Section: .. / 0605-advisories /
| /// File Name: |
sa20148.txt |
Description:
|
Secunia Security Advisory - Paul Craig has reported a vulnerability in the Avatar Mod module for Snitz Forums, which can be exploited by malicious users to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20148/ | | File Size: | 2014 | | Last Modified: | May 18 19:35:49 2006 |
| MD5 Checksum: | eca61f1a26a194b076d124f4c936a378 |
|
| /// File Name: |
sa20149.txt |
Description:
|
Secunia Security Advisory - Yunus Emre Yilmaz has discovered two vulnerabilities in BoastMachine, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/20149/ | | File Size: | 1856 | | Last Modified: | May 18 19:35:49 2006 |
| MD5 Checksum: | 33cabe0f756a80a2e4ef526451d2b723 |
|
| /// File Name: |
sa20150.txt |
Description:
|
Secunia Security Advisory - Luigi Auriemma has reported two vulnerabilities in libextractor, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application that uses the library.
| | Homepage: | http://secunia.com/advisories/20150/ | | File Size: | 2216 | | Last Modified: | May 18 19:35:49 2006 |
| MD5 Checksum: | 0dd62c29db0369d4959f52558ef28ee6 |
|
| /// File Name: |
sa20151.txt |
Description:
|
Secunia Security Advisory - Jaime Blasco has reported some vulnerabilities in Mobotix IP Network Cameras, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/20151/ | | File Size: | 2285 | | Last Modified: | May 18 19:35:49 2006 |
| MD5 Checksum: | 1638bfaef1d34a8176280336397be223 |
|
| /// File Name: |
sa20155.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported Serendipity, which can be exploited by malicious people to conduct cross-site request forgery attacks.
| | Homepage: | http://secunia.com/advisories/20155/ | | File Size: | 2122 | | Last Modified: | May 18 19:35:49 2006 |
| MD5 Checksum: | 0145f507d32b85c482bb4590ff68e7d5 |
|
| /// File Name: |
sa20156.txt |
Description:
|
Secunia Security Advisory - Kacper has reported some vulnerabilities in ScozNews, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20156/ | | File Size: | 2118 | | Last Modified: | May 18 19:35:49 2006 |
| MD5 Checksum: | 1f29eb865ade4f3fa2c67d9e9977bf22 |
|
| /// File Name: |
sa20158.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Invision Power Board, which potentially can be exploited by malicious users and malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20158/ | | File Size: | 1821 | | Last Modified: | May 18 19:35:49 2006 |
| MD5 Checksum: | 182106119845f041b408b7c0ca37e43b |
|
| /// File Name: |
sa20159.txt |
Description:
|
Secunia Security Advisory - Kolab has issued an update for clamav. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20159/ | | File Size: | 1821 | | Last Modified: | May 18 19:35:49 2006 |
| MD5 Checksum: | 4312978856e737ef6712457cf5967c06 |
|
| /// File Name: |
DuGalleryV2.x.txt |
Description:
|
DUGallery v2.x suffers from a login bypass vulnerability.
| | Homepage: | http://www.milli-harekat.org | | File Size: | 340 | | Last Modified: | May 17 18:57:08 2006 |
| MD5 Checksum: | 4db4da06bbdd0a58bda690baa1e2facf |
|
| /// File Name: |
IBMWebsphere.txt |
Description:
|
Some vulnerabilities have been reported in IBM WebSphere Application Server, where some have unknown impacts and others may disclose sensitive information or bypass certain security restrictions.
| | Homepage: | http://www-1.ibm.com | | File Size: | 2017 | | Last Modified: | May 17 18:56:20 2006 |
| MD5 Checksum: | 918346e97158674df827c69cae766884 |
|
| /// File Name: |
OzzyWorkGallery.txt |
Description:
|
OzzyWork Gallery suffers from a file upload vulnerability.
| | Homepage: | http://www.milli-harekat.org | | File Size: | 525 | | Last Modified: | May 17 18:36:25 2006 |
| MD5 Checksum: | f2f92953a0d70729c0e6d4d9f776afa5 |
|
| /// File Name: |
OzzyWorkGaleri.txt |
Description:
|
OzzyWork Gallery suffers from an administrative login bypass vulnerability.
| | Homepage: | http://www.milli-harekat.org | | File Size: | 348 | | Last Modified: | May 17 18:34:16 2006 |
| MD5 Checksum: | 7513d16edb50a4795d5daa64bf517bcd |
|
| /// File Name: |
secunia-unacev2.dll.txt |
Description:
|
Secunia Research 09/05/2006 - Where Is It unacev2.dll Buffer Overflow Vulnerability.
| | Homepage: | http://secunia.com/ | | File Size: | 3442 | | Last Modified: | May 17 18:24:26 2006 |
| MD5 Checksum: | c612c5514fd3cc7eab2ad27c72522277 |
|
| /// File Name: |
ICQ-xas.txt |
Description:
|
Under some conditions, the ICQ client is vulnerable to remote script injection into the My Computer Security Zone of the Internet Explorer component used to display advertisement banners.
