Section: .. / 0607-advisories /
| /// File Name: |
kailleraex.txt |
Description:
|
Kaillera versions 0.86 and below suffer from a buffer overflow that can lead to arbitrary code execution.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related Exploit: | kailleraex.zip | | File Size: | 4754 | | Last Modified: | Jul 9 08:03:51 2006 |
| MD5 Checksum: | 4027d4b09d4b9f96ea680299769eb21d |
|
| /// File Name: |
sparklet094.txt |
Description:
|
Sparklet versions 0.9.4try3 and below suffer from a format string vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | File Size: | 1972 | | Last Modified: | Jul 9 07:59:14 2006 |
| MD5 Checksum: | 57692b1f37a10774a9780c1fb9b8a8e2 |
|
| /// File Name: |
dsa-1104-2.txt |
Description:
|
Debian Security Advisory 1104-2 - Loading malformed XML documents can cause buffer overflows in OpenOffice.org, a free office suite, and cause a denial of service or execute arbitrary code. It turned out that the correction in DSA 1104-1 was not sufficient, hence, another update.
| | Homepage: | http://www.debian.org/security | | File Size: | 14405 | | Related CVE(s): | CVE-2006-3117 | | Last Modified: | Jul 9 07:43:47 2006 |
| MD5 Checksum: | 75ba8c067f5bea8c274442d86089828d |
|
| /// File Name: |
USN-310-1.txt |
Description:
|
Ubuntu Security Notice 310-1: Marcus Meissner discovered that the winbind plugin of pppd does not check the result of the setuid() call. On systems that configure PAM limits for the maximum number of user processes and enable the winbind plugin, a local attacker could exploit this to execute the winbind NTLM authentication helper as root. Depending on the local winbind configuration, this could potentially lead to privilege escalation.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 5538 | | Related CVE(s): | CVE-2006-2194 | | Last Modified: | Jul 9 07:39:16 2006 |
| MD5 Checksum: | ff48acb46e59a8b15cef35ff23e150f3 |
|
| /// File Name: |
USN-309-1.txt |
Description:
|
Ubuntu Security Notice 309-1: Several buffer overflows were found in libmms. By tricking a user into opening a specially crafted remote multimedia stream with an application using libmms, a remote attacker could overwrite an arbitrary memory portion with zeros, thereby crashing the program.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 2937 | | Related CVE(s): | CVE-2006-2200 | | Last Modified: | Jul 9 07:38:33 2006 |
| MD5 Checksum: | e188e8fafa939589575c697a405f1872 |
|
| /// File Name: |
USN-308-1.txt |
Description:
|
Ubuntu Security Notice 308-1: Ilja van Sprundel discovered that passwd, when called with the -f, -g, or -s option, did not check the result of the setuid() call. On systems that configure PAM limits for the maximum number of user processes, a local attacker could exploit this to execute chfn, gpasswd, or chsh with root privileges.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 6900 | | Last Modified: | Jul 9 07:37:49 2006 |
| MD5 Checksum: | 4af99ea7491c4cacf0261dc435622ab4 |
|
| /// File Name: |
MDKSA-2006-116.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-116 - A ridiculous number of vulnerabilities were discovered and corrected in the Linux 2.6 kernel.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 8263 | | Related CVE(s): | CVE-2005-3359, CVE-2005-3784, CVE-2005-3858, CVE-2005-4618, CVE-2006-0096, CVE-2006-0555, CVE-2006-1242, CVE-2006-1525, CVE-2006-1528, CVE-2006-1855, CVE-2006-1856, CVE-2006-2071, CVE-2006-2271, CVE-2006-2272, CVE-2006-2444 | | Last Modified: | Jul 9 07:26:05 2006 |
| MD5 Checksum: | 12b37eb97cf938d9167829010d2fbdb8 |
|
| /// File Name: |
phpSysInfo-file.txt |
Description:
|
phpSysInfo version 2.5.1 has a remote flaw that allows for an attacker to verify if a file exists on the underlying system.
