Section: .. / 0701-advisories /
| /// File Name: |
sa23629.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Cisco Secure ACS, which can be exploited by malicious users or people to cause a DoS (Denial of Service) or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23629/ | | File Size: | 3443 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | 471d2335fcb3fecc5a180ba68fc3a34b |
|
| /// File Name: |
sa23630.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Sun Java System Content Delivery Server, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/23630/ | | File Size: | 2592 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | 2d248866c484cd5dba96b70f513a15e8 |
|
| /// File Name: |
sa23639.txt |
Description:
|
Secunia Security Advisory - Adonis (a.k.a. NtWaK0) and Abed (a.k.a. NoPh0BiA) have discovered a security issue in SecureKit Steganography, which can be exploited by malicious people to gain knowledge of sensitive information.
| | Homepage: | http://secunia.com/advisories/23639/ | | File Size: | 2565 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | 1b69ae60189c03c982ff00c5bb9b5e94 |
|
| /// File Name: |
sa23645.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Kolayindir Download, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/23645/ | | File Size: | 2250 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | 487bdb9071ccb4a5f7e03a0805b7a3e6 |
|
| /// File Name: |
sa23650.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for Sun Java. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23650/ | | File Size: | 12878 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | 3df5bdeb351fdef8eca0ebcd928310c3 |
|
| /// File Name: |
sa23653.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Mac OS X, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/23653/ | | File Size: | 2578 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | 896344787a85e1c4de141acb7b6181c1 |
|
| /// File Name: |
sa23657.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in RI Blog, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/23657/ | | File Size: | 2338 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | aa633c1a9559406f9b9d5415fa8e9cb9 |
|
| /// File Name: |
sa23666.txt |
Description:
|
Secunia Security Advisory - Piotr Bania has reported a vulnerability in Adobe Reader, which can potentially be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/23666/ | | File Size: | 2543 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | d630ae8ba0228c0637ffe414e581bd9d |
|
| /// File Name: |
sa23668.txt |
Description:
|
Secunia Security Advisory - Inge Henriksen has reported a vulnerability in Adobe ColdFusion MX, which can be exploited by malicious people to disclose potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/23668/ | | File Size: | 2698 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | e066a8659fb047786562236cec416c55 |
|
| /// File Name: |
sa23684.txt |
Description:
|
Secunia Security Advisory - Sean Larsson has reported some vulnerