Section: .. / 0902-advisories /
| /// File Name: |
sa34061.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Cisco Application Networking Manager (ANM), which can be exploited by malicious users to bypass certain security restrictions and by malicious people to disclose potentially sensitive information and cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/ | | File Size: | 2777 | | Last Modified: | Feb 27 05:55:25 2009 |
| MD5 Checksum: | 76600e0a7a2d598604479122090903ad |
|
| /// File Name: |
sa34065.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities has been reported in HP Virtual Rooms Client, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/ | | File Size: | 2267 | | Last Modified: | Feb 27 05:55:43 2009 |
| MD5 Checksum: | 70a26c6d59fab08e6fe08e0c8e6615f2 |
|
| /// File Name: |
sa34068.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for flash-player, which can be exploited by malicious, local users to disclose sensitive information and potentially gain escalated privileges, and by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/ | | File Size: | 2949 | | Last Modified: | Feb 27 05:55:40 2009 |
| MD5 Checksum: | e82bbf044729605b8f630857602c446c |
|
| /// File Name: |
sa34069.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for the kernel. This fixes a weakness, some security issues, and some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service), bypass certain security restrictions, and potentially gain escalated privileges.
| | Homepage: | http://secunia.com/ | | File Size: | 7808 | | Last Modified: | Feb 27 12:18:03 2009 |
| MD5 Checksum: | 2862fe6edc50abc7e3d33d447e72a524 |
|
| /// File Name: |
sa34070.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for libpng. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or to potentially compromise an application using the library.
| | Homepage: | http://secunia.com/ | | File Size: | 2089 | | Last Modified: | Feb 27 12:17:54 2009 |
| MD5 Checksum: | e3441bb588fae96c105a1e28b331e06b |
|
| /// File Name: |
sa34071.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for mldonkey. This fixes a vulnerability, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/ | | File Size: | 2032 | | Last Modified: | Feb 28 05:21:50 2009 |
| MD5 Checksum: | e001bade50faca9c5a2dbf8014da47a6 |
|
| /// File Name: |
sa34072.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for optipng. This fixes a vulnerability, which can be exploited by malicious people to potentially compromise a user's system.
| | Homepage: | http://secunia.com/ | | File Size: | 2037 | | Last Modified: | Feb 27 12:17:57 2009 |
| MD5 Checksum: | 56f71e90b0cc37d01ad5b8e66525b120 |
|
| /// File Name: |
sa34076.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in Coppermine Photo Gallery, which can be exploited by malicious people to conduct cross-site request forgery attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 2336 | | Last Modified: | Feb 27 10:59:32 2009 |
| MD5 Checksum: | 55a2ed344987bc3472cc16200782c85c |
|
| /// File Name: |
sa34077.txt |
Description:
|
Secunia Security Advisory - Jeremy Brown has discovered a vulnerability in POP Peeper, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/ | | File Size: | 2375 | | Last Modified: | Feb 27 09:25:40 2009 |
| MD5 Checksum: | f432c5ad3455cb7c65a80452c2983d91 |
|
| /// File Name: |
sa34079.txt |
Description:
|
Secunia Security Advisory - VMware has issued an update for VMware ESX Server. This fixes a security issue, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/ | | File Size: | 2323 | | Last Modified: | Feb 27 12:17:48 2009 |
| MD5 Checksum: | 1d1d9ecc202b4c0ee8bb060de7dc116b |
|
| /// File Name: |
sa34080.txt |
Description:
|
Secunia Security Advisory - Justin C. Klein Keane has discovered a vulnerability in the Taxonomy Theme module for Drupal, which can be exploited by malicious users to conduct script insertion attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 2519 | | Last Modified: | Feb 27 12:17:51 2009 |
| MD5 Checksum: | b6097eb7ab218e282fc9c10f81e13442 |
|
| /// File Name: |
sa34081.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in PHP, where some have an unknown impact an others can potentially be exploited by malicious people to disclose sensitive information or cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/ | | File Size: | 2553 | | Last Modified: | Feb 27 12:23:00 2009 |
| MD5 Checksum: | d9b3ce970dd4c980a5840d785fd451bf |
|
| /// File Name: |
sa34082.txt |
Description:
|
Secunia Security Advisory - Juan Pablo Lopez Yacubian has discovered a vulnerability in BitDefender Internet Security, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/ | | File Size: | 2494 | | Last Modified: | Feb 27 08:49:57 2009 |
| MD5 Checksum: | afc4563ae92330793c44dadceb0bd015 |
|
| /// File Name: |
sa34085.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in vbDrupal, which can be exploited by malicious people to disclose potentially sensitive information.
| | Homepage: | http://secunia.com/ | | File Size: | 2101 | | Last Modified: | Feb 27 10:59:26 2009 |
| MD5 Checksum: | 29707fffd5cd8ccc4e1a55daaf33bba7 |
|
| /// File Name: |
sa34086.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Novell eDirectory, which can be exploited by malicious people to cause a DoS (Denial of Service) or to potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/ | | File Size: | 2385 | | Last Modified: | Feb 27 10:59:29 2009 |
| MD5 Checksum: | 14285706b90476fc20646915978b7a2d |
|
| /// File Name: |
sa34087.txt |
Description:
|
Secunia Security Advisory - Nortel has acknowledged a vulnerability in some Nortel products, which can be exploited by malicious people to conduct spoofing attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 2151 | | Last Modified: | Feb 27 10:59:35 2009 |
| MD5 Checksum: | be0245bc5a8d9354db20236ffcb0a4f4 |
|
| /// File Name: |
sa34090.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in various Etoshop products, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 2980 | | Last Modified: | Feb 27 10:59:17 2009 |
| MD5 Checksum: | f41926318f719f0448712cc9a4b4bb8e |
|
| /// File Name: |
sa34092.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in Internet Download Manager, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/ | | File Size: | 2405 | | Last Modified: | Feb 27 10:59:23 2009 |
| MD5 Checksum: | b5f24b0becf060cf615c536e6430f324 |
|
| /// File Name: |
sa34093.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for kmail. This fixes a weakness, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/ | | File Size: | 117943 | | Last Modified: | Feb 27 05:55:46 2009 |
| MD5 Checksum: | 985082b2bccfaecc852feb7ccf3166c4 |
|
| /// File Name: |
secunia-ksquirrel.txt |
Description:
|
Secunia Research has discovered some buffer overflows ksquirrel-libs, which can be exploited by malicious people to compromise an application using the library. The vulnerabilities are caused due to boundary errors within the "mt_codec::getHdrHead()" function in kernel/kls_hdr/fmt_codec_hdr.cpp, which can be exploited to cause stack-based buffer overflows by e.g. tricking a user into opening a specially crafted Radiance RGBE (*.hdr) file. Version 0.8.0 is affected.
| | Author: | Stefan Cornelius | | Homepage: | http://secunia.com/ | | File Size: | 4329 | | Related CVE(s): | CVE-2008-5263 | | Last Modified: | Feb 25 18:37:16 2009 |
| MD5 Checksum: | 2d62b3f35db85dee2a1ad160a43353b7 |
|
| /// File Name: |
secunia-orbit.txt |
Description:
|
Secunia Research has discovered a vulnerability in Orbit Downloader, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to a boundary error when generating the "Connecting" log message for HTTP downloads. This can be exploited to cause a stack-based buffer overflow by e.g. tricking a user into downloading from a malicious HTTP server or opening a specially crafted HTTP URL containing an overly long host name. Successful exploitation allows execution of arbitrary code. Orbit Downloader versions 2.8.2 and 2.8.3 are vulnerable.
| | Author: | Stefan Cornelius | | Homepage: | http://secunia.com/ | | File Size: | 4770 | | Related CVE(s): | CVE-2009-0187 | | Last Modified: | Feb 25 14:54:13 2009 |
| MD5 Checksum: | 1549f884d3cbf6fade719a7e7dbf7df9 |
|
| /// File Name: |
secunia-shoutcastdnas.txt |
Description:
|
Secunia Research has discovered a vulnerability in SHOUTcast DNAS, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to a boundary error when receiving data from a relay master server. This can be exploited to overflow a static buffer by tricking a SHOUTcast admin into setting up a server to act as relay for a malicious server. Successful exploitation allows to e.g. overwrite the password of the web administration interface. Version 1.9.8 is affected.
| | Author: | Stefan Cornelius | | Homepage: | http://secunia.com/ | | File Size: | 4395 | | Last Modified: | Feb 25 17:16:19 2009 |
| MD5 Checksum: | 4f013be57abc3ad84ed62019f85a0932 |
|
| /// File Name: |
secuniadmrc-overflow.txt |
Description:
|
Secunia Research has discovered a vulnerability in Free Download Manager, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to a boundary error in the Remote Control Server when processing "Authorization" headers in HTTP requests. This can be exploited to cause a stack-based buffer overflow via an HTTP request containing an overly long "Authorization" header. Successful exploitation allows execution of arbitrary code. Free Download Manager versions 2.5 Build 758 and 3.0 Build 844 are affected.
| | Author: | Carsten Eiram | | Homepage: | http://secunia.com/ | | File Size: | 4824 | | Related CVE(s): | CVE-2009-0183 | | Last Modified: | Feb 2 17:39:02 2009 |
| MD5 Checksum: | 1f5b26d8ef0b87666a7cc5655543f697 |
|
| /// File Name: |
secuniadmtp-overflow.txt |
Description:
|
Secunia Research has discovered some vulnerabilities in Free Download Manager, which can be exploited by malicious people to compromise a user's system. Multiple boundary errors exists in relation to torrent files allowing for arbitrary code execution.Free Download Manager versions 2.5 Build 758 and 3.0 Build 844 are affected.
| | Author: | Carsten Eiram | | Homepage: | http://secunia.com/ | | File Size: | 5418 | | Related CVE(s): | CVE-2009-0184 | | Last Modified: | Feb 2 17:39:12 2009 |
| MD5 Checksum: | d659cc3c8f0e744bf78c42ac6d26e48f |
|
| /// File Name: |
shatter-oemsql.txt |
Description:
|
Team SHATTER Security Advisory - The Oracle Enterprise Manager TARGET parameter suffers from a remote SQL injection vulnerability. Oracle Enterprise Manager 10g Grid Control 10.2.0.4 and previous patchsets are vulnerable.
| | Author: | Esteban Martinez Fayo | | Homepage: | http://www.appsecinc.com/ | | File Size: | 2736 | | Related CVE(s): | CVE-2008-5447 | | Last Modified: | Feb 3 16:35:57 2009 |
| MD5 Checksum: | 1537a20315c97569ccf17acb41a6dfc2 |
|
|
|
|
|