Section: .. / 0801-advisories /
| /// File Name: |
sa28685.txt |
Description:
|
Secunia Security Advisory - GoLd_M has reported a vulnerability in Smart Publisher, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28685/ | | File Size: | 2331 | | Last Modified: | Jan 30 18:37:19 2008 |
| MD5 Checksum: | 0a90b15bdda9d5e558f7b50cacae9917 |
|
| /// File Name: |
sa28708.txt |
Description:
|
Secunia Security Advisory - enter_the_dragon has discovered a vulnerability in the AdServe plugin for WordPress, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/28708/ | | File Size: | 2480 | | Last Modified: | Jan 30 18:37:19 2008 |
| MD5 Checksum: | e924aa30f14b19277572dac1405ba9fe |
|
| /// File Name: |
sa28709.txt |
Description:
|
Secunia Security Advisory - Alexandr Polyakov and Stas Svistunovich have discovered a vulnerability in phpCMS, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/28709/ | | File Size: | 2434 | | Last Modified: | Jan 30 18:37:19 2008 |
| MD5 Checksum: | 59e063eb6f7805429668f96b2d725658 |
|
| /// File Name: |
sa28710.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in GFL SDK, which can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/28710/ | | File Size: | 2312 | | Last Modified: | Jan 30 18:37:19 2008 |
| MD5 Checksum: | 2044ba34ddc82ed87ff58710965ad1fd |
|
| /// File Name: |
glsa-200801-17.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200801-17 - Venustech AD-LAB discovered that an FTP client connected to a vulnerable server with passive mode and SSL support can trigger an fclose() function call on an uninitialized stream in ftpd.c. Versions less than 0.17-r7 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2516 | | Related CVE(s): | CVE-2007-6263 | | Last Modified: | Jan 29 22:21:20 2008 |
| MD5 Checksum: | b66bbc1ba20c42940904ede07e0ab1a7 |
|
| /// File Name: |
glsa-200801-16.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200801-16 - Michael Krieger reported that a specially crafted DNS could prevent an authoritative canonical name (CNAME) record from being resolved because of an improper rotation of resource records. Versions less than 1.2.12.08 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2564 | | Related CVE(s): | CVE-2008-0061 | | Last Modified: | Jan 29 22:20:52 2008 |
| MD5 Checksum: | 66833b7c3524630883bd1e69dd326fcf |
|
| /// File Name: |
glsa-200801-15.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200801-15 - If using the expression indexes feature, PostgreSQL executes index functions as the superuser during VACUUM and ANALYZE instead of the table owner, and allows SET ROLE and SET SESSION AUTHORIZATION in the index functions (CVE-2007-6600). Additionally, several errors involving regular expressions were found (CVE-2007-4769, CVE-2007-4772, CVE-2007-6067). Eventually, a privilege escalation vulnerability via unspecified vectors in the DBLink module was reported (CVE-2007-6601). This vulnerability is exploitable when local trust or ident authentication is used, and is due to an incomplete fix of CVE-2007-3278. Versions less than 8.0.15 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3807 | | Related CVE(s): | CVE-2007-3278, CVE-2007-4769, CVE-2007-4772, CVE-2007-6067, CVE-2007-6600, CVE-2007-6601 | | Last Modified: | Jan 29 22:20:26 2008 |
| MD5 Checksum: | 44b563ffc58ea1fd0ae9838a98c3a2d7 |
|
| /// File Name: |
dsa-1478-1.txt |
Description:
|
Debian Security Advisory 1478-1 - Luigi Auriemma discovered two buffer overflows in YaSSL, an SSL implementation included in the MySQL database package, which could lead to denial of service and possibly the execution of arbitrary code.
