Section: .. / 0711-advisories /
| /// File Name: |
glsa-200711-20.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200711-20 - Bas Wijnen discovered that the Pioneers server may free sessions objects while they are still in use, resulting in access to invalid memory zones. Versions less than 0.11.3 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2797 | | Related CVE(s): | CVE-2007-5933 | | Last Modified: | Nov 14 21:13:20 2007 |
| MD5 Checksum: | 5da6825de9348088c32d2d8d06d10924 |
|
| /// File Name: |
sa27648.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities and weaknesses have been reported in PHP, where some have unknown impacts and others can be exploited to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/27648/ | | File Size: | 2790 | | Last Modified: | Nov 15 11:27:52 2007 |
| MD5 Checksum: | f37510528efd9c8e847554260b72f2e5 |
|
| /// File Name: |
sa27663.txt |
Description:
|
Secunia Security Advisory - Andrew Davies has reported two vulnerabilities in FatWire Content Server, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/27663/ | | File Size: | 2785 | | Last Modified: | Nov 20 11:17:55 2007 |
| MD5 Checksum: | 13651b1f23e72ab541f0aaaeb25a8e9d |
|
| /// File Name: |
sa27552.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Sysinternals DebugView, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/27552/ | | File Size: | 2783 | | Last Modified: | Nov 7 19:16:43 2007 |
| MD5 Checksum: | 56d56489683d378894e113e3f169011e |
|
| /// File Name: |
sa27667.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities and a security issue have been reported in IBM DB2, some of which have unknown impacts, and the other can be exploited by malicious, local users to gain escalated privileges or perform certain actions with escalated privileges.
| | Homepage: | http://secunia.com/advisories/27667/ | | File Size: | 2783 | | Last Modified: | Nov 16 02:06:08 2007 |
| MD5 Checksum: | b152ca613e43270a3c354b07bf718015 |
|
| /// File Name: |
sa27831.txt |
Description:
|
Secunia Security Advisory - Sun has acknowledged a vulnerability in Sun Solaris, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27831/ | | File Size: | 2782 | | Last Modified: | Nov 30 00:36:59 2007 |
| MD5 Checksum: | b6bb32ad6dc69f573422de83b118344e |
|
| /// File Name: |
sa27536.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged some vulnerabilities in Avaya CMS and IR, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27536/ | | File Size: | 2780 | | Last Modified: | Nov 6 01:44:25 2007 |
| MD5 Checksum: | d09a97ba65ca65899156857b9527b173 |
|
| /// File Name: |
sa27829.txt |
Description:
|
Secunia Security Advisory - Joffrey Czarney has reported a weakness in Cisco Unified IP Phones, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/27829/ | | File Size: | 2779 | | Last Modified: | Nov 30 00:36:59 2007 |
| MD5 Checksum: | 11eb767c7465180e59a17f2196a26045 |
|
| /// File Name: |
sa27820.txt |
Description:
|
Secunia Security Advisory - tomplixsee has discovered some vulnerabilities in Project Alumni, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/27820/ | | File Size: | 2778 | | Last Modified: | Nov 26 21:10:47 2007 |
| MD5 Checksum: | 61f268473d022a0711dc81599979663d |
|
| /// File Name: |
sa27402.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in Miranda IM, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27402/ | | File Size: | 2771 | | Last Modified: | Nov 23 18:42:38 2007 |
| MD5 Checksum: | bcbfca13d12b4c4f551c68e771c0db1f |
|
| /// File Name: |
sa27545.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged some vulnerabilities in multiple Avaya products, where some have unknown impacts and others can be exploited by malicious users to bypass certain security restrictions or by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27545/ | | File Size: | 2766 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | 0a17d3913f22738e9aa7d6cfd7bbfd9a |
|
| /// File Name: |
sa27797.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for firefox. This fixes a security issue and some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks and potentially to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27797/ | | File Size: | 2764 | | Last Modified: | Nov 27 21:51:05 2007 |
| MD5 Checksum: | 095342306e0eecef50e5c0736fa9ff6b |
|
| /// File Name: |
sa27717.txt |
Description:
|
Secunia Security Advisory - Greg Linares has reported a vulnerability in BitDefender Online Scanner, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27717/ | | File Size: | 2763 | | Last Modified: | Nov 27 10:53:31 2007 |
| MD5 Checksum: | 571dbbe9bb79df5d2523b1d6ed6fc171 |
|
| /// File Name: |
sa27526.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Oracle Database, which can be exploited by malicious users to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27526/ | | File Size: | 2761 | | Last Modified: | Nov 9 12:33:35 2007 |
| MD5 Checksum: | b842a4a849a316e2a5ff400c0fe732f7 |
|
| /// File Name: |
ZDI-07-067.txt |
Description:
|
A vulnerability allows attackers to execute arbitrary code on vulnerable installations of Apple QuickTime. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exist in the parsing of Poly type opcodes (opcodes 0x0070-74). Due to improper handling of a malformed element in the structure heap corruption occurs. If properly constructed this can lead to code execution. QuickTime version 7.2 is affected.
