Section: .. / advisories / cert /
|
See the CERT website for more information.
|
| /// File Name: |
CA-91:19.AIX.TFTP.Daemon.vulnerabil..> |
Description:
|
Vulnerability in the TFTP daemon in all versions of AIX for IBM RS/6000 machines. Patch available from IBM for all AIX releases from "GOLD" to the current release.
| | File Size: | 5281 | | Last Modified: | Sep 14 07:46:57 1999 |
| MD5 Checksum: | 4eb2169bdaecc0d5ebdb7353a9ae220b |
|
| /// File Name: |
CA-91:10a.SunOS.lpd.vulnerability |
Description:
|
Vulnerability in SunOS 4.0.3, 4.1, and 4.1.1 /usr/lib/lpd. Patched versions are available. Version 10a of this advisory supersedes all prior versions.
| | File Size: | 5281 | | Last Modified: | Sep 14 07:46:52 1999 |
| MD5 Checksum: | be29874f7e415aec17b7f974481c274a |
|
| /// File Name: |
CA-99.16.sadmind |
Description:
|
CERT Advisory CA-99-16 - Buffer Overflow in solaris sadmind. The sadmind program is installed by default in Solaris 2.5, 2.6, and 7.
| | File Size: | 5251 | | Last Modified: | Nov 22 10:36:09 2001 |
| MD5 Checksum: | fd271451ef808735834c29476f4a121b |
|
| /// File Name: |
CA-93:12.Novell.LOGIN.EXE.vulnerabi..> |
Description:
|
A vulnerability exists in Novell's NetWare 4.x login program (LOGIN.EXE). This advisory provides details on the availability of a security-enhance version of the Novell Netware 4.x login program.
| | File Size: | 5228 | | Last Modified: | Sep 14 07:47:34 1999 |
| MD5 Checksum: | 329a3141bf0cb2f33a796442f923dc2e |
|
| /// File Name: |
CA-91:23.Apollo.crp.vulnerability |
Description:
|
A vulnerability is present in the crp system in Hewlett Packard/Apollo Domain/OS in all SR10 versions. A workaround is available and patches for SR10.3 and SR10.4 will be available from Apollo at a future date.
| | File Size: | 5140 | | Last Modified: | Sep 14 07:46:58 1999 |
| MD5 Checksum: | 8a08af13633b5e958fbd15101055ab15 |
|
| /// File Name: |
CA-90:04.apollosuid.vulnerability |
Description:
|
Vulnerability in Hewlett Packard/Apollo Domain/OS version sr10.2 and some beta versions of sr10.3. File /etc/suid_exec contained a security flaw.
| | File Size: | 5110 | | Last Modified: | Sep 14 07:46:26 1999 |
| MD5 Checksum: | de2c4d00577647babb12097769cfa7fa |
|
| /// File Name: |
CA-88:01.ftpd.hole |
Description:
|
Warning about BSD sendmail 5.59 debug command; general warning about getting latest version of ftpd; other general warnings. ** The sendmail portion of this advisory is superseded by CA-96.20, CA-96.24, and CA-96.25. **
| | File Size: | 5080 | | Last Modified: | Sep 14 07:46:19 1999 |
| MD5 Checksum: | 7da18e65d1ed29f7ac0e6ab944db4fce |
|
| /// File Name: |
CA-90:09.vms.breakins.warning |
Description:
|
Warning about techniques intruders were using to get access to VMS systems. No new vulnerabilities described; intruders were using weak password attacks.
| | File Size: | 5077 | | Last Modified: | Sep 14 07:46:42 1999 |
| MD5 Checksum: | 5b0de24a4726851dd095375d9b3e694a |
|
| /// File Name: |
CA-2002-14.jrun |
Description:
|
CERT Advisory CA-2002-14 - A remotely exploitable buffer overflow in Macromedia JRun v3.0 and 3.1 when running with IIS 4 or 5 allows remote attackers to execute code with SYSTEM privileges. According to Macromedia, JRun is deployed at over 10,000 organizations worldwide.
| | Homepage: | http://www.cert.org | | File Size: | 5071 | | Last Modified: | Jun 3 06:33:35 2002 |
| MD5 Checksum: | c591addd3e41a1868e5f53ddd2c37f3c |
|
| /// File Name: |
CA-93:11.UMN.UNIX.gopher.vulnerabil..> |
Description:
|
Vulnerabilities exist in versions of the UMN UNIX gopher and gopher+ server and client available before August 6, 1993. These vulnerabilities are present in UMN UNIX gopher and gopher+ versions which were available from boombox.micro.umn.edu and many other anonymous FTP sites. This advisory provides details on the severity of the vulnerabilities and the availability of new versions of UMN UNIX gopher and gopher+.
| | File Size: | 4968 | | Last Modified: | Sep 14 07:47:32 1999 |
| MD5 Checksum: | de837c5e744243377d2284cd6037edf4 |
|
| /// File Name: |
CA-91:15.NCSA.Telnet.vulnerability |
Description:
|
Vulnerability in PC and Mac telnet program by NCSA. This advisory details a workaround.
| | File Size: | 4967 | | Last Modified: | Sep 14 07:46:55 1999 |
| MD5 Checksum: | 283ef8b65c446551c3c1be0087269de6 |
|
| /// File Name: |
CA-91:04.social.engineering |
Description:
|
This advisory is an addition to CA-91:03. It addresses more bogus Internet email scams and urges system administrators to warn their users.
| | File Size: | 4827 | | Last Modified: | Sep 14 07:46:47 1999 |
| MD5 Checksum: | c7a8e8ed7e7e7ed3a8f2cb16f96bdeb1 |
|
| /// File Name: |
CA-92:03.Internet.Intruder.Activity |
Description:
|
Warning about a significant intrusion incident on the Internet. Urges all system administrators to check their systems for the signs of intrusion detailed in the advisory.
| | File Size: | 4808 | | Last Modified: | Sep 14 07:47:00 1999 |
| MD5 Checksum: | aed2c9a7f52dca2f388de4582470f102 |
|
| /// File Name: |
CA-91:03.unauthorized.password.chan..> |
Description:
|
This advisory addresses recent bogus email messages which have been distributed on the Internet. The messages request that the user change his/her password, and appear to come from the system admin.
| | File Size: | 4791 | | Last Modified: | Sep 14 07:46:46 1999 |
| MD5 Checksum: | 36e8423389284da45b870e15b60a2fb4 |
|
| /// File Name: |
CA-90:07.VMS.ANALYZE.vulnerability |
Description:
|
Vulnerability in DEC VMS versions 4.0 through 5.4. Problem with ANALYZE/PROCESS_DUMP routine.
| | File Size: | 4471 | | Last Modified: | Sep 14 07:46:41 1999 |
| MD5 Checksum: | 511cc23f8ab353b65b76c18e6ae45df7 |
|
| /// File Name: |
CA-94:02.REVISED.SunOS.rpc.mountd.v..> |
Description:
|
** This advisory supersedes CA-91:09 and CA-92:12.** A vulnerability is present in SunOS 4.1, 4.1.1, 4.1.2, and 4.1.3 /usr/etc/rpc.mountd. Unauthorized remote hosts will be able to mount the file system. The advisory describes how to obtain a patch for the problem from Sun.
| | File Size: | 4438 | | Last Modified: | Sep 14 07:47:48 1999 |
| MD5 Checksum: | 862a2fbfd61c0d93ab1bd4bbe2e714d7 |
|
| /// File Name: |
CA-93:07.Cisco.Router.Packet.Handli..> |
Description:
|
A vulnerability exists in Cisco routers such that a router which is configured to suppress source routed packets with the following command: "no ip source-route" may allow traffic which should be suppressed. This vulnerability applies to all models of Cisco routers, and occurs with the following releases of software: 8.2, 8.3, 9.0, 9.1, and 9.17. This advisory details information about releases available to correct this problem.
| | File Size: | 4430 | | Last Modified: | Sep 14 07:47:22 1999 |
| MD5 Checksum: | 34adfbfb33336421040cfc0ed0b2b814 |
|
| /// File Name: |
CA-93:06.wuarchive.ftpd.vulnerabili..> |
Description:
|
A vulnerability is present in versions of wuarchive ftpd available before April 8, 1993. This vulnerability is present in wuarchive ftpd versions which were available from wuarchive.wustl.edu and many other anonymous FTP sites. This advisory provides details on the severity of the vulnerability and (1) the availability of a new version of wuarchive ftpd and (2) availability of a patch for the problem.
| | File Size: | 4430 | | Last Modified: | Sep 14 07:47:21 1999 |
| MD5 Checksum: | 037496a1ac713b392c527e78787846e7 |
|
| /// File Name: |
CA-99.10.cobalt.raq2 |
Description:
|
A vulnerability has been discovered in the default configuration of Cobalt Networks RaQ2 servers.
| | File Size: | 4409 | | Last Modified: | Sep 14 07:50:14 1999 |
| MD5 Checksum: | 8a6759a06f93a163221b072353c422b0 |
|
| /// File Name: |
xterm-patch-status |
Description:
|
A status file containing vendor information relating to the xterm vulnerability described in the CA-93:17.xterm.logging.vulnerability advisory.
| | File Size: | 4357 | | Last Modified: | Sep 14 07:50:20 1999 |
| MD5 Checksum: | ec79a33b7b60cc42db93a4a91dbc48cc |
|
| /// File Name: |
CA-92:10.AIX.crontab.vulnerability |
Description:
|
A vulnerability is present in crontab(1) in version 3.2 of AIX. This advisory describes how to implement a workaround for the problem until you obtain the patch for the problem from IBM.
| | File Size: | 4338 | | Last Modified: | Sep 14 07:47:05 1999 |
| MD5 Checksum: | 335bf294534951568df4599aab18d309 |
|
| /// File Name: |
CA-91:07.SunOS.source.tape.vulnerab..> |
Description:
|
Fixes a security vulnerability on SunOS (4.0.3, 4.1, and 4.1.1) systems which have installed the Sun Source tapes.
| | File Size: | 4328 | | Last Modified: | Sep 14 07:46:49 1999 |
| MD5 Checksum: | eca3e19c518a80c6a254b3ecdb872362 |
|
| /// File Name: |
CA-89:06.ultrix3.0.update |
Description:
|
A repost of the 10/17 Ultrix advisory with checksums for several Ultrix system programs.
| | File Size: | 4275 | | Last Modified: | Sep 14 07:46:24 1999 |
| MD5 Checksum: | 8c187e25ada74d041f8445a430b2310a |
|
| /// File Name: |
CA-93:18.SunOS.Solbourne.loadmodule..> |
Description:
|
** This advisory supersedes CA-91:22. ** The advisory addresses a vulnerability in /usr/etc/modload and $OPENWINHOME/bin/loadmodule in in Sun Microsystems, Inc. SunOS 4.1.1, 4.1.2, 4.1.3, and 4.1.3c and OpenWindows 3.0 on all sun4 and Solbourne Computer, Inc. architectures.
| | File Size: | 4269 | | Last Modified: | Sep 14 07:47:38 1999 |
| MD5 Checksum: | 9cfc9a67ab1ba34854fadc4f6c52bef1 |
|
| /// File Name: |
CA-91:18.Active.Internet.tftp.Attac..> |
Description:
|
Warning about automated tftp probes for /etc/passwd to Internet sites throughout the world. Urges all sites to carefully check their system configurations concerning tftp usage. Indicates how sites can secure their tftp configurations.
| | File Size: | 4255 | | Last Modified: | Sep 14 07:46:56 1999 |
| MD5 Checksum: | 33db6d41d145512cc32c60917dcb7deb |
|
|
|
|
|