.:[ packet storm ]:.
                             
paranoia is a friend like no other
paranoia is a friend like no other

 Section:  .. / 0708-advisories  /

Page 1 of 24
<< 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 >> Files 1 - 25 of 581
Currently sorted by: Last ModifiedSort By: File Name, File Size

 ///  File Name: USN-509-1.txt
Description:
Ubuntu Security Notice 509-1 - The Linux 2.6 kernel series suffers from multiple vulnerabilities. A flaw in the sysfs_readdir function allowed a local user to cause a denial of service by dereferencing a NULL pointer. A buffer overflow was discovered in the random number generator. In environments with granular assignment of root privileges, a local attacker could gain additional privileges. A flaw was discovered in the usblcd driver. A local attacker could cause large amounts of kernel memory consumption, leading to a denial of service. It was discovered that certain setuid-root processes did not correctly reset process death signal handlers. A local user could manipulate this to send signals to processes they would not normally have access to. The Direct Rendering Manager for the i915 driver could be made to write to arbitrary memory locations. An attacker with access to a running X11 session could send a specially crafted buffer and gain root privileges. It was discovered that the aacraid SCSI driver did not correctly check permissions on certain ioctls. A local attacker could cause a denial of service or gain privileges.
Homepage:http://security.ubuntu.com/
File Size:54241
Related CVE(s):CVE-2007-3104, CVE-2007-3105, CVE-2007-3513, CVE-2007-3848, CVE-2007-3851, CVE-2007-4308
Last Modified:Aug 31 19:03:00 2007
MD5 Checksum:71d8853d53804ac2aa9e5b6ad74a2932

 ///  File Name: 08.30.07-1.txt
Description:
iDefense Security Advisory 08.30.07 - Remote exploitation of multiple buffer overflow vulnerabilities in Yahoo Inc.'s Yahoo! Messenger 8.1 allows attackers to execute arbitrary code with the privileges of the currently logged in user. iDefense has confirmed the existence of this vulnerability in version 8.1 of Yahoo Instant Messenger. Previous versions are suspected to be vulnerable as well.
Homepage:http://www.idefense.com/
File Size:3649
Related CVE(s):CVE-2007-4515
Last Modified:Aug 31 18:58:05 2007
MD5 Checksum:44bf2944288480d2f88cd559b0d9ab27

 ///  File Name: NS-072307-XSS.pdf
Description:
A cross site scripting vulnerability existed in http://research.microsoft.com/. This has been fixed.
Author:Amish Shah
Homepage:http://net-square.com/
File Size:94432
Last Modified:Aug 31 18:53:10 2007
MD5 Checksum:9956c839a73047e0ea608902bdcd1dc1

 ///  File Name: sa26605.txt
Description:
Secunia Security Advisory - HP has acknowledged a vulnerability in HP Tru64 UNIX and HP Internet Express for Tru64 UNIX, which can be exploited by malicious people to poison the DNS cache.
Homepage:http://secunia.com/advisories/26605/
File Size:2979
Last Modified:Aug 31 18:50:49 2007
MD5 Checksum:433b3c840c5ca9002e61f88aeb9d041d

 ///  File Name: sa26657.txt
Description:
Secunia Security Advisory - Micha Lenk has reported a security issue in Backup Manager, which can be exploited by malicious, local users to disclose sensitive information.
Homepage:http://secunia.com/advisories/26657/
File Size:2436
Last Modified:Aug 31 18:50:26 2007
MD5 Checksum:bbf94fe08ec4861329f9905c64d71024

 ///  File Name: sa26652.txt
Description:
Secunia Security Advisory - R00T[ATI] has discovered a vulnerability in NMDeluxe, which can be exploited by malicious people to conduct SQL injection attacks.
Homepage:http://secunia.com/advisories/26652/
File Size:2460
Last Modified:Aug 31 18:50:26 2007
MD5 Checksum:7fc4cd41223c6cf92c220b13e43e4e91

 ///  File Name: sa26642.txt
Description:
Secunia Security Advisory - Some vulnerabilities have been reported in PHP, where some have unknown impacts and others can be exploited by malicious users to bypass certain security restrictions.
Homepage:http://secunia.com/advisories/26642/
File Size:4427
Last Modified:Aug 31 18:50:26 2007
MD5 Checksum:4d9e26617afcf2b65884e778cb00801c

 ///  File Name: sa26637.txt
Description:
Secunia Security Advisory - David Sopas Ferreira has reported some vulnerabilities in ACG News, which can be exploited by malicious people to conduct SQL injection attacks.
Homepage:http://secunia.com/advisories/26637/
File Size:2415
Last Modified:Aug 31 18:50:26 2007
MD5 Checksum:802772a63475cc47fa4ff8b10ddd9b95

 ///  File Name: sa26621.txt
Description:
Secunia Security Advisory - Red Hat has issued an update for mysql. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
Homepage:http://secunia.com/advisories/26621/
File Size:2503
Last Modified:Aug 31 18:50:26 2007
MD5 Checksum:0029030599e99eeff262a28aa41c9823

