Section: .. / 0705-advisories /
| /// File Name: |
sa25118.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for xscreensaver. This fixes a weakness, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/25118/ | | File Size: | 3158 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | 80a16469e2a52d36cbd96c517d6e44c0 |
|
| /// File Name: |
sa25115.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for net-snmp. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/25115/ | | File Size: | 5813 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | 1ab369c7263f97ad02a652c7d00f5b26 |
|
| /// File Name: |
sa25113.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in LiveData Server, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/25113/ | | File Size: | 2421 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | 08ae2803b9038d7b70fd7397db3871cd |
|
| /// File Name: |
sa25112.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged a vulnerability in Avaya CMS and IR, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/25112/ | | File Size: | 2403 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | 114e14b47e427ad5397e0cd9089ccfc0 |
|
| /// File Name: |
sa25109.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Cisco PIX and ASA, which can be exploited by malicious people to bypass certain security restrictions or cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/25109/ | | File Size: | 3920 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | 07e0c6d3058e60fba505788d246a81fb |
|
| /// File Name: |
sa25105.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for xscreensaver. This fixes a weakness, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/25105/ | | File Size: | 2637 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | 0cebac23325a3cdf16bd7e4564865083 |
|
| /// File Name: |
sa25102.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for evolution. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/25102/ | | File Size: | 2170 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | b2e9cc143f9a01b7ada01314c2c8b9b7 |
|
| /// File Name: |
sa25101.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in HP ProCurve 9300m Series switches, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/25101/ | | File Size: | 2272 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | b4d11b9a8408d43b4cbed7d2f1a7c922 |
|
| /// File Name: |
sa25100.txt |
Description:
|
Secunia Security Advisory - shinnai has discovered some vulnerabilities in Word Viewer OCX, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/25100/ | | File Size: | 2471 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | 95d5ff3cf7d86033e67ccf627cd14d5d |
|
| /// File Name: |
sa25088.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in All In One Control Panel (AIOCP), which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/25088/ | | File Size: | 2371 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | d5052bfa866e86676f2a78141b5f9303 |
|
| /// File Name: |
sa25078.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for linux-2.6. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and gain escalated privileges, and by malicious people to cause a DoS.
| | Homepage: | http://secunia.com/advisories/25078/ | | File Size: | 28771 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | a8f4d86490d2039bdd611fa331527abf |
|
| /// File Name: |
sa25076.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in LiveData Protocol Server, which can be exploited by malicious people to cause a DoS (Denial of Service) or to potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/25076/ | | File Size: | 2705 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | a210d6f97890fef50961965b43a04693 |
|
| /// File Name: |
sa25065.txt |
Description:
|
Secunia Security Advisory - Alex Yamauchi has reported a weakness in XScreenSaver, which potentially can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/25065/ | | File Size: | 2196 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | a455d2027a63381535af7d4ae3107891 |
|
| /// File Name: |
sa25039.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Mambo, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/25039/ | | File Size: | 2395 | | Last Modified: | May 4 07:48:13 2007 |
| MD5 Checksum: | 9b327bb6f02e31b8ffff65c173ce6e6b |
|
| /// File Name: |
MDKSA-2007-097.txt |
Description:
|
Mandriva Linux Security Advisory - A problem with the way xscreensaver verifies user passwords was discovered by Alex Yamauchi. When a system is using remote authentication (i.e. LDAP) for logins, a local attacker able to cause a network outage on the system could cause xscreensaver to crash, which would unlock the screen.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 5445 | | Related CVE(s): | CVE-2007-1859 | | Last Modified: | May 3 09:59:37 2007 |
| MD5 Checksum: | c579a767dbc315aa96f2458392c2bc9a |
|
| /// File Name: |
TPTI-07-06.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Cerulean Studios Trillian Pro. Authentication is not required to exploit this vulnerability. The specific flaw exists in the Rendezvous / XMPP (Extensible Messaging and Presence Protocol) messaging subsystem. Trillian locates nearby users through the '_presence' mDNS (multicast DNS) service on UDP port 5353. Once a user is registered through mDNS, messaging is accomplished via XMPP over TCP port 5298.
