Section: .. / 0507-advisories /
| /// File Name: |
glsa-200507-03.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200507-03 - Ron van Daal discovered that phpBB contains a vulnerability in the highlighting code. Versions less than 2.0.16 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3175 | | Last Modified: | Jul 7 09:52:23 2005 |
| MD5 Checksum: | bd64628e6c5a4dbca65bb5fdc553e6fa |
|
| /// File Name: |
glsa-200507-23.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200507-23 - Kopete contains an internal copy of libgadu and is therefore subject to several input validation vulnerabilities in libgadu. Versions less than 3.4.1-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3161 | | Related CVE(s): | CAN-2005-1852 | | Last Modified: | Jul 28 07:52:38 2005 |
| MD5 Checksum: | 80d4a5d16ae62b0fcc165725ece0ccd0 |
|
| /// File Name: |
voip-phones.txt |
Description:
|
Due to ignoring the value of Call-ID and even tag and branch while processing NOTIFY messages, VOIP-Hardphones process spoofed status messages like Messages-Waiting.
| | Author: | Tobias Glemser | | Homepage: | http://pentest.tele-consulting.com | | File Size: | 3140 | | Last Modified: | Jul 7 15:52:56 2005 |
| MD5 Checksum: | e725ab7932a1adec8a882fe879c0faee |
|
| /// File Name: |
glsa-200507-28.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200507-28 - Earlier versions of emul-linux-x86-baselibs contain a vulnerable version of zlib, which may lead to a buffer overflow. Versions less than 2.2 are affected.
| | Homepage: | http://security.gentoo.org/ | | File Size: | 3119 | | Related CVE(s): | CAN-2005-1849, CAN-2005-2096 | | Last Modified: | Aug 5 07:50:52 2005 |
| MD5 Checksum: | 3f77347d96c2f73b5e43b01a21f6bf23 |
|
| /// File Name: |
glsa-200507-08.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200507-08 - The XML-RPC implementations of phpGroupWare and eGroupWare fail to sanitize input sent to the XML-RPC server using the POST method. Versions less than 0.9.16.006 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3091 | | Related CVE(s): | CAN-2005-1921 | | Last Modified: | Jul 12 16:27:30 2005 |
| MD5 Checksum: | 0f323fd38a350e39009397d836279631 |
|
| /// File Name: |
glsa-200507-12.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200507-12 - Bugzilla allows any user to modify the flags of any bug (CAN-2005-2173). Bugzilla inserts bugs into the database before marking them as private, in connection with MySQL replication this could lead to a race condition (CAN-2005-2174). Versions less than 2.18.3 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3040 | | Related CVE(s): | CAN-2005-2173, CAN-2005-2174 | | Last Modified: | Jul 14 08:00:26 2005 |
| MD5 Checksum: | bd222c90ef9d2a19afe2363aba263912 |
|
| /// File Name: |
sa16082.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Sophos Anti-Virus, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/16082/ | | File Size: | 3030 | | Last Modified: | Jul 15 18:17:11 2005 |
| MD5 Checksum: | 815e2df4f07716485a6c808b0392812f |
|
| /// File Name: |
glsa-200507-19.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200507-19 - zlib improperly handles invalid data streams which could lead to a buffer overflow. Versions less than 1.2.3 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3025 | | Related CVE(s): | CAN-2005-1849 | | Last Modified: | Jul 22 09:10:54 2005 |
| MD5 Checksum: | d133450db2b845e69b8e76303789730d |
|
| /// File Name: |
integrigyOracle.txt |
Description:
|
A number of high risk SQL injection and parameter manipulation security vulnerabilities in the Oracle E-Business Suite 11i have been corrected by Oracle's July, 2005 release of security patches.
| | Author: | Stephen Kost | | Homepage: | http://www.integrigy.com/ | | File Size: | 2991 | | Last Modified: | Jul 14 09:03:53 2005 |
| MD5 Checksum: | d8d98f6ad55a578fe1da656c4ddf9177 |
|
| /// File Name: |
dsa-766-1.txt |
Description:
|
Debian Security Advisory DSA 766-1 - A vulnerability has been discovered in webcalendar, a PHP based multi-user calendar, that can lead to the disclosure of sensitive information to unauthorised parties.
| | Homepage: | http://security.debian.org/ | | File Size: | 2986 | | Related CVE(s): | CAN-2005-2320 | | Last Modified: | Jul 28 08:36:59 2005 |
| MD5 Checksum: | 4412e3b58a9fb1a05e67d3fae7cab48d |
|
| /// File Name: |
dsa-759-1.txt |
Description:
|
Debian Security Advisory DSA 759-1 - A vulnerability has been discovered in phppgadmin, a set of PHP scripts to administrate PostgreSQL over the WWW, that can lead to disclose sensitive information. Successful exploitation requires that magic_quotes_gpc is disabled.
| | Homepage: | http://security.debian.org/ | | File Size: | 2980 | | Related CVE(s): | CAN-2005-2256 | | Last Modified: | Jul 19 16:28:02 2005 |
| MD5 Checksum: | b0cbd8c8ef92f6ba93998b4ea46d8d6b |
|
| /// File Name: |
sa16119.txt |
Description:
|
Secunia Security Advisory - HP has acknowledged some vulnerabilities in HP Tru64 UNIX, which can be exploited by malicious people to cause various types of DoS (Denial of Service) or spoof TCP traffic.
