Section: .. / 0604-advisories /
| /// File Name: |
MU-200604-01.txt |
Description:
|
MU-200604-01: Cyrus SASL DIGEST-MD5 Pre-Authentication Denial of Service - A denial of service condition exists in the SASL authentication library during DIGEST-MD5 negotiation. This potentially affects multiple products that use SASL DIGEST-MD5 authentication including OpenLDAP, Sendmail, Postfix, Apple, etc.
| | Homepage: | http://labs.musecurity.com | | File Size: | 2709 | | Last Modified: | Apr 12 02:26:05 2006 |
| MD5 Checksum: | 8c29f1fa46d945e3faafaa74f81f937e |
|
| /// File Name: |
MDKSA-2006-069.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-069: A vulnerability in OpenVPN 2.0 through 2.0.5 allows a malicious server to execute arbitrary code on the client by using setenv with the LD_PRELOAD environment variable.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 2589 | | Last Modified: | Apr 12 02:23:36 2006 |
| MD5 Checksum: | 956f5d10cd5ce7250fd8c9b3695fe19c |
|
| /// File Name: |
MDKSA-2006-068.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-068: Multiple integer overflows in MPlayer 1.0pre7try2 allow remote attackers to cause a denial of service and trigger heap-based buffer overflows via (1) a certain ASF file handled by asfheader.c that causes the asf_descrambling function to be passed a negative integer after the conversion from a char to an int or (2) an AVI file with a crafted wLongsPerEntry or nEntriesInUse value in the indx chunk, which is handled in aviheader.c.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 4899 | | Last Modified: | Apr 12 02:23:23 2006 |
| MD5 Checksum: | 7379b637bcfdca276fce0262b46859b7 |
|
| /// File Name: |
MDKSA-2006-071.txt |
Description:
|
Mandriva Linux Security Advisory - MDKSA-2006:071 - Rdesktop, with xscreensaver less than 4.18, does not release the keyboard focus when xscreensaver starts, which causes the password to be entered into the active window when the user unlocks the screen.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 2822 | | Last Modified: | Apr 12 01:33:37 2006 |
| MD5 Checksum: | fd5257cab5429575892bafb63215e681 |
|
| /// File Name: |
MDKSA-2006-070.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-070: Tavis Ormandy of the Gentoo Security Project discovered a vulnerability in zlib where a certain data stream would cause zlib to corrupt a data structure, resulting in the linked application to dump core
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 3822 | | Last Modified: | Apr 12 01:32:49 2006 |
| MD5 Checksum: | a219c9aa4aa763ae85c38efbd70a267c |
|
| /// File Name: |
MDKSA-2006-067.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-067: Damian Put discovered an integer overflow in the PE header parser in ClamAV that could be exploited if the ArchiveMaxFileSize option was disabled
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 6373 | | Last Modified: | Apr 12 01:32:22 2006 |
| MD5 Checksum: | fce8e9447e982ac3186bb911f8daca61 |
|
| /// File Name: |
dsa-1000-1 |
Description:
|
Unavailable.
| | File Size: | 0 | | Last Modified: | Apr 12 01:24:00 2006 |
| MD5 Checksum: | d41d8cd98f00b204e9800998ecf8427e |
|
| /// File Name: |
USN-269-1.txt |
Description:
|
Ubuntu Security Notice USN-269-1 - In some cases, xscreensaver did not properly grab the keyboard when reading the password for unlocking the screen, so that the password was typed into the currently active application window.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 5064 | | Last Modified: | Apr 12 01:15:10 2006 |
| MD5 Checksum: | bf4469e50e70bff6ace2b8bb0b79c704 |
|
| /// File Name: |
dsa-946-2.txt |
Description:
|
Debian Security Advisory 946-2: The former correction to vulnerabilities in the sudo package worked fine but were too strict for some environments. Therefore we have reviewed the changes again and allowed some environment variables to go back into the privileged execution environment. Hence, this update.
| | File Size: | 8473 | | Last Modified: | Apr 12 01:10:02 2006 |
| MD5 Checksum: | 3054ce4113bbea871fbbeea11ca4c461 |
|
| /// File Name: |
dsa-1031-1.txt |
Description:
|
Debian Security Advisory 1031-1: Several vulnerabilities have been discovered in libphp-adodb, the 'adodb' database abstraction layer for PHP, which is embedded in cacti, a frontend to rrdtool for monitoring systems and services.
| | File Size: | 4194 | | Last Modified: | Apr 12 01:09:57 2006 |
| MD5 Checksum: | e617abc30dc99a08a9832d5e261d76d9 |
|
| /// File Name: |
dsa-1030-1.txt |
Description:
|
Debian Security Advisory 1030-1: Several vulnerabilities have been discovered in libphp-adodb, the 'adodb' database abstraction layer for PHP, which is embedded in moodle, a course management system for online learning.
