Section: .. / 0711-advisories /
| /// File Name: |
sa27533.txt |
Description:
|
Secunia Security Advisory - DarkFig has discovered a vulnerability in JBC Explorer, which can be exploited by malicious people to bypass certain security restrictions and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27533/ | | File Size: | 2709 | | Last Modified: | Nov 7 02:58:11 2007 |
| MD5 Checksum: | 3844d78db4f8f5678b29e19e6dad69c9 |
|
| /// File Name: |
sa27540.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for cups. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27540/ | | File Size: | 21648 | | Last Modified: | Nov 7 02:58:11 2007 |
| MD5 Checksum: | 722d9042d5be95311da2aa0ec3841105 |
|
| /// File Name: |
sa27489.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for netpbm. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27489/ | | File Size: | 3172 | | Last Modified: | Nov 6 23:25:47 2007 |
| MD5 Checksum: | 2d954bd0fe6ccd46e9f9b24ac2516ebc |
|
| /// File Name: |
sa27539.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in the Archive::Tar Perl module, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27539/ | | File Size: | 2506 | | Last Modified: | Nov 6 23:25:32 2007 |
| MD5 Checksum: | 5aeb81dd32bb7dda7de83dbe3f72d994 |
|
| /// File Name: |
TA07-310A.txt |
Description:
|
Technical Cyber Security Alert TA07-310A - Apple QuickTime contains multiple vulnerabilities. Exploitation of these vulnerabilities could allow a remote attacker to execute arbitrary code or cause a denial-of-service condition. Versions below 7.3 are affected.
| | Homepage: | http://www.us-cert.gov/ | | File Size: | 3498 | | Last Modified: | Nov 6 23:25:26 2007 |
| MD5 Checksum: | c54873a3a1cac4bb175fa9e38f28498a |
|
| /// File Name: |
MDKSA-2007-210.txt |
Description:
|
Mandriva Linux Security Advisory - Integer overflow in the build_range function in X.Org X Font Server (xfs) before 1.0.5 allows context-dependent attackers to execute arbitrary code via (1) QueryXBitmaps and (2) QueryXExtents protocol requests with crafted size values, which triggers a heap-based buffer overflow. The swap_char2b function in X.Org X Font Server (xfs) before 1.0.5 allows context-dependent attackers to execute arbitrary code via (1) QueryXBitmaps and (2) QueryXExtents protocol requests with crafted size values that specify an arbitrary number of bytes to be swapped on the heap, which triggers heap corruption.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 9860 | | Related CVE(s): | CVE-2007-4568, CVE-2007-4990 | | Last Modified: | Nov 6 23:23:27 2007 |
| MD5 Checksum: | 03cfdc844269ee8302005df8fc4b54f0 |
|
| /// File Name: |
glsa-200711-05.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200711-05 - Tim Brown discovered these multiple issues: the translation module does not properly sanitize the value to the dir parameter; the translation module also does not sanitize the values of the edit and value parameters which it passes to eval() and include(); the log-in command does not validate the URL to redirect users to after logging in; SiteBar also contains several cross-site scripting vulnerabilities. Versions less than 3.3.9 are affected.
| | Homepage: | http://security.gentoo.org/ | | File Size: | 4062 | | Related CVE(s): | CVE-2007-5491, CVE-2007-5492, CVE-2007-5692, CVE-2007-5693, CVE-2007-5694, CVE-2007-5695 | | Last Modified: | Nov 6 23:21:59 2007 |
| MD5 Checksum: | 653c13956ffb694b4e066882a76b4281 |
|
| /// File Name: |
glsa-200711-04.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200711-04 - The imap_rescan() function of the file camel-imap-folder.c does not properly sanitize the SEQUENCE response sent by an IMAP server before being used to index arrays. Versions less than 1.10.3.1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3155 | | Related CVE(s): | CVE-2007-3257 | | Last Modified: | Nov 6 23:20:25 2007 |
| MD5 Checksum: | 73bfd4c7173bb1b3a317305f9d233fdf |
|
| /// File Name: |
dsa-1400-1.txt |
Description:
|
Debian Security Advisory 1400-1 - Will Drewry and Tavis Ormandy of the Google Security Team have discovered a UTF-8 related heap overflow in Perl's regular expression compiler, probably allowing attackers to execute arbitrary code by compiling specially crafted regular expressions.
