Section: .. / 0607-advisories /
| /// File Name: |
sa20999.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in .NET Framework, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/20999/ | | File Size: | 2339 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | 6ad756e28fe0e09270ea681298c6c456 |
|
| /// File Name: |
sa21000.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for freetype. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise applications using the library.
| | Homepage: | http://secunia.com/advisories/21000/ | | File Size: | 2146 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | 90e8301e2ff5730c31d58aaea0cfeec9 |
|
| /// File Name: |
sa21001.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for postgresql. This fixes some vulnerabilities, which potentially can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/21001/ | | File Size: | 2099 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | 2fe296a9b9a78ca2b3193efcdb8ef7ef |
|
| /// File Name: |
sa21002.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for tiff. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/21002/ | | File Size: | 2121 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | dc5f5216e5afcec51a9367658f761c26 |
|
| /// File Name: |
sa21003.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in the M-series, T-series, and J-Series routers, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/21003/ | | File Size: | 2621 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | 7cdd7cf0905a5ca0c3283337258f4821 |
|
| /// File Name: |
sa21005.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for shoutcast-server-bin. This fixes some vulnerabilities, which can be exploited by malicious users to conduct script insertion attacks or to gain knowledge of sensitive information.
| | Homepage: | http://secunia.com/advisories/21005/ | | File Size: | 2204 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | ed16e03addc0eac58c8f7fa02f104ae6 |
|
| /// File Name: |
sa21006.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Internet Information Services, which can be exploited by malicious users to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/21006/ | | File Size: | 3323 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | 745bcf1ad74fb8a839b21af7f640f61b |
|
| /// File Name: |
sa21007.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to expose sensitive information and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/21007/ | | File Size: | 4178 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | 1249603c98c53992a64aafed768858c9 |
|
| /// File Name: |
sa21008.txt |
Description:
|
Secunia Security Advisory - Ellipsis Security has discovered some vulnerabilities in ATutor, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/21008/ | | File Size: | 2412 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | c5ae6cbf6d2caddb94bb23ce149ab50b |
|
| /// File Name: |
sa21010.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/21010/ | | File Size: | 3896 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | fbbd2ef86abad9181e5fdba0c1f05feb |
|
| /// File Name: |
sa21012.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Microsoft Office, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/21012/ | | File Size: | 5586 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | 89096cf97d3d3ceb46651a9132411860 |
|
| /// File Name: |
sa21013.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in Microsoft Office, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/21013/ | | File Size: | 4181 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | 5e626c54b32f9cf1d9b70fbc5b825f11 |
|
| /// File Name: |
sa21015.txt |
Description:
|
Secunia Security Advisory - Ahmad Maulana has discovered a vulnerability in the PccookBook component for Mambo, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/21015/ | | File Size: | 2534 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | 28b5af28293d82166ebfb08b20fe97be |
|
| /// File Name: |
sa21017.txt |
Description:
|
Secunia Security Advisory - Paisterist has discovered a vulnerability in Graffiti Forums, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/21017/ | | File Size: | 2349 | | Last Modified: | Jul 12 03:20:23 2006 |
| MD5 Checksum: | 0bde69ca12667331d79e1ee1a0536dc2 |
|
| /// File Name: |
MDKSA-2006-118.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-118 - OpenOffice.org versions 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-complicit attackers to conduct unauthorized activities via an OpenOffice document with a malicious BASIC macro, which is executed without prompting the user. An unspecified vulnerability in Java Applets in OpenOffice.org versions 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-complicit attackers to escape the Java sandbox and conduct unauthorized activities via certain applets in OpenOffice documents. Heap-based buffer overflow in OpenOffice.org versions 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-complicit attackers to execute arbitrary code via a crafted OpenOffice XML document that is not properly handled by (1) Calc, (2) Draw, (3) Impress, (4) Math, or (5) Writer, aka "File Format / Buffer Overflow Vulnerability."