| | Author: | Micheal Turner | | File Size: | 1477 | | Last Modified: | Jul 9 07:18:38 2006 |
| MD5 Checksum: | 5885aa5ecc3628f74cb57c3b610c999f |
|
| /// File Name: |
touchControl.txt |
Description:
|
Touch Control is susceptible to a remote file execution vulnerability.
| | Author: | GYU TAE PARK | | File Size: | 1557 | | Last Modified: | Jul 9 07:16:01 2006 |
| MD5 Checksum: | 5cfa86d593dbbb6b14b4b2ca1a5d8f27 |
|
| /// File Name: |
weURL.txt |
Description:
|
When Windows Explorer (explorer.exe) parses a malformed .url file it is susceptible to a denial of service.
| | Author: | nanika | | Homepage: | http://hitcon.org/ | | File Size: | 774 | | Last Modified: | Jul 9 07:14:41 2006 |
| MD5 Checksum: | f8c03051711fd9d568d0430b9b24b3ca |
|
| /// File Name: |
google-xss.txt |
Description:
|
Google is vulnerable to a cross site scripting attack.
| | Author: | RSnake | | Homepage: | http://ha.ckers.org/ | | File Size: | 875 | | Last Modified: | Jul 9 07:13:14 2006 |
| MD5 Checksum: | 4ab9358f627fde8aa48df16ef1ea11d3 |
|
| /// File Name: |
SUSE-SA-2006-041.txt |
Description:
|
SUSE Security Announcement SUSE-SA:2006:041 - Various unspecified security problems have been fixed in Acrobat Reader version 7.0.8.
| | Homepage: | http://www.suse.com | | File Size: | 14611 | | Related CVE(s): | CVE-2006-3093 | | Last Modified: | Jul 9 06:54:37 2006 |
| MD5 Checksum: | 0f00c4291cdbc364933a24a0ab6ee735 |
|
| /// File Name: |
scip-2352.txt |
Description:
|
F5 FirePass 4100 versions below 6.x suffer from multiple cross site scripting flaws.
| | Author: | Marc Ruef | | Homepage: | http://www.scip.ch/ | | File Size: | 3052 | | Last Modified: | Jul 9 06:49:53 2006 |
| MD5 Checksum: | 13fae8fd01d2859c11fe3abf8cdac74a |
|
| /// File Name: |
scip-2351.txt |
Description:
|
Kyberna AG ky2help is susceptible to SQL injection attacks.
| | Author: | Marc Ruef | | Homepage: | http://www.scip.ch/ | | File Size: | 3524 | | Last Modified: | Jul 9 06:48:57 2006 |
| MD5 Checksum: | c2ac86924ebbf059ddc9a8f66ef78a8b |
|
| /// File Name: |
glsa-200607-01.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200607-01 - In httpdget.c, a variable is assigned to the heap, and is supposed to receive a smaller allocation. As this variable was not terminated properly, strncpy() will overwrite the data assigned next in memory. Versions less than 0.59s-r11 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2428 | | Last Modified: | Jul 9 06:06:51 2006 |
| MD5 Checksum: | 6dcd93eed9fdb834f990c7b38ad6c91a |
|
| /// File Name: |
SUSE-SA-2006-040.txt |
Description:
|
SUSE Security Announcement SUSE-SA:2006:040 - Multiple vulnerabilities have been discovered in OpenOffice. A security vulnerability in OpenOffice.org may make it possible to inject basic code into documents which is executed upon loading of the document. A security vulnerability related to OpenOffice.org documents may allow certain Java applets to break through the "sandbox" and therefore have full access to system resources with current user privileges. A buffer overflow in the XML UTF8 converter allows for a value to be written to an arbitrary location in memory. This may lead to command execution in the context of the current user.
