Section: .. / 0610-advisories /
| /// File Name: |
LS-20060330.pdf |
Description:
|
LSsec has discovered a vulnerability in Computer Associates BrightStor ARCserve Backup, which could be exploited by an anonymous attacker in order to execute arbitrary code with SYSTEM privileges on an affected system. The flaw specifically exists within the Message Engine (msgeng.exe) due to incorrect handling of RPC requests on TCP port 6503. The interface is identified by dc246bf0-7a7a-11ce-9f88-00805fe43838. Opnum 45 specifies the vulnerable operation within this interface.
| | Homepage: | http://www.lssec.com/ | | File Size: | 16021 | | Last Modified: | Oct 12 01:15:04 2006 |
| MD5 Checksum: | 3b7c765a2ecc349f349588246f562d62 |
|
| /// File Name: |
LS-20060313.pdf |
Description:
|
LSsec has discovered a vulnerability in Computer Associates BrightStor ARCserve Backup, which could be exploited by an anonymous attacker in order to execute arbitrary code with SYSTEM privileges on an affected system. The flaw specifically exists within the Message Engine (msgeng.exe) due to incorrect handling of RPC requests on TCP port 6503. The interface is identified by c246bf0-7a7a-11ce-9f88-00805fe43838. Opnum 43 specifies the vulnerable operation within this interface.
| | Homepage: | http://www.lssec.com/ | | File Size: | 10454 | | Last Modified: | Oct 12 01:14:12 2006 |
| MD5 Checksum: | 2c97d955e2d14d7b2c2f319ea7efce92 |
|
| /// File Name: |
LS-20060220.pdf |
Description:
|
LSsec has discovered a vulnerability in Computer Associates BrightStor ARCserve Backup, which could be exploited by an anonymous attacker in order to execute arbitrary code with SYSTEM privileges on an affected system. The flaw specifically exists within the Discovery Service (casdscsvc.exe) due to incorrect handling of requests on TCP port 41523.
| | Homepage: | http://www.lssec.com/ | | File Size: | 11278 | | Last Modified: | Oct 12 01:13:18 2006 |
| MD5 Checksum: | b6105d76cd92a456c5578370c02539bb |
|
| /// File Name: |
lotusApplets.txt |
Description:
|
Lotus Notes versions below 6.5.4 and 6.0.5 suffer from multiple vulnerabilities having to do with Java Applets.
| | Author: | Jouko Pynnonen | | Homepage: | http://iki.fi/jouko | | File Size: | 3176 | | Last Modified: | Oct 12 00:51:30 2006 |
| MD5 Checksum: | 62b31aee8f7e335e5bf9356eca15eae2 |
|
| /// File Name: |
glsa-2006010-03.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200610-03 - Tavis Ormandy of the Google Security Team discovered a static buffer underflow in ncompress. Versions less than 4.2.4.1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2566 | | Last Modified: | Oct 12 00:05:40 2006 |
| MD5 Checksum: | 6af5650e4f8e6b6edbd58c6cd9dbe9d9 |
|
| /// File Name: |
USN-359-1.txt |
Description:
|
Ubuntu Security Notice 359-1 - Benjamin C. Wiley Sittler discovered that Python's repr() function did not properly handle UTF-32/UCS-4 strings. If an application uses repr() on arbitrary untrusted data, this could be exploited to execute arbitrary code with the privileges of the python application.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 28365 | | Related CVE(s): | CVE-2006-4980 | | Last Modified: | Oct 12 00:05:28 2006 |
| MD5 Checksum: | 88f2eb792fa6a2cce2592044b53f592c |
|
| /// File Name: |
torrentfluxXSS.txt |
Description:
|
Torrentflux version 2.1 suffers from a cross site scripting condition using the User-Agent as an attack vector.
| | Author: | Steven Roddis | | Homepage: | http://www.stevenroddis.com.au/ | | File Size: | 681 | | Last Modified: | Oct 12 00:03:22 2006 |
| MD5 Checksum: | 442e4995d057717e055e2797d857c9bd |
|
| /// File Name: |
sa20717.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to conduct spoofing attacks.
