Section: .. / 0712-advisories /
| /// File Name: |
sa28126.txt |
Description:
|
Secunia Security Advisory - k1tk4t has discovered a vulnerability in FreeWebshop.org, which can be exploited by malicious people to bypass certain security restrictions and to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/28126/ | | File Size: | 2608 | | Last Modified: | Dec 17 19:56:59 2007 |
| MD5 Checksum: | 023174ec991722de9c7a91f6f3abe0d1 |
|
| /// File Name: |
sa28096.txt |
Description:
|
Secunia Security Advisory - Sun has acknowledged a vulnerability in Solaris, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/28096/ | | File Size: | 2645 | | Last Modified: | Dec 14 14:28:42 2007 |
| MD5 Checksum: | 5dfe17745843893ff84c105c719e81fa |
|
| /// File Name: |
sa28058.txt |
Description:
|
Secunia Security Advisory - RoMaNcYxHaCkEr has discovered a vulnerability in CityWriter, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28058/ | | File Size: | 2464 | | Last Modified: | Dec 14 14:28:30 2007 |
| MD5 Checksum: | 3482dfc31dfff67ea16631602d635e6c |
|
| /// File Name: |
sa28059.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in WebGUI, which can be exploited by malicious users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/28059/ | | File Size: | 2379 | | Last Modified: | Dec 14 14:28:30 2007 |
| MD5 Checksum: | b9639e7c49adc5f9315edf73d7d7d41a |
|
| /// File Name: |
sa28095.txt |
Description:
|
Secunia Security Advisory - A package compromise with unknown impact has been reported in SquirrelMail.
| | Homepage: | http://secunia.com/advisories/28095/ | | File Size: | 2498 | | Last Modified: | Dec 14 14:28:30 2007 |
| MD5 Checksum: | e1377abfd8f2b2b922d067ea4e362da2 |
|
| /// File Name: |
sa28072.txt |
Description:
|
Secunia Security Advisory - A weakness has been reported in Kerio WinRoute Firewall, which potentially can be exploited by malicious, local users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/28072/ | | File Size: | 2322 | | Last Modified: | Dec 13 19:12:58 2007 |
| MD5 Checksum: | 2bd4bba66ccd86ae198684f568fdd919 |
|
| /// File Name: |
sa28041.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to disclose sensitive information, cause a DoS (Denial of Service), or potentially compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/28041/ | | File Size: | 2912 | | Last Modified: | Dec 13 19:12:48 2007 |
| MD5 Checksum: | 7218df5447418e320d3eb17cdabddc69 |
|
| /// File Name: |
sa28054.txt |
Description:
|
Secunia Security Advisory - RoMaNcYxHaCkEr has discovered a vulnerability in Fastpublish CMS, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28054/ | | File Size: | 2616 | | Last Modified: | Dec 13 19:12:48 2007 |
| MD5 Checksum: | 516544b1417f7493254a85d3c0a23ad0 |
|
| /// File Name: |
sa28081.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in the mod_imap module for Apache, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/28081/ | | File Size: | 2683 | | Last Modified: | Dec 13 18:15:14 2007 |
| MD5 Checksum: | 8899124f67d2f64ac35aeb43ca505051 |
|
| /// File Name: |
MDKSA-2007-245.txt |
Description:
|
Mandriva Linux Security Advisory - Stack-based buffer overflow in driver_wext.c in wpa_supplicant 0.6.0 allows remote attackers to cause a denial of service (crash) via crafted TSF data.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 2493 | | Related CVE(s): | CVE-2007-6025 | | Last Modified: | Dec 13 18:10:08 2007 |
| MD5 Checksum: | 5c5dbb21af7e30ee58ce5ec63043d494 |
|
| /// File Name: |
glsa-200712-12.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200712-12 - loverboy reported that the default_encrypt() function in file encrypt.c does not properly handle overly long passwords. Versions less than 5.0.63 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2752 | | Related CVE(s): | CVE-2007-6122 | | Last Modified: | Dec 13 18:03:27 2007 |
| MD5 Checksum: | 64eb586982ef52c6164644bfa1e097a4 |
|
| /// File Name: |
sa28026.txt |
Description:
|
Secunia Security Advisory - mrhinkydink has reported a security issue in Websense, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/28026/ | | File Size: | 2580 | | Last Modified: | Dec 13 18:03:01 2007 |
| MD5 Checksum: | 8b89da89f5e2421fb03a30a02811076a |
|
| /// File Name: |
sa28048.txt |
Description:
|
Secunia Security Advisory - mu-b has reported a vulnerability in Mac OS X, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28048/ | | File Size: | 2420 | | Last Modified: | Dec 13 18:02:52 2007 |
| MD5 Checksum: | 6e4c00199cf939ce47639376434db1cc |
|
| /// File Name: |
sa28071.txt |
Description:
|
Secunia Security Advisory - GoLd_M has discovered a vulnerability in xml2owl, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/28071/ | | File Size: | 2455 | | Last Modified: | Dec 13 18:02:52 2007 |
| MD5 Checksum: | 905c243da8acf881234845e4029298e9 |
|
| /// File Name: |
sa28077.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in JBoss Seam, which potentially can be exploited by malicious people to conduct SQL injection attacks against applications using the framework.
