.:[ packet storm ]:.
                             
low profile, high success
low profile, high success

 Section:  .. / 0709-advisories  /

Page 3 of 20
<< 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 >> Files 50 - 75 of 493
Currently sorted by: Last ModifiedSort By: File Name, File Size

 ///  File Name: sa26958.txt
Description:
Secunia Security Advisory - Janek Vind has discovered a vulnerability in the Dance Music module for PHP-Nuke, which can be exploited by malicious people to disclose sensitive information.
Homepage:http://secunia.com/advisories/26958/
File Size:2455
Last Modified:Sep 26 22:37:08 2007
MD5 Checksum:b5a301973534f9763632c154cf192792

 ///  File Name: sa26961.txt
Description:
Secunia Security Advisory - Jason Kratzer has reported some vulnerabilities in JSPWiki, which can be exploited by malicious people to disclose system information and conduct cross-site scripting and script insertion attacks.
Homepage:http://secunia.com/advisories/26961/
File Size:3278
Last Modified:Sep 26 22:37:08 2007
MD5 Checksum:f46595bbc982e5142db61efdcf59986d

 ///  File Name: sa26967.txt
Description:
Secunia Security Advisory - Red Hat has issued an update for php. This fixes some vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions and by malicious people to bypass certain security restrictions and cause a DoS (Denial of Service).
Homepage:http://secunia.com/advisories/26967/
File Size:2493
Last Modified:Sep 26 22:37:08 2007
MD5 Checksum:e5a0e8797b2616e658c076a2802e10a7

 ///  File Name: sa26968.txt
Description:
Secunia Security Advisory - Luca ikki Carettoni and Luca Daath De Fulgentis have reported some vulnerabilities in Simple PHP Blog, which can be exploited by malicious people to conduct cross-site scripting attacks and by malicious users to compromise a vulnerable system.
Homepage:http://secunia.com/advisories/26968/
File Size:3031
Last Modified:Sep 26 22:37:08 2007
MD5 Checksum:02b5018fd29f609012e4209772054de0

 ///  File Name: USN-520-1.txt
Description:
Ubuntu Security Notice 520-1 - Gaetan Leurent discovered a vulnerability in the APOP protocol based on MD5 collisions. As fetchmail supports the APOP protocol, this vulnerability can be used by attackers to discover a portion of the APOP user's authentication credentials. Earl Chew discovered that fetchmail can be made to de-reference a NULL pointer when contacting SMTP servers. This vulnerability can be used by attackers who control the SMTP server to crash fetchmail and cause a denial of service.
Homepage:http://security.ubuntu.com/
File Size:5925
Related CVE(s):CVE-2007-1558, CVE-2007-4565
Last Modified:Sep 26 13:55:06 2007
MD5 Checksum:621ad48ba21f2b4e89798b6e8580294e

 ///  File Name: sa26962.txt
Description:
Secunia Security Advisory - K3ZZAP66345 has discovered two vulnerabilities in FrontAccounting, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
Homepage:http://secunia.com/advisories/26962/
File Size:2482
Last Modified:Sep 26 13:46:24 2007
MD5 Checksum:5d25e1dbd3f7d3fbd878d78cd779a8b6

 ///  File Name: sa26898.txt
Description:
Secunia Security Advisory - Red Hat has issued an update for tomcat. This fixes some vulnerabilities, which can be exploited by malicious people to disclose sensitive information or to conduct cross-site scripting attacks.
Homepage:http://secunia.com/advisories/26898/
File Size:2381
Last Modified:Sep 26 13:46:10 2007
MD5 Checksum:79762b51d68831f3d1eae9d0d2aa1785

 ///  File Name: sa26918.txt
Description:
Secunia Security Advisory - A vulnerability has been reported in the Linux Kernel, which can be exploited by malicious, local users to disclose potentially sensitive information.
Homepage:http://secunia.com/advisories/26918/
File Size:2506
Last Modified:Sep 26 13:46:10 2007
MD5 Checksum:74cbbf9dfd5ff654dd80044ae6d920fa

