security without boundaries
Showing 1 - 25 of 41 RSS Feed

Files Date: 2012-01-23

Gentoo Linux Security Advisory 201201-08
Posted Jan 23, 2012
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 201201-8 - A stack-based buffer overflow flaw in FontForge could result in execution of arbitrary code or a Denial of Service. Versions less than 20110222-r1 are affected.

tags | advisory, denial of service, overflow, arbitrary
systems | linux, gentoo
advisories | CVE-2010-4259
MD5 | 5e0ec606dc42c697f168165ded389291
Gentoo Linux Security Advisory 201201-07
Posted Jan 23, 2012
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 201201-7 - An unspecified vulnerability in NX Server Free Edition and NX Node could allow local attackers to gain root privileges. Versions are affected.

tags | advisory, local, root
systems | linux, gentoo
advisories | CVE-2011-3977
MD5 | 07ba65a3f3519d54e078d1ab3226561e
Ubuntu Security Notice USN-1336-1
Posted Jan 23, 2012
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 1336-1 - Juri Aedla discovered that the kernel incorrectly handled /proc/pid/mem permissions. A local attacker could exploit this and gain root privileges.

tags | advisory, kernel, local, root
systems | linux, ubuntu
advisories | CVE-2012-0056
MD5 | 1efb3c66fe91e5fae9088ec2e65520b2
Bart's CMS SQL Injection
Posted Jan 23, 2012
Authored by snup | Site vulnerability-lab.com

Bart's CMS suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | ac148e0909181d491a62b262da5478b1
Linux Local Root Via SUID /prod/pid/mem Write
Posted Jan 23, 2012
Authored by zx2c4

This is the Mempodipper local root exploit for Linux. /proc/pid/mem is an interface for reading and writing, directly, process memory by seeking around with the same addresses as the process's virtual memory space. In 2.6.39, the protections against unauthorized access to /proc/pid/mem were deemed sufficient, and so the prior #ifdef that prevented write support for writing to arbitrary process memory was removed. Anyone with the correct permissions could write to process memory. It turns out, of course, that the permissions checking was done poorly. This means that all Linux kernels greater than and equal to 2.6.39 are vulnerable.

tags | exploit, arbitrary, kernel, local, root
systems | linux
advisories | CVE-2012-0056
MD5 | 50b274079f83341f00a4ec625f3359db
Parallels H Sphere 3.3 P1 Cross Site Scripting
Posted Jan 23, 2012
Authored by longrifle0x | Site vulnerability-lab.com

Parallels H Sphere version 3.3 P1 suffers from multiple cross site scripting vulnerabilities.

tags | exploit, vulnerability, xss
MD5 | 319f2a9825aa5bfc031c08f116a63044
Gentoo Linux Security Advisory 201201-06
Posted Jan 23, 2012
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 201201-6 - Format string vulnerabilities in iSCSI Enterprise Target could result in execution of arbitrary code or a Denial of Service. Versions less than 1.4.19 are affected.

tags | advisory, denial of service, arbitrary, vulnerability
systems | linux, gentoo
advisories | CVE-2010-0743
MD5 | 0c393ac95e06dbf2eef22ebe4b510404
Joomla Mobile SQL Injection
Posted Jan 23, 2012
Authored by the_cyber_nuxbie | Site vulnerability-lab.com

The Joomla Mobile component suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | 2fdba973a811f53d3325ff9ef372d15b
Zone Rouge CMS 2012 SQL Injection
Posted Jan 23, 2012
Authored by snup | Site vulnerability-lab.com

Zone Rouge CMS 2012 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | 8f3837afbf8c097af764e8dae15b4877
Gentoo Linux Security Advisory 201201-05
Posted Jan 23, 2012
Authored by Gentoo | Site security.gentoo.org

Gentoo Linux Security Advisory 201201-5 - Multiple vulnerabilities have been found in mDNSResponder, which could lead to execution of arbitrary code with root privileges. Versions less than 212.1 are affected.

tags | advisory, arbitrary, root, vulnerability
systems | linux, gentoo
advisories | CVE-2007-2386, CVE-2007-3744, CVE-2007-3828, CVE-2008-0989, CVE-2008-2326, CVE-2008-3630
MD5 | 7d200da6320a6f51d408c07ef41a8f1f
Debian Security Advisory 2391-1
Posted Jan 23, 2012
Authored by Debian | Site debian.org

Debian Linux Security Advisory 2391-1 - Several vulnerabilities have been discovered in phpMyAdmin, a tool to administer MySQL over the web.

tags | advisory, web, vulnerability
systems | linux, debian
advisories | CVE-2011-1940, CVE-2011-3181, CVE-2011-4107
MD5 | 20fd4b6e674a43737e44e7ac7d9cd67d
Secunia Security Advisory 47725
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Gentoo has issued an update for logsurfer. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system.

tags | advisory
systems | linux, gentoo
MD5 | c22970e3947f22fe5ac56f0e20676adc
Secunia Security Advisory 47712
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Gentoo has issued an update for mDNSResponder. This fixes multiple vulnerabilities, which can be exploited by malicious, local user to cause a DoS (Denial of Service) or potentially gain escalated privileges and by malicious people to conduct spoofing attacks, cause a DoS, and potentially compromise a vulnerable system.

