Section: .. / 0601-advisories /
| /// File Name: |
sa18604.txt |
Description:
|
Secunia Security Advisory - Aliaksandr Hartsuyeu has discovered a vulnerability in miniBloggie, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/18604/ | | File Size: | 1891 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | 6f2d2934a3511cf076787d5e620adb4a |
|
| /// File Name: |
sa18603.txt |
Description:
|
Secunia Security Advisory - Roozbeh Afrasiabi has discovered a vulnerability in MyBB, which can be exploited by malicious people to conduct cross-site request forgery attacks.
| | Homepage: | http://secunia.com/advisories/18603/ | | File Size: | 2163 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | 6b8cf2d332ce6ec97ab6f5306ec10d47 |
|
| /// File Name: |
sa18600.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in HP-UX, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/18600/ | | File Size: | 1798 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | 29b0a10870b5d4bc3bc9835aabfceb76 |
|
| /// File Name: |
sa18599.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in FreeBSD, which can be exploited to malicious, local users to gain knowledge of potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/18599/ | | File Size: | 2579 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | 8f845c592cdf1bbe70546c8b8315210f |
|
| /// File Name: |
sa18594.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in WeBWorK, which can be exploited by malicious users to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/18594/ | | File Size: | 1857 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | 8067849e691ed774bb1ece97ea55223d |
|
| /// File Name: |
sa18589.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Kerio WinRoute Firewall, which potentially can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/18589/ | | File Size: | 1711 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | 869f80e5f59c677d60a579dfe0d82f9a |
|
| /// File Name: |
sa18588.txt |
Description:
|
Secunia Security Advisory - karmaguedon has reported a vulnerability in Claroline, which potentially can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/18588/ | | File Size: | 1981 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | e2c13e213fadea5404a6edd3d2958ae3 |
|
| /// File Name: |
sa18586.txt |
Description:
|
Secunia Security Advisory - Johnny Mast has reported a vulnerability in LibAST, which potentially can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/18586/ | | File Size: | 1990 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | 1696b411f80a713f4a8a3dd17c4e75fb |
|
| /// File Name: |
sa18584.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged a vulnerability in Avaya S87XX/S8500/S8300, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/18584/ | | File Size: | 1663 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | 9522a1b09aa8ed8a468f900029ab699f |
|
| /// File Name: |
sa18578.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for wine. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/18578/ | | File Size: | 3989 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | f7b7c4f52cc9f87318cbd872adb0693a |
|
| /// File Name: |
sa18574.txt |
Description:
|
Secunia Security Advisory - Critical Security has discovered a vulnerability in Sami FTP Server, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/18574/ | | File Size: | 2056 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | a25389a635f8da1c328df69a16890005 |
|
| /// File Name: |
sa18480.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered some vulnerabilities in various E-Post Mail Server products, which can be exploited by malicious users to bypass certain security restrictions, gain knowledge of certain system information, and cause a DoS (Denial of Service), or by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/18480/ | | File Size: | 5374 | | Last Modified: | Jan 25 18:27:50 2006 |
| MD5 Checksum: | f1d48a4123d988fd93d0231a486a58d8 |
|
| /// File Name: |
MDKSA-2006-018.txt |
Description:
|
Mandriva Linux Security Advisory - Multiple vulnerabilities in the Linux Kernel.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 5040 | | Last Modified: | Jan 25 09:39:37 2006 |
| MD5 Checksum: | 8a7a8b8c969395c874ee1906cf15bb56 |
|
| /// File Name: |
MDKSA-2006-019.txt |
Description:
|
Mandriva Linux Security Advisory - A heap overflow vulnerability was discovered in kjs, the KDE JavaScript interpreter engine. An attacker could create a malicious web site that contained carefully crafted JavaScript code that could trigger the flaw and potentially lead to the arbitrary execution of code as the user visiting the site.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 4216 | | Last Modified: | Jan 25 09:34:22 2006 |
| MD5 Checksum: | 975d834c6fff19e2226ddf800dcffdbc |
|
| /// File Name: |
glsa-200601-11.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200601-11 - Maksim Orlovich discovered an incorrect bounds check in kjs when handling URIs. Versions less than 3.4.3-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2742 | | Last Modified: | Jan 25 09:31:02 2006 |
| MD5 Checksum: | 9a77663768cfd3a1f5ad681c82f30094 |
|
| /// File Name: |
dsa-954-1.txt |
Description:
|
Debian Security Advisory DSA 954-1 - H D Moore that discovered that Wine, a free implementation of the Microsoft Windows APIs, inherits a design flaw from the Windows GDI API, which may lead to the execution of code through GDI escape functions in WMF files.
