Section: .. / 0709-advisories /
| /// File Name: |
sa26894.txt |
Description:
|
Secunia Security Advisory - KDE has acknowledged a security issue in KDM, which can be exploited by malicious, local users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26894/ | | File Size: | 2535 | | Last Modified: | Sep 20 20:45:07 2007 |
| MD5 Checksum: | 38634cfef175eda2ee0d41b6327554d8 |
|
| /// File Name: |
sa26896.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for nfs-utils-lib. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/26896/ | | File Size: | 2210 | | Last Modified: | Sep 20 20:45:07 2007 |
| MD5 Checksum: | 7849238a41943ec40021ea408bec530b |
|
| /// File Name: |
sa26897.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for xorg-x11. This fixes a vulnerability, which potentially can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/26897/ | | File Size: | 2199 | | Last Modified: | Sep 20 20:45:07 2007 |
| MD5 Checksum: | 21a8d7076b50769667661714ae57fa09 |
|
| /// File Name: |
sa26900.txt |
Description:
|
Secunia Security Advisory - rPath has issued an update for gdm. This fixes a vulnerability, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/26900/ | | File Size: | 2041 | | Last Modified: | Sep 20 20:45:07 2007 |
| MD5 Checksum: | 64a34cbf01afcf8350cf29b0e1b20da7 |
|
| /// File Name: |
sa26901.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for t1lib. This fixes a vulnerability, which can be exploited by malicious users to potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26901/ | | File Size: | 9711 | | Last Modified: | Sep 20 20:45:07 2007 |
| MD5 Checksum: | 5ee45506a4befc8a64657eaeb922a322 |
|
| /// File Name: |
sa26902.txt |
Description:
|
Secunia Security Advisory - str0ke has reported a vulnerability in OneCMS, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/26902/ | | File Size: | 2407 | | Last Modified: | Sep 20 20:45:07 2007 |
| MD5 Checksum: | 882ebc8bdcd902530a59e6ce4b63147e |
|
| /// File Name: |
sa26909.txt |
Description:
|
Secunia Security Advisory - VMware has issued an update for VMware ESX Server. This fixes some vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions, perform certain actions with escalated privileges, or to cause a DoS (Denial of Service), by malicious users to bypass certain security restrictions, and by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26909/ | | File Size: | 6467 | | Last Modified: | Sep 20 20:45:07 2007 |
| MD5 Checksum: | 77909854e02722661812255bc534aee3 |
|
| /// File Name: |
sa26890.txt |
Description:
|
Secunia Security Advisory - Multiple vulnerabilities have been reported in various VMware products, which can be exploited by malicious, local users to gain escalated privileges or cause a DoS (Denial of Service) or by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26890/ | | File Size: | 6777 | | Last Modified: | Sep 20 11:57:54 2007 |
| MD5 Checksum: | 69e4a933876b192e79cd5ee6b804200e |
|
| /// File Name: |
sa26889.txt |
Description:
|
Secunia Security Advisory - Doz has reported a vulnerability and a security issue in WebBatch, which can be exploited by malicious people to disclose system information or conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/26889/ | | File Size: | 2426 | | Last Modified: | Sep 20 11:57:40 2007 |
| MD5 Checksum: | ef46cb8a709b7998cdfc96380a942504 |
|
| /// File Name: |
sa26908.txt |
Description:
|
Secunia Security Advisory - nights_shadow has discovered a vulnerability in PhpWebGallery, which can be exploited by malicious people to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/26908/ | | File Size: | 2361 | | Last Modified: | Sep 20 11:57:40 2007 |
| MD5 Checksum: | 86df89e9ef257187c7db8a4751a9d5ee |
|
| /// File Name: |
VMSA-2007-0006.txt |
Description:
|
VMware Security Advisory - Updates have been released for arbitrary code execution, denial of service, and other various vulnerabilities in VMware.
| | Homepage: | http://www.vmware.com/ | | File Size: | 24017 | | Related CVE(s): | CVE-2007-2446, CVE-2007-2447, CVE-2007-0494, CVE-2007-2442, CVE-2007-2443, CVE-2007-2798, CVE-2007-0061, CVE-2007-0062, CVE-2007-0063, CVE-2007-4059, CVE-2007-4155, CVE-2007-4496, CVE-2007-4497, CVE-2007-1856, CVE-2006-1174, CVE-2006-4600, CVE-2004-0813, CVE-2007-1716, CVE-2006-3619, CVE-2006-4146 | | Last Modified: | Sep 20 05:08:36 2007 |
| MD5 Checksum: | 75a1ac8862ee8690edac336336695646 |
|
| /// File Name: |
dsa-1364-2.txt |
Description:
|
Debian Security Advisory 1364-2 - Several vulnerabilities have been discovered in the vim editor. Ulf Harnhammar discovered that a format string flaw in helptags_one() from src/ex_cmds.c (triggered through the "helptags" command) can lead to the execution of arbitrary code. Editors often provide a way to embed editor configuration commands (aka modelines) which are executed once a file is opened. Harmful commands are filtered by a sandbox mechanism. It was discovered that function calls to writefile(), feedkeys() and system() were not filtered, allowing shell command execution with a carefully crafted file opened in vim. This updated advisory repairs issues with missing files in the packages for the oldstable distribution (sarge) for the alpha, mips, and mipsel architectures.
