Section: .. / 0805-advisories /
| /// File Name: |
MDVSA-2008-106.txt |
Description:
|
Mandriva Linux Security Advisory - Flaws discovered in versions prior to 2.2.4 (stable) and 2.3.10 (development) of GnuTLS allow an attacker to cause denial of service (application crash), and maybe (so far undetermined) execute arbitrary code.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 5331 | | Related CVE(s): | CVE-2008-1948, CVE-2008-1949, CVE-2008-1950 | | Last Modified: | May 27 16:51:26 2008 |
| MD5 Checksum: | 1775f23637b2259cfa9fa2f4bbd1eeba |
|
| /// File Name: |
MDVSA-2008-107.txt |
Description:
|
Mandriva Linux Security Advisory - Testing using the Codenomicon TLS test suite discovered a flaw in the handling of server name extension data in OpenSSL 0.9.8f and OpenSSL 0.9.8g. If OpenSSL has been compiled using the non-default TLS server name extensions, a remote attacker could send a carefully crafted packet to a server application using OpenSSL and cause a crash. Testing using the Codenomicon TLS test suite discovered a flaw if the 'Server Key exchange message' is omitted from a TLS handshake in OpenSSL 0.9.8f and OpenSSL 0.9.8g. If a client connects to a malicious server with particular cipher suites, the server could cause the client to crash.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 3599 | | Related CVE(s): | CVE-2008-0891, CVE-2008-1672 | | Last Modified: | May 28 20:23:36 2008 |
| MD5 Checksum: | bfaecbed16231165b9ab27f75a832068 |
|
| /// File Name: |
MDVSA-2008-108.txt |
Description:
|
Mandriva Linux Security Advisory - Although they forgot to put the problem description in this advisory, it appears that Mandriva has patched a code execution vulnerability in smbd from Samba.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 17071 | | Related CVE(s): | CVE-2008-1105 | | Last Modified: | May 28 20:26:07 2008 |
| MD5 Checksum: | a11ca1994f253c876b0db00544a8cbbe |
|
| /// File Name: |
mtr-overflow.txt |
Description:
|
Mtr suffers from a local and remote stack overflow vulnerability.
| | Author: | Adam Zabrocki | | File Size: | 43807 | | Last Modified: | May 20 10:29:30 2008 |
| MD5 Checksum: | b18432f838e87911eed48c482bdd6978 |
|
| /// File Name: |
novell-stackoverflow.txt |
Description:
|
Novell Client versions 4.91 SP4 and below suffer from a local stack overflow vulnerability.
| | Author: | laurent gaffi | | File Size: | 2335 | | Last Modified: | May 9 13:20:52 2008 |
| MD5 Checksum: | dcfbc10b009f3e54667c1a67566d1691 |
|
| /// File Name: |
novelledir-soap.txt |
Description:
|
Novell eDirectory versions 8.7.x through 8.8.1 suffer from an arbitrary access vulnerability due to client-side access control when using the SOAP interface.
| | Author: | Nicob | | File Size: | 1472 | | Related CVE(s): | CVE-2008-0926 | | Last Modified: | May 6 16:17:50 2008 |
| MD5 Checksum: | bfc87cfd78dc50b27221742df7b7e90f |
|
| /// File Name: |
officepub-corrupt.txt |
Description:
|
A memory corruption vulnerability exists in Microsoft Office Publisher when it is parsing a PUB file. An attacker who successfully exploits this vulnerability can execute arbitrary code on the affected system.
| | Author: | cocoruder | | Homepage: | http://ruder.cdut.net/ | | File Size: | 1355 | | Related CVE(s): | CVE-2008-0119 | | Last Modified: | May 15 01:13:56 2008 |
| MD5 Checksum: | c3c39fb97be35f9f59393df7386d6245 |
|
| /// File Name: |
oracle-aqjms.txt |
Description:
|
Team SHATTER Security Advisory - Oracle Database Server versions 9iR1, 9iR2 (9.2.0.7 and previous patchsets) and 10gR1 suffer from a buffer overflow vulnerability in SYS.DBMS_AQJMS_INTERNAL.
| | Author: | Esteban Martinez Fayo | | Homepage: | http://www.appsecinc.com/ | | File Size: | 2446 | | Last Modified: | May 1 18:23:42 2008 |
| MD5 Checksum: | b6ca92dc152400241d7c65a7995dfa11 |
|
| /// File Name: |
oracle-cdc.txt |
Description:
|
Team SHATTER Security Advisory - Oracle Database Server versions 10gR1, 10gR2 and 11gR1 suffer from a SQL injection vulnerability in SYS.DBMS_CDC_UTILITY.LOCK_CHANGE_SET.
| | Author: | Esteban Martinez Fayo | | Homepage: | http://www.appsecinc.com/ | | File Size: | 2397 | | Last Modified: | May 1 18:25:35 2008 |
| MD5 Checksum: | 3262e67beb4e36a4ad72fdece4efc664 |
|
| /// File Name: |
oracle-kupf.txt |
Description:
|
Team SHATTER Security Advisory - Oracle Database Server versions 9iR2, 10gR1, 10gR2 and 11gR1 suffer from a buffer overflow vulnerability in SYS.KUPF$FILE_INT.GET_FULL_FILENAME.