| | Author: | Martin Schulze | | Homepage: | http://www.debian.org/security/ | | File Size: | 4964 | | Last Modified: | Jan 25 09:29:28 2006 |
| MD5 Checksum: | 6d918e8ccdf13c242e7e9a3ee9ebfd72 |
|
| /// File Name: |
dsa-953-1.txt |
Description:
|
Debian Security Advisory DSA 953-1 - Several cross-site scripting vulnerabilities have been discovered in flyspray, a lightweight bug tracking system, which allows attackers to insert arbitrary script code into the index page.
| | Author: | Martin Schulze | | Homepage: | http://www.debian.org/security/ | | File Size: | 3141 | | Last Modified: | Jan 25 09:28:42 2006 |
| MD5 Checksum: | cebfd4da0d137b3d24bce1b7434c6a10 |
|
| /// File Name: |
dsa-951-1.txt |
Description:
|
Several vulnerabilities have been discovered in trac, an enhanced wiki and issue tracking system for software development projects. The Common Vulnerabilities and Exposures project identified the following problems:
| | Author: | Martin Schulze | | Homepage: | http://www.debian.org/security/ | | File Size: | 3452 | | Last Modified: | Jan 25 09:28:10 2006 |
| MD5 Checksum: | b508cd8e6cc1e6e132fc103528103b15 |
|
| /// File Name: |
dsa-952-1.txt |
Description:
|
Debian Security Advisory DSA 952-1 - "Seregorn" discovered a format string vulnerability in the logging function of libapache-auth-ldap, an LDAP authentication module for the Apache webserver, that can lead to the execution of arbitrary code.
| | Author: | Martin Schulze | | Homepage: | http://www.debian.org/security/ | | File Size: | 8471 | | Last Modified: | Jan 25 09:27:11 2006 |
| MD5 Checksum: | 562bdae252e8a6db7b3de3198a44554c |
|
| /// File Name: |
dsa-950-1.txt |
Description:
|
Debian Security Advisory DSA 950-1 - "infamous41md" and Chris Evans discovered several heap based buffer overflows in xpdf which are also present in CUPS, the Common UNIX Printing System, and which can lead to a denial of service by crashing the application or possibly to the execution of arbitrary code.
| | Author: | Martin Schulze | | Homepage: | http://www.debian.org/security/ | | File Size: | 29148 | | Last Modified: | Jan 25 09:26:36 2006 |
| MD5 Checksum: | e77b0baae789762499a947400e76ecbb |
|
| /// File Name: |
USN-246-1.txt |
Description:
|
Ubuntu Security Notice USN-246-1 - Multiple vulnerabilities in imagemagick.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 13476 | | Last Modified: | Jan 25 09:25:47 2006 |
| MD5 Checksum: | 106586444bbaa00d85e6345878d5aefe |
|
| /// File Name: |
USN-245-1.txt |
Description:
|
Ubuntu Security Notice USN-245-1 - Maksim Orlovich discovered that kjs, the Javascript interpreter engine used by Konqueror and other parts of KDE, did not sufficiently verify the validity of UTF-8 encoded URIs. Specially crafted URIs could trigger a buffer overflow. By tricking an user into visiting a web site with malicious JavaScript code, a remote attacker could exploit this to execute arbitrary code with user privileges.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 6574 | | Last Modified: | Jan 25 09:24:56 2006 |
| MD5 Checksum: | fedd3633d540113f44a636fcc8b7cef6 |
|
| /// File Name: |
kde-20060119-1.txt |
Description:
|
KDE Security Advisory: kjs encodeuri/decodeuri heap overflow vulnerability - Maksim Orlovich discovered an incorrect bounds check in kjs, the JavaScript interpreter engine used by Konqueror and other parts of KDE, that allows a heap based buffer overflow when decoding specially crafted UTF-8 encoded URI sequences.
| | Author: | KDE | | Homepage: | http://www.kde.org/info/security/advisory-20060119-1.txt | | File Size: | 1310 | | Last Modified: | Jan 25 09:22:18 2006 |
| MD5 Checksum: | 8f89b2b03f1c05c78c823d74a93332ff |
|
| /// File Name: |
IRM015.txt |
Description:
|
IRM Security Advisory No. 015 - IRM has discovered an information leakage vulnerability in TYPO3 that allows remote users to disclose the file system path of the application when requesting certain files.
| | Author: | IRM Advisories | | Homepage: | http://www.irmplc.com/advisories | | File Size: | 3603 | | Last Modified: | Jan 25 09:09:23 2006 |
| MD5 Checksum: | b15b22ba86bc8960021920dba0a52968 |
|
| /// File Name: |
TA06-018A.txt |
Description:
|
Technical Cyber Security Alert TA06-018A - Various Oracle products and components are affected by multiple vulnerabilities. The impacts of these vulnerabilities include remote execution of arbitrary code, information disclosure, and denial of service.
| | Author: | CERT | | Homepage: | http://www.us-cert.gov/cas/techalerts/TA06-018A.html | | File Size: | 6845 | | Last Modified: | Jan 25 08:57:21 2006 |
| MD5 Checksum: | af6b4e92f1561a7cc62f129e33bd63de |
|
|
|
|
|