| | Homepage: | http://www.debian.org/security | | File Size: | 41560 | | Related CVE(s): | CVE-2007-2953, CVE-2007-2438 | | Last Modified: | Sep 20 05:05:38 2007 |
| MD5 Checksum: | b58a312c9824db35ed8b97aedf36ed0a |
|
| /// File Name: |
glsa-200709-12.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200709-12 - Poppler and Xpdf are vulnerable to an integer overflow in the StreamPredictor::StreamPredictor function, and a stack overflow in the StreamPredictor::getNextLine function. The original vulnerability was discovered by Maurycy Prodeus. Note: Gentoo's version of Xpdf is patched to use the Poppler library, so the update to Poppler will also fix Xpdf. Versions less than 0.5.4-r2 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2854 | | Related CVE(s): | CVE-2007-3387 | | Last Modified: | Sep 20 05:04:00 2007 |
| MD5 Checksum: | 4ba5f6def2b0f95aee10b243b6c4f937 |
|
| /// File Name: |
USN-515-1.txt |
Description:
|
Ubuntu Security Notice 515-1 - It was discovered that t1lib does not properly perform bounds checking which can result in a buffer overflow vulnerability. An attacker could send specially crafted input to applications linked against t1lib which could result in a DoS or arbitrary code execution.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 9402 | | Related CVE(s): | CVE-2007-4033 | | Last Modified: | Sep 20 04:59:48 2007 |
| MD5 Checksum: | b7118d409a112d9371ea0dc2ee682004 |
|
| /// File Name: |
SSRT071439.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified in HP-UX running the logins(1M) command. This command incorrectly reports password status. As a result password issues may not be detected, allowing remote unauthorized access.
| | Homepage: | http://www.hp.com/ | | File Size: | 6287 | | Last Modified: | Sep 20 04:38:05 2007 |
| MD5 Checksum: | 49084d4aa243b4dd35a9878e3d7681e6 |
|
| /// File Name: |
SSRT071471.txt |
Description:
|
HP Security Bulletin - Various potential security vulnerabilities have been identified in Microsoft software that is running on the Storage Management Appliance (SMA). Some of these vulnerabilities may be pertinent to the SMA, please check the table in the Resolution section of this Security Bulletin.
| | Homepage: | http://www.hp.com/ | | File Size: | 9176 | | Last Modified: | Sep 20 04:37:32 2007 |
| MD5 Checksum: | bec42473e5d89d7c4cd6864e9a6ac162 |
|
| /// File Name: |
TPTI-07-15.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on systems with vulnerable installations of the Automated Solutions Modbus TCP Slave ActiveX Control. Authentication is not required to exploit this vulnerability. The specific flaw exists within MiniHMI.exe which binds to TCP port 502. When processing malformed Modbus requests on this port a controllable heap corruption can occur which may result in execution of arbitrary code.
| | Author: | Ganesh Devarajan | | Homepage: | http://www.tippingpoint.com/ | | File Size: | 3196 | | Related CVE(s): | CVE-2007-4827 | | Last Modified: | Sep 20 04:13:51 2007 |
| MD5 Checksum: | 0d534b93256518fcf493b72761cb45fa |
|
| /// File Name: |
sa26786.txt |
Description:
|
Secunia Security Advisory - Shell has discovered a vulnerability in AOL Instant Messenger, which can be exploited by malicious people to execute arbitrary script code.
| | Homepage: | http://secunia.com/advisories/26786/ | | File Size: | 2726 | | Last Modified: | Sep 20 04:11:10 2007 |
| MD5 Checksum: | f034b83e3019261d0138f2ef398b5f18 |
|
| /// File Name: |
sa26787.txt |
Description:
|
Secunia Security Advisory - Krystian Kloskowski has discovered a vulnerability in jetAudio, which can be exploited by malicious people to overwrite arbitrary files or to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26787/ | | File Size: | 2589 | | Last Modified: | Sep 20 04:11:10 2007 |
| MD5 Checksum: | b2e5edaea3fdfb14f470bf8def11b4d2 |
|
| /// File Name: |
sa26802.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for php. This fixes a weakness and some vulnerabilities, where some have unknown impacts and others can be exploited by malicious users and malicious, local users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26802/ | | File Size: | 9239 | | Last Modified: | Sep 20 04:11:10 2007 |
| MD5 Checksum: | f0d3dc6784fc7afc43530f71dd92d985 |
|
| /// File Name: |
sa26804.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for qt. This fixes some vulnerabilities, which can be exploited by malicious people to potentially conduct cross-site scripting attacks, cause a DoS (Denial of Service), or to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/26804/ | | File Size: | 4615 | | Last Modified: | Sep 20 04:11:10 2007 |
| MD5 Checksum: | 080c24635985ed3944c126e4e263a514 |
|
| /// File Name: |
sa26825.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in inotify-tools, which can potentially be exploited by malicious users to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/26825/ | | File Size: | 2699 | | Last Modified: | Sep 20 04:11:10 2007 |
| MD5 Checksum: | a41ca4b8014fa3f9ae547682b6356ec3 |
|
| /// File Name: |
sa26837.txt |
Description:
|
Secunia Security Advisory - Slythers Bro has discovered a security issue in the imageop module for Python, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26837/ | | File Size: | 2660 | | Last Modified: | Sep 20 04:11:10 2007 |
| MD5 Checksum: | 9f3f7142d4e874c95df5aff6502435be |
|
| /// File Name: |
sa26842.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for httpd. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and disclose potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/26842/ | | File Size: | 4146 | | Last Modified: | Sep 20 04:11:10 2007 |
| MD5 Checksum: | 26b502d42643871fbe41b0dcb6f2f40f |
|
| /// File Name: |
sa26848.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Bugzilla, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26848/ | | File Size: | 2706 | | Last Modified: | Sep 20 04:11:10 2007 |
| MD5 Checksum: | d17c28c48d3c372535bfad7bad0e3149 |
|
|
|
|
|