.:[ packet storm ]:.
                               
low profile, high success
low profile, high success

 Section:  .. / 0805-advisories  /

Page 1 of 14
<< 1 2 3 4 5 6 7 8 9 10 11 12 13 14 >> Files 1 - 25 of 333
Currently sorted by: File NameSort By: Last Modified, File Size

 ///  File Name: 04.30.08-1.txt
Description:
iDefense Security Advisory 04.30.08 - Remote exploitation of a design error in Akamai Technologies, Inc's Download Manager allows attackers to execute arbitrary code in the context of the current user. iDefense confirmed the existence of this vulnerability using version 2.2.2.1 of Akamai Technologies Inc's DownloadManagerV2.ocx. Additionally, iDefense confirmed the problem exists in version 2.2.2.0 of the Download Manager Java Applet. All versions prior to the fixed version are suspected to be vulnerable.
Author:Peter Vreugdenhil
Homepage:http://www.idefense.com/
File Size:4508
Related CVE(s):CVE-2008-6339
Last Modified:May 1 18:26:46 2008
MD5 Checksum:4026d3cb280e06a5aeaf9544acbbbdd7

 ///  File Name: 05.07.08-1.txt
Description:
iDefense Security Advisory 05.07.08 - Remote exploitation of an integer underflow vulnerability in rdesktop, as included in various vendors' operating system distributions, allows attackers to execute arbitrary code with the privileges of the logged-in user. The vulnerability exists within the code responsible for reading in an RDP request. When reading a request, a 16-bit integer value that represents the number of bytes that follow is taken from the packet. This value is then decremented by 4, and used to calculate how many bytes to read into a heap buffer. The subtraction operation can underflow, which will then lead to the heap buffer being overflowed. iDefense confirmed the existence of this vulnerability in rdesktop version 1.5.0. Previous versions may also be affected.
Homepage:http://www.idefense.com/
File Size:3393
Related CVE(s):CVE-2008-1801
Last Modified:May 7 20:42:04 2008
MD5 Checksum:c018aff3b2b98000cb2a48058984a14d

 ///  File Name: 05.07.08-2.txt
Description:
iDefense Security Advisory 05.07.08 - Remote exploitation of a BSS overflow vulnerability in rdesktop, as included in various vendors' operating system distributions, allows attackers to execute arbitrary code with the privileges of the logged-in user. The vulnerability exists within the code responsible for reading in an RDP redirect request. This request is used to redirect an RDP connection from one server to another. When parsing the redirect request, the rdesktop client reads several 32-bit integers from the request packet. These integers are then used to control the number of bytes read into statically allocated buffers. This results in several buffers located in the BSS section being overflowed, which can lead to the execution of arbitrary code. iDefense confirmed the existence of this vulnerability in rdesktop version 1.5.0. Previous versions may also be affected.
Homepage:http://www.idefense.com/
File Size:3480
Related CVE(s):CVE-2008-1802
Last Modified:May 7 20:42:49 2008
MD5 Checksum:dcb778aa36d5093d53a1522ad73f6ceb

 ///  File Name: 05.07.08-3.txt
Description:
iDefense Security Advisory 05.07.08 - Remote exploitation of an integer signedness vulnerability in rdesktop, as included in various vendors' operating system distributions, allows attackers to execute arbitrary code with the privileges of the logged-in user. The vulnerability exists within the code responsible for reallocating dynamic buffers. The rdesktop xrealloc() function uses a signed comparison to determine if the requested allocation size is less than 1. When this occurs, the function will incorrectly set the allocation size to be 1. This results in an improperly sized heap buffer being allocated, which can later be overflowed. iDefense confirmed the existence of this vulnerability in rdesktop version 1.5.0. Previous versions may also be affected.
Homepage:http://www.idefense.com/
File Size:3416
Related CVE(s):CVE-2008-1803
Last Modified:May 7 20:43:37 2008
MD5 Checksum:c3320ef9f586bf2a8eadea9bdb952524

 ///  File Name: 05.12.08-1.txt
Description:
iDefense Security Advisory 05.12.08 - Local exploitation of an input validation vulnerability within version 5.1.2600.2180 of i2omgmt.sys, as included with Microsoft Corp's Windows XP operating system, could allow an attacker to execute arbitrary code in the context of the kernel. iDefense has confirmed the existence of this vulnerability in i2omgmt.sys version 5.1.2600.2180 as installed on some Windows XP SP2 systems. All other Windows releases with this driver, including previous versions, are suspected to be vulnerable.
Author:Ruben Santamarta
Homepage:http://www.idefense.com/
File Size:4025
Related CVE(s):CVE-2008-0322
Last Modified:May 12 18:28:36 2008
MD5 Checksum:9a855b4f3e57f9d46308c1a0f2293ded

 ///  File Name: 05.13.08-1.txt
Description:
iDefense Security Advisory 05.13.08 - Remote exploitation of a memory corruption vulnerability in Microsoft Corp.'s Word could allow attackers to execute arbitrary code with the privileges of the logged in user. This vulnerability exists in the way Word handles CSS rules in an HTML document. When the number of CSS selectors is above some specific amount, an unspecified object will be corrupted causing Word to access a memory region that has already been freed. iDefense has confirmed fully patched Microsoft Word 2003 SP2, Microsoft Word XP SP3, Microsoft Word 2000 SP3 are vulnerable. Microsoft Word 2003 SP3 and Microsoft Word 2007 do not appear to be affected. Microsoft reports that all supported versions of Word, Word Viewer, and Outlook 2007 are vulnerable.
Author:Jun Mao
Homepage:http://www.idefense.com/
File Size:4164
Related CVE(s):CVE-2008-1434
Last Modified:May 13 15:39:58 2008
MD5 Checksum:fd7486dbe9fda5cc2883cbfa6ad3cc65

 ///  File Name: aap-bypass.txt
Description:
Two critical vulnerabilities exist in the javascript API of Adobe Acrobat Professional 7. A remote attacker who successfully exploits these vulnerabilities can execute restricted functions and arbitrary codes on the affected system. Adobe Acrobat Professional version 7.0.9 is affected.
Author:cocoruder
Homepage:http://ruder.cdut.net/
File Size:3586
Related CVE(s):CVE-2008-2042
Last Modified:May 7 13:32:04 2008
MD5 Checksum:d5e4c5adb0d84a55148b570fa73bccdc

 ///  File Name: AD20080506EN.txt
Description:
The Yahoo! Assistant (3721) ActiveX control is susceptible to a remote code execution vulnerability. Versions 3.6 and below are affected.
Author:Sowhat
Homepage:http://www.nevisnetworks.com/
File Size:2584
Last Modified:May 6 19:09:16 2008
MD5 Checksum:93a8a3701807b7809398c4ed10235e20

 ///  File Name: AD20080514.txt
Description:
The Microsoft Malware Protection Engine is susceptible to two denial of service vulnerabilities.
Author:Sowhat
Homepage:http://www.nevisnetworks.com/
File Size:2282
Related CVE(s):CVE-2008-1437, CVE-2008-1438
Last Modified:May 15 03:54:53 2008
MD5 Checksum:349d87c5c46ed91f4800ece0f2e55999

 ///  File Name: adobe-print-v2.txt
Description:
A design error vulnerability exists in Adobe Reader and Adobe Acrobat Professional. A remote attacker who successfully exploit this vulnerability can control the printer without user's permission. Affected software versions include Adobe Reader 8.1.1 and below and Adobe Acrobat Professional 8.1.1 and below. This is an updated advisory.
Author:cocoruder
Homepage:http://ruder.cdut.net/
Related File:adobe-print.txt
File Size:2533
Related CVE(s):CVE-2008-0655
Last Modified:May 7 13:34:32 2008
MD5 Checksum:b5590bc735cc6ed7a4c5c8923db40f71

 ///  File Name: aid-051408.asc
Description:
Aruba Networks Security Advisory - A user authentication vulnerability was discovered during standard bug reporting procedures in the Aruba Mobility Controller. This vulnerability only affects customers using TACACS authentication for Controller management users. Cross-site scripting vulnerabilities were discovered during standard bug reporting procedures in the Aruba Mobility Controller. Certain malformed inputs to the web UI allow the injection of cross-site scripting (XSS) components, leading to a potential compromise of client web session integrity.
Homepage:http://www.arubanetworks.com/
File Size:6764
Last Modified:May 15 13:16:38 2008
MD5 Checksum:66fe78e297c3c703c1907d3bf9ea75e9

 ///  File Name: astrocam-xss.txt
Description:
AstroCam versions 2.5.0 through 2.7.3 suffer from a cross site scripting vulnerability.
Author:Steffen Wendzel
Homepage:http://www.wendzel.de/
File Size:598
Last Modified:May 1 10:48:53 2008
MD5 Checksum:da3dc7e8fa1ea5f18aabbed41e811105

 ///  File Name: bugzilla-multi.txt
Description:
Bugzilla Security Advisory - Bugzilla version 3.1.3 suffers from an unauthorized bug change vulnerability. Versions 2.17.2 and higher suffer from a cross site scripting vulnerability. Versions 2.23.4 and higher suffer from an account impersonation vulnerability.
Author:Frederic Buclin, Max Kanat-Alexander, Bradley Baetz, Loren Butler, Marc Schumann
Homepage:http://www.bugzilla.org/
File Size:3485
Last Modified:May 6 18:53:45 2008
MD5 Checksum:13db085e595afc0bfe20386178dd1ece

 ///  File Name: cisco-sa-20080514-csm.txt
Description:
Cisco Security Advisory - The Cisco Content Switching Module (CSM) and Cisco Content Switching Module with SSL (CSM-S) contain a memory leak vulnerability that can result in a denial of service condition. The vulnerability exists when the CSM or CSM-S is configured for layer 7 load balancing. An attacker can trigger this vulnerability when the CSM or CSM-S processes TCP segments with a specific combination of TCP flags while servers behind the CSM/CSM-S are overloaded and/or fail to accept a TCP connection.
Homepage:http://www.cisco.com/
File Size:17388
Related CVE(s):CVE-2008-1749
Last Modified:May 15 04:25:13 2008
MD5 Checksum:0a7dfcd9f771e114ed6eafdd02388931

 ///  File Name: cisco-sa-20080514-cucmdos.txt
Description:
Cisco Security Advisory - Cisco Unified Communications Manager, formerly Cisco CallManager, contains multiple denial of service (DoS) vulnerabilities that may cause an interruption in voice services, if exploited. These vulnerabilities were discovered internally by Cisco.
Homepage:http://www.cisco.com/
File Size:23251
Related CVE(s):CVE-2008-1742, CVE-2008-1743, CVE-2008-1744, CVE-2008-1745, CVE-2008-1747, CVE-2008-1748, CVE-2008-1746
Last Modified:May 15 04:27:01 2008
MD5 Checksum:f01d649c7340d9b0d53c17cf1ce68606

 ///  File Name: cisco-sa-20080514-cup.txt
Description:
Cisco Security Advisory - Administrators of systems running all Cisco Unified Presence versions can determine the software version by viewing the main page of the Cisco Unified Presence Administration interface. The software version can be determined by running the command show version active via the Command Line Interface (CLI).
Homepage:http://www.cisco.com/
File Size:11779
Related CVE(s):CVE-2008-1740, CVE-2008-1741
Last Modified:May 15 04:28:20 2008
MD5 Checksum:fddfe8a3e45e0c202a50e5bc67fa484a

 ///  File Name: cod4statz.txt
Description:
Call of Duty 4: Modern Warfare versions 1.5 and below are susceptible to a denial of service vulnerability.
Author:Luigi Auriemma
Homepage:http://aluigi.org/
Related Exploit:cod4statz.zip
File Size:4044
Last Modified:May 2 16:39:52 2008
MD5 Checksum:e1f594ee499ddd8246fbc815033fbe6c

 ///  File Name: CORE-2008-0129.txt
Description:
Core Security Technologies Advisory - A vulnerability was found in Wonderware SuiteLink Service ('slssvc.exe') that could allow an un-authenticated remote attacker with the ability to connect to the SuiteLink service TCP port to shutdown the service abnormally by sending a malformed packet. Exploitation of the vulnerability for remote code execution has not been proven, but it has not been eliminated as a potential scenario.
Author:Sebastian Muniz
Homepage:http://www.coresecurity.com/corelabs/
File Size:17419
Related CVE(s):CVE-2008-2005
Last Modified:May 6 16:21:55 2008
MD5 Checksum:cbba5446dc9d1e16b74a4f9c8d3500c9

 ///  File Name: dsa-1554-2.txt
Description:
Debian Security Advisory 1554-2 - Roundup, an issue tracking system, fails to properly escape HTML input, allowing an attacker to inject client-side code (typically JavaScript) into a document that may be viewed in the victim's browser.
Homepage:http://www.debian.org/security
File Size:3142
Related CVE(s):CVE-2008-1474
Last Modified:May 6 16:40:22 2008
MD5 Checksum:23546650cebe54b7719fbd4c9d712eed

