Section: .. / 0803-advisories /
| /// File Name: |
sa29514.txt |
Description:
|
Secunia Security Advisory - 0x90 has discovered two vulnerabilities in phpAddressBook, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/29514/ | | File Size: | 2402 | | Last Modified: | Mar 25 20:09:25 2008 |
| MD5 Checksum: | 88f87efbd8bf89a8c3d58e94bf061ac5 |
|
| /// File Name: |
sa29520.txt |
Description:
|
Secunia Security Advisory - Sniper456 has discovered a vulnerability in the Custompages component for Joomla!, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/29520/ | | File Size: | 2460 | | Last Modified: | Mar 25 20:09:25 2008 |
| MD5 Checksum: | 5800ff4688f183323d4fb0a26bce012d |
|
| /// File Name: |
sa29527.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Novell eDirectory, which can be exploited by malicious people to disclose potentially sensitive information or cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29527/ | | File Size: | 2561 | | Last Modified: | Mar 25 20:09:25 2008 |
| MD5 Checksum: | fecb835eb249e41f39a66124b4b6d32b |
|
| /// File Name: |
sa29530.txt |
Description:
|
Secunia Security Advisory - Gareth Heyes has reported a vulnerability in D-Link DSL-G604T, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/29530/ | | File Size: | 2299 | | Last Modified: | Mar 25 20:09:25 2008 |
| MD5 Checksum: | cb470202e88ef3f3795439a574c61eee |
|
| /// File Name: |
sa29531.txt |
Description:
|
Secunia Security Advisory - Jonas has reported a vulnerability in D-Link DI-604, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/29531/ | | File Size: | 2241 | | Last Modified: | Mar 25 20:09:25 2008 |
| MD5 Checksum: | c853753b789744c49e776a353cf847f6 |
|
| /// File Name: |
sa29470.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for asterisk. This fixes a weakness and some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, cause a DoS (Denial of Service), hijack a user session, and potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/29470/ | | File Size: | 2384 | | Last Modified: | Mar 24 18:48:59 2008 |
| MD5 Checksum: | 377575cf8d1c0b515f82777174157439 |
|
| /// File Name: |
glsa-200803-31.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200803-31 - Two vulnerabilities were found in the Kerberos 4 support in KDC: A global variable is not set for some incoming message types, leading to a NULL pointer dereference or a double free() and unused portions of a buffer are not properly cleared when generating an error message, which results in stack content being contained in a reply. Versions less than 1.6.3-r1 are affected.
| | Homepage: | http://security.gentoo.org/ | | File Size: | 4514 | | Related CVE(s): | CVE-2007-5901, CVE-2007-5971, CVE-2008-0062, CVE-2008-0063, CVE-2008-0947 | | Last Modified: | Mar 24 18:48:28 2008 |
| MD5 Checksum: | d97e73211f5b32866700162abb9e1ca9 |
|
| /// File Name: |
USN-591-1.txt |
Description:
|
Ubuntu Security Notice 591-1 - Will Drewry discovered that libicu did not properly handle '\0' when processing regular expressions. If an application linked against libicu processed a crafted regular expression, an attacker could execute arbitrary code with privileges of the user invoking the program. Will Drewry discovered that libicu did not properly limit its backtracking stack size. If an application linked against libicu processed a crafted regular expression, an attacker could cause a denial of service via resource exhaustion.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 9833 | | Related CVE(s): | CVE-2007-4770, CVE-2007-4771 | | Last Modified: | Mar 24 18:47:19 2008 |
| MD5 Checksum: | 709c3b4e0e8ffb4ab82d69a87f5b976e |
|
| /// File Name: |
USN-590-1.txt |
Description:
|
Ubuntu Security Notice 590-1 - It was discovered that bzip2 did not correctly handle certain malformed archives. If a user or automated system were tricked into processing a specially crafted bzip2 archive, applications linked against libbz2 could be made to crash, possibly leading to a denial of service.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 16255 | | Related CVE(s): | CVE-2008-1372 | | Last Modified: | Mar 24 18:46:30 2008 |
| MD5 Checksum: | 73750d6d375d42abb00e73ac27324bc7 |
|
| /// File Name: |
dsa-1528-1.txt |
Description:
|
Debian Security Advisory 1528-1 - Peter Huwe and Hanno Boeck discovered that Serendipity, a weblog manager, did not properly sanitise input to several scripts which allowed for cross site scripting.
| | Homepage: | http://www.debian.org/security | | File Size: | 3253 | | Related CVE(s): | CVE-2007-6205, CVE-2008-0124 | | Last Modified: | Mar 24 18:36:47 2008 |
| MD5 Checksum: | 959f44d15f7d2b0d973b0d31b8c7fcfa |
|
| /// File Name: |
dsa-1527-1.txt |
Description:
|
Debian Security Advisory 1527-1 - Thomas de Grenier de Latour discovered that the checkrestart tool in the debian-goodies suite of utilities, allowed local users to gain privileges via shell metacharacters in the name of the executable file for a running process.
