Section: .. / 0610-advisories /
| /// File Name: |
dsa-1199-1.txt |
Description:
|
Debian Security Advisory 1199-1: Several vulnerabilities have been identified in webmin, a web-based administration toolkit.
| | Homepage: | http://www.debian.org/security | | File Size: | 3865 | | Last Modified: | Oct 25 18:04:45 2006 |
| MD5 Checksum: | c3d7a82818e6f37c028628b8e137d92a |
|
| /// File Name: |
dsa-1200-1.txt |
Description:
|
Debian Security Advisory 1200-1: An integer overflow has been found in the pixmap handling routines in the Qt GUI libraries. This could allow an attacker to cause a denial of service and possibly execute arbitrary code by providing a specially crafted image file and inducing the victim to view it in an application based on Qt.
| | Homepage: | http://www.debian.org/security | | File Size: | 44204 | | Last Modified: | Oct 30 18:27:02 2006 |
| MD5 Checksum: | 4c4178b2c54028d3a9f92810258b8f98 |
|
| /// File Name: |
DSL-G624T.txt |
Description:
|
The D-Link DSL-G624T ADSL Router is vulnerable to several security issues including directory traversal, and cross site scripting.
| | Author: | Jose Ramon Palanco | | Homepage: | http://www.eazel.es | | File Size: | 1044 | | Last Modified: | Oct 25 17:54:10 2006 |
| MD5 Checksum: | d02e09385660524b5dd1b473837acc44 |
|
| /// File Name: |
ECHO_ADV_55-2006.txt |
Description:
|
19:21:12 2006 [ECHO_ADV_55$2006] - Phpmybibli 2.1 and prior Multiple Remote File Inclusion Vulnerabilities.
| | Homepage: | http://advisories.echo.or.id/ | | File Size: | 3292 | | Last Modified: | Oct 20 |
| MD5 Checksum: | 700c7f4752e81f6af4ecdbb37d79a94e |
|
| /// File Name: |
ECHO_ADV_56_2006.txt |
Description:
|
19:52:42 2006 [ECHO_ADV_46$2006] P-Book 1.17 and prior (pb_lang) Remote File Inclusion: Input passed to the "pb_lang" parameter in admin.php is not properly verified before being used. This can be exploited to execute arbitrary PHP code by including files from local or external resources.
| | Author: | Matdhule | | Homepage: | http://advisories.echo.or.id | | File Size: | 2150 | | Last Modified: | Oct 20 |
| MD5 Checksum: | 2d3b3e1a5307935ff571956751eceff9 |
|
| /// File Name: |
Epolicy3.5.0.txt |
Description:
|
McAfee ePolicy Orchestrator 3.5.0 contains a pre-authentication buffer overflow vulnerability in NAISERV.exe. Protection Pilot 1.1.0 uses the same HTTP server, and is also vulnerable.
| | Author: | muts | | Homepage: | http://www.remote-exploit.org | | File Size: | 1528 | | Last Modified: | Oct 4 17:29:59 2006 |
| MD5 Checksum: | 9958f65624dd9081bf74f16a1fdbd061 |
|
| /// File Name: |
EXPL-A-2006-005-shttpd.txt |
Description:
|
EXPL-A-2006-005 exploitlabs.com Retro Advisory 002 - SHTTPD: SHTTPD is vulnerable to an overly long GET request.
| | Author: | Donnie Werner | | Homepage: | http://exploitlabs.com | | File Size: | 1544 | | Last Modified: | Oct 20 19:55:10 2006 |
| MD5 Checksum: | d3ac9730dc6805f0c45cac59d422fccf |
|
| /// File Name: |
firefox-2.0.xss.txt |
Description:
|
Possible Firefox 2.0 Iframe cross site scripting vulnerability.
| | Author: | auto113922 | | File Size: | 530 | | Last Modified: | Oct 27 16:39:03 2006 |
| MD5 Checksum: | b14e97ed9699d198d2293d941b99ac74 |
|
| /// File Name: |
FON.txt |
Description:
|
Various vulnerabilities exist in the FON free wifi service.
