Section: .. / 0606-advisories /
| /// File Name: |
glsa-200606-23.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200606-23 - Ludwig Nussel discovered that KDM could be tricked into allowing users to read files that would otherwise not be readable. Versions less than 3.5.2-r2 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3375 | | Last Modified: | Jun 27 07:26:08 2006 |
| MD5 Checksum: | c265b9e8255d58fcf4ef9fe651b52435 |
|
| /// File Name: |
SYMSA-2006-005.txt |
Description:
|
Symantec Vulnerability Research Security Advisory SYMSA-2006-005 - The CAPTCHA component for ASP.NET provided by Lanap may be completely bypassed, thus undermining the security benefit of the CAPTCHA technology.
| | Author: | Symantec | | Homepage: | http://www.symantec.com/research | | File Size: | 4316 | | Related CVE(s): | CVE-2006-2918 | | Last Modified: | Jun 27 07:26:00 2006 |
| MD5 Checksum: | d02ce78917a07b52dd26ab7a7e107e39 |
|
| /// File Name: |
glsa-200606-22.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200606-22 - artswrapper fails to properly check whether it can drop privileges accordingly if setuid() fails due to a user exceeding assigned resource limits. Versions less than 3.5.2-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2685 | | Last Modified: | Jun 27 07:24:42 2006 |
| MD5 Checksum: | 1c2d619b57c35bedfa4e8cbc2a3f3ac2 |
|
| /// File Name: |
VMSA-20060621-01.txt |
Description:
|
An integer overflow vulnerability exists in the Opera Web Browser due to the improper handling of JPEG files. Versions 8.54 and below are affected.
| | Author: | Chris Ries | | Homepage: | http://www.vigilantminds.com/ | | File Size: | 982 | | Last Modified: | Jun 27 07:18:44 2006 |
| MD5 Checksum: | c713f413ef158efe2249dbfbcac9297d |
|
| /// File Name: |
msie6.txt |
Description:
|
Microsoft Internet Explorer is susceptible to a web filter bypass flaw using ASCII.
| | Author: | Kurt Huwig | | Homepage: | http://www.iku-ag.de/ | | File Size: | 2652 | | Last Modified: | Jun 27 07:00:37 2006 |
| MD5 Checksum: | 7807e62425dc55a9170c55207a61ec4e |
|
| /// File Name: |
MDKSA-2006-110.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-110 - A vulnerability was discovered in GnuPG 1.4.3 and 1.9.20 (and earlier) that could allow a remote attacker to cause gpg to crash and possibly overwrite memory via a message packet with a large length.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 3758 | | Related CVE(s): | CVE-2006-3082 | | Last Modified: | Jun 27 06:56:53 2006 |
| MD5 Checksum: | a41096f66d2ecdf4ca9b539ac52b275f |
|
| /// File Name: |
MDKSA-2006-109.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-109 - A boundary checking error was discovered in the wv2 library, used for accessing Microsoft Word documents. This error can lead to an integer overflow induced by processing certain Word files.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 3171 | | Related CVE(s): | CVE-2006-2197 | | Last Modified: | Jun 27 06:56:04 2006 |
| MD5 Checksum: | f6f11ec92fc74217c7e33e6345a56b81 |
|
| /// File Name: |
MDKSA-2006-108.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-108 - A buffer overflow in the HTTP Plugin (xineplug_inp_http.so) for xine-lib 1.1.1 allows remote attackers to cause a denial of service (application crash) via a long reply from an HTTP server, as demonstrated using gxine 0.5.6.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 8580 | | Related CVE(s): | CVE-2006-2802 | | Last Modified: | Jun 27 06:55:24 2006 |
| MD5 Checksum: | b151e275e704e65bb5aca272e1b46815 |
|
| /// File Name: |
MDKSA-2006-107.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-107 - A vulnerability in the artswrapper program, when installed setuid root, could enable a local user to elevate their privileges to that of root. By default, Mandriva Linux does not ship artswrapper setuid root, however if a user or system administrator enables the setuid bit on artswrapper, their system could be at risk.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 3641 | | Related CVE(s): | CVE-2006-2916 | | Last Modified: | Jun 27 06:54:13 2006 |
| MD5 Checksum: | b6a0653e9458df60ecc606bf7371ce94 |
|
| /// File Name: |
UPB196.txt |
Description:
|
Ultimate PHP Board version 1.9.6 GOLD suffers from multiple vulnerabilities including remote code execution, insecure session management, and directory traversal flaws.
| | Author: | mbrooks | | Homepage: | http://www.kliconsulting.com/ | | Related Exploit: | UPB_0-day.txt | | File Size: | 20097 | | Last Modified: | Jun 27 06:36:36 2006 |
| MD5 Checksum: | 3f89d266dce01a2c37860ccb88b17891 |
|
| /// File Name: |
vuln-rnd.txt |
Description:
|
Malicious Flash files with explicit java scripts can be embedded within Excel spreadsheets using a "Shockwave Flash Object" which can be made to run once the file is opened by the user.