 ///  File Name: sa26969.txt
Description:
Secunia Security Advisory - Fedora has issued an update for bugzilla. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions.
Homepage:http://secunia.com/advisories/26969/
File Size:2329
Last Modified:Sep 26 13:46:10 2007
MD5 Checksum:6c27508da24de99a33f8210220932edd

 ///  File Name: sa26974.txt
Description:
Secunia Security Advisory - Jesper Jurcenoks has reported some vulnerabilities in SimpGB, which can be exploited by malicious people to conduct cross-site scripting attacks and disclose sensitive information.
Homepage:http://secunia.com/advisories/26974/
File Size:2703
Last Modified:Sep 26 13:46:10 2007
MD5 Checksum:b0c0b000f19c47d67406e23a6a74f2eb

 ///  File Name: sa26965.txt
Description:
Secunia Security Advisory - Jesper Jurcenoks has reported two vulnerabilities in SimpNews, which can be exploited by malicious people to conduct cross-site scripting attacks.
Homepage:http://secunia.com/advisories/26965/
File Size:2360
Last Modified:Sep 26 13:45:47 2007
MD5 Checksum:b26fede461319d98b76190730bc12221

 ///  File Name: USN-519-1.txt
Description:
Ubuntu Security Notice 519-1 - Kalle Olavi Niemitalo discovered that if elinks makes a POST request to an HTTPS URL through a proxy, information may be sent in clear-text between elinks and the proxy. Attackers with access to the network could steal sensitive information (such as passwords).
Homepage:http://security.ubuntu.com/
File Size:6893
Related CVE(s):CVE-2007-5034
Last Modified:Sep 25 22:10:17 2007
MD5 Checksum:c9962b22257c7973907caa686b5d7f71

 ///  File Name: MDKSA-2007-188.txt
Description:
Mandriva Linux Security Advisory - PostgreSQL 8.1 and probably later and earlier versions, when local trust authentication is enabled and the Database Link library (dblink) is installed, allows remote attackers to access arbitrary accounts and execute arbitrary SQL queries via a dblink host parameter that proxies the connection from 127.0.0.1. PostgreSQL 8.1 and probably later and earlier versions, when the PL/pgSQL (plpgsql) language has been created, grants certain plpgsql privileges to the PUBLIC domain, which allows remote attackers to create and execute functions, as demonstrated by functions that perform local brute-force password guessing attacks, which may evade intrusion detection. The Database Link library (dblink) in PostgreSQL 8.1 implements functions via CREATE statements that map to arbitrary libraries based on the C programming language, which allows remote authenticated superusers to map and execute a function from any library, as demonstrated by using the system function in libc.so.6 to gain shell access.
Homepage:http://www.mandriva.com/security/
File Size:15576
Related CVE(s):CVE-2007-3280, CVE-2007-3278, CVE-2007-3279
Last Modified:Sep 25 22:09:37 2007
MD5 Checksum:2e812643b0f00032f1b34401724f05be

 ///  File Name: simpgb14602-pdisclose.txt
Description:
SimpGB version 1.46.02 suffers from path disclosure vulnerabilities.
Author:Jesper Jurcenoks
Homepage:http://www.netvigilance.com/
File Size:4655
Last Modified:Sep 25 22:01:53 2007
MD5 Checksum:ffed5f003b06b19223ec4922e9d140cf

 ///  File Name: simpnews24103-disclosure.txt
Description:
SimpNews version 2.41.03 suffers from path disclosure vulnerabilities.
Author:Jesper Jurcenoks
Homepage:http://www.netvigilance.com/
File Size:5192
Related CVE(s):CVE-2007-4872
Last Modified:Sep 25 21:59:22 2007
MD5 Checksum:b1fbe61e4715db66a3d4f78fa03ab551

 ///  File Name: 09.25.07-1.txt
Description:
iDefense Security Advisory 09.25.07 - Local exploitation of an information disclosure vulnerability within the ALSA driver included in the Linux Kernel allows attackers to obtain sensitive information from kernel memory. iDefense has confirmed the existence of this vulnerability in version 2.6.22.1 of the Linux Kernel as installed with Fedora CORE 7. It is suspected that other versions are also vulnerable.
Author:Neil Kettle
Homepage:http://www.idefense.com/
File Size:6326
Related CVE(s):CVE-2007-4571
Last Modified:Sep 25 21:49:31 2007
MD5 Checksum:b54ceb0a50118fd13539c52516f922cf