| | Author: | Ruben Santamarta | | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 2760 | | Related CVE(s): | CVE-2007-4676 | | Last Modified: | Nov 6 01:56:18 2007 |
| MD5 Checksum: | 7ac8efca696e1a6aa235afa137dec6d5 |
|
| /// File Name: |
sa27473.txt |
Description:
|
Secunia Security Advisory - A security issue has been reported in IBM Tivoli Continuous Data Protection for Files, which can be exploited by malicious, local users to compromise other systems.
| | Homepage: | http://secunia.com/advisories/27473/ | | File Size: | 2760 | | Last Modified: | Nov 1 19:23:50 2007 |
| MD5 Checksum: | eaa172b30a4f0f934c353b6bdfa17f5b |
|
| /// File Name: |
sa27436.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for the kernel. This fixes a weakness, some security issues and vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service), disclose potentially sensitive information, and malicious users and malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/27436/ | | File Size: | 2757 | | Last Modified: | Nov 1 12:42:05 2007 |
| MD5 Checksum: | cce9369675f131351f6afbad4f68c626 |
|
| /// File Name: |
sa27689.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for net-snmp. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27689/ | | File Size: | 2753 | | Last Modified: | Nov 20 11:17:55 2007 |
| MD5 Checksum: | ec64e2883df3e94a9328c15f109d47bc |
|
| /// File Name: |
sa27605.txt |
Description:
|
Secunia Security Advisory - A security issue has been reported in Mozilla Firefox, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/27605/ | | File Size: | 2747 | | Last Modified: | Nov 9 18:03:24 2007 |
| MD5 Checksum: | 741a00db4743c91092dafb54ca1c965c |
|
| /// File Name: |
AD20071116.txt |
Description:
|
AhnLab AntiVirus V3 Internet Security 2008 suffers from a denial of service condition that may lead to arbitrary code execution.
| | Author: | Sowhat | | Homepage: | http://www.nevisnetworks.com/ | | File Size: | 2745 | | Last Modified: | Nov 26 15:48:06 2007 |
| MD5 Checksum: | 7725e779e01714f6a14a54ea4885a2f5 |
|
| /// File Name: |
sa27665.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for firefox, seamonkey, and xulrunner. This fixes some vulnerabilities and a weakness, which can be exploited by malicious people to disclose sensitive information, conduct phishing attacks, manipulate certain data, and potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27665/ | | File Size: | 2745 | | Last Modified: | Nov 15 11:27:52 2007 |
| MD5 Checksum: | 6492cd9282e0a4275b93e6f12f853e37 |
|
| /// File Name: |
sa27524.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for opal. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/27524/ | | File Size: | 2743 | | Last Modified: | Nov 6 01:44:25 2007 |
| MD5 Checksum: | 608081375ac2c7a88d1e8ab9683da78c |
|
| /// File Name: |
sa27714.txt |
Description:
|
Secunia Security Advisory - Steven J. Murdoch has discovered a weakness in WordPress, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/27714/ | | File Size: | 2743 | | Last Modified: | Nov 27 10:53:31 2007 |
| MD5 Checksum: | 1d9f57058062cbfbfac8aabc72d77adc |
|
| /// File Name: |
ZDI-07-068.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Apple QuickTime. User interaction is required to exploit this vulnerability in that the target must open a malicious image file. The specific flaw exists in the parsing of the pict file format. If an invalid length is specified for the UncompressedQuickTimeData opcode, a stack based buffer overflow occurs, allowing the execution of arbitrary code. QuickTime version 7.2 is affected.
| | Author: | Ruben Santamarta | | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 2742 | | Related CVE(s): | CVE-2007-4672 | | Last Modified: | Nov 6 01:57:10 2007 |
| MD5 Checksum: | d1010a84b5c27c095841dbbd3f14b5a5 |
|
| /// File Name: |
sa27759.txt |
Description:
|
Secunia Security Advisory - Gentoo has acknowledged some vulnerabilities in cstetex, where some have unknown impacts and others can be exploited by malicious, local users to disclose and manipulate sensitive information, or by malicious users and malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27759/ | | File Size: | 2742 | | Last Modified: | Nov 26 21:10:48 2007 |
| MD5 Checksum: | 368dbc2e13b7032c1cd6f312008ef308 |
|
|
|
|
|