| | Homepage: | http://secunia.com/advisories/16119/ | | File Size: | 2978 | | Last Modified: | Jul 19 16:17:56 2005 |
| MD5 Checksum: | a9f7933752af8c831d47c88d405ec190 |
|
| /// File Name: |
sa15776.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered two vulnerabilities in avast!, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/15776/ | | File Size: | 2960 | | Last Modified: | Jul 22 08:22:59 2005 |
| MD5 Checksum: | 3bc704a526b165402dfe1f542a981f44 |
|
| /// File Name: |
veritasNetbackup.txt |
Description:
|
Veritas Netbackup 5.1 suffers from a TIME_STAMP vulnerability that can cause an access violation.
| | Homepage: | http://www.hat-squad.com/ | | File Size: | 2879 | | Last Modified: | Jul 23 18:30:00 2005 |
| MD5 Checksum: | cf4d1189b1a75c4a3b02afe1ca525116 |
|
| /// File Name: |
glsa-200507-09.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200507-09 - A buffer overflow has been discovered in the UnixAppOpenFilePerform() function, which is called when Adobe Acrobat Reader tries to open a file with the \Filespec tag. Versions less than or equal to 5.10 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2874 | | Related CVE(s): | CAN-2005-1625 | | Last Modified: | Jul 12 16:42:33 2005 |
| MD5 Checksum: | 8e73681c04f3da92848f2808d8b80e06 |
|
| /// File Name: |
sa16181.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in ProFTPD, which can be exploited by malicious users to disclose certain sensitive information, cause a DoS (Denial of Service), or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/16181/ | | File Size: | 2845 | | Last Modified: | Jul 27 18:08:40 2005 |
| MD5 Checksum: | 876ff7281fbc6583a7b960397c118af2 |
|
| /// File Name: |
sa16057.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for krb5. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service), overwrite arbitrary files on a user's system, gain knowledge of various information, or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/16057/ | | File Size: | 2833 | | Last Modified: | Jul 14 07:31:13 2005 |
| MD5 Checksum: | 8695164856d9695203505b8b184a7717 |
|
| /// File Name: |
glsa-200507-25.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200507-25 - Neel Mehta and Alex Wheeler discovered that Clam AntiVirus is vulnerable to integer overflows when handling the TNEF, CHM and FSG file formats. Versions less than 0.86.2 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2808 | | Last Modified: | Jul 28 08:29:14 2005 |
| MD5 Checksum: | 03a476cb27b0196cd4aa907828b438c9 |
|
| /// File Name: |
sa16047.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in Mac OS X, which can be exploited by malicious people to cause a DoS (Denial of Service) or replace system widgets on a user's system.
| | Homepage: | http://secunia.com/advisories/16047/ | | File Size: | 2767 | | Last Modified: | Jul 14 07:31:13 2005 |
| MD5 Checksum: | c107c14d47107cb5a924aed60f500196 |
|
| /// File Name: |
sa16244.txt |
Description:
|
Secunia Security Advisory - Yukiyo Akisada has reported a security issue in FreeBSD, which potentially can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/16244/ | | File Size: | 2766 | | Last Modified: | Jul 27 18:08:40 2005 |
| MD5 Checksum: | f672d4e6045528924355b8488838000e |
|
| /// File Name: |
glsa-200507-07.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200507-07 - phpWebSite fails to sanitize input sent to the XML-RPC server using the POST method. Other unspecified vulnerabilities have been discovered by Diabolic Crab of Hackers Center. Versions less than 0.10.1-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2762 | | Related CVE(s): | CAN-2005-1921 | | Last Modified: | Jul 12 16:20:46 2005 |
| MD5 Checksum: | 0d8171b5d6fb0009c95e447adf808ec0 |
|
| /// File Name: |
pcexpCMS.txt |
Description:
|
PC-EXPERIENCE/TOPPE CMS suffers from cross site scripting and login bypass flaws.
| | Author: | Morinex | | File Size: | 2748 | | Last Modified: | Aug 5 07:50:18 2005 |
| MD5 Checksum: | 0a53b5c49103f87e5fc1d030e3436c67 |
|
| /// File Name: |
sa15988.txt |
Description:
|
Secunia Security Advisory - Kevin Finisterre has reported two vulnerabilities in Affix, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/15988/ | | File Size: | 2731 | | Last Modified: | Jul 14 07:33:32 2005 |
| MD5 Checksum: | 08fc7c5f5c54aaf4457cef4833e11d23 |
|
| /// File Name: |
sa16045.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for ruby. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/16045/ | | File Size: | 2723 | | Last Modified: | Jul 14 07:31:13 2005 |
| MD5 Checksum: | 269354126f62433390ee0a4f05b3d6be |
|
| /// File Name: |
sa16115.txt |
Description:
|
Secunia Security Advisory - Soroush Dalili has discovered some vulnerabilities in Hosting Controller, which can be exploited by malicious users to gain knowledge of sensitive information, modify data, or conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/16115/ | | File Size: | 2718 | | Last Modified: | Jul 19 16:17:56 2005 |
| MD5 Checksum: | 4e0c2275aa2678c5e3b958fb80c33cc2 |
|
|
|
|
|