| | Author: | Debasis Mohanty | | Homepage: | http://www.hackingspirits.com | | File Size: | 2987 | | Last Modified: | Jun 27 06:32:26 2006 |
| MD5 Checksum: | 21cd8db536d702939f5c714b8569730b |
|
| /// File Name: |
major_rls18.txt |
Description:
|
Ralf Image Gallery versions 0.7.4 and below suffer from multiple cross site scripting, remote file inclusion, and directory traversal vulnerabilities.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 3750 | | Last Modified: | Jun 27 06:30:38 2006 |
| MD5 Checksum: | 255d8563d0cc16073bc91bee46fe6e7a |
|
| /// File Name: |
SGA-0001.txt |
Description:
|
SpySweeper versions 4.5.9 build 709 and below suffer from multiple bypass and integrity flaws.
| | Homepage: | http://www.sentinel.gr/ | | File Size: | 4907 | | Last Modified: | Jun 27 06:19:03 2006 |
| MD5 Checksum: | ff9e9a60441c57f45e8b8aec74097c8c |
|
| /// File Name: |
TRSA00001.txt |
Description:
|
This advisory describes a vulnerability that affects Toshiba Bluetooth Host Stack implementations up to version 4.0.23. A vulnerability has been discovered that enables the attacker to remotely perform a denial of service (DoS) against the host.
| | Author: | Martin Herfurt | | Homepage: | http://trifinite.org/ | | File Size: | 3453 | | Last Modified: | Jun 27 06:14:46 2006 |
| MD5 Checksum: | 0ccc70f7e9778ed28afed74c45838143 |
|
| /// File Name: |
glsa-200606-21.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200606-21 - Several vulnerabilities were found and fixed in Mozilla Thunderbird. For details, please consult the references below. Versions less than 1.5.0.4 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 4205 | | Last Modified: | Jun 27 05:42:34 2006 |
| MD5 Checksum: | 986d8a7013f4e8c27d3b40c08a3c82ab |
|
| /// File Name: |
sa20844.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for wv2. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/20844/ | | File Size: | 1996 | | Last Modified: | Jun 27 00:21:41 2006 |
| MD5 Checksum: | bc8861cb4a29b967ce0157db3f88f78f |
|
| /// File Name: |
sa20839.txt |
Description:
|
Secunia Security Advisory - luny has reported some vulnerabilities in Custom dating biz dating script, which can be exploited by malicious people to conduct cross-site scripting and script insertion attacks.
| | Homepage: | http://secunia.com/advisories/20839/ | | File Size: | 2667 | | Last Modified: | Jun 27 00:21:41 2006 |
| MD5 Checksum: | 88e2a4ff2a82a731f022f7a59f17efe0 |
|
| /// File Name: |
sa20835.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Sun Java System Application Server, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/20835/ | | File Size: | 3900 | | Last Modified: | Jun 27 00:21:41 2006 |
| MD5 Checksum: | be79d07cbab812ae2be89aa1daec1c25 |
|
| /// File Name: |
sa20834.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for pinball. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/20834/ | | File Size: | 6598 | | Last Modified: | Jun 27 00:21:41 2006 |
| MD5 Checksum: | 6a579133d5366aca7a173e3c58f04d78 |
|
| /// File Name: |
sa20833.txt |
Description:
|
Secunia Security Advisory - Ellipsis Security has reported some vulnerabilities and a weakness in Dating Agent PRO, which can be exploited by malicious people to disclose system information and conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/20833/ | | File Size: | 2579 | | Last Modified: | Jun 27 00:21:41 2006 |
| MD5 Checksum: | 110bbe4ea9cb770c8d50ac963635fc8f |
|
| /// File Name: |
sa20832.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for MySQL. This fixes a vulnerability, which can be exploited by malicious users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/20832/ | | File Size: | 3645 | | Last Modified: | Jun 27 00:21:41 2006 |
| MD5 Checksum: | a9588c70d4cab1576edaabb0995586f6 |
|
| /// File Name: |
sa20831.txt |
Description:
|
Secunia Security Advisory - rPath has released an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to disclose potentially sensitive information and cause a DoS (Denial of Service), and by malicious people to cause a DoS.
| | Homepage: | http://secunia.com/advisories/20831/ | | File Size: | 2134 | | Last Modified: | Jun 27 00:21:41 2006 |
| MD5 Checksum: | 88650a4edc989536139238ae2acb137a |
|
| /// File Name: |
sa20830.txt |
Description:
|
Secunia Security Advisory - Michael White and Graham Murphy have reported a weakness in Lanap BotDetect ASP.NET, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/20830/ | | File Size: | 2247 | | Last Modified: | Jun 27 00:21:41 2006 |
| MD5 Checksum: | 9c8dd7dc04453dc605981f1d1efc46d7 |
|
| /// File Name: |
sa20829.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for gnupg. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/20829/ | | File Size: | 2716 | | Last Modified: | Jun 27 00:21:41 2006 |
| MD5 Checksum: | 47e9c7a6c112f5725ec917571b92661e |
|
|
|
|
|