exploited by malicious users to gain escalated privileges, manipulate certain data, or to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29706/ | | File Size: | 2109 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 39ff2714ef8e09786c0e50b1ecd7a1ca |
|
| /// File Name: |
sa29707.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for nxnode and nx. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service), disclose potentially sensitive information, or to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/29707/ | | File Size: | 2225 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | f43022f8ddb0412ce105e6905b6b169d |
|
| /// File Name: |
sa29709.txt |
Description:
|
Secunia Security Advisory - t0pP8uZz and xprog have reported a vulnerability in Software Index Script, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/29709/ | | File Size: | 2317 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 6ec28adeb0902bcf89cd11c14bd8fc54 |
|
| /// File Name: |
sa29710.txt |
Description:
|
Secunia Security Advisory - t0pP8uZz and xprog have reported a vulnerability in Links Directory, which can be exploited by malicious people to conduct SQL Injection attacks.
| | Homepage: | http://secunia.com/advisories/29710/ | | File Size: | 2263 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | b2be73e78695ad8cf3888c8dff3639db |
|
| /// File Name: |
sa29721.txt |
Description:
|
Secunia Security Advisory - Globus has acknowledged a vulnerability in GSI-OpenSSH, which can be exploited by malicious, local users to disclose potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/29721/ | | File Size: | 2317 | | Last Modified: | Apr 7 22:57:36 2008 |
| MD5 Checksum: | 699602ee6ad7bb05e346494a3504a0db |
|
| /// File Name: |
sa29607.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for thunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, or potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/29607/ | | File Size: | 2534 | | Last Modified: | Apr 4 20:12:21 2008 |
| MD5 Checksum: | 20817bb01064940bd720f01eb21534bb |
|
| /// File Name: |
dsa-1539-1.txt |
Description:
|
Debian Security Advisory 1539-1 - Chris Schmidt and Daniel Morissette discovered two vulnerabilities in mapserver, a development environment for spatial and mapping applications. Lack of input sanitizing and output escaping in the CGI mapserver's template handling and error reporting routines leads to cross-site scripting vulnerabilities. Missing bounds checking in mapserver's template handling leads to a stack-based buffer overrun vulnerability, allowing a remote attacker to execute arbitrary code with the privileges of the CGI or httpd user.
| | Homepage: | http://www.debian.org/security | | File Size: | 13952 | | Related CVE(s): | CVE-2007-4542, CVE-2007-4629 | | Last Modified: | Apr 4 20:12:14 2008 |
| MD5 Checksum: | 2447663616ac764bd4c71d920e8e0627 |
|
| /// File Name: |
dsa-1538-1.txt |
Description:
|
Debian Security Advisory 1538-1 - Erik Sjolund discovered a buffer overflow vulnerability in the Ogg Vorbis input plugin of the alsaplayer audio playback application. Successful exploitation of this vulnerability through the opening of a maliciously-crafted Vorbis file could lead to the execution of arbitrary code.
| | Homepage: | http://www.debian.org/security | | File Size: | 25300 | | Related CVE(s): | CVE-2007-5301 | | Last Modified: | Apr 4 20:11:20 2008 |
| MD5 Checksum: | 509381d3a9dc0720051f2c4c85abb62d |
|
| /// File Name: |
CAarc-multi.txt |
Description:
|
CA Security Advisory - CA ARCserve Backup for Laptops and Desktops Server contains multiple vulnerabilities that can allow a remote attacker to execute arbitrary code or cause a denial of service condition. CA has issued updates to address the vulnerabilities. The first issue occurs due to insufficient bounds checking on command arguments by the LGServer service. The second issue occurs due to insufficient verification of file uploads by the NetBackup service. In most cases, an attacker can potentially gain complete control of an affected installation. Additionally, only a server installation of BrightStor ARCserve Backup for Laptops and Desktops is affected. The client installation is not affected.
| | Author: | Ken Williams | | Homepage: | http://www3.ca.com/ | | File Size: | 5240 | | Related CVE(s): | CVE-2008-1328, CVE-2008-1329 | | Last Modified: | Apr 4 20:08:05 2008 |
| MD5 Checksum: | 579f6632d25d2375c8f0987283a05848 |
|
| /// File Name: |
CAalert-multi.txt |
Description:
|
CA Security Advisory - CA Alert Notification Server service contains multiple vulnerabilities that can allow a remote authenticated attacker to execute arbitrary code or cause a denial of service condition. CA has issued updates to address the vulnerabilities. The vulnerabilities are due to insufficient bounds checking in multiple procedures. A remote authenticated attacker or local user can exploit a buffer overflow to execute arbitrary code or cause a denial of service.
| | Author: | Ken Williams | | Homepage: | http://www3.ca.com/ | | File Size: | 4301 | | Related CVE(s): | CVE-2007-4620 | | Last Modified: | Apr 4 20:06:38 2008 |
| MD5 Checksum: | 0f210394aad268a0f3f84f8d8acfb639 |
|
| /// File Name: |
SSRT080032.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with two types of optional HP USB Floppy Drive Keys intended for use with certain ProLiant servers. This vulnerability could cause a local 'W32.Fakerecy' or 'W32.SillyFDC' virus infection.
| | Homepage: | http://www.hp.com/ | | File Size: | 7738 | | Related CVE(s): | CVE-2008-0708 | | Last Modified: | Apr 4 20:04:09 2008 |
| MD5 Checksum: | 7b1841cbcc4388009f18f7070f89c880 |
|
|
|
|
|