| | Homepage: | http://secunia.com/advisories/28077/ | | File Size: | 2590 | | Last Modified: | Dec 13 18:02:52 2007 |
| MD5 Checksum: | fa8fb9e2fe57cbf9a0bc945f22eb53e9 |
|
| /// File Name: |
sa28080.txt |
Description:
|
Secunia Security Advisory - A security issue has been reported in Robocode, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/28080/ | | File Size: | 2435 | | Last Modified: | Dec 13 18:02:52 2007 |
| MD5 Checksum: | e215487c13582e8edb8e3bd1d7630d07 |
|
| /// File Name: |
sa28082.txt |
Description:
|
Secunia Security Advisory - Hitachi has acknowledged some vulnerabilities in the Hitachi Web Server, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/28082/ | | File Size: | 3195 | | Last Modified: | Dec 13 18:02:52 2007 |
| MD5 Checksum: | c1fe5cdc74a924ac925c1b60e8df7c1d |
|
| /// File Name: |
glsa-200712-11.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200712-11 - Mike Frysinger reported that the etc-update utility uses temporary files with the standard umask, which results in the files being world-readable when merging configuration files in a default setup. Versions less than 2.1.3.11 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2787 | | Related CVE(s): | CVE-2007-6249 | | Last Modified: | Dec 13 18:02:34 2007 |
| MD5 Checksum: | 1c89d50991d0f1a7225a67e7c4da8a1a |
|
| /// File Name: |
openoffice-signature.txt |
Description:
|
OpenOffice versions 2.3.0 and 2.2.0 fail to protect certificate information in signed ODF documents.
| | Author: | Henrich C. Poehls, Dong Tran, Finn Petersen, Frederic Pscheid | | File Size: | 3851 | | Last Modified: | Dec 13 18:02:09 2007 |
| MD5 Checksum: | 5c820492a09565a4c5dfb11412c9acfa |
|
| /// File Name: |
msoffice-hyper.txt |
Description:
|
Microsoft Office 2007 fails to protect hyperlinks with the use of digital signatures on a document.
| | Author: | Henrich C. Poehls, Dong Tran, Finn Petersen, Frederic Pscheid | | File Size: | 3261 | | Last Modified: | Dec 13 17:59:43 2007 |
| MD5 Checksum: | b42a0e224039a164607a3c80d634dcbc |
|
| /// File Name: |
SSRT071504.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP-UX running OpenSSL. The vulnerability could be exploited remotely to execute arbitrary code.
| | Homepage: | http://www.hp.com/ | | File Size: | 7176 | | Related CVE(s): | CVE-2007-4995 | | Last Modified: | Dec 13 17:57:13 2007 |
| MD5 Checksum: | f7c42212c5895b6e0c7827b3cf5fe9f5 |
|
| /// File Name: |
SSRT071451.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP-UX applications running DCE such as Software Distributor (SD). The vulnerability could be exploited remotely to create a denial of service (DoS).
| | Homepage: | http://www.hp.com/ | | File Size: | 6638 | | Related CVE(s): | CVE-2007-6195 | | Last Modified: | Dec 13 17:56:41 2007 |
| MD5 Checksum: | c5fdc8116ee8af5a63f95b835d6af576 |
|
| /// File Name: |
USN-550-3.txt |
Description:
|
Ubuntu Security Notice 550-3 - USN-550-1 fixed vulnerabilities in Cairo. A bug in font glyph rendering was uncovered as a result of the new memory allocation routines. In certain situations, fonts containing characters with no width or height would not render any more. This update fixes the problem. Peter Valchev discovered that Cairo did not correctly decode PNG image data. By tricking a user or automated system into processing a specially crafted PNG with Cairo, a remote attacker could execute arbitrary code with user privileges.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 16413 | | Related CVE(s): | CVE-2007-5503 | | Last Modified: | Dec 13 17:52:55 2007 |
| MD5 Checksum: | 2370d0c51e796c283bd73261ef0bf925 |
|
|
|
|
|