| | Author: | Anonymous | | File Size: | 1622 | | Last Modified: | Oct 4 17:04:51 2006 |
| MD5 Checksum: | 2e9289fc1eccf99bca80bc79a6667d28 |
|
| /// File Name: |
glsa-2006010-03.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-03 - Tavis Ormandy of the Google Security Team discovered a static buffer underflow in ncompress. Versions less than 4.2.4.1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2566 | | Last Modified: | Oct 12 00:05:40 2006 |
| MD5 Checksum: | 6af5650e4f8e6b6edbd58c6cd9dbe9d9 |
|
| /// File Name: |
glsa-200609-17.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-17 - Tavis Ormandy of the Google Security Team discovered a Denial of Service vulnerability in the SSH protocol version 1 CRC compensation attack detector. Versions less than 4.3_p2-r5 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3051 | | Last Modified: | Oct 3 20:12:00 2006 |
| MD5 Checksum: | 18924756feb32a7f9b20fb35948b47da |
|
| /// File Name: |
glsa-200609-18.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-18 - Opera makes use of OpenSSL, which fails to correctly verify PKCS #1 v1.5 RSA signatures signed by a key with exponent 3. Some CAs in Opera's list of trusted signers are using root certificates with exponent 3. Versions less than 9.0.2 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3390 | | Last Modified: | Oct 3 20:43:25 2006 |
| MD5 Checksum: | 7e6e470a268d9c443138b51bfad84805 |
|
| /// File Name: |
glsa-200609-19.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-19 - A number of vulnerabilities were found and fixed in Mozilla Firefox. For details please consult the references below. Versions less than 1.5.0.7 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 4738 | | Last Modified: | Oct 3 20:43:37 2006 |
| MD5 Checksum: | 945aad1f3ccc1f3d68ae283e53f76373 |
|
| /// File Name: |
glsa-200609-20.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200609-20 - Input validation flaws have been discovered in the image handling of fetch.php if ImageMagick is used, which is not the default method. Versions less than 20060309e are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3557 | | Last Modified: | Oct 3 20:43:44 2006 |
| MD5 Checksum: | 380559f5965e8c5fa9096b3f80993b26 |
|
| /// File Name: |
glsa-200610-01.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-01 - A number of vulnerabilities have been found and fixed in Mozilla Thunderbird. For details please consult the references below. Versions less than 1.5.0.7 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3659 | | Last Modified: | Oct 4 18:41:23 2006 |
| MD5 Checksum: | e8297f539968d253bc87c9ad5334cc33 |
|
| /// File Name: |
glsa-200610-02.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-02 - The Adobe Flash Player contains multiple unspecified vulnerabilities. Versions less than 7.0.68 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2884 | | Last Modified: | Oct 4 18:41:15 2006 |
| MD5 Checksum: | 7ec2188c7ccf5bc14c382877fbb156cf |
|
| /// File Name: |
glsa-200610-04.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-04 - A number of vulnerabilities have been found and fixed in Seamonkey. For details please consult the references below. Versions less than 1.0.5 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3457 | | Last Modified: | Oct 17 17:51:32 2006 |
| MD5 Checksum: | 799a31b63cdee0e6d7ca261f09bf5890 |
|
| /// File Name: |
glsa-200610-05.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-05 - Lionel Elie Mamane discovered an error in c2faxrecv, which doesn't properly sanitize TSI strings when handling incoming calls. Versions less than 01.03.00.99.300.3-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2573 | | Last Modified: | Oct 20 18:34:12 2006 |
| MD5 Checksum: | ec58ca0ba82833e584bf2c89d8286c98 |
|
| /// File Name: |
glsa-200610-06.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-06 - Daniel Bleichenbacher discovered that it might be possible to forge signatures signed by RSA keys with the exponent of 3. This affects a number of RSA signature implementations, including Mozilla's NSS. Versions less than 3.11.3 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3047 | | Last Modified: | Oct 20 18:34:17 2006 |
| MD5 Checksum: | bba6103459c093881e3c7e32e4612d05 |
|
| /// File Name: |
glsa-200610-07.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-07 - Benjamin C. Wiley Sittler discovered a buffer overflow in Python's repr() function when handling UTF-32/UCS-4 encoded strings. Versions less than 2.4.3-r4 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2693 | | Last Modified: | Oct 20 18:34:22 2006 |
| MD5 Checksum: | ef2a498557c585d25f00a732c396444c |
|
| /// File Name: |
glsa-200610-08.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-08 - Unchecked use of strcpy() and *scanf() leads to several buffer overflows. Versions less than 15.5.20060927 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2451 | | Last Modified: | Oct 20 21:00:47 2006 |
| MD5 Checksum: | f2c795fe4a21e3f5c2ebd13861246a6f |
|
| /// File Name: |
glsa-200610-09.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-09 - Luigi Auriemma reported a possible buffer overflow in the MBHttp::Download function of lib/http.cpp as well as several possible buffer overflows in lib/rdfparse.c. Versions less than 2.1.4 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3584 | | Last Modified: | Oct 25 17:37:23 2006 |
| MD5 Checksum: | aac703eb01315528b23be385c26cb35c |
|
| /// File Name: |
glsa-200610-10.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-10 - Damian Put and an anonymous researcher reported a potential heap-based buffer overflow vulnerability in rebuildpe.c responsible for the rebuilding of an unpacked PE file, and a possible crash in chmunpack.c in the CHM unpacker. Versions less than 0.88.5 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3213 | | Last Modified: | Oct 25 17:37:31 2006 |
| MD5 Checksum: | bcc904a8722893eb3c5f37b7c914cbe0 |
|
| /// File Name: |
glsa-200610-11.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-11 - Tavis Ormandy and Will Drewry, both of the Google Security Team, discovered that the SSL_get_shared_ciphers() function contains a buffer overflow vulnerability, and that the SSLv2 client code contains a flaw leading to a crash. Additionally Dr. Stephen N. Henson found that the ASN.1 handler contains two Denial of Service vulnerabilities: while parsing an invalid ASN.1 structure and while handling certain types of public key. Versions less than 0.9.8d are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 4029 | | Last Modified: | Oct 25 17:37:36 2006 |
| MD5 Checksum: | 882d2870cfacb99a4ffcdb62f9f9efd3 |
|
|
|
|
|