Section: .. / 0703-advisories /
| /// File Name: |
USN-444-1.txt |
Description:
|
Ubuntu Security Notice 444-1 - A stack overflow was discovered in OpenOffice.org's StarCalc parser. If a user were tricked into opening a specially crafted document, a remote attacker could execute arbitrary code with user privileges. A flaw was discovered in OpenOffice.org's link handling code. If a user were tricked into clicking a link in a specially crafted document, a remote attacker could execute arbitrary shell commands with user privileges.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 38159 | | Related CVE(s): | CVE-2007-0238, CVE-2007-0239 | | Last Modified: | Mar 28 17:59:13 2007 |
| MD5 Checksum: | 1be71010f61bfd345340079bc13f3556 |
|
| /// File Name: |
USN-443-1.txt |
Description:
|
Ubuntu Security Notice 443-1 - A flaw was discovered in how Firefox handled PASV FTP responses. If a user were tricked into visiting a malicious FTP server, a remote attacker could perform a port-scan of machines within the user's network, leading to private information disclosure.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 19630 | | Related CVE(s): | CVE-2007-1562 | | Last Modified: | Mar 28 17:58:20 2007 |
| MD5 Checksum: | 6523a4501b229f8942bc20bfbdcfda4b |
|
| /// File Name: |
dsa-1273-1.txt |
Description:
|
Debian Security Advisory 1273-1 - Several vulnerabilities have been discovered in nas, the Network Audio System. A stack-based buffer overflow in the accept_att_local function in server/os/connection.c in nas allows remote attackers to execute arbitrary code via a long path slave name in a USL socket connection. Integer overflow in the ProcAuWriteElement function in server/dia/audispatch.c allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large max_samples value. The AddResource function in server/dia/resource.c allows remote attackers to cause a denial of service (server crash) via a nonexistent client ID. Array index error allows remote attackers to cause a denial of service (crash) via (1) large num_action values in the ProcAuSetElements function in server/dia/audispatch.c or (2) a large inputNum parameter to the compileInputs function in server/dia/auutil.c. The ReadRequestFromClient function in server/os/io.c allows remote attackers to cause a denial of service (crash) via multiple simultaneous connections, which triggers a NULL pointer dereference.
| | Homepage: | http://www.debian.org/security | | File Size: | 10832 | | Related CVE(s): | CVE-2007-1543, CVE-2007-1544, CVE-2007-1545, CVE-2007-1546, CVE-2007-1547 | | Last Modified: | Mar 28 17:57:35 2007 |
| MD5 Checksum: | 8cadded62e8d82be3b752f801c87f741 |
|
| /// File Name: |
MDKSA-2007-070.txt |
Description:
|
Mandriva Linux Security Advisory - A format string error in the "write_html()" function in calendar/gui/ e-cal-component-memo-preview.c when displaying a memo's categories can potentially be exploited to execute arbitrary code via a specially crafted shared memo containing format specifiers.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 2983 | | Related CVE(s): | CVE-2007-1002 | | Last Modified: | Mar 28 17:56:01 2007 |
| MD5 Checksum: | 40e91c58acdbcb54b4d5658d7cfb1868 |
|
| /// File Name: |
sa24679.txt |
Description:
|
Secunia Security Advisory - Lostmon has discovered some vulnerabilities and weaknesses in aBitWhizzy, which can be exploited by malicious people to disclose system information or conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/24679/ | | File Size: | 2710 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | 94a10515932322d77b79f20b5212bf79 |
|
| /// File Name: |
sa24673.txt |
Description:
|
Secunia Security Advisory - skillTube has reported a vulnerability in NaviCOPA Web Server, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24673/ | | File Size: | 2350 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | 66403ad2734008fdc5d872d4cd78b63f |
|
| /// File Name: |
sa24672.txt |
Description:
|
Secunia Security Advisory - UniquE-Key{UniquE-Cracker} has discovered a vulnerability in the Articles module for Xoops, which can be exploited by malicious users to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/24672/ | | File Size: | 2390 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | ec7b5235df8d24a9e928257417f3887c |
|
| /// File Name: |
sa24668.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for evolution. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24668/ | | File Size: | 2958 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | 87c12ae5295bf6f483bf956de8414e62 |
|
| /// File Name: |
sa24663.txt |
Description:
|
Secunia Security Advisory - KEZZAP66345 has discovered a vulnerability in Web Content System, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24663/ | | File Size: | 2297 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | 0e96e87d790fd98f257a906e735293cb |
|
| /// File Name: |
sa24648.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24648/ | | File Size: | 2425 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | 8b829096b99f383b31b0c57643b7a3b5 |
