Section: .. / 0611-advisories /
| /// File Name: |
sa23069.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for proftpd. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/23069/ | | File Size: | 3111 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | 9126761ad28e341a54a1d75bb368f595 |
|
| /// File Name: |
sa23070.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been discovered in PMOS Help Desk, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/23070/ | | File Size: | 2610 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | 7b35e695c3828845775d4caf12d4a2ad |
|
| /// File Name: |
sa23071.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Ace Helpdesk, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/23071/ | | File Size: | 2521 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | 1e95c6045caf6df21ec806381a8e3254 |
|
| /// File Name: |
sa23074.txt |
Description:
|
Secunia Security Advisory - Novell has acknowledged a vulnerability in NetWare, which can be exploited by malicious people to conduct HTTP request smuggling attacks.
| | Homepage: | http://secunia.com/advisories/23074/ | | File Size: | 2488 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | b0468256722c08d252b5c02d966817ac |
|
| /// File Name: |
sa23077.txt |
Description:
|
Secunia Security Advisory - rgod has discovered vulnerability in Woltlab Burning Board Lite, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/23077/ | | File Size: | 2681 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | b351a0a55141e4d2745d5301b4db3ab1 |
|
| /// File Name: |
sa23078.txt |
Description:
|
Secunia Security Advisory - CoLd Zero has discovered a vulnerability in HIOX Star Rating System Script, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23078/ | | File Size: | 2679 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | 6fc4244ffd22dce7bacaa4be0478d55f |
|
| /// File Name: |
sa23079.txt |
Description:
|
Secunia Security Advisory - Dr.Pantagon has discovered a vulnerability in OWLLib, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23079/ | | File Size: | 2671 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | aa429344899b84958571136c4b37d688 |
|
| /// File Name: |
sa23081.txt |
Description:
|
Secunia Security Advisory - DaDIsS has reported a vulnerability in Messagerie Locale, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23081/ | | File Size: | 2418 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | 440012764b1bf1b1958b9384a8e2f044 |
|
| /// File Name: |
sa23082.txt |
Description:
|
Secunia Security Advisory - DaDIsS has reported a vulnerability in site_news, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23082/ | | File Size: | 2480 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | b529e3a804cc6f6b71fb725ce7f9bf27 |
|
| /// File Name: |
sa23083.txt |
Description:
|
Secunia Security Advisory - GregStar has discovered two vulnerabilities in Recipes Website, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/23083/ | | File Size: | 2727 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | 25eaeaa4b301f971ce6bdfa91bf1127c |
|
| /// File Name: |
sa23084.txt |
Description:
|
Secunia Security Advisory - GregStar has discovered a vulnerability in Wallpaper Website, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/23084/ | | File Size: | 2689 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | dffb4f4437066c1426d87f8d67d1fdc6 |
|
| /// File Name: |
sa23085.txt |
Description:
|
Secunia Security Advisory - ajann has reported a vulnerability in JiRo's FAQ Manager, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/23085/ | | File Size: | 2482 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | e9b5abb69a4a2c271dd1248a7ae0d4c4 |
|
| /// File Name: |
sa23086.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for phpMyAdmin. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks.
