ignorance isn't always an option
Showing 101 - 125 of 655 RSS Feed

Files

Debian Linux Security Advisory 1475-1
Posted Jan 28, 2008
Authored by Debian | Site debian.org

Debian Security Advisory 1475-1 - Jose Ramon Palanco discovered th a cross site scripting vulnerability in GForge, a collaborative development tool, allows remote attackers to inject arbitrary web script or HTML in the context of a logged in user's session.

tags | advisory, remote, web, arbitrary, xss
systems | linux, debian
advisories | CVE-2007-0176
MD5 | 5154f4b406cba7657846a829fa882a0f
Gentoo Linux Security Advisory 200801-14
Posted Jan 28, 2008
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200801-14 - The /usr/bin/blam script sets the LD_LIBRARY_PATH environment variable incorrectly, which might result in the current working directory (.) being included when searching for dynamically linked libraries of the Mono Runtime application. Versions less than 1.8.4 are affected.

tags | advisory
systems | linux, gentoo
advisories | CVE-2005-4790
MD5 | cb1fe56737775e672c4939c2171655c0
Gentoo Linux Security Advisory 200801-13
Posted Jan 28, 2008
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200801-13:02 - The IRC_PART() function in the file irc-channel.c does not properly check the number of parameters, referencing an invalid pointer if no channel is supplied. Versions less than 0.10.4 are affected.

tags | advisory
systems | linux, gentoo
advisories | CVE-2008-0285
MD5 | 758ec244e172e362d03c4518ac61d8fb
Gentoo Linux Security Advisory 200801-12
Posted Jan 28, 2008
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200801-12 - Luigi Auriemma reported that xine-lib does not properly check boundaries when processing SDP attributes of RTSP streams, leading to heap-based buffer overflows. Versions less than 1.1.9.1 are affected.

tags | advisory, overflow
systems | linux, gentoo
advisories | CVE-2008-0225, CVE-2008-0238
MD5 | ddae71eec629db2527290e569fec514a
Gentoo Linux Security Advisory 200801-11
Posted Jan 28, 2008
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory GLSA 200801-11 - CherryPy does not sanitize the session id, provided as a cookie value, in the FileSession._get_file_path() function before using it as part of the file name. Versions less than 3.0.2-r1 are affected.

tags | advisory
systems | linux, gentoo
advisories | CVE-2008-0252
MD5 | bab49fc0b73c1600d9469fc44cecd4da
Secunia Security Advisory 28621
Posted Jan 28, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Avaya has acknowledged a vulnerability in Avaya CMS / IR, which can be exploited by malicious, local users to cause a DoS (Denial of Service), or to gain escalated privileges.

tags | advisory, denial of service, local
MD5 | 7bfaf629f8e73c38c4f50a4184f04363
Secunia Security Advisory 28648
Posted Jan 28, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Avaya has acknowledged some vulnerabilities in multiple Avaya products, which potentially can be exploited by malicious people to compromise an application using the library.

tags | advisory, vulnerability
MD5 | 8b34852adbf98c714e15be4af70da8f0
Secunia Security Advisory 28630
Posted Jan 28, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - NBBN has discovered a vulnerability in phpBB, which can be exploited by malicious people to conduct cross-site request forgery attacks.

tags | advisory, csrf
MD5 | 89bf4e813ba0a7e057d6db9d436c039e
Secunia Security Advisory 28634
Posted Jan 28, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - NBBN has reported a vulnerability in Woltlab Burning Board, which can be exploited by malicious people to conduct cross-site request forgery attacks.

tags | advisory, csrf
MD5 | dbabddd8b835754772b4ab5463a1b734
Secunia Security Advisory 28644
Posted Jan 28, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - rgod has discovered a weakness in ImageShack Toolbar, which can be exploited by malicious people to potentially disclose sensitive information.

tags | advisory
MD5 | 8de7a0425be8a5e7f495e64316dc39b4
Mandriva Linux Security Advisory 2008-027
Posted Jan 26, 2008
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory - A programming flaw was found in Pulseaudio versions older than 0.9.9, by which a local user can gain root access, if pulseaudio is installed as a setuid to root binary, which is the recommended configuration.

tags | advisory, local, root
systems | linux, mandriva
advisories | CVE-2008-0008
MD5 | 8909b5c5d3679c095cddeb45e29c6a08
Mandriva Linux Security Advisory 2008-026
Posted Jan 26, 2008
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory - Will Drewry reported multiple flaws in how libicu processed certain malformed regular expressions. If an application linked against libicu, such as OpenOffice.org, processed a carefully-crafted regular expression, it could potentially cause the execution of arbitrary code with the privileges of the user running the application.

tags | advisory, arbitrary
systems | linux, mandriva
advisories | CVE-2007-4770, CVE-2007-4771
MD5 | 480ce9401b03aa8a2e001186d385295d
Secunia Security Advisory 28641
Posted Jan 26, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - 0in has discovered a vulnerability in Tiger Php News System, which can be exploited by malicious people to conduct SQL injection attacks.