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 24019 | | Related CVE(s): | CVE-2006-2198, CVE-2006-2199, CVE-2006-3117 | | Last Modified: | Jul 9 08:54:54 2006 |
| MD5 Checksum: | c7d36c141e756d0ce80549bf0f5188b6 |
|
| /// File Name: |
hc-bugs.txt |
Description:
|
Hosting Controller version 6.1 Hotfix (versions 3.2 and below) suffer from flaws that allow an attacker the ability to gain reseller privileges and administrative privileges.
| | Author: | Soroush Dalili | | File Size: | 5452 | | Last Modified: | Jul 9 08:42:14 2006 |
| MD5 Checksum: | 211368bf13f6d3ee51d523e2203c598c |
|
| /// File Name: |
TSLSA-2006-0040.txt |
Description:
|
Trustix Secure Linux Security Advisory #2006-0040: SCTP conntrack (ip_conntrack_proto_sctp.c) in netfilter allows remote attackers to cause a denial of service (crash) via a packet without any chunks, which causes a variable to contain an invalid value that is later used to dereference a pointer.
| | Homepage: | http://http.trustix.org/pub/trustix/updates | | File Size: | 3326 | | Related CVE(s): | CVE-2006-2934 | | Last Modified: | Jul 9 08:37:38 2006 |
| MD5 Checksum: | 031b70073304c561aab8b4b83e2d9e99 |
|
| /// File Name: |
atutor153rc2.txt |
Description:
|
ATutor version 1.5.3RC2 is susceptible to cross site scripting flaws.
| | Homepage: | http://securitynews.ir/ | | File Size: | 984 | | Last Modified: | Jul 9 08:33:47 2006 |
| MD5 Checksum: | 361bf70f20ee01165137486aba58517e |
|
| /// File Name: |
dsa-1105-1.txt |
Description:
|
Debian Security Advisory 1105-1 - Federico L. Bossi Bonin discovered a buffer overflow in the HTTP Plugin in xine-lib, the xine video/media player library, that could allow a remote attacker to cause a denial of service.
| | Homepage: | http://www.debian.org/security | | File Size: | 11439 | | Related CVE(s): | CVE-2006-2802 | | Last Modified: | Jul 9 08:30:36 2006 |
| MD5 Checksum: | 62b2ab8347abf79b44050e61e860a55d |
|
| /// File Name: |
mcafeedos.txt |
Description:
|
McAfee VirusScan Enterprise version 8.0.0 suffers from a denial of service condition.
| | Author: | johndoe1529 | | File Size: | 615 | | Last Modified: | Jul 9 08:27:46 2006 |
| MD5 Checksum: | 2f940c17c55298161e6dc10fa555e384 |
|
| /// File Name: |
MDKSA-2006-117.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-117 - Stack-based buffer overflow in MiMMS 0.0.9 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via the (1) send_command, (2) string_utf16, (3) get_data, and (4) get_media_packet functions, and possibly other functions. Libmms uses the same vulnerable code.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 2668 | | Related CVE(s): | CVE-2006-2200 | | Last Modified: | Jul 9 08:26:32 2006 |
| MD5 Checksum: | 8ec33294d6cf6850a0299d78a84e5a94 |
|
| /// File Name: |
ZDI-06-021.txt |
Description:
|
The WebEx Downloader Plug-in suffers from a flaw that exists due to the lack of input validation on various ActiveX/Java control parameters and configuration directives. The "GpcUrlRoot" and "GpcIniFileName" ActiveX/Java control parameters allow an attacker to specify the location of a configuration file containing further control directives. This allows an attacker to transfer arbitrary files and executables to the target. The attacker can then leverage available configuration directives to execute the newly created executables thereby compromising the underlying system.
| | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 2926 | | Related CVE(s): | CVE-2006-3423 | | Last Modified: | Jul 9 08:25:25 2006 |
| MD5 Checksum: | a07490c7968278e740d27117f65e63d4 |
|
| /// File Name: |
micoDoS.txt |
Description:
|
MICO versions 2.3.12 and 2.3.12RC3 crash when contacted with wrong object key resulting in a denial of service condition.
| | Author: | tuergeist | | File Size: | 3022 | | Last Modified: | Jul 9 08:22:16 2006 |
| MD5 Checksum: | 9fac82e34ef6c3c690802e52b750ec0e |
|
| /// File Name: |
adplugbof.txt |
Description:
|
AdPlug versions 2.0 and below and suffer from multiple heap and buffer overflows. Also affected are CVS versions 04 and below.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related Exploit: | adplugbof.c | | File Size: | 7836 | | Last Modified: | Jul 9 08:06:09 2006 |
| MD5 Checksum: | 0f1925d6ce66efbef40d573bac333157 |
|
|
|
|
|