Section: .. / 0611-advisories /
| /// File Name: |
sa23130.txt |
Description:
|
Secunia Security Advisory - Al7ejaz HackerZ have discovered a vulnerability in mmgallery, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/23130/ | | File Size: | 2565 | | Last Modified: | Nov 28 15:12:33 2006 |
| MD5 Checksum: | dc0a26e94b5e3405d3ee9130a0672fd3 |
|
| /// File Name: |
sa23088.txt |
Description:
|
Secunia Security Advisory - LMH has reported a vulnerability in Mac OS X, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or potentially gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/23088/ | | File Size: | 2697 | | Last Modified: | Nov 27 19:52:20 2006 |
| MD5 Checksum: | 1393c3e146e423e84e04a786d0aeac37 |
|
| /// File Name: |
sa23092.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in tDiary, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/23092/ | | File Size: | 2622 | | Last Modified: | Nov 27 19:52:20 2006 |
| MD5 Checksum: | a94250f740755fa4a9ee8170f11899df |
|
| /// File Name: |
sa23099.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for kile. This fixes a security issue, which can be exploited by malicious, local users to gain knowledge of certain information.
| | Homepage: | http://secunia.com/advisories/23099/ | | File Size: | 2356 | | Last Modified: | Nov 27 19:52:20 2006 |
| MD5 Checksum: | 692604a4bd1252e7e6218c3f2ce1b125 |
|
| /// File Name: |
sa23123.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in iNews Publisher, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/23123/ | | File Size: | 2535 | | Last Modified: | Nov 27 19:52:20 2006 |
| MD5 Checksum: | 76c1eb11be82adb738575a34d4317571 |
|
| /// File Name: |
sa23133.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for openldap2-client. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/23133/ | | File Size: | 5302 | | Last Modified: | Nov 27 19:52:20 2006 |
| MD5 Checksum: | 69045beef643534b6b9be2c81e18950e |
|
| /// File Name: |
sa23102.txt |
Description:
|
Secunia Security Advisory - bolivar has reported a vulnerability in Basic Forum, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/23102/ | | File Size: | 2492 | | Last Modified: | Nov 27 10:22:48 2006 |
| MD5 Checksum: | facf007bf2e8b91c280ddcc6e01a4348 |
|
| /// File Name: |
sa23132.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for multiple packages. This fixes some vulnerabilities, which can be exploited by malicious users to cause a DoS (Denial of Service), and by malicious people to bypass certain security restrictions, expose sensitive information, and manipulate data.
| | Homepage: | http://secunia.com/advisories/23132/ | | File Size: | 3834 | | Last Modified: | Nov 27 10:22:48 2006 |
| MD5 Checksum: | fc887b2dc8a22da500aea4193b723ca6 |
|
| /// File Name: |
glsa-200611-20.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200611-20 - GNU gv does not properly boundary check user-supplied data before copying it into process buffers. Versions less than 3.6.2-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2433 | | Last Modified: | Nov 26 22:20:00 2006 |
| MD5 Checksum: | 7ae82392e20edf7870211646d9cf6170 |
|
| /// File Name: |
glsa-200611-19.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200611-19 - M. Joonas Pihlaja has reported that a boundary error exists within the ReadDCMImage() function of coders/dcm.c, causing the improper handling of DCM images. Pihlaja also reported that there are several boundary errors in the ReadPALMImage() function of coders/palm.c, similarly causing the improper handling of PALM images. Versions less than 6.3.0.5 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2832 | | Last Modified: | Nov 26 22:19:43 2006 |
| MD5 Checksum: | 869549fe1008df9559656a273122376c |
|
| /// File Name: |
glsa-200611-18.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200611-18 - Urs Janssen and Aleksey Salow have reported multiple buffer overflows in TIN. Additionally, the OpenPKG project has reported an allocation off-by-one flaw which can lead to a buffer overflow. Versions less than 1.8.2 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2672 | | Last Modified: | Nov 26 22:19:22 2006 |
| MD5 Checksum: | e7c491eb81405c4e3065cb5d7b2e66a3 |
|
| /// File Name: |
googleInclusion.txt |
Description:
|
The Google Crawler could be leveraged as an anonymizer for launching remote file inclusion attacks.
