Section: .. / 0711-advisories /
| /// File Name: |
sa27722.txt |
Description:
|
Secunia Security Advisory - ShAy6oOoN has discovered a vulnerability in meBiblio, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27722/ | | File Size: | 2487 | | Last Modified: | Nov 20 11:17:55 2007 |
| MD5 Checksum: | 21e75f344966918fcf53ce5c651c1c5a |
|
| /// File Name: |
sa27723.txt |
Description:
|
Secunia Security Advisory - VerY-SecReT has reported a vulnerability in datecomm, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27723/ | | File Size: | 2337 | | Last Modified: | Nov 20 11:17:55 2007 |
| MD5 Checksum: | 5b3605dc423af159bf28371718358c27 |
|
| /// File Name: |
sa27727.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for tomcat5. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks or to disclose potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/27727/ | | File Size: | 7188 | | Last Modified: | Nov 20 11:17:55 2007 |
| MD5 Checksum: | 89a147a65cc71398372c9800d917c908 |
|
| /// File Name: |
sa27728.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for emacs. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27728/ | | File Size: | 3671 | | Last Modified: | Nov 20 11:17:55 2007 |
| MD5 Checksum: | 42fe0c8f4e3a01d049339d534ecadc5a |
|
| /// File Name: |
sa27731.txt |
Description:
|
Secunia Security Advisory - Slackware has issued an update for samba. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27731/ | | File Size: | 2977 | | Last Modified: | Nov 20 11:17:55 2007 |
| MD5 Checksum: | fafd77b5551f9683bd9984b199438dc1 |
|
| /// File Name: |
MDKSA-2007-221.txt |
Description:
|
Mandriva Linux Security Advisory - Alin Rad Pop found several flaws in how PDF files are handled in kpdf. An attacker could create a malicious PDF file that would cause kpdf to crash or potentially execute arbitrary code when opened.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 27708 | | Related CVE(s): | CVE-2007-4352, CVE-2007-5392, CVE-2007-5393 | | Last Modified: | Nov 16 03:01:45 2007 |
| MD5 Checksum: | 653876dc602521aaabe631ca6bf660a3 |
|
| /// File Name: |
MDKSA-2007-220.txt |
Description:
|
Mandriva Linux Security Advisory - Alin Rad Pop found several flaws in how PDF files are handled in gpdf. An attacker could create a malicious PDF file that would cause gpdf to crash or potentially execute arbitrary code when opened.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 2481 | | Related CVE(s): | CVE-2007-4352, CVE-2007-5392, CVE-2007-5393 | | Last Modified: | Nov 16 03:01:14 2007 |
| MD5 Checksum: | 69593546afb721d6fb53d6aaded7144b |
|
| /// File Name: |
MDKSA-2007-219.txt |
Description:
|
Mandriva Linux Security Advisory - Alin Rad Pop found several flaws in how PDF files are handled in xpdf. An attacker could create a malicious PDF file that would cause xpdf to crash or potentially execute arbitrary code when opened.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 4565 | | Related CVE(s): | CVE-2007-4352, CVE-2007-5392, CVE-2007-5393 | | Last Modified: | Nov 16 03:00:36 2007 |
| MD5 Checksum: | f2df8f41505283862496fbe63d3514af |
|
| /// File Name: |
sa27559.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for zope-cmfplone. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27559/ | | File Size: | 3189 | | Last Modified: | Nov 16 02:52:19 2007 |
| MD5 Checksum: | 2fc8483fcf4bd21f6c82fb44d1f97b5e |
|
| /// File Name: |
USN-544-1.txt |
Description:
|
Ubuntu Security Notice 544-1 - Samba developers discovered that nmbd could be made to overrun a buffer during the processing of GETDC logon server requests. When samba is configured as a Primary or Backup Domain Controller, a remote attacker could send malicious logon requests and possibly cause a denial of service. Alin Rad Pop of Secunia Research discovered that nmbd did not properly check the length of netbios packets. When samba is configured as a WINS server, a remote attacker could send multiple crafted requests resulting in the execution of arbitrary code with root privileges.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 31890 | | Related CVE(s): | CVE-2007-5398, CVE-2007-4572 | | Last Modified: | Nov 16 02:51:57 2007 |
| MD5 Checksum: | 16bd422ddf2c0a218797ed724276624b |
|
| /// File Name: |
USN-543-1.txt |
Description:
|
Ubuntu Security Notice 543-1 - Neel Mehta and Ryan Smith discovered that the VMWare Player DHCP server did not correctly handle certain packet structures. Remote attackers could send specially crafted packets and gain root privileges. Rafal Wojtczvk discovered multiple memory corruption issues in VMWare Player. Attackers with administrative privileges in a guest operating system could cause a denial of service or possibly execute arbitrary code on the host operating system.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 24651 | | Related CVE(s): | CVE-2007-0061, CVE-2007-0062, CVE-2007-0063, CVE-2007-4496, CVE-2007-4497 | | Last Modified: | Nov 16 02:50:37 2007 |
| MD5 Checksum: | 24a482be135004abb40a5ba0e1911e58 |
|
| /// File Name: |
USN-542-2.txt |
Description:
|
Ubuntu Security Notice 542-2 - USN-542-1 fixed a vulnerability in poppler. This update provides the corresponding updates for KWord, part of KOffice. Secunia Research discovered several vulnerabilities in poppler. If a user were tricked into loading a specially crafted PDF file, a remote attacker could cause a denial of service or possibly execute arbitrary code with the user's privileges in applications linked against poppler.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 47468 | | Related CVE(s): | CVE-2007-4352, CVE-2007-5392, CVE-2007-5393 | | Last Modified: | Nov 16 02:48:42 2007 |
| MD5 Checksum: | bac4e1bd42fa4b7ac989e879f7e27092 |
|
| /// File Name: |
EEYE-flac.txt |
Description:
|
eEye Digital Security has discovered 14 vulnerabilities in the processing of FLAC (Free-Lossless Audio Codec) files affecting various applications. Processing a malicious FLAC file within a vulnerable application could result in the execution of arbitrary code at the privileges of the application or the current user (depending on OS).
