Section: .. / 0606-advisories /
| /// File Name: |
kapda-snitz.txt |
Description:
|
Snitz Forum versions 3.4.05 and below suffer from a SQL injection vulnerability.
| | Author: | FarhadKey | | Homepage: | http://www.kapda.ir/ | | File Size: | 2001 | | Last Modified: | Jun 12 10:31:49 2006 |
| MD5 Checksum: | ee43192e6f008525ada0f909f38a6d83 |
|
| /// File Name: |
major_rls11.txt |
Description:
|
OpenCMS versions 6.2.1 and below suffer from a cross site scripting flaw.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 1418 | | Last Modified: | Jun 12 10:30:27 2006 |
| MD5 Checksum: | 430b8b488c8b0d0c580e52b23e9e50b0 |
|
| /// File Name: |
glsa-200606-13.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200606-13 - MySQL is vulnerable to an injection flaw in mysql_real_escape() when used with multi-byte characters. Versions less than 4.1.20 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2854 | | Last Modified: | Jun 12 10:25:31 2006 |
| MD5 Checksum: | 25140000f00620f951d06c0b411bbd79 |
|
| /// File Name: |
glsa-200606-12.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200606-12 - A number of vulnerabilities were found and fixed in Mozilla Firefox. For details please consult the references below. Versions less than 1.5.0.4 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 4489 | | Last Modified: | Jun 12 10:25:15 2006 |
| MD5 Checksum: | 37b9e784bdab30a4220c187e7c70a5cf |
|
| /// File Name: |
glsa-200606-11.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200606-11 - Tavis Ormandy of the Gentoo Linux Auditing Team discovered that the vulnerable JPEG library ebuilds compile JPEG without the --maxmem feature which is not recommended. Versions less than 6b-r7 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2360 | | Last Modified: | Jun 12 10:24:57 2006 |
| MD5 Checksum: | bc247a8a8c2a0953ffe8242a9d03dc09 |
|
| /// File Name: |
glsa-200606-10.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200606-10 - Cscope does not verify the length of file names sourced in #include statements. Versions less than 15.5-r6 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2445 | | Last Modified: | Jun 12 10:24:36 2006 |
| MD5 Checksum: | e1488d4a059d73e3b5d1421f5fb00c92 |
|
| /// File Name: |
stadmanager.txt |
Description:
|
ST AdManager Lite v1 suffers from a cross site scripting condition.
| | Author: | luny | | File Size: | 937 | | Last Modified: | Jun 12 10:06:32 2006 |
| MD5 Checksum: | 59f0ff57fdc588554f25f3e5398b5886 |
|
| /// File Name: |
secunia-AutoMate.txt |
Description:
|
Secunia Research has discovered a vulnerability in AutoMate version 6.1.0.0, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to a boundary error in UNACEV2.DLL when extracting an ACE archive containing a file with an overly long filename. This can be exploited to cause a stack-based buffer overflow when a user extracts a specially crafted ACE archive.
| | Homepage: | http://secunia.com/ | | File Size: | 3736 | | Related CVE(s): | CVE-2005-2856 | | Last Modified: | Jun 12 09:52:00 2006 |
| MD5 Checksum: | 3a7d4013b6a8a36998ae271cc6671624 |
|
| /// File Name: |
dellOpen.txt |
Description:
|
The Dell PowerEdge Installation and Server Management Disc boots a system with X11 open to the world and sshd spawned that allows anyone access.
| | Author: | Mike | | File Size: | 1028 | | Last Modified: | Jun 12 09:40:07 2006 |
| MD5 Checksum: | b3b283e66f0049194bf84f1d5944e17f |
|
| /// File Name: |
f_bloggit-1.01.txt |
Description:
|
BloggIt versions 1.01 and below suffer from an arbitrary code execution flaw via admin.php.
| | Author: | Federico Fazzi | | File Size: | 1033 | | Last Modified: | Jun 12 08:55:38 2006 |
| MD5 Checksum: | c2ac3a5a0770c6f1772ffc3dec7e0e83 |
|
| /// File Name: |
20060606-1.txt |
Description:
|
The Microsoft NetMeeting application insufficiently validates received data opening a possibility to overwrite portions of application memory causing exceptions ranging from null-pointer access to a possible code execution. Version 3.01 has been found vulnerable.
| | Homepage: | http://www.hexview.com/ | | File Size: | 2226 | | Last Modified: | Jun 12 08:49:10 2006 |
| MD5 Checksum: | 05c8e326317457e4534ec05e4544dbea |
|
| /// File Name: |
mailmarshal61.txt |
Description:
|
The MailMarshal 6.1 SMTP Server does not unpack and analyze the content of ACE archives, making it possible to circumvent any active content filter by default.
| | Author: | O Aziz | | File Size: | 3088 | | Last Modified: | Jun 12 08:43:06 2006 |
| MD5 Checksum: | 27cc4eb2cc36fc5bfd70058aa6d83842 |
|
| /// File Name: |
advisory_042006.119.txt |
Description:
|
Hardened-PHP Project Security Advisory - DokuWiki comes with an AJAX spellchecking service that can be called by every visiting client without the need of authorization. Unfortunately, the spellchecking service used the /e modifier of preg_replace() to handle links that are embedded in the text to translate in an unsafe way, allowing for arbitrary code execution.
| | Author: | Stefan Esser | | Homepage: | http://www.hardened-php.net/ | | File Size: | 4239 | | Last Modified: | Jun 12 01:49:51 2006 |
| MD5 Checksum: | 562b9174dbf918f3c71d7a515920de4a |
|
| /// File Name: |
SSRT061157-2.txt |
Description:
|
HPSBMA02121 SSRT061157 rev.2 - HP OpenView Storage Data Protector Remote Arbitrary Command Execution
| | Homepage: | http://www.hp.com | | File Size: | 8710 | | Last Modified: | Jun 11 05:41:08 2006 |
| MD5 Checksum: | 1f03d8368331078780b0989114401a37 |
|
| /// File Name: |
SSRT051058-2.txt |
Description:
|
HPSBUX02090 SSRT051058 rev.2 - HP-UX Secure Shell Remote Denial of Service (DoS)
| | Homepage: | http://www.hp.com | | File Size: | 6608 | | Last Modified: | Jun 11 05:40:43 2006 |
| MD5 Checksum: | 27cb1ea59a221019a845e98a8d673056 |
|
| /// File Name: |
CORE-2006-0330.txt |
Description:
|
Core Security Technologies - Corelabs Advisory: CORE-2006-0330 - Asterisk PBX truncated video miniframe vulnerability
| | Homepage: | http://www.coresecurity.com/corelabs/ | | File Size: | 10805 | | Last Modified: | Jun 11 05:40:18 2006 |
| MD5 Checksum: | 4ae713429fce41232d7c46bbfc54acbf |
|
| /// File Name: |
rPSA-2006-0099-1.txt |
Description:
|
rPath Security Advisory: 2006-0099-1 - openldap
| | Homepage: | http://issues.rpath.com | | File Size: | 784 | | Last Modified: | Jun 11 05:38:08 2006 |
| MD5 Checksum: | c4fe5567218d12639f2ee8685cc705ae |
|
| /// File Name: |
rPSA-2006-0098-1.txt |
Description:
|
rPath Security Advisory: 2006-0098-1 - gdm
| | Homepage: | http://issues.rpath.com | | File Size: | 942 | | Last Modified: | Jun 11 05:37:38 2006 |
| MD5 Checksum: | 8bd0987bb5e6ab58b5ce49652f286258 |
|
| /// File Name: |
rPSA-2006-0096-1.txt |
Description:
|
rPath Security Advisory: 2006-0096-1 - spamassassin
| | Homepage: | http://issues.rpath.com | | File Size: | 787 | | Last Modified: | Jun 11 05:37:04 2006 |
| MD5 Checksum: | 372ee029ebcf01f0913cb179f475936e |
|
| /// File Name: |
FLSA-2006-190884.txt |
Description:
|
Fedora Legacy Update Advisory: FLSA:190884 - Updated squirrelmail package fixes security issues.
| | Homepage: | http://fedoralegacy.org | | File Size: | 5892 | | Last Modified: | Jun 11 05:28:34 2006 |
| MD5 Checksum: | 9d0081341575a85184ad95431f61cfc6 |
|
| /// File Name: |
FLSA-2006-190777.txt |
Description:
|
Fedora Legacy Update Advisory - FLSA:190777: Updated X.org packages fix security issue
| | Homepage: | http://fedoralegacy.org | | File Size: | 12494 | | Last Modified: | Jun 11 05:27:57 2006 |
| MD5 Checksum: | 5b3f0017791dfb6b8009c4c0cd78beb2 |
|
| /// File Name: |
FLSA-2006-189137-2.txt |
Description:
|
Fedora Legacy Update Advisory - FLSA:189137-2: Updated firefox package fixes security issues
| | Homepage: | http://fedoralegacy.org | | File Size: | 6262 | | Last Modified: | Jun 11 05:27:28 2006 |
| MD5 Checksum: | a74b7de64ffb6c564f79b8a0a510cdc1 |
|
| /// File Name: |
FLSA-2006-190941.txt |
Description:
|
Fedora Legacy Update Advisory - FLSA:190941: Updated ipsec-tools package fixes security issue
| | Homepage: | http://fedoralegacy.org | | File Size: | 4207 | | Last Modified: | Jun 11 05:26:47 2006 |
| MD5 Checksum: | f83e89373d97bf979cf472689641d60e |
|
| /// File Name: |
FLSA-2006-189137-1.txt |
Description:
|
Fedora Legacy Update Advisory: FLSA:189137-1 - Updated mozilla packages fix security issues
| | Homepage: | http://fedoralegacy.org | | File Size: | 24208 | | Last Modified: | Jun 11 05:26:14 2006 |
| MD5 Checksum: | 5e3b485fbf750ca9728fc1b03831dfbf |
|
| /// File Name: |
BloggIT-1.01.txt |
Description:
|
BloggIT versions 1.01 or prior suffer from arbitrary code execution vulnerabilities.
| | Author: | Federico Fazzi | | File Size: | 1034 | | Last Modified: | Jun 11 05:22:53 2006 |
| MD5 Checksum: | 5296db63f1f03cb6742b5c5b1ef1a480 |
|
|
|
|
|