exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 42 RSS Feed

Files Date: 2007-07-26

lsa_transnames_heap-osx.rb.txt
Posted Jul 26, 2007
Authored by H D Moore, Ramon de C Valle, Adriano Lima | Site risesecurity.org

This Metasploit module triggers a heap overflow in the LSA RPC service of the Samba daemon. This module uses the szone_free() to overwrite the size() or free() pointer in initial_malloc_zones structure. OSX version.

tags | exploit, overflow
systems | apple
advisories | CVE-2007-2446
SHA-256 | 41df3765c835402280aab01fc03d46c9b2c7b29c3dc978680897dd0fb25af88e
lsa_transnames_heap-solaris.rb.txt
Posted Jul 26, 2007
Authored by H D Moore, Ramon de C Valle, Adriano Lima | Site risesecurity.org

This Metasploit module triggers a heap overflow in the LSA RPC service of the Samba daemon. This module uses the TALLOC chunk overwrite method (credit Ramon and Adriano), which only works with Samba versions 3.0.21 through 3.0.24. Additionally, this module will not work when the Samba "log level" parameter is higher than "2". Solaris version.

tags | exploit, overflow
systems | solaris
advisories | CVE-2007-2446
SHA-256 | de2f7abb618670f26477578d2cf35a14414c6516b9a7f7271f2d1b1d3ca0ba65
lsa_transnames_heap-linux.rb.txt
Posted Jul 26, 2007
Authored by H D Moore, Ramon de C Valle, Adriano Lima | Site risesecurity.org

This Metasploit module triggers a heap overflow in the LSA RPC service of the Samba daemon. This module uses the TALLOC chunk overwrite method (credit Ramon and Adriano), which only works with Samba versions 3.0.21 through 3.0.24. Additionally, this module will not work when the Samba "log level" parameter is higher than "2". Linux version.

tags | exploit, overflow
systems | linux
advisories | CVE-2007-2446
SHA-256 | ecad9d88ed773b5eba7139281a534e16adc238b07ada385028643a4c54900d67
Mandriva Linux Security Advisory 2007.150
Posted Jul 26, 2007
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory - A vulnerability in the RAR VM in ClamAV allowed user-assisted remote attackers to cause a crash via a crafted RAR archive which resulted in a NULL pointer dereference.

tags | advisory, remote
systems | linux, mandriva
advisories | CVE-2007-3725
SHA-256 | 5bd6f768c2ae91923dcae724be1114f97ea01aa9ddc53c7418e3a41d321b7fec
KiwiCON 2007 Call For Papers
Posted Jul 26, 2007
Site kiwicon.org

Kiwicon '07 Call For Papers - Kiwicon '07 will be a largely informal conference, organized by the security community for the security community. It will be held in Wellington, New Zealand, on the weekend of the 17th and 18th of November, 2007.

tags | paper, conference
SHA-256 | 770669ef9174806a2a98bf2bc584b87632fbfa72fede610d04f510c61fed8270
Mandriva Linux Security Advisory 2007.149
Posted Jul 26, 2007
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory - The DNS query id generation code in BIND9 is vulnerable to cryptographic analysis which provides a 1-in-8 change of guessing the next query ID for 50% of the query IDs, which could be used by a remote attacker to perform cache poisoning by an attacker. As well, in BIND9 9.4.x, the default ACLs were note being correctly set, which could allow anyone to make recursive queries and/or query the cache contents.

tags | advisory, remote
systems | linux, mandriva
advisories | CVE-2007-2926, CVE-2007-2925
SHA-256 | 6b86dfec16962004867daf39c7cfdac46f389704063d633f444e270dcfe9bb1b
Debian Linux Security Advisory 1341-1
Posted Jul 26, 2007
Authored by Debian | Site debian.org

Debian Security Advisory 1341-1 - Amit Klein discovered that the BIND name server generates predictable DNS query IDs, which may lead to cache poisoning attacks.

tags | advisory
systems | linux, debian
advisories | CVE-2007-2926
SHA-256 | 88410bd247777324f4bc7b4a5f630f56927bb335206462a9bc6b463559bd8022
Zero Day Initiative Advisory 07-044
Posted Jul 26, 2007
Authored by Tipping Point, Tenable Network Security | Site zerodayinitiative.com

A vulnerability allows remote attackers to execute arbitrary code on systems with affected installations of BakBone NetVault Reporter. User interaction is not required to exploit this vulnerability. BakBone NetVault Reporter version 3.5 prior to Update4 is susceptible.