 ///  File Name: dsa-1564-1.txt
Description:
Debian Security Advisory 1564-1 - Several remote vulnerabilities have been discovered in wordpress, a weblog manager. Multiple cross-site scripting vulnerabilities allowed remote authenticated administrators to inject arbitrary web script or HTML. SQL injection vulnerability allowed allowed remote authenticated administrators to execute arbitrary SQL commands. WordPress allows remote attackers to cause a denial of service (bandwidth or thread consumption) via pingback service calls with a source URI that corresponds to a file with a binary content type, which is downloaded even though it cannot contain usable pingback data. Insufficient input sanitising caused an attacker with a normal user account to access the administrative interface.
Homepage:http://www.debian.org/security
File Size:3992
Related CVE(s):CVE-2007-3639, CVE-2007-4153, CVE-2007-4154, CVE-2007-0540
Last Modified:May 1 18:32:00 2008
MD5 Checksum:c02afb1d586036ee19f75990816839c2

 ///  File Name: dsa-1565-1.txt
Description:
Debian Security Advisory 1565-1 - Several local vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code. Cyrill Gorcunov reported a NULL pointer dereference in code specific to the CHRP PowerPC platforms. Local users could exploit this issue to achieve a Denial of Service (DoS). Nick Piggin of SuSE discovered a number of issues in subsystems which register a fault handler for memory mapped areas. This issue can be exploited by local users to achieve a Denial of Service (DoS) and possibly execute arbitrary code. David Peer discovered that users could escape administrator imposed cpu time limitations (RLIMIT_CPU) by setting a limit of 0. Alexander Viro discovered a race condition in the directory notification subsystem that allows local users to cause a Denial of Service (oops) and possibly result in an escalation of privileges.
Homepage:http://www.debian.org/security
File Size:37278
Related CVE(s):CVE-2007-6694, CVE-2008-0007, CVE-2008-1294, CVE-2008-1375
Last Modified:May 1 18:34:19 2008
MD5 Checksum:ae6543607f059d419bb854fa3f84d205

 ///  File Name: dsa-1566-1.txt
Description:
Debian Security Advisory 1566-1 - Dmitry Levin discovered a vulnerability in path handling code used by the cpio archive utility. The weakness could enable a denial of service (crash) or potentially the execution of arbitrary code if a vulnerable version of cpio is used to extract or to list the contents of a maliciously crafted archive.
Homepage:http://www.debian.org/security
File Size:4745
Related CVE(s):CVE-2007-4476
Last Modified:May 2 15:28:57 2008
MD5 Checksum:476ba261ed8d427273e76818858d57c5

 ///  File Name: dsa-1567-1.txt
Description:
Debian Security Advisory 1567-1 - Stefan Cornelius discovered a vulnerability in the Radiance High Dynamic Range (HDR) image parser in Blender, a 3D modelling application. The weakness could enable a stack-based buffer overflow and the execution of arbitrary code if a maliciously-crafted HDR file is opened, or if a directory containing such a file is browsed via Blender's image-open dialog.
Homepage:http://www.debian.org/security
File Size:5193
Related CVE(s):CVE-2008-1102
Last Modified:May 5 14:20:24 2008
MD5 Checksum:17e02085dd445b7a2b13941066ee38c4

 ///  File Name: dsa-1568-1.txt
Description:
Debian Security Advisory 1568-1 - "unsticky" discovered that b2evolution, a blog engine, performs insufficient input sanitising, allowing for cross site scripting.
Homepage:http://www.debian.org/security
File Size:3120
Related CVE(s):CVE-2007-0175
Last Modified:May 5 14:20:54 2008
MD5 Checksum:f9e73cec816de809b3aa14a1a0c1a5ce

 ///  File Name: dsa-1569-1.txt
Description:
Debian Security Advisory 1569-1 - It was discovered that Cacti, a systems and services monitoring frontend, performed insufficient input sanitizing, leading to cross site scripting and SQL injection being possible.
Homepage:http://www.debian.org/security
File Size:3076
Related CVE(s):CVE-2008-0783, CVE-2008-0785
Last Modified:May 5 14:21:38 2008
MD5 Checksum:7e570d1ee38f5fd86083687cc05921e8