| | Author: | Greg Linares | | Homepage: | http://www.eeye.com/ | | File Size: | 11134 | | Last Modified: | Nov 16 02:38:58 2007 |
| MD5 Checksum: | 706194b7826e52d2af09ba987033b92e |
|
| /// File Name: |
TKADV2007-001.txt |
Description:
|
The xnu kernel of Mac OS X contains a vulnerability in the code that handles TIOCSETD ioctl requests. Exploitation of this vulnerability can lead to denial of service and code execution.
| | Author: | Tobias Klein | | Homepage: | http://www.trapkit.de/ | | File Size: | 7208 | | Related CVE(s): | CVE-2007-4686 | | Last Modified: | Nov 16 02:37:22 2007 |
| MD5 Checksum: | 88c07513ac15b9342ddde37b417d5f43 |
|
| /// File Name: |
TA07-319A.txt |
Description:
|
Technical Cyber Security Alert TA07-319A - Apple has released Mac OS X 10.4.11 and Security Update 2007-008 to address multiple vulnerabilities affecting Apple Mac OS X and Mac OS X Server. The most serious of these vulnerabilities may allow a remote attacker to execute arbitrary code. Attackers may take advantage of the less serious vulnerabilities to bypass security restrictions or cause a denial of service.
| | Homepage: | http://www.us-cert.gov/ | | File Size: | 4043 | | Last Modified: | Nov 16 02:24:07 2007 |
| MD5 Checksum: | 89ab9961b2b4060afaa56c9d1e3ec030 |
|
| /// File Name: |
secunia-netbios.txt |
Description:
|
Secunia Research has discovered a vulnerability in Samba, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to a boundary error within the "reply_netbios_packet()" function in nmbd/nmbd_packets.c when sending NetBIOS replies. This can be exploited to cause a stack-based buffer overflow by sending multiple specially crafted WINS "Name Registration" requests followed by a WINS "Name Query" request. Samba version 3.0.26a is affected.
| | Homepage: | http://secunia.com/ | | File Size: | 4590 | | Related CVE(s): | CVE-2007-5398 | | Last Modified: | Nov 16 02:18:43 2007 |
| MD5 Checksum: | db0f59106b8205bb0ddf17f924d35fa6 |
|
| /// File Name: |
samba-nmbdexec.txt |
Description:
|
Secunia Research reported a vulnerability that allows for the execution of arbitrary code in nmbd. This defect may only be exploited when the "wins support" parameter has been enabled in smb.conf. Samba versions 3.0.0 through 3.0.26a are affected.
| | Homepage: | http://www.samba.org/samba/security/ | | File Size: | 2120 | | Related CVE(s): | CVE-2007-5398 | | Last Modified: | Nov 16 02:17:00 2007 |
| MD5 Checksum: | 654dd8b16cb5fa9e199fa2e9017d8162 |
|
| /// File Name: |
aida-disclose.txt |
Description:
|
Aida-Web may suffer from some information exposure vulnerabilities.
| | Author: | MC Iglo | | File Size: | 770 | | Last Modified: | Nov 16 02:15:13 2007 |
| MD5 Checksum: | ec86e1096fe986eb00737c870438e9cb |
|
| /// File Name: |
sa27565.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for horde3. This fixes some vulnerabilities, which can be exploited by malicious people to conduct phishing and cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/27565/ | | File Size: | 3803 | | Last Modified: | Nov 16 02:06:37 2007 |
| MD5 Checksum: | 3b2c86f20e61670024d9b45272d40a79 |
|
| /// File Name: |
sa26276.txt |
Description:
|
Secunia Security Advisory - Peter Ohlerich has reported a vulnerability in Lantronix SCS3200, which potentially can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/26276/ | | File Size: | 2327 | | Last Modified: | Nov 16 02:06:08 2007 |
| MD5 Checksum: | 971f9c1d9b1bc4ac1a09b7478b323efe |
|
| /// File Name: |
sa27450.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Samba, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27450/ | | File Size: | 3311 | | Last Modified: | Nov 16 02:06:08 2007 |
| MD5 Checksum: | ebe4eaabe22f3313a6e24a54739d0b39 |
|
| /// File Name: |
sa27597.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for django. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27597/ | | File Size: | 2464 | | Last Modified: | Nov 16 02:06:08 2007 |
| MD5 Checksum: | 4af1d76ada4b7c0d85fc0daae07ddd85 |
|
| /// File Name: |
sa27612.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for mono. This fixes a vulnerability with an unknown impact.
| | Homepage: | http://secunia.com/advisories/27612/ | | File Size: | 6315 | | Last Modified: | Nov 16 02:06:08 2007 |
| MD5 Checksum: | 7206226e00b80a1b9e5b759c1a543c98 |
|
| /// File Name: |
sa27614.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for the kernel. This fixes two vulnerabilities, which can be exploited by malicious, local users and by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27614/ | | File Size: | 5831 | | Last Modified: | Nov 16 02:06:08 2007 |
| MD5 Checksum: | 4ca7ce0e4b80ebb54af2b0198280302b |
|
| /// File Name: |
sa27615.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for cups. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or to potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27615/ | | File Size: | 3758 | | Last Modified: | Nov 16 02:06:08 2007 |
| MD5 Checksum: | 7f0abb50669b3ef4942166184c1ef127 |
|
|
|
|
|