|
| /// File Name: |
sa24647.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for openoffice.org. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24647/ | | File Size: | 35955 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | c74b8d5869b4fef457b180a5502e0b2a |
|
| /// File Name: |
sa24645.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for xmms. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24645/ | | File Size: | 2230 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | dae2fa3ec9b61c01e58dd3e402af6e56 |
|
| /// File Name: |
sa24643.txt |
Description:
|
Secunia Security Advisory - Tim Rees has discovered a security issue in TrueCrypt, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/24643/ | | File Size: | 2376 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | b0028ca1779b377083f80745fabfda56 |
|
| /// File Name: |
sa24639.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in ArcSDE, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24639/ | | File Size: | 2610 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | 8e74877faa9dcdf0da79c42c22f39a8b |
|
| /// File Name: |
sa24638.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for nas. This fixes some vulnerabilities, which potentially can be exploited by malicious, local users to gain escalated privileges or malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24638/ | | File Size: | 9390 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | 73881535bf1bd4d74faaa6fe5248c5d9 |
|
| /// File Name: |
sa24633.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in IBM Lotus Domino and Lotus Domino Web Access, which can be exploited by malicious people to conduct cross-site scripting attacks or cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24633/ | | File Size: | 2911 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | ea21a35b7ca81e7e54d3e8157099be6c |
|
| /// File Name: |
sa24628.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for nas. This fixes some vulnerabilities, which potentially can be exploited by malicious, local users to gain escalated privileges or by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/24628/ | | File Size: | 10969 | | Last Modified: | Mar 28 17:52:50 2007 |
| MD5 Checksum: | 72132230d88fa6bd08ee77b6904e7204 |
|
| /// File Name: |
sa24655.txt |
Description:
|
Secunia Security Advisory - Crackers_Child has discovered a vulnerability in CcCounter, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/24655/ | | File Size: | 2232 | | Last Modified: | Mar 28 04:15:18 2007 |
| MD5 Checksum: | 5212bee61a9e89dbb64e4033dc2a38f6 |
|
| /// File Name: |
sa24651.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for evolution. This fixes a vulnerability, which can be exploited by malicious people to potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24651/ | | File Size: | 8059 | | Last Modified: | Mar 28 04:15:18 2007 |
| MD5 Checksum: | 415c6a098a7270133b98d0aaaafb8d74 |
|
| /// File Name: |
sa24649.txt |
Description:
|
Secunia Security Advisory - Gentoo has acknowledged a vulnerability in mgv, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24649/ | | File Size: | 2034 | | Last Modified: | Mar 28 04:15:18 2007 |
| MD5 Checksum: | 1e662cf131f04761706ffcf6ea4a1cc9 |
|
| /// File Name: |
sa24646.txt |
Description:
|
Secunia Security Advisory - Sun Microsystems has acknowledged some vulnerabilities in StarOffice, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/24646/ | | File Size: | 2294 | | Last Modified: | Mar 28 04:15:18 2007 |
| MD5 Checksum: | 19dab2a500c5f9ac81defde87e7b7482 |
|
| /// File Name: |
sa24644.txt |
Description:
|
Secunia Security Advisory - Hessam-x has discovered some vulnerabilities in IceBB, which can be exploited by malicious users to conduct SQL injection attacks and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24644/ | | File Size: | 2631 | | Last Modified: | Mar 28 04:15:18 2007 |
| MD5 Checksum: | c5e57461947ae39e74627bcba241c6ad |
|
| /// File Name: |
sa24642.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged some vulnerabilities and a weakness in php, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service), and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/24642/ | | File Size: | 2647 | | Last Modified: | Mar 28 04:15:18 2007 |
| MD5 Checksum: | d67fd318f83df72b961910114b6f317f |
|
| /// File Name: |
sa24641.txt |
Description:
|
Secunia Security Advisory - harry has reported a vulnerability in mcweject, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/24641/ | | File Size: | 2360 | | Last Modified: | Mar 28 04:15:18 2007 |
| MD5 Checksum: | 3f2b93d7a34584022d2d53e05c9cad47 |
|
| /// File Name: |
sa24629.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in PHP-Nuke, which can be exploited by malicious people to conduct cross-site scripting or cross-site request forgery attacks.
| | Homepage: | http://secunia.com/advisories/24629/ | | File Size: | 2702 | | Last Modified: | Mar 28 04:15:18 2007 |
| MD5 Checksum: | 4bf61a67b252f85d9b5dadff234eb297 |
|
|
|
|
|