tags | advisory, denial of service, local, spoof, vulnerability
systems | linux, gentoo
MD5 | 739f2b3075be2231a3d1a4e207e208fa
Secunia Security Advisory 47613
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A weakness has been reported in EMC SourceOne Email Management, which can be exploited by malicious, local users to disclose certain sensitive information.

tags | advisory, local
MD5 | 1a7566b2cc2aa13f36bd672bc852c9c5
Secunia Security Advisory 47621
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Oracle PeopleSoft Enterprise CRM, which can be exploited by malicious users to manipulate certain data.

tags | advisory
MD5 | f8c84e46fd0d1009061c0c4570faed08
Secunia Security Advisory 47624
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Oracle PeopleSoft Enterprise PeopleTools, which can be exploited by malicious users to manipulate certain data or cause a DoS (Denial of Service).

tags | advisory, denial of service
MD5 | e46cdb1d2de36a91b20a1d32f7c1977d
Secunia Security Advisory 47626
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Two vulnerabilities have been reported in Oracle VM VirtualBox, which can be exploited by malicious, local users to disclose potentially sensitive information, manipulate certain data, and cause a DoS (Denial of Service).

tags | advisory, denial of service, local, vulnerability
MD5 | bc18753b5f4ba42d60049ba948e80c2b
Secunia Security Advisory 47646
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in OpenNMS, which can be exploited by malicious people to conduct script insertion attacks.

tags | advisory
MD5 | 3351b469579604c72f63bf0c264915b2
Secunia Security Advisory 47711
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Meder Kydyraliev has reported a vulnerability in Apache Struts, which can be exploited by malicious people to bypass certain security restrictions.

tags | advisory
MD5 | 5f561078070fd1180604a73ca895afb4
Secunia Security Advisory 47723
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Multiple vulnerabilities have been reported in Schneider Electric Modicon Quantum Series Modules, which can be exploited by malicious people to conduct cross-site scripting attacks and cause a DoS (Denial of Service).

tags | advisory, denial of service, vulnerability, xss
MD5 | 7b4f47ec19f51579c30258813e2d7a2b
Secunia Security Advisory 47735
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Multiple vulnerabilities have been reported in Koyo ECOM100 Ethernet Module, which can be exploited by malicious people to conduct cross-site scripting attacks and cause a DoS (Denial of Service).

tags | advisory, denial of service, vulnerability, xss
MD5 | caf3352b54f274141b64cc4c02e7ad5f
Secunia Security Advisory 47652
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Gentoo has issued an update for fontforge. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.

tags | advisory
systems | linux, gentoo
MD5 | 1c55f9bc5326970ea0eda9859fab252e
Secunia Security Advisory 47739
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in SEL-2032 Communications Processor, which can be exploited by malicious people to cause a DoS (Denial of Service).

tags | advisory, denial of service
MD5 | 82a800e706261683813dcb14e06349f1
Secunia Security Advisory 47737
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Multiple vulnerabilities have been reported in Rockwell Automation ControlLogix, which can be exploited by malicious people to disclose system information, cause a DoS (Denial of Service), and compromise a vulnerable device.

tags | advisory, denial of service, vulnerability
MD5 | 6770dd4b272aeb1f1873f9ecb1ce013a
Secunia Security Advisory 47722
Posted Jan 23, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Ben Schmidt has discovered a vulnerability in the Theme Tuner plugin for WordPress, which can be exploited by malicious people to compromise a vulnerable system.

tags | advisory
MD5 | f43406671bd1b5e85f2bfd8772214986
Page 1 of 2
Back12Next

File Archive:

February 2012

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Feb 1st
    36 Files
  • 2
    Feb 2nd
    46 Files
  • 3
    Feb 3rd
    45 Files
  • 4
    Feb 4th
    27 Files
  • 5
    Feb 5th
    12 Files
  • 6
    Feb 6th
    26 Files
  • 7
    Feb 7th
    48 Files
  • 8
    Feb 8th
    54 Files
  • 9
    Feb 9th
    28 Files
  • 10
    Feb 10th
    50 Files
  • 11
    Feb 11th
    21 Files
  • 12
    Feb 12th
    26 Files
  • 13
    Feb 13th
    34 Files
  • 14
    Feb 14th
    18 Files
  • 15
    Feb 15th
    52 Files
  • 16
    Feb 16th
    32 Files
  • 17
    Feb 17th
    53 Files
  • 18
    Feb 18th
    49 Files
  • 19
    Feb 19th
    13 Files
  • 20
    Feb 20th
    27 Files
  • 21
    Feb 21st
    47 Files
  • 22
    Feb 22nd
    45 Files
  • 23
    Feb 23rd
    41 Files
  • 24
    Feb 24th
    0 Files
  • 25
    Feb 25th
    0 Files
  • 26
    Feb 26th
    0 Files
  • 27
    Feb 27th
    0 Files
  • 28
    Feb 28th
    0 Files
  • 29
    Feb 29th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2012 Packet Storm. All rights reserved.

close