| | Author: | Pedram Amini | | Homepage: | http://dvlabs.tippingpoint.com/ | | File Size: | 3610 | | Related CVE(s): | CVE-2007-2418 | | Last Modified: | May 3 09:57:40 2007 |
| MD5 Checksum: | fb5aa90835f24579cb43a1eb28debb6f |
|
| /// File Name: |
TPTI-07-05.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on systems with vulnerable installations of IBM Tivoli Provisioning Manager for OS Deployment. Authentication is not required to exploit this vulnerability. The specific flaws exist in the handling of HTTP requests to the rembo.exe service listening on TCP port 8080. Several components of an HTTP request can be modified to trigger buffer overflows. For example, by supplying an overly long filename an attacker is able to overflow a 150 byte stack buffer and subsequently execute arbitrary code.
| | Author: | Aaron Portnoy | | Homepage: | http://dvlabs.tippingpoint.com/ | | File Size: | 1774 | | Related CVE(s): | CVE-2007-1868 | | Last Modified: | May 3 09:55:07 2007 |
| MD5 Checksum: | 7bd8df9f7bd880f2635e97d774b131d4 |
|
| /// File Name: |
MDKSA-2007-096.txt |
Description:
|
Mandriva Linux Security Advisory - The BGP routing daemon in Quagga did not properly validate length values in NLRI attributes which could allow a remote attacker to cause a denial of service via a crafted UPDATE message that triggered an assertion error or out of bounds read.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 3037 | | Related CVE(s): | CVE-2007-1995 | | Last Modified: | May 3 09:51:36 2007 |
| MD5 Checksum: | 4ed3f6ce0eec54c446d6871f79e0f1a4 |
|
| /// File Name: |
05.02.07-1.txt |
Description:
|
iDefense Security Advisory 05.02.07 - Remote exploitation of a heap overflow vulnerability within LiveData's Protocol Server could allow an attacker to cause the service to crash or potentially execute arbitrary code with SYSTEM privileges. iDefense has confirmed the existence of this vulnerability in LiveData Protocol Server version 5.00.045 which was the current release as of September 13th 2006.
| | Homepage: | http://www.idefense.com/ | | File Size: | 3470 | | Last Modified: | May 3 09:46:53 2007 |
| MD5 Checksum: | 879424bc88729ddda6fed02139472d3d |
|
| /// File Name: |
cisco-sa-20070502-asa.txt |
Description:
|
Cisco Security Advisory - Multiple vulnerabilities exist in the Cisco Adaptive Security Appliance (ASA) and PIX security appliances. These vulnerabilities include two Lightweight Directory Access Protocol (LDAP) authentication bypass vulnerabilities and two denial of service (DoS) vulnerabilities.
| | Homepage: | http://www.cisco.com/ | | File Size: | 25655 | | Last Modified: | May 3 09:41:36 2007 |
| MD5 Checksum: | b1f9337bacb853a0e04956396719779d |
|
| /// File Name: |
mailcopa.txt |
Description:
|
MailCopa is susceptible to an arbitrary code execution vulnerability.
| | Homepage: | http://www.skilltube.com/ | | File Size: | 927 | | Last Modified: | May 3 09:39:54 2007 |
| MD5 Checksum: | 6bd12d554bd6cc17a77834232db95102 |
|
| /// File Name: |
USN-456-1.txt |
Description:
|
Ubuntu Security Notice 456-1 - A really old denial of service issue with net-snmp has finally been fixed.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 4990 | | Related CVE(s): | CVE-2005-4837 | | Last Modified: | May 3 09:30:36 2007 |
| MD5 Checksum: | bc9971d5d0c6d1a3bddd7be3a884236b |
|
| /// File Name: |
glsa-200705-05.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200705-05 - The Quagga development team reported a vulnerability in the BGP routing daemon when processing NLRI attributes inside UPDATE messages. Versions less than 0.98.6-r2 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2472 | | Related CVE(s): | CVE-2007-1995 | | Last Modified: | May 3 09:27:55 2007 |
| MD5 Checksum: | 1166885ce568c97bf515c1891c32ca97 |
|
| /// File Name: |
glsa-200705-04.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200705-04 - Alex Solvey discovered that the path_info variable used in file RegistryCooker.pm (mod_perl 2.x) or file PerlRun.pm (mod_perl 1.x), is not properly escaped before being processed. Versions less than 1.30 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2968 | | Related CVE(s): | CVE-2007-1349 | | Last Modified: | May 3 09:27:34 2007 |
| MD5 Checksum: | d909f5c5765cf831270fcc9dd517761d |
|
|
|
|
|