| | Author: | Noam Rathaus | | File Size: | 2078 | | Last Modified: | Nov 26 22:14:54 2006 |
| MD5 Checksum: | 87dafacbeaf0cfd1da7f16f5f388b377 |
|
| /// File Name: |
MDKSA-2006-218.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-218-1 - An off-by-one error in the der_get_oid function in mod_auth_kerb 5.0 allows remote attackers to cause a denial of service (crash) via a crafted Kerberos message that triggers a heap-based buffer overflow in the component array.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 2467 | | Related CVE(s): | CVE-2006-5989 | | Last Modified: | Nov 26 21:43:34 2006 |
| MD5 Checksum: | e05fff3c295a6d10cc76b0fc34ba2607 |
|
| /// File Name: |
glsa-200611-17.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200611-17 - Tavis Ormandy of the Gentoo Linux Security Audit Team discovered that fvwm-menu-directory does not sufficiently sanitise directory names prior to generating menus. Versions less than 2.5.18-r1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2737 | | Last Modified: | Nov 26 21:43:32 2006 |
| MD5 Checksum: | 2ea56daab1a6c91c8cbf713a5dc24e67 |
|
| /// File Name: |
secunia-passgosso.txt |
Description:
|
Secunia Research has discovered a security issue in PassGo SSO Plus version 2.1.0.32, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/ | | File Size: | 4157 | | Related CVE(s): | CVE-2006-5965 | | Last Modified: | Nov 26 21:31:12 2006 |
| MD5 Checksum: | 02f7d4d5705f31b3825f6791caf65a32 |
|
| /// File Name: |
mozExpose.txt |
Description:
|
Mozilla has made public bug #360493 that discusses a flaw where Firefox's Password manager is exposed to public sites.
| | File Size: | 687 | | Last Modified: | Nov 26 21:29:32 2006 |
| MD5 Checksum: | c18474258b9dddc1a37e51ff69931c93 |
|
| /// File Name: |
lackenv.txt |
Description:
|
A lack of environment sanitization in FreeBSD, OpenBSD, and NetBSD dynamic loaders may allow for privilege escalation.
| | Author: | Mark Dowd, John McDonald, Justin Schuh | | File Size: | 4437 | | Last Modified: | Nov 26 20:38:34 2006 |
| MD5 Checksum: | d8ee508ca7429a07de680081ff8bbd39 |
|
| /// File Name: |
VMSA-2006-0010.txt |
Description:
|
VMware Security Advisory - VMware VirtualCenter client 2.x before 2.0.1 Patch 1 (Build 33643) and 1.4.x before 1.4.1 Patch 1 (Build 33425), does not verify the server's X.509 certificate when creating an SSL session, which allows remote malicious servers to spoof valid servers via a man-in-the-middle attack.
| | Homepage: | http://www.vmware.com/ | | File Size: | 3676 | | Related CVE(s): | CAN-2006-5990 | | Last Modified: | Nov 26 20:35:21 2006 |
| MD5 Checksum: | fdd92aee26baac028d88a86ede28df38 |
|
| /// File Name: |
sa22301.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a security issue in PassGo SSO Plus, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/22301/ | | File Size: | 2755 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | f9cc5b37b81c3fd2bc48677c9028adf4 |
|
| /// File Name: |
sa22821.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in ProFTPD, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/22821/ | | File Size: | 2462 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | 9784572582cb521ae640870b01807632 |
|
| /// File Name: |
sa22984.txt |
Description:
|
Secunia Security Advisory - Aria-Security has reported a vulnerability in cPanel, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/22984/ | | File Size: | 2586 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | 545afde796817ba69e85bc401b10f589 |
|
| /// File Name: |
sa22991.txt |
Description:
|
Secunia Security Advisory - Tal Argoni has reported a vulnerability in DeskPRO, which can be exploited by malicious people to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/22991/ | | File Size: | 2651 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | 3912134eadbb1eafe2121142b8b13d31 |
|
| /// File Name: |
sa22997.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for linux-ftpd. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain knowledge of potentially sensitive information, or perform certain actions with escalated privileges.
| | Homepage: | http://secunia.com/advisories/22997/ | | File Size: | 5124 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | e6a2fe3e2378959fec1c056a739c2bba |
|
| /// File Name: |
sa23000.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for proftpd. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/23000/ | | File Size: | 8540 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | da3f08944c6d35df363503c72c031000 |
|
| /// File Name: |
sa23005.txt |
Description:
|
Secunia Security Advisory - Revenge has discovered a vulnerability in ContentNow, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/23005/ | | File Size: | 2461 | | Last Modified: | Nov 25 23:47:38 2006 |
| MD5 Checksum: | 079bc0414156a626d08bc623b9926ca0 |
|
|
|
|
|