| | Author: | Esteban Martinez Fayo | | Homepage: | http://www.appsecinc.com/ | | File Size: | 2384 | | Last Modified: | May 1 18:25:06 2008 |
| MD5 Checksum: | 3855f9163df523dcf29cdbacdf873df0 |
|
| /// File Name: |
sa29760.txt |
Description:
|
Secunia Security Advisory - Tan Chew Keong has reported a vulnerability in CuteFTP, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/29760/ | | File Size: | 2442 | | Last Modified: | May 27 17:57:29 2008 |
| MD5 Checksum: | 7e8e6d94b64bc7a6b8f8a7bb1c084393 |
|
| /// File Name: |
sa29842.txt |
Description:
|
Secunia Security Advisory - Some security issues have been discovered in Blender, which can be exploited by malicious, local users to disclose potentially sensitive information and perform certain actions with escalated privileges.
| | Homepage: | http://secunia.com/advisories/29842/ | | File Size: | 2448 | | Last Modified: | May 19 14:31:39 2008 |
| MD5 Checksum: | 1a5b9b4a46bf1f24200fc3287311f3ac |
|
| /// File Name: |
sa29941.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in Foxit Reader, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/29941/ | | File Size: | 2275 | | Last Modified: | May 20 16:20:56 2008 |
| MD5 Checksum: | cf72b659477bc9261c2963cb054c6dab |
|
| /// File Name: |
sa29958.txt |
Description:
|
Secunia Security Advisory - Thomas Pollet has reported a vulnerability in IBM Lotus Expeditor, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/29958/ | | File Size: | 2470 | | Last Modified: | May 8 13:30:50 2008 |
| MD5 Checksum: | aed946be54e86ef962175c615e13acaf |
|
| /// File Name: |
sa29962.txt |
Description:
|
Secunia Security Advisory - Nico Golde has reported a vulnerability in PeerCast, which can be exploited by malicious people to cause a DoS (Denial of Service) or to potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/29962/ | | File Size: | 2436 | | Last Modified: | May 8 13:30:50 2008 |
| MD5 Checksum: | 465b36b80b86db383ebe8e3a147ffb71 |
|
| /// File Name: |
sa29963.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for xen. This fixes some vulnerabilities and a security issue, which can be exploited by malicious, local users to bypass certain security restrictions, cause a DoS (Denial of Service), or truncate arbitrary files.
| | Homepage: | http://secunia.com/advisories/29963/ | | File Size: | 2341 | | Last Modified: | May 15 00:56:37 2008 |
| MD5 Checksum: | e61c610e7712136c42c1c2f428552e31 |
|
| /// File Name: |
sa29968.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for cpio. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29968/ | | File Size: | 4357 | | Last Modified: | May 7 20:31:38 2008 |
| MD5 Checksum: | 4339669fe7fbfb5d144cfa520fa2f1df |
|
| /// File Name: |
sa29969.txt |
Description:
|
Secunia Security Advisory - Juan Pablo Lopez Yacubian has reported a vulnerability in Novell GroupWise, which can be exploited by malicious people to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/29969/ | | File Size: | 2291 | | Last Modified: | May 7 20:31:38 2008 |
| MD5 Checksum: | 483eefea6f5569822e2d258139f40417 |
|
| /// File Name: |
sa29970.txt |
Description:
|
Secunia Security Advisory - cO2 has reported a vulnerability in FluentCMS, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/29970/ | | File Size: | 1986 | | Last Modified: | May 8 13:30:50 2008 |
| MD5 Checksum: | 094373de8bcad1d54e3c0731742fc38a |
|
| /// File Name: |
sa29971.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for wireshark. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29971/ | | File Size: | 1874 | | Last Modified: | May 8 13:30:50 2008 |
| MD5 Checksum: | 0ffe8c539b948b3443351ad4ddc210f3 |
|
| /// File Name: |
sa29973.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Sun Solaris, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29973/ | | File Size: | 2302 | | Last Modified: | May 7 20:31:38 2008 |
| MD5 Checksum: | e8764b719b03bd2098c1822db0a8534c |
|
| /// File Name: |
sa29975.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for clamav. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service), or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/29975/ | | File Size: | 2073 | | Last Modified: | May 8 13:30:50 2008 |
| MD5 Checksum: | 344c52b071692dc98eee730ce4f22053 |
|
| /// File Name: |
sa29976.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in IBM WebSphere Application Server, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/29976/ | | File Size: | 2059 | | Last Modified: | May 8 13:30:50 2008 |
| MD5 Checksum: | 4f4486ede067b0634cbb196ed6620c92 |
|
| /// File Name: |
sa29982.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for util-linux-ng. This fixes a weakness, which can be exploited by malicious people to manipulate certain data.
| | Homepage: | http://secunia.com/advisories/29982/ | | File Size: | 1913 | | Last Modified: | May 12 10:06:04 2008 |
| MD5 Checksum: | 58f3a8e03d67ffe809a293b5f87c547d |
|
| /// File Name: |
sa29983.txt |
Description:
|
Secunia Security Advisory - M.Hasran Addahroni has reported a vulnerability in Softbiz Web Host Directory Script, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/29983/ | | File Size: | 2165 | | Last Modified: | May 8 13:30:50 2008 |
| MD5 Checksum: | 73d0bc3a54009371c8f815fb010802d6 |
|
|
|
|
|