| | Homepage: | http://www.debian.org/security | | File Size: | 3764 | | Related CVE(s): | CVE-2007-3912 | | Last Modified: | Mar 24 18:35:48 2008 |
| MD5 Checksum: | 5ba6224fb62fbd40a921effcb4606c7e |
|
| /// File Name: |
ircu-dos.txt |
Description:
|
ircu versions 2.10.12.12 and below and snircd versions 1.3.4 and below suffer from a denial of service vulnerability.
| | Author: | Chris Porter | | Homepage: | http://www.warp13.co.uk/ | | File Size: | 1020 | | Last Modified: | Mar 24 18:33:19 2008 |
| MD5 Checksum: | 74d2996986b18fd1e9cac7b0f213165a |
|
| /// File Name: |
MDVSA-2008-075.txt |
Description:
|
Mandriva Linux Security Advisory - Bzip2 versions before 1.0.5 are vulnerable to a denial of service attack via malicious compressed data.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 6185 | | Related CVE(s): | CVE-2008-1372 | | Last Modified: | Mar 24 17:29:34 2008 |
| MD5 Checksum: | 8b04c1783e09b4625b6b82ad11e007d5 |
|
| /// File Name: |
f5log-xss.txt |
Description:
|
The F5 BIG-IP web management interface suffers from a persistent cross site scripting vulnerability in the audit log facility. Version 9.4.3 has been identified as vulnerable and other versions may also be affected.
| | Author: | nnposter | | File Size: | 1100 | | Last Modified: | Mar 24 17:26:45 2008 |
| MD5 Checksum: | 4cf953318d916fd1c300b49c7bc8f8a5 |
|
| /// File Name: |
sa29453.txt |
Description:
|
Secunia Security Advisory - Stefano Di Paola has reported some vulnerabilities in Internet Explorer, which can be exploited by malicious people to conduct HTTP request smuggling/splitting attacks.
| | Homepage: | http://secunia.com/advisories/29453/ | | File Size: | 2453 | | Last Modified: | Mar 24 17:02:56 2008 |
| MD5 Checksum: | 6e258c05887472ab18e949194a2331d6 |
|
| /// File Name: |
sa29481.txt |
Description:
|
Secunia Security Advisory - Chris Porter has reported a vulnerability in snircd, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29481/ | | File Size: | 2259 | | Last Modified: | Mar 24 17:02:56 2008 |
| MD5 Checksum: | 1df95950336cac5dc44e8001b3b9b7f9 |
|
| /// File Name: |
sa29483.txt |
Description:
|
Secunia Security Advisory - Juan Pablo Lopez Yacubian has discovered two vulnerabilities in Safari, which can be exploited by malicious people to conduct spoofing attacks or potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/29483/ | | File Size: | 2551 | | Last Modified: | Mar 24 17:02:56 2008 |
| MD5 Checksum: | f4aa337796f38216f0c895ec4d7add16 |
|
| /// File Name: |
sa29486.txt |
Description:
|
Secunia Security Advisory - Chris Porter has reported a vulnerability in Undernet ircu, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29486/ | | File Size: | 2260 | | Last Modified: | Mar 24 17:02:56 2008 |
| MD5 Checksum: | f0bcff957735312804dc83322ee67e27 |
|
| /// File Name: |
sa29497.txt |
Description:
|
Secunia Security Advisory - rPath has issued an update for bzip2. This fixes a vulnerability with unknown impact.
| | Homepage: | http://secunia.com/advisories/29497/ | | File Size: | 1940 | | Last Modified: | Mar 24 17:02:56 2008 |
| MD5 Checksum: | 72e0846d6f8affc984fe07f0178ca13d |
|
| /// File Name: |
sa29439.txt |
Description:
|
Secunia Security Advisory - Shachar Bar (Berezniski) has reported a vulnerability in Imperva SecureSphere, which can be exploited by malicious people to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/29439/ | | File Size: | 3079 | | Last Modified: | Mar 22 14:31:57 2008 |
| MD5 Checksum: | 6d22be65b9bf89aa2f93d8b083be3a85 |
|
| /// File Name: |
sa29443.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for mysql-dfsg-5.0. This fixes some vulnerabilities, which can be exploited by malicious users to cause a DoS (Denial of Service) and gain escalated privileges, and by malicious people to cause a DoS and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/29443/ | | File Size: | 18039 | | Last Modified: | Mar 22 14:31:57 2008 |
| MD5 Checksum: | 2519f9eb0f1b3ef2c2c5484f9b0193c4 |
|
| /// File Name: |
sa29446.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for per-Net-DNS. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29446/ | | File Size: | 2399 | | Last Modified: | Mar 22 14:31:57 2008 |
| MD5 Checksum: | fbe55124571aee7e285e2c85f98c6874 |
|
| /// File Name: |
sa29452.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for xwine. This fixes two security issues, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
| | Homepage: | http://secunia.com/advisories/29452/ | | File Size: | 4073 | | Last Modified: | Mar 22 14:31:57 2008 |
| MD5 Checksum: | cd33f8d80536c42b4796a0fced72ad09 |
|
|
|
|
|