| | Homepage: | http://www.suse.com | | File Size: | 55165 | | Related CVE(s): | CVE-2006-2198, CVE-2006-2199, CVE-2006-3117 | | Last Modified: | Jul 9 06:05:02 2006 |
| MD5 Checksum: | a364f0c11b9b8ec2bab518181300a6a4 |
|
| /// File Name: |
SUSE-SA-2006-039.txt |
Description:
|
SUSE Security Announcement SUSE-SA:2006:039 - The KDE Display Manager KDM stores the type of the previously used session in the user's home directory. By using a symlink a local attacker could trick kdm into also storing content of files that are normally not accessible by users, like for instance /etc/shadow.
| | Homepage: | http://www.suse.com | | File Size: | 14404 | | Related CVE(s): | CVE-2006-2449 | | Last Modified: | Jul 9 06:03:08 2006 |
| MD5 Checksum: | afd0358626f0526244b53ab6e7aae08b |
|
| /// File Name: |
SUSE-SA-2006-038.txt |
Description:
|
SUSE Security Announcement SUSE-SA:2006:038 - Multiple flaws have been addressed in Opera. An integer overflow vulnerability exists in the Opera Web Browser due to the improper handling of JPEG files. Also, Opera did not reset the SSL security bar after displaying a download dialog from an SSL-enabled website, which allows remote attackers to spoof a trusted SSL certificate from an untrusted website and facilitates phishing attacks.
| | Homepage: | http://www.suse.com | | File Size: | 14513 | | Related CVE(s): | CVE-2006-3198, CVE-2006-3331 | | Last Modified: | Jul 9 06:01:46 2006 |
| MD5 Checksum: | 58c188bfe06b8200d76e994a6e6dbd2d |
|
| /// File Name: |
excel-ohday.txt |
Description:
|
Excel 2000/XP/2003 suffers from a vulnerability in repair mode.
| | Author: | nanika | | Related Exploit: | Nanika.tgz | | File Size: | 361 | | Last Modified: | Jul 9 05:48:06 2006 |
| MD5 Checksum: | 95a0ab6001b835adecb1a360195bcc86 |
|
| /// File Name: |
TK8Safe305.txt |
Description:
|
TK8 Safe version 3.0.5 suffers from password management and denial of service issues.
| | Author: | Michael Kemp | | Homepage: | http://www.clappymonkey.com | | File Size: | 1932 | | Last Modified: | Jul 9 05:22:01 2006 |
| MD5 Checksum: | 0bb60ab95476cad993623ef955904cb8 |
|
| /// File Name: |
major_rls19.txt |
Description:
|
AutoRank versions 5.01 and below suffer from multiple cross site scripting and cookie disclosure flaws.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 2298 | | Last Modified: | Jul 9 05:16:25 2006 |
| MD5 Checksum: | eb36fb57d9dccbb2969b580ed1584a1d |
|
| /// File Name: |
phpfusionXSS-IE.txt |
Description:
|
Using a known flaw with execution in Internet Explorer, you can upload a malicious GIF file to PHP-Fusion to conduct cross site scripting attacks.
| | Author: | ZeberuS, Redworm | | File Size: | 822 | | Last Modified: | Jul 9 05:12:05 2006 |
| MD5 Checksum: | d6e1f3e0904bd86d87c141371900fda5 |
|
| /// File Name: |
sa19456.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in jetAudio, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/19456/ | | File Size: | 2556 | | Last Modified: | Jul 8 05:35:52 2006 |
| MD5 Checksum: | 1a915e0a54725f718fa724c068e166ec |
|
| /// File Name: |
sa20268.txt |
Description:
|
Secunia Security Advisory - Nanika has reported a vulnerability in Microsoft Excel, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/20268/ | | File Size: | 2819 | | Last Modified: | Jul 8 05:35:52 2006 |
| MD5 Checksum: | 51c83c75df578d20c2ab9f723dfc6318 |
|
| /// File Name: |
sa20920.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in the Form_mail module for Drupal, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/20920/ | | File Size: | 2206 | | Last Modified: | Jul 8 05:35:52 2006 |
| MD5 Checksum: | f9e0fd8c0197c5206e690b9ac5741407 |
|
|
|
|
|