| | File Size: | 4223 | | Last Modified: | Apr 12 01:09:52 2006 |
| MD5 Checksum: | 2e72b1907f33a5209c1cf1a9ea650d86 |
|
| /// File Name: |
dsa-1029-1.txt |
Description:
|
Debian Security Advisory 1029-1: Several vulnerabilities have been discovered in libphp-adodb, the 'adodb' database abstraction layer for PHP.
| | File Size: | 5007 | | Last Modified: | Apr 12 01:09:46 2006 |
| MD5 Checksum: | a8781839b6f1c1c6bb9655baf0caa373 |
|
| /// File Name: |
dsa-1028-1.txt |
Description:
|
Debian Security Advisory 1028-1: Kjetil Kjernsmo discovered a bug in libimager-perl, a Perl extension for generating 24 bit images, which can lead to a segmentation fault if it operates on 4-channel JPEG images.
| | File Size: | 5220 | | Last Modified: | Apr 12 01:09:37 2006 |
| MD5 Checksum: | 2ed6bc5b212fc280c84da9708d67ed11 |
|
| /// File Name: |
TA06-101A.txt |
Description:
|
National Cyber Alert System: Technical Cyber Security Alert TA06-101A - Microsoft Windows and Internet Explorer Vulnerabilities
| | Homepage: | http://cert.org | | File Size: | 7736 | | Last Modified: | Apr 12 00:12:55 2006 |
| MD5 Checksum: | 024756336528670367797c1009282b76 |
|
| /// File Name: |
sa18957.txt |
Description:
|
Secunia Security Advisory - Multiple vulnerabilities have been reported in Internet Explorer, which can be exploited by malicious people to conduct cross-site scripting attacks, conduct phishing attacks, or compromise a user's system.
| | Homepage: | http://secunia.com/advisories/18957/ | | File Size: | 4930 | | Last Modified: | Apr 12 00:04:04 2006 |
| MD5 Checksum: | 2f4c8a171384eaa04c481c41ba023ac9 |
|
| /// File Name: |
sa19563.txt |
Description:
|
Secunia Security Advisory - A security issue has been reported in MAXdev MD-Pro, which can be exploited by malicious people to execute arbitrary SQL code and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/19563/ | | File Size: | 1678 | | Last Modified: | Apr 12 00:04:04 2006 |
| MD5 Checksum: | 238316bbe66d15e0831883cab6d72f7f |
|
| /// File Name: |
sa19573.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Linux Kernel, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/19573/ | | File Size: | 1617 | | Last Modified: | Apr 12 00:04:04 2006 |
| MD5 Checksum: | 8bf249fe50877079ecf162b7255ed475 |
|
| /// File Name: |
sa19574.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Oracle Database, which can be exploited by malicious users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/19574/ | | File Size: | 2054 | | Last Modified: | Apr 12 00:04:04 2006 |
| MD5 Checksum: | 9cf9cdc8f38fb9d2faf293fdaa161d92 |
|
| /// File Name: |
sa19576.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been discovered in Dokeos, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/19576/ | | File Size: | 2218 | | Last Modified: | Apr 12 00:04:04 2006 |
| MD5 Checksum: | 8b12878b11947b8b01bad764ce5d40b7 |
|
| /// File Name: |
sa19579.txt |
Description:
|
Secunia Security Advisory - M.Hasran Addahroni has discovered a security issue in Clever Copy, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/19579/ | | File Size: | 1896 | | Last Modified: | Apr 12 00:04:04 2006 |
| MD5 Checksum: | 421f09504c415c6cfec202be3b844706 |
|
| /// File Name: |
sa19582.txt |
Description:
|
Secunia Security Advisory - KaDaL-X has discovered a vulnerability in Jupiter Content Manager, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/19582/ | | File Size: | 2006 | | Last Modified: | Apr 12 00:04:04 2006 |
| MD5 Checksum: | 1fc8851f64e27fd25b8c2ce9c45e69ed |
|
| /// File Name: |
sa19583.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Data Access Components (MDAC), which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/19583/ | | File Size: | 4779 | | Last Modified: | Apr 12 00:04:04 2006 |
| MD5 Checksum: | d70a0c16dc64e2cd87742010a8dd300c |
|
| /// File Name: |
sa19589.txt |
Description:
|
Secunia Security Advisory - Andrew Pam has discovered a security issue in Debian mnogosearch, which can be exploited by malicious, local users to gain knowledge of sensitive information.
| | Homepage: | http://secunia.com/advisories/19589/ | | File Size: | 2015 | | Last Modified: | Apr 12 00:04:04 2006 |
| MD5 Checksum: | ea397bb038c9aacd540b1442eedf22cf |
|
| /// File Name: |
sa19594.txt |
Description:
|
Secunia Security Advisory - r0t has reported a vulnerability in Web+Shop, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/19594/ | | File Size: | 2005 | | Last Modified: | Apr 12 00:04:04 2006 |
| MD5 Checksum: | dd0f89f99896f0cfb3d370f59d96a25c |
|
|
|
|
|