| | Homepage: | http://www.debian.org/security | | File Size: | 13182 | | Related CVE(s): | CVE-2008-0226, CVE-2008-0227 | | Last Modified: | Jan 29 22:19:05 2008 |
| MD5 Checksum: | 71116870a6ad4fd404a9f8f5d3440e16 |
|
| /// File Name: |
sa28597.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for mysql-dfsg-5.0. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28597/ | | File Size: | 12610 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 0936b95975510f7da888eef484c7982f |
|
| /// File Name: |
sa28608.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for pulseaudio. This fixes a security issue, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
| | Homepage: | http://secunia.com/advisories/28608/ | | File Size: | 25608 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 84c6bbff29a739caf90926f699d3cef3 |
|
| /// File Name: |
sa28652.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Mambo LaiThai, some with an unknown impact and others, which can be exploited by malicious people to conduct SQL injection attacks or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28652/ | | File Size: | 2699 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | ea5b25f86d4ad71905cf46a49688e138 |
|
| /// File Name: |
sa28653.txt |
Description:
|
Secunia Security Advisory - Aria-Security Team has reported some vulnerabilities in ASPired2Protect, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/28653/ | | File Size: | 2238 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 6a1aec771935949bf1e7be01b6fddae5 |
|
| /// File Name: |
sa28660.txt |
Description:
|
Secunia Security Advisory - David Kierznowski has discovered a vulnerability in Persits Software XUpload, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28660/ | | File Size: | 2506 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 56adfe1ca67aae14b6f25bcf7b0fb77f |
|
| /// File Name: |
sa28664.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for the kernel. This fixes a vulnerability, which can be exploited by malicious, local users to bypass certain security restrictions and corrupt a file system.
| | Homepage: | http://secunia.com/advisories/28664/ | | File Size: | 2105 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | ad52f2e32575190e97a73e504855a7ed |
|
| /// File Name: |
sa28666.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for xine-lib. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28666/ | | File Size: | 2173 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 8e684e1937503aa61458c0bddcd6d183 |
|
| /// File Name: |
sa28667.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in IBM HMC, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28667/ | | File Size: | 2268 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 7e368555b03aeacbc0dc57e029c1b976 |
|
| /// File Name: |
sa28670.txt |
Description:
|
Secunia Security Advisory - AmnPardaz Security Research Team have discovered some vulnerabilities and a weakness in Mambo, which can be exploited by malicious people to disclose system information, conduct cross-site scripting and cross-site request forgery attacks, and to manipulate data.
| | Homepage: | http://secunia.com/advisories/28670/ | | File Size: | 3614 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 09d60021c964b427c4035dce972a5508 |
|
| /// File Name: |
sa28679.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for postgresql. This fixes some vulnerabilities, which can be exploited by malicious users to gain escalated privileges or to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/28679/ | | File Size: | 2071 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 5af23d3eec5a3f2511c88d2b78720e87 |
|
| /// File Name: |
sa28681.txt |
Description:
|
Secunia Security Advisory - tomplixsee has discovered some vulnerabilities in Simple Forum, which can be exploited by malicious people to conduct cross-site scripting attacks or to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/28681/ | | File Size: | 2627 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 1afe1ea11aca56ecf812223ec2a58dd2 |
|
| /// File Name: |
sa28683.txt |
Description:
|
Secunia Security Advisory - Houssamix has discovered a vulnerability in the WP-Cal plugin for WordPress, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/28683/ | | File Size: | 2494 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | a2a98e450a4bf5737e9020a29f396625 |
|
| /// File Name: |
sa28688.txt |
Description:
|
Secunia Security Advisory - Marsu has discovered a vulnerability in the FlashPix plug-in for IrfanView, which potentially can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28688/ | | File Size: | 2393 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 50d567b50c280e04d7b4f0e4a1fa8268 |
|
| /// File Name: |
sa28689.txt |
Description:
|
Secunia Security Advisory - IBM has acknowledged some vulnerabilities in Informix Storage Manager, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28689/ | | File Size: | 2926 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 7458ddb90d5580bb962b49d15eb8f729 |
|
| /// File Name: |
sa28690.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Yamaha RT Series Routers, which can be exploited by malicious people to conduct cross-site request forgery attacks.
| | Homepage: | http://secunia.com/advisories/28690/ | | File Size: | 2596 | | Last Modified: | Jan 29 21:17:24 2008 |
| MD5 Checksum: | 38e83bb6466d42acaa7df213dbefe60f |
|
|
|
|
|