 ///  File Name: waraxe-2007-SA053.txt
Description:
NukeSentinel version 2.5.11 suffers from a critical SQL injection vulnerability.
Author:waraxe
Homepage:http://www.waraxe.us/
File Size:4125
Last Modified:Sep 25 21:46:25 2007
MD5 Checksum:bc18ba31c199b2db4bc0b4efc68dbaca

 ///  File Name: USN-518-1.txt
Description:
Ubuntu Security Notice 518-1 - Evan Teran discovered that the Linux kernel ptrace routines did not correctly handle certain requests robustly. Local attackers could exploit this to crash the system, causing a denial of service. It was discovered that hugetlb kernels on PowerPC systems did not prevent the stack from colliding with reserved kernel memory. Local attackers could exploit this and crash the system, causing a denial of service. It was discovered that certain CIFS filesystem actions did not honor the umask of a process. Local attackers could exploit this to gain additional privileges. Wojciech Purczynski discovered that the Linux kernel ia32 syscall emulation in x86_64 kernels did not correctly clear the high bits of registers. Local attackers could exploit this to gain root privileges.
Homepage:http://security.ubuntu.com/
File Size:144421
Related CVE(s):CVE-2007-3731, CVE-2007-3739, CVE-2007-3740, CVE-2007-4573
Last Modified:Sep 25 21:13:05 2007
MD5 Checksum:b5d8988fb105e46c3ff6fc28098e12ca

 ///  File Name: sa26891.txt
Description:
Secunia Security Advisory - Sun has acknowledged a vulnerability in Sun StarOffice, which potentially can be exploited by malicious people to compromise a user's system.
Homepage:http://secunia.com/advisories/26891/
File Size:3681
Last Modified:Sep 25 18:33:28 2007
MD5 Checksum:2e4be21bfb9049ab3eb3677fce56f6aa

 ///  File Name: sa26899.txt
Description:
Secunia Security Advisory - A vulnerability has been reported in IBM Rational ClearQuest, which can be exploited by malicious people to corrupt data.
Homepage:http://secunia.com/advisories/26899/
File Size:2409
Last Modified:Sep 25 18:33:28 2007
MD5 Checksum:5a0639923b6ec7bb8a3490a616cf0d41

 ///  File Name: sa26906.txt
Description:
Secunia Security Advisory - A vulnerability has been reported in Apache Geronimo, which can be exploited by malicious people to bypass certain security restrictions.
Homepage:http://secunia.com/advisories/26906/
File Size:2316
Last Modified:Sep 25 18:33:28 2007
MD5 Checksum:b49a6bf22e6f348497184b53fc82c73b

 ///  File Name: sa26919.txt
Description:
Secunia Security Advisory - Fedora has issued an update for the kernel. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges.
Homepage:http://secunia.com/advisories/26919/
File Size:5554
Last Modified:Sep 25 18:33:28 2007
MD5 Checksum:15218cef359fee40c9289cdca9bffdff

 ///  File Name: sa26929.txt
Description:
Secunia Security Advisory - Ubuntu has issued an update for kdm. This fixes a security issue, which can be exploited by malicious, local users to bypass certain security restrictions.
Homepage:http://secunia.com/advisories/26929/
File Size:54672
Last Modified:Sep 25 18:33:28 2007
MD5 Checksum:3f90614fd2eae15e3ef93143e8b46618

 ///  File Name: sa26930.txt
Description:
Secunia Security Advisory - Fedora has issued an update for php. This fixes some vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions and by malicious people to bypass certain security restrictions and cause a DoS (Denial of Service).
Homepage:http://secunia.com/advisories/26930/
File Size:7261
Last Modified:Sep 25 18:33:28 2007
MD5 Checksum:c453e3b065d32ce03fbd40598e5fd336

 ///  File Name: sa26932.txt
Description:
Secunia Security Advisory - Fedora has issued an update for libsndfile. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library.
Homepage:http://secunia.com/advisories/26932/
File Size:3074
Last Modified:Sep 25 18:33:28 2007
MD5 Checksum:1ec42fc751e734cca8bc9bd91d1a3902