Section: .. / 0710-advisories /
| /// File Name: |
sa27127.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in PWLib, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27127/ | | File Size: | 2390 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | 620ccf60795adbd6c6a4c8ba3e951752 |
|
| /// File Name: |
sa27129.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in OpenH323 opal, which can potentially be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/27129/ | | File Size: | 2521 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | ff019f6217e2ef115f52e24698cf8299 |
|
| /// File Name: |
sa27131.txt |
Description:
|
Secunia Security Advisory - [PHCN] Mahjong has discovered a vulnerability in PHP Homepage M, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/27131/ | | File Size: | 2454 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | a81d593a0ff60f561f2a460d36f25a5e |
|
| /// File Name: |
sa27133.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Internet Explorer, which can be exploited by a malicious website to spoof the address bar.
| | Homepage: | http://secunia.com/advisories/27133/ | | File Size: | 4548 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | b02841527865d3984524420ce2d49215 |
|
| /// File Name: |
sa27134.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27134/ | | File Size: | 3668 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | e204c4fa2e53389060ce409ff882b344 |
|
| /// File Name: |
sa27138.txt |
Description:
|
Secunia Security Advisory - IRCRASH has reported a vulnerability in Softbiz Jobs and Recruitment Script, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/27138/ | | File Size: | 2353 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | c9e1968448aade05c91d27a66d87f110 |
|
| /// File Name: |
sa27139.txt |
Description:
|
Secunia Security Advisory - S.W.A.T. has discovered a vulnerability in LiveAlbum, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27139/ | | File Size: | 2429 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | 9e9bd92453cfab86cbbb06dbca21186e |
|
| /// File Name: |
sa27140.txt |
Description:
|
Secunia Security Advisory - BorN To K!LL has reported a vulnerability in xKiosk WEB, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27140/ | | File Size: | 2344 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | ec2d0b1124b64e632f1b4f1fa07b327a |
|
| /// File Name: |
sa27142.txt |
Description:
|
Secunia Security Advisory - Stephan Munz has reported a vulnerability in TYPOlight webCMS, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/27142/ | | File Size: | 2283 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | 5ce8c727346717962334e27842144289 |
|
| /// File Name: |
sa27145.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in util-linux, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges.
| | Homepage: | http://secunia.com/advisories/27145/ | | File Size: | 2546 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | a67fe98a2c7c418ae0decc5ce4cdd562 |
|
| /// File Name: |
sa27147.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged a vulnerability in various Avaya products, which potentially can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/27147/ | | File Size: | 2456 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | 1c0ced80e162174f4fb173af6d931e50 |
|
| /// File Name: |
sa27148.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft SharePoint Services and Office SharePoint Server, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/27148/ | | File Size: | 3010 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | 1fa6abf6d4f1e9232c278bc38dc7a7b8 |
|
| /// File Name: |
sa27150.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for pwlib. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27150/ | | File Size: | 2236 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | de8d8f50751aee16ea108c3dfd094a4b |
|
| /// File Name: |
sa27151.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Word, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27151/ | | File Size: | 2909 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | 85ee80a97a8238db93e401b3e44ff97b |
|
| /// File Name: |
sa27153.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Windows 2000, which can be exploited by malicious people to disclose potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/27153/ | | File Size: | 2735 | | Last Modified: | Oct 10 00:59:53 2007 |
| MD5 Checksum: | 49bbd2b6c28a09e7e5cf86cfc163f811 |
|
| /// File Name: |
glsa-200710-07.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200710-07 - Reinhard Max discovered a boundary error in Tk when processing an interlaced GIF with two frames where the second is smaller than the first one. Versions less than 8.4.15-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2500 | | Related CVE(s): | CVE-2007-4851 | | Last Modified: | Oct 8 20:39:28 2007 |
| MD5 Checksum: | 5b77ce70b4be4a117e2c5bea19ad6489 |
|
| /// File Name: |
glsa-200710-06.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200710-06 - Moritz Jodeit reported an off-by-one error in the SSL_get_shared_ciphers() function, resulting from an incomplete fix of CVE-2006-3738. A flaw has also been reported in the BN_from_montgomery() function in crypto/bn/bn_mont.c when performing Montgomery multiplication. Versions less than 0.9.8e-r3 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3292 | | Related CVE(s): | CVE-2006-3738, CVE-2007-3108, CVE-2007-5135 | | Last Modified: | Oct 8 20:39:04 2007 |
| MD5 Checksum: | fbb80f53be6d2a67bf086e6f20059611 |
|
| /// File Name: |
glsa-200710-05.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200710-05 - Raphael Marichez discovered that the DataLoader::doStart() method creates temporary files in an insecure manner and executes them. Versions less than 1.5.7 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2902 | | Related CVE(s): | CVE-2007-4631 | | Last Modified: | Oct 8 20:38:40 2007 |
| MD5 Checksum: | 602429e7adb1a1d4a2f88c01a311fe18 |
|
| /// File Name: |
glsa-200710-04.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200710-04 - Robert Buchholz of the Gentoo Security team discovered that the flac_buffer_copy() function does not correctly handle FLAC streams with variable block sizes which leads to a heap-based buffer overflow. Versions less than 1.0.17-r1 are affected.
| | Homepage: | http://security.gentoo.org/ | | File Size: | 2702 | | Related CVE(s): | CVE-2007-4974 | | Last Modified: | Oct 8 20:38:30 2007 |
| MD5 Checksum: | ba2d76ded126e3adb7f5fd0f3167a61e |
|
| /// File Name: |
glsa-200710-03.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200710-03 - David Thiel of iSEC Partners discovered a heap-based buffer overflow in the _01inverse() function in res0.c and a boundary checking error in the vorbis_info_clear() function in info.c. libvorbis is also prone to several Denial of Service vulnerabilities in form of infinite loops and invalid memory access with unknown impact. Versions less than 1.2.0 are affected.
| | Homepage: | http://security.gentoo.org/ | | File Size: | 3294 | | Related CVE(s): | CVE-2007-3106, CVE-2007-4029, CVE-2007-4065, CVE-2007-4066 | | Last Modified: | Oct 8 20:37:38 2007 |
| MD5 Checksum: | c70453c2482e2f78df068f65c8aead52 |
|
| /// File Name: |
glsa-200710-02.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200710-02 - Several vulnerabilities were found in PHP. Mattias Bengtsson and Philip Olausson reported integer overflows in the gdImageCreate() and gdImageCreateTrueColor() functions of the GD library which can cause heap-based buffer overflows. Gerhard Wagner discovered an integer overflow in the chunk_split() function that can lead to a heap-based buffer overflow. Its incomplete fix caused incorrect buffer size calculation due to precision loss, also resulting in a possible heap-based buffer overflow. A buffer overflow in the sqlite_decode_binary() of the SQLite extension found by Stefan Esser that was addressed in PHP 5.2.1 was not fixed correctly. Versions less than 5.2.4_p20070914-r2 are affected.
| | Homepage: | http://security.gentoo.org/ | | File Size: | 8110 | | Related CVE(s): | CVE-2007-1883, CVE-2007-1887, CVE-2007-1900, CVE-2007-2756, CVE-2007-2872, CVE-2007-3007, CVE-2007-3378, CVE-2007-3806, CVE-2007-3996, CVE-2007-3997, CVE-2007-3998, CVE-2007-4652, CVE-2007-4657, CVE-2007-4658, CVE-2007-4659, CVE-2007-4660, CVE-2007-4661, CVE-2007-4662, CVE-2007-4663, CVE-2007-4670, CVE-2007-4727, CVE-2007-4782, CVE-2007-4783, CVE-2007-4784, CVE-2007-4825, CVE-2007-4840, CVE-2007-4887 | | Last Modified: | Oct 8 20:36:46 2007 |
| MD5 Checksum: | 8c8d5b159992cb0df17a3a4a8b8f0e4d |
|
| /// File Name: |
dsa-1362-2.txt |
Description:
|
Debian Security Advisory 1362-2 - A problem was discovered in lighttpd, a fast webserver with minimal memory footprint, which could allow the execution of arbitary code via the overflow of CGI variables when mod_fcgi was enabled. This updated advisory correctly patches the security issue, which was not handled in DSA-1362-1.
| | Homepage: | http://www.debian.org/security | | File Size: | 11974 | | Related CVE(s): | CVE-2007-4727 | | Last Modified: | Oct 8 20:26:33 2007 |
| MD5 Checksum: | 826063a55c14e8a2be9717c3362feb6e |
|
| /// File Name: |
sa27037.txt |
Description:
|
Secunia Security Advisory - HP has issued an update for Apache. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, disclose sensitive information, conduct cross-site scripting attacks, cause a DoS (Denial of Service), or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27037/ | | File Size: | 3106 | | Last Modified: | Oct 8 20:25:28 2007 |
| MD5 Checksum: | 417a5ace6ec2838ab171ea0c46816d80 |
|
| /// File Name: |
sa27106.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for kdebase. This fixes a security issue and some vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions and by malicious people to conduct spoofing attacks.
| | Homepage: | http://secunia.com/advisories/27106/ | | File Size: | 2624 | | Last Modified: | Oct 8 20:25:05 2007 |
| MD5 Checksum: | ebd6cfc6f3d9b8a49151202ec03b9da4 |
|
| /// File Name: |
sa27085.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for xen-utils. This fixes some vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions or gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/27085/ | | File Size: | 4101 | | Last Modified: | Oct 8 20:24:54 2007 |
| MD5 Checksum: | 99592ac3762a1fa46cee379625ea3b97 |
|
|
|
|
|