| | Homepage: | http://secunia.com/advisories/23086/ | | File Size: | 3433 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | bc33ed681eb87651b60db4c153b099b5 |
|
| /// File Name: |
sa23089.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for fvwm. This fixes a vulnerability, which can be exploited by malicious, local users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/23089/ | | File Size: | 2332 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | dc66baba7769f52f34f0f659467202d0 |
|
| /// File Name: |
sa23091.txt |
Description:
|
Secunia Security Advisory - LSsecurity has reported a vulnerability in Crystal Reports, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/23091/ | | File Size: | 2511 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | 1e045117cc8741708eac60f7add2b01e |
|
| /// File Name: |
sa22995.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for texinfo. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/22995/ | | File Size: | 2384 | | Last Modified: | Nov 25 23:47:37 2006 |
| MD5 Checksum: | 690b7aa2afa9a33d78f5b3bc4599bb97 |
|
| /// File Name: |
sa23009.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for firefox. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23009/ | | File Size: | 13013 | | Last Modified: | Nov 25 23:47:37 2006 |
| MD5 Checksum: | 4e338149c8687e48432db852e8920822 |
|
| /// File Name: |
MDKSA-2006-208-1.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-208-1 - An unspecified vulnerability in OpenLDAP allows remote attackers to cause a denial of service (daemon crash) via a certain combination of SASL Bind requests that triggers an assertion failure in libldap.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 4036 | | Related CVE(s): | CVE-2006-5779 | | Last Modified: | Nov 21 22:07:40 2006 |
| MD5 Checksum: | 14c7d1c0f256a254d7a72f446ac2239c |
|
| /// File Name: |
USN-382-1.txt |
Description:
|
Ubuntu Security Notice 382-1 - USN-352-1 fixed a flaw in the verification of PKCS certificate signatures. Ulrich Kuehn discovered a variant of the original attack which the original fix did not cover. Various flaws have been reported that allow an attacker to execute arbitrary code with user privileges by tricking the user into opening a malicious web page containing JavaScript.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 12794 | | Related CVE(s): | CVE-2006-5462, CVE-2006-5463, CVE-2006-5464, CVE-2006-5747, CVE-2006-5748 | | Last Modified: | Nov 21 21:51:00 2006 |
| MD5 Checksum: | 521f19287302bd9e6b41cffda2f5f7d1 |
|
| /// File Name: |
USN-381-1.txt |
Description:
|
Ubuntu Security Notice 381-1 - USN-351-1 fixed a flaw in the verification of PKCS certificate signatures. Ulrich Kuehn discovered a variant of the original attack which the original fix did not cover. Various flaws have been reported that allow an attacker to execute arbitrary code with user privileges by tricking the user into opening a malicious web page containing JavaScript.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 13018 | | Related CVE(s): | CVE-2006-5462, CVE-2006-5463, CVE-2006-5464, CVE-2006-5747, CVE-2006-5748 | | Last Modified: | Nov 21 21:48:54 2006 |
| MD5 Checksum: | 0f560f6f914a8eceb4ade850d5c7feb8 |
|
| /// File Name: |
dsa-1218-1.txt |
Description:
|
Debian Security Advisory 1218-1 - It was discovered that the proftpd FTP daemon performs insufficient validation of FTP command buffer size limits, which may lead to denial of service.
| | Homepage: | http://www.debian.org/security | | File Size: | 13270 | | Related CVE(s): | CVE-2006-5815 | | Last Modified: | Nov 21 21:32:27 2006 |
| MD5 Checksum: | c3381ad5319b7494c53a33d43df063b4 |
|
| /// File Name: |
secunia-myfirewall.txt |
Description:
|
Secunia Research has discovered a vulnerability in My Firewall Plus, which can be exploited by malicious, local users to gain escalated privileges. The vulnerability is caused due to the application windows running with SYSTEM privileges and the application not checking if explorer.exe is running before performing certain actions. This can be exploited to launch iexplore.exe with SYSTEM privileges by terminating explorer.exe and then use the "Test Your Firewall" functionality. Affected is My Firewall Plus version 5.0 Build 1119.
| | Homepage: | http://secunia.com/ | | File Size: | 4463 | | Related CVE(s): | CVE-2006-3973 | | Last Modified: | Nov 21 21:31:30 2006 |
| MD5 Checksum: | 9faab7bc2bb1515a63b18a8e102f8af2 |
|
| /// File Name: |
glsa-200611-16.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200611-16 - Miloslav Trmac from Red Hat discovered a buffer overflow in the readline() function of texindex.c. The readline() function is called by the texi2dvi and texindex commands. Versions less than 4.8-r5 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2523 | | Last Modified: | Nov 21 21:28:36 2006 |
| MD5 Checksum: | 289a1002c49e7c82725e0f9bff9ed3d0 |
|
| /// File Name: |
glsa-200611-15.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200611-15 - qmailAdmin fails to properly handle the PATH_INFO variable in qmailadmin.c. The PATH_INFO is a standard CGI environment variable filled with user supplied data. Versions less than 1.2.10 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2636 | | Last Modified: | Nov 21 21:28:04 2006 |
| MD5 Checksum: | 8a37e12e6d0589fa9a69f9da509f73dd |
|
|
|
|
|