tags | advisory, remote, arbitrary
advisories | CVE-2007-3911
SHA-256 | c3eba9e3a239ceea1a75f4975440e4f47f2979ceeb1fcddc729b4d6201491bbc
mozillaprotocolabuse.zip
Posted Jul 26, 2007
Authored by Thor Larholm | Site larholm.com

The Mozilla application platform currently has an unpatched input validation flaw which allows you to specify arbitrary command line arguments to any registered URL protocol handler process. Thunderbird version 2.0.0.5 fixes this. Full exploits included.

tags | exploit, arbitrary, protocol
SHA-256 | b87dd83511bb3193b27560787656bb08cbc129eb12d1eb43241e8ff546fbf7fb
mitridat-xss.txt
Posted Jul 26, 2007
Authored by Charles Kim

Mitridat's Form Processor Pro suffers from cross site scripting vulnerabilities.

tags | advisory, vulnerability, xss
SHA-256 | 566d7fda7a4e1adf92ab3b359ce8625c0ac40ac810f5d475c731cebe8cbb296e
Gentoo Linux Security Advisory 200707-11
Posted Jul 26, 2007
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200707-11 - kadmind is affected by multiple vulnerabilities in the RPC library shipped with MIT Kerberos 5. It fails to properly handle zero-length RPC credentials (CVE-2007-2442) and the RPC library can write past the end of the stack buffer (CVE-2007-2443). Furthermore kadmind fails to do proper bounds checking (CVE-2007-2798). Versions less than 1.5.2-r3 are affected.

tags | advisory, vulnerability
systems | linux, gentoo
advisories | CVE-2007-2442, CVE-2007-2443, CVE-2007-2798
SHA-256 | 33f574675877e6e34e428ed47ba0d62856a4d1f17a20853263cf9c824e89339f
Gentoo Linux Security Advisory 200707-10
Posted Jul 26, 2007
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200707-10 - Konstantine Shirow reported a vulnerability in default Gentoo configurations of Festival. The daemon is configured to run with root privileges and to listen on localhost, without requiring a password. Versions less than 1.95_beta-r4 are affected.

tags | advisory, root
systems | linux, gentoo
SHA-256 | fe4b3ef3de4f1b7f92b7689b719c1e0cd81f66b4230c08736b7eb4bfe923b085
Gentoo Linux Security Advisory 200707-9
Posted Jul 26, 2007
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200707-09 - Sean Larsson from iDefense Labs discovered multiple integer overflows in various GIMP plugins (CVE-2006-4519). Stefan Cornelius from Secunia Research discovered an integer overflow in the seek_to_and_unpack_pixeldata() function when processing PSD files (CVE-2007-2949). Versions less than 2.2.16 are affected.

tags | advisory, overflow
systems | linux, gentoo
advisories | CVE-2006-4519, CVE-2007-2949
SHA-256 | b640f357c376ba327779e33a6913b26e034899598eb5cb23b3c1dafd75891c02
Mandriva Linux Security Advisory 2007.148
Posted Jul 26, 2007
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory - An integer overflow in tcpdump could allow a remote attacker to execute arbitrary code via crafted TLVs in a BGP packet.

tags | advisory, remote, overflow, arbitrary
systems | linux, mandriva
advisories | CVE-2007-3798
SHA-256 | 2f982f2161f3356e5da0b292f0f1e0ef5c469b4c2135e3c8610f27cd40edbfa1
Ubuntu Security Notice 491-1
Posted Jul 26, 2007
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 491-1 - A flaw was discovered in Bind's sequence number generator. A remote attacker could calculate future sequence numbers and send forged DNS query responses. This could lead to client connections being directed to attacker-controlled hosts, resulting in credential theft and other attacks.

tags | advisory, remote
systems | linux, ubuntu
advisories | CVE-2007-2926
SHA-256 | bff534758165f1f2510a0d68e2038678636558282c0ef43fb9ce4fc837514132
clever-overwrite.txt
Posted Jul 26, 2007
Authored by shinnai | Site shinnai.altervista.org

Clever Internet ActiveX Suite version 6.2 arbitrary file download/overwrite exploit that makes use of CLINETSUITEX6.OCX.

tags | exploit, arbitrary, activex
SHA-256 | d6a392f3c1363b79d87f532f253f55b45415f2dc106c486b6c6e87094b9520c6
ipswitch-overflow.txt
Posted Jul 26, 2007
Authored by ZhenHan.Liu | Site ph4nt0m.org

IPSwitch IMail server 2006 SEARCH remote stack overflow exploit. Binds a shell to port 1154.