| | Homepage: | http://www.debian.org/security | | File Size: | 24666 | | Related CVE(s): | CVE-2007-5116 | | Last Modified: | Nov 6 23:20:16 2007 |
| MD5 Checksum: | 97da569e023ab9b3a0f3e419ff23c6f3 |
|
| /// File Name: |
11.06.07-1.txt |
Description:
|
iDefense Security Advisory 11.06.07 - Local exploitation of a design error vulnerability in Microsoft's DebugView could allow attackers to execute arbitrary kernel code. As part of its design, DebugView loads a kernel module Dbgv.sys. This module includes functionality that can be abused to copy user supplied data into the kernel, to controlled addresses. This allows malicious users to inject arbitrary code into the running kernel. iDefense confirmed the existence of this vulnerability in Microsoft DebugView version 4.64. The specific file version of Dbgv.sys is 4.60.0.0. This file is deleted automatically after being loaded and will not be found on disk. Previous versions are suspected to be vulnerable as well.
| | Author: | Stephen Fewer | | Homepage: | http://www.idefense.com/ | | File Size: | 3322 | | Related CVE(s): | CVE-2007-4223 | | Last Modified: | Nov 6 23:19:20 2007 |
| MD5 Checksum: | 87ee8e8b4f4b5d6e9b73f52c5547ba4f |
|
| /// File Name: |
plone-exec.txt |
Description:
|
Plone versions 2.5 up to and including 2.5.4 and versions 3.0 up to and including 3.0.2 suffer from an arbitrary python code execution vulnerability.
| | Author: | Martijn Pieters | | Homepage: | http://plone.org/ | | File Size: | 985 | | Related CVE(s): | CVE-2007-5741 | | Last Modified: | Nov 6 22:51:02 2007 |
| MD5 Checksum: | a8f693f7cdcde08c01d8482846254698 |
|
| /// File Name: |
sa27511.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for mono. This fixes a vulnerability, which has unknown impacts.
| | Homepage: | http://secunia.com/advisories/27511/ | | File Size: | 16697 | | Last Modified: | Nov 6 22:14:53 2007 |
| MD5 Checksum: | 080763cfbdc86c1a77616705dd8cc12b |
|
| /// File Name: |
sa27471.txt |
Description:
|
Secunia Security Advisory - GoLd_M has reported a vulnerability in the Module Builder module for SugarCRM, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/27471/ | | File Size: | 2614 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | 15391965cd09701dc96e73092aaad4e2 |
|
| /// File Name: |
sa27476.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for cpio. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27476/ | | File Size: | 3665 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | 8f2f07b444cca30b88e3c54bf23ec4a6 |
|
| /// File Name: |
sa27480.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for iceape. This fixes some vulnerabilities and a weakness, which can be exploited by malicious people to disclose sensitive information, conduct phishing attacks, manipulate certain data, and potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27480/ | | File Size: | 16165 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | 3ca3524d960063ef20824cb768ba384e |
|
| /// File Name: |
sa27492.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for libpng. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27492/ | | File Size: | 3080 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | b1de27c58dd43b644c16f7959f032423 |
|
| /// File Name: |
sa27493.txt |
Description:
|
Secunia Security Advisory - A vulnerability with unknown impacts has been reported in Mono.
| | Homepage: | http://secunia.com/advisories/27493/ | | File Size: | 2262 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | 3b8b23bf998fa79c87d03134b32b9032 |
|
| /// File Name: |
sa27510.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for thunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27510/ | | File Size: | 3037 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | e642cc5f09c0427bd54053511da07d86 |
|
| /// File Name: |
sa27513.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for firefox. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27513/ | | File Size: | 3199 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | 0339300a3ea6bba91eeab14754e23c18 |
|
| /// File Name: |
sa27514.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for tar. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27514/ | | File Size: | 2887 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | befece8fade0edd1227eeb31a13abb94 |
|
| /// File Name: |
sa27516.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for proftpd. This fixes a security issue, which potentially can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/27516/ | | File Size: | 3789 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | 4f323d2cded6bd7f49348a8906b58533 |
|
| /// File Name: |
sa27520.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for perdition. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27520/ | | File Size: | 22109 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | 922c4faddd3132705468deab2cab2247 |
|
| /// File Name: |
sa27523.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Apple QuickTime, which can be exploited by malicious people to disclose sensitive information, bypass certain security restrictions, and compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27523/ | | File Size: | 4917 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | f16914e115513a5608f10e15fb5a7ed3 |
|
| /// File Name: |
sa27525.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Openbase SQL, which can be exploited by malicious users to cause a DoS (Denial of Service) or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27525/ | | File Size: | 2619 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | 44bd44bbd8281c9b750a6584e7da1989 |
|
| /// File Name: |
sa27528.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or to disclose potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/27528/ | | File Size: | 2846 | | Last Modified: | Nov 6 22:14:24 2007 |
| MD5 Checksum: | 2c5467c22939579a6e487391e5e782ea |
|
|
|
|
|