tags | advisory, php, sql injection
MD5 | 975b5f11ee6d7f182278a18c8266db98
Secunia Security Advisory 28647
Posted Jan 26, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Elazar Broad has discovered a vulnerability in Move Networks Upgrade Manager, which can be exploited by malicious people to compromise a user's system.

tags | advisory
MD5 | 8cb01b18485bb6aa83f23a53493970bf
proficy-harvest.txt
Posted Jan 26, 2008
Authored by Eyal Udassin | Site c4-security.com

Proficy Information Portal version 2.6 passes a user's password base64 encoded on the wire, allowing for it to be easily intercepted and decoded.

tags | advisory
advisories | CVE-2008-0174
MD5 | 74d3e66416dad59621861f8f10521ac8
proficy-upload.txt
Posted Jan 26, 2008
Authored by Eyal Udassin | Site c4-security.com

Proficy Information Portal version 2.6 has a flaw that allows an authenticated attacker the ability to upload arbitrary code on the server.

tags | advisory, arbitrary, file upload
advisories | CVE-2008-0175
MD5 | 951bc80e0fa631556e175dfc730d384a
cimplicity-heap.txt
Posted Jan 26, 2008
Authored by Eyal Udassin, Gilad Bakas | Site c4-security.com

Cimplicity HMI version 6.1, 6.1 SP5, and 6.1 SP6 all suffer from an exploitable heap overflow vulnerability.

tags | advisory, overflow
advisories | CVE-2008-0176
MD5 | 4ec75e1f7dcdd554a9bb7b038ee35f58
Secunia Security Advisory 28429
Posted Jan 25, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - rPath has issued an update for bind and bind-utils. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or to potentially compromise a vulnerable system.

tags | advisory, denial of service
MD5 | ac562d8e4b7bbcec89b09ab35f90ee3b
Secunia Security Advisory 28575
Posted Jan 25, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Will Drewry has reported some vulnerabilities in International Components for Unicode, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library.

tags | advisory, denial of service, vulnerability
MD5 | ed1ffff0af491fb58a9aae6933620f36
Secunia Security Advisory 28584
Posted Jan 25, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Mandriva has issued an update for x11-server. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service), disclose potentially sensitive information, or to gain escalated privileges.

tags | advisory, denial of service, local, vulnerability
systems | linux, mandriva
MD5 | 11389e0e54e470e010b86a147dbeeb74
Secunia Security Advisory 28585
Posted Jan 25, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Fedora has issued an update for hsqldb. This fixes a vulnerability, which has unknown impacts.

tags | advisory
systems | linux, fedora
MD5 | 4ef462f7b27f41fa591dc8805384eec1
Secunia Security Advisory 28611
Posted Jan 25, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - rPath has issued an update for CherryPy. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security settings.

tags | advisory
MD5 | 18f68c1a6e5aa9d6f1d158dbdd66b849
Secunia Security Advisory 28615
Posted Jan 25, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Red Hat has issued an update for icu. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library.

tags | advisory, denial of service, vulnerability
systems | linux, redhat
MD5 | 0f9b32294188160a9c30a86a7eda6bd7
Secunia Security Advisory 28623
Posted Jan 25, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Fedora has issued an update for pulseaudio. This fixes a security issue, which can be exploited by malicious, local users to perform certain actions with escalated privileges.

tags | advisory, local
systems | linux, fedora
MD5 | 34aa8d1c3a04a023517fcec79c178990
Secunia Security Advisory 28627
Posted Jan 25, 2008
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Fedora has issued an update for xorg-x11-server. This fixes a security issue, which can be exploited by malicious people with physical access to a system to bypass certain security restrictions.

tags | advisory
systems | linux, fedora
MD5 | d81f063c6d457ed2f52b20bcf93c20f7
Page 5 of 27
Back34567Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Vote Likely On Facebook Privacy Policy Changes
Posted May 22, 2012

tags | headline, privacy, facebook, social
Anonymous Hacks Bureau Of Justice, Leaks 1.7GB Of Data
Posted May 22, 2012

tags | headline, hacker, government, usa, anonymous
Backdoor Sniffed In ZTE's US Android Smartphones
Posted May 22, 2012

tags | headline, phone, google, backdoor
Defend Your Phone Against Loose Networks? There's An App For that
Posted May 22, 2012

tags | headline, hacker, phone, google
Researchers Crack Samsung Galaxy S3 Handset
Posted May 21, 2012

tags | headline, hacker, linux, phone
T-Mobile Slip Exposes 1,100 Email Addresses
Posted May 21, 2012

tags | headline, privacy, phone, data loss
Google Must Answer EU Antitrust Concerns Over Search
Posted May 21, 2012

tags | headline, government, privacy, google
Anonymous Takes Out Indian CERT As Attacks Continue
Posted May 21, 2012

tags | headline, hacker, government, india, denial of service, anonymous
FBI Looking At Law Making Websites WIretap Ready
Posted May 19, 2012

tags | headline, government, privacy, fbi
Facebook Sued For $15 Billion Over Alleged Privacy Infractions
Posted May 19, 2012

tags | headline, privacy, facebook, social
View More News →
packet storm

© 2012 Packet Storm. All rights reserved.

close