tags | exploit, remote, overflow, shell
SHA-256 | b5435382b53d5e12ca72274477308b144b194b6e9c81f213dbda373a92218328
indexscript-sql.txt
Posted Jul 26, 2007
Authored by xssvgamer

IndexScript versions 2.8 and below suffer from a SQL injection vulnerability in showcat.php.

tags | exploit, php, sql injection
SHA-256 | 1100602100f77adb05ad45735391639e49021305360d88d105d205e3ef2a46fc
webyapar-sql.txt
Posted Jul 26, 2007
Authored by bypass

Webyapar version 2.0 suffers from multiple SQL injection vulnerabilities.

tags | exploit, vulnerability, sql injection
SHA-256 | 3ee3e4499cc66037cc1f076b120a23d6da2764f3b7226d1f629898c8d98d9814
ifoto-traversal.txt
Posted Jul 26, 2007
Authored by Lostmon | Site lostmon.blogspot.com

ifoto version 1.0 suffers from a directory traversal vulnerability.

tags | exploit, file inclusion
SHA-256 | 515f80aeae4c062e76087e67bcaf8da27e538714cd8b5c87bb1ab74a17b91c67
n.runs-SA-2007.024.txt
Posted Jul 26, 2007
Authored by Sergio Alvarez | Site nruns.com

A denial of service vulnerability exists in CA eTrust Antivirus when parsing .CHM files. The vulnerability is present in CA eTrust Antivirus software previous to file arclib.dll version 7.3.0.9.

tags | advisory, denial of service
SHA-256 | 456f1593f1c7a4bd074c2182ce0fd75e3dc29468994fc5830bbb56719be5eff6
blarp.txt
Posted Jul 26, 2007
Authored by Knud Erik Hojgaard

Denial of service exploit for Microsoft Windows XP and Vista that uses ARP.

tags | exploit, denial of service
systems | windows
SHA-256 | 521d20576bef0e344d07aa66023e71bc289eb0f833d90bbd647ea744f24f7996
OpenPKG Security Advisory 2007.22
Posted Jul 26, 2007
Authored by OpenPKG Foundation | Site openpkg.com

OpenPKG Security Advisory - BIND 9 versions 9.4.1-P1 and below suffer from multiple vulnerabilities that allow for recursive queries and cache poisoning.

tags | advisory, vulnerability
advisories | CVE-2007-2925, CVE-2007-2926
SHA-256 | c368a04ffba7fa0bd16a6fd660ba328818e7e86d86faf603e8fd15ff53b9f706
vikingboard-xss.txt
Posted Jul 26, 2007
Authored by Lostmon | Site lostmon.blogspot.com

Vikingboard version 0.1.2 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
SHA-256 | 4152f6d418d3657569e6f20922d2c74245012db460756216c446753cdd84ecee
viking-disclose.txt
Posted Jul 26, 2007
Authored by Lostmon | Site lostmon.blogspot.com

Vikingboard may disclose sensitive information via the debug variable.

tags | advisory, info disclosure
SHA-256 | d8ec1b54380cdc906a660ece72c26a22cdd39b072675e97aa92cad332dc7e9d8
Page 1 of 2
Back12Next

File Archive:

May 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    May 1st
    44 Files
  • 2
    May 2nd
    5 Files
  • 3
    May 3rd
    11 Files
  • 4
    May 4th
    0 Files
  • 5
    May 5th
    0 Files
  • 6
    May 6th
    0 Files
  • 7
    May 7th
    0 Files
  • 8
    May 8th
    0 Files
  • 9
    May 9th
    0 Files
  • 10
    May 10th
    0 Files
  • 11
    May 11th
    0 Files
  • 12
    May 12th
    0 Files
  • 13
    May 13th
    0 Files
  • 14
    May 14th
    0 Files
  • 15
    May 15th
    0 Files
  • 16
    May 16th
    0 Files
  • 17
    May 17th
    0 Files
  • 18
    May 18th
    0 Files
  • 19
    May 19th
    0 Files
  • 20
    May 20th
    0 Files
  • 21
    May 21st
    0 Files
  • 22
    May 22nd
    0 Files
  • 23
    May 23rd
    0 Files
  • 24
    May 24th
    0 Files
  • 25
    May 25th
    0 Files
  • 26
    May 26th
    0 Files
  • 27
    May 27th
    0 Files
  • 28
    May 28th
    0 Files
  • 29
    May 29th
    0 Files
  • 30
    May 30th
    0 Files
  • 31
    May 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close