| | Homepage: | http://secunia.com/advisories/20717/ | | File Size: | 3658 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | c7f4a85912ca247718eac98915dee761 |
|
| /// File Name: |
sa22217.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Etomite, which can be exploited by malicious people to conduct SQL injection attacks
| | Homepage: | http://secunia.com/advisories/22217/ | | File Size: | 2162 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | 74dcd04844b3bd78e24ccf7343d2504f |
|
| /// File Name: |
sa22253.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Linux Kernel, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/22253/ | | File Size: | 2125 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | 919ee566ac58d63402076cd83b8f1aa7 |
|
| /// File Name: |
sa22267.txt |
Description:
|
Secunia Security Advisory - Shawn Merdinger has reported a vulnerability in the Linksys SPA921 VoIP Phone, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/22267/ | | File Size: | 2164 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | c2828ee0dc83ffc4b3a089965d46054a |
|
| /// File Name: |
sa22282.txt |
Description:
|
Secunia Security Advisory - Maksymilian Arciemowicz has reported a vulnerability in PHP, which can be exploited by malicious, local users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/22282/ | | File Size: | 2337 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | ee1e4a8f52e082b1d23679c3ce5452d6 |
|
| /// File Name: |
sa22286.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been discovered in Eazy Cart, which can be exploited by malicious people to bypass certain security restriction, disclose sensitive information, manipulate orders, and to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/22286/ | | File Size: | 2976 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | 402ee845d464ed72988d9d8b5ac064dd |
|
| /// File Name: |
sa22297.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for python. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/22297/ | | File Size: | 2363 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | 4c37e0bdae72fafd1c3239d4e5c1c2d2 |
|
| /// File Name: |
sa22304.txt |
Description:
|
Secunia Security Advisory - CERT/CC has reported two vulnerabilities in AOL, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/22304/ | | File Size: | 2379 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | 96bf572d36e6cd65542350912176d6f4 |
|
| /// File Name: |
sa22306.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for awstats. This fixes some vulnerabilities, which can be exploited by malicious people to disclose system information and conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/22306/ | | File Size: | 3910 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | 92adea7f735f7493c664dfb5298381f9 |
|
| /// File Name: |
sa22307.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in ASP.NET 2.0, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/22307/ | | File Size: | 2386 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | 7e2fbf21341dd81d02fe377fdab898d8 |
|
| /// File Name: |
sa22311.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for libwmf. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/22311/ | | File Size: | 8632 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | e7b82ce7f6146058c91b7e2b6348a61a |
|
| /// File Name: |
sa22312.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Adobe ColdFusion, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/22312/ | | File Size: | 2568 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | f4b21a41a896d9b7c89c496939ad73ac |
|
| /// File Name: |
sa22318.txt |
Description:
|
Secunia Security Advisory - Kacper has discovered a vulnerability in Webmedia Explorer, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/22318/ | | File Size: | 2304 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | 7b64210e335b4b0536f57440b708fa3f |
|
| /// File Name: |
sa22327.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Macromedia Breeze, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/22327/ | | File Size: | 2270 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | 67e3e0ce7698a05ffc0a1d6cefbb2de3 |
|
| /// File Name: |
sa22328.txt |
Description:
|
Secunia Security Advisory - Tamriel has discovered some vulnerabilities in eXpBlog, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/22328/ | | File Size: | 2247 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | b2efdab54c11dfad3ee9fa106f750886 |
|
| /// File Name: |
sa22329.txt |
Description:
|
Secunia Security Advisory - A security issue has been reported in Adobe Contribute Publishing Server, which can be exploited by malicious, local users to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/22329/ | | File Size: | 2267 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | 4ce3187645d48cf0873c5627dfcf1390 |
|
| /// File Name: |
sa22331.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for php4 and php5. This fixes some vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions and by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/22331/ | | File Size: | 27517 | | Last Modified: | Oct 11 23:39:42 2006 |
| MD5 Checksum: | 2468208c1b6db69eff5d9b00353da384 |
|
|
|
|
|