 ///  File Name: SUSE-SA-2007-050.txt
Description:
SUSE Security Announcement - The Opera web-browser allows an attacker to execute arbitrary code by providing an invalid pointer to a virtual function in JavaScript. This bug can be exploited automatically when a user visits a web-site that contains the attacker's JavaScript code.
Homepage:http://www.suse.com
File Size:13290
Related CVE(s):CVE-2007-4367
Last Modified:Aug 31 18:49:50 2007
MD5 Checksum:67d50149e61c18e0f82a4f187d83b23e

 ///  File Name: PR07-23.txt
Description:
Absolute Poll Manager XE version 4.1 suffers from cross site scripting vulnerabilities.
Author:Procheckup
File Size:2695
Last Modified:Aug 31 18:38:24 2007
MD5 Checksum:1caee24a2fb021f6add15739ee80febf

 ///  File Name: vmwarevix-vuln.txt
Description:
VMWware suffers from a poor guest isolation design.
Homepage:http://www.vmware.com/
File Size:4302
Last Modified:Aug 31 18:36:33 2007
MD5 Checksum:6f1db85eb6f7a1f8d6ed25f9064ddba3

 ///  File Name: sa26649.txt
Description:
Secunia Security Advisory - Debian has issued an update for postfix-policyd. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
Homepage:http://secunia.com/advisories/26649/
File Size:4735
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:6828a44e39a60d361c34e7337d15db03

 ///  File Name: sa26641.txt
Description:
Secunia Security Advisory - Some vulnerabilities have been reported in Cisco Unified CallManager and Unified Communications Manager (CUCM), which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.
Homepage:http://secunia.com/advisories/26641/
File Size:3101
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:2fa3d44cc98567d031399a3773c95ee9

 ///  File Name: sa26636.txt
Description:
Secunia Security Advisory - A vulnerability has been reported in the Apache mod_proxy module, which can be exploited by malicious people to cause a DoS (Denial of Service).
Homepage:http://secunia.com/advisories/26636/
File Size:2670
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:d13452ae9a6ca5a59a4838db58c41f9b

 ///  File Name: sa26635.txt
Description:
Secunia Security Advisory - SUSE has issued an update for opera. This fixes a vulnerability, which can potentially be exploited by malicious people to compromise vulnerable system.
Homepage:http://secunia.com/advisories/26635/
File Size:3616
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:0087c1229ea59f81299a397f3cd18a75

 ///  File Name: sa26623.txt
Description:
Secunia Security Advisory - Some vulnerabilities have been reported in the Python tarfile module, which can be exploited by malicious people to compromise a vulnerable system.
Homepage:http://secunia.com/advisories/26623/
File Size:2540
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:fb9fc7602f2f3c3d35776746d48a4db4

 ///  File Name: sa26617.txt
Description:
Secunia Security Advisory - Some security issues with unknown impact have been reported in SSHKeychain.
Homepage:http://secunia.com/advisories/26617/
File Size:2103
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:cca423119e31ac57daaa79468badd5f9

 ///  File Name: sa26615.txt
Description:
Secunia Security Advisory - Some vulnerabilities have been reported in Firebird, where some have unknown impact and others can be exploited by malicious users to cause a DoS (Denial of Service).
Homepage:http://secunia.com/advisories/26615/
File Size:3097
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:2b52f53a96e3c36bcdaf2bf4ea9c8adb

 ///  File Name: sa26598.txt
Description:
Secunia Security Advisory - GoLd_M has discovered two vulnerabilities in Pakupaku CMS, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
Homepage:http://secunia.com/advisories/26598/
File Size:2867
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:ac476bd4d7bfd6706d43e91e1b508354

 ///  File Name: sa26593.txt
Description:
Secunia Security Advisory - Debian has issued an update for lighttpd. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions or cause a DoS (Denial of Service).
Homepage:http://secunia.com/advisories/26593/
File Size:13651
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:0e8f57725f9825d2104ecfee158727ef

 ///  File Name: sa26581.txt
Description:
Secunia Security Advisory - Edi Strosar has discovered a security issue in multiple eScan products, which can be exploited by malicious, local users to gain escalated privileges.
Homepage:http://secunia.com/advisories/26581/
File Size:2427
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:3d71dcdfc403f4a0823f8e664e13995f

 ///  File Name: sa26579.txt
Description:
Secunia Security Advisory - A vulnerability has been reported in Yahoo! Messenger, which can be exploited by malicious people to compromise a user's system.
Homepage:http://secunia.com/advisories/26579/
File Size:2498
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:fd5e5126c8b73940124202153b0436a5

 ///  File Name: sa26567.txt
Description:
Secunia Security Advisory - Ubuntu has acknowledged a vulnerability in tcp-wrappers, which can be exploited by malicious people to bypass certain security restrictions.
Homepage:http://secunia.com/advisories/26567/
File Size:4914
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:8e9c8028448cc5316157bb18442c66e6

 ///  File Name: sa26524.txt
Description:
Secunia Security Advisory - Luigi Auriemma has reported some vulnerabilities in Doomsday, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
Homepage:http://secunia.com/advisories/26524/
File Size:3610
Last Modified:Aug 31 05:45:27 2007
MD5 Checksum:9332c883dec2cfd2946b56bc1d7d8f40