| | Author: | 3APA3A | | Homepage: | http://www.security.nnov.ru/ | | File Size: | 2361 | | Last Modified: | May 17 18:18:12 2006 |
| MD5 Checksum: | ff15c418248e0cb7fa4723a80a1026fd |
|
| /// File Name: |
mybbv1.1.1.txt |
Description:
|
mybb v1.1.1 suffers from SQL injection in showthread.php
| | Author: | Breeeeh | | Homepage: | http://www.alshmokh.com | | File Size: | 509 | | Last Modified: | May 17 18:13:25 2006 |
| MD5 Checksum: | 4ca89ced094e0db4126d314ef4daecba |
|
| /// File Name: |
quake3-vuln.txt |
Description:
|
Two independent vulnerabilities (client and server side) have been discovered in the Quake3 engine and many derived games.
| | Author: | Thilo Schulz | | File Size: | 5229 | | Last Modified: | May 17 18:10:33 2006 |
| MD5 Checksum: | 9989c487ac7d58a57212b391c9cfa6c2 |
|
| /// File Name: |
MDKSA-2006-083.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-083: A race condition in daemon/slave.c in gdm before 2.14.1 allows local users to gain privileges via a symlink attack when gdm performs chown and chgrp operations on the .ICEauthority file.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 2519 | | Last Modified: | May 17 17:49:11 2006 |
| MD5 Checksum: | 13bd5d34120c6931c24b26d65c1f0472 |
|
| /// File Name: |
MDKSA-2006-085.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-085: Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine allow remote attackers to execute arbitrary code via format string specifiers in a long filename on an EXTINFO line in a playlist file.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 3551 | | Last Modified: | May 17 17:49:03 2006 |
| MD5 Checksum: | f144259db8d71fc85d2eec7d3693896a |
|
| /// File Name: |
MDKSA-2006-084.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-084: The check_connection function in sql_parse.cc in MySQL 4.0.x up to 4.0.26, 4.1.x up to 4.1.18, and 5.0.x up to 5.0.20 allows remote attackers to read portions of memory via a username without a trailing null byte, which causes a buffer over-read.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 7634 | | Last Modified: | May 17 17:48:53 2006 |
| MD5 Checksum: | 010201bad5e247386899caf659a142f2 |
|
| /// File Name: |
USN-284-1.txt |
Description:
|
Ubuntu Security Notice 284-1: Paul Jakma discovered that Quagga's ripd daemon did not properly handle authentication of RIPv1 requests. If the RIPv1 protocol had been disabled, or authentication for RIPv2 had been enabled, ripd still replied to RIPv1 requests, which could lead to information disclosure.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 3861 | | Last Modified: | May 17 17:47:02 2006 |
| MD5 Checksum: | 0938dd2ba4e57de8d6bf473428364a11 |
|
| /// File Name: |
USN-274-2.txt |
Description:
|
Ubuntu Security Notice 274-2: USN-274-1 fixed a logging bypass in the MySQL server. Unfortunately it was determined that the original update was not sufficient to completely fix the vulnerability, thus another update is necessary. We apologize for the inconvenience.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 6918 | | Last Modified: | May 17 17:46:56 2006 |
| MD5 Checksum: | 2cf25004ea62c6804b97e8395487c470 |
|
| /// File Name: |
FLSA-2006-185355.txt |
Description:
|
Fedora Legacy Update Advisory FLSA:185355 - Tavis Ormandy discovered a bug in the way GnuPG verifies cryptographically signed data with detached signatures. It is possible for an attacker to construct a cryptographically signed message which could appear to come from a third party. When a victim processes a GnuPG message with a malformed detached signature, GnuPG ignores the malformed signature, processes and outputs the signed data, and exits with status 0, just as it would if the signature had been valid. In this case, GnuPG's exit status would not indicate that no signature verification had taken place. This issue would primarily be of concern when processing GnuPG results via an automated script.
| | Homepage: | http://fedoralegacy.org | | File Size: | 6542 | | Last Modified: | May 17 17:46:33 2006 |
| MD5 Checksum: | 76c3673374611c1455a5420db48eba48 |
|
| /// File Name: |
FLSA-2006-152923.txt |
Description:
|
Fedora Legacy Update Advisory FLSA:152923 - A flaw was discovered in xloadimage where filenames were not properly quoted when calling the gunzip command. An attacker could create a file with a carefully crafted filename so that it would execute arbitrary commands if opened by a victim.
| | Homepage: | http://fedoralegacy.org | | File Size: | 5476 | | Last Modified: | May 17 17:45:53 2006 |
| MD5 Checksum: | 2ce6776465daf5b964122de0ea5dda6f |
|
| /// File Name: |
FLSA-2006-152904.txt |
Description:
|
Fedora Legacy Update Advisory FLSA:152904 - Buffer overflows were found in the nwclient program. An attacker, using a long -T option, could possibly execute arbitrary code and gain privileges.
| | Homepage: | http://fedoralegacy.org | | File Size: | 7231 | | Last Modified: | May 17 17:45:03 2006 |
| MD5 Checksum: | a49223f8d73e94a1f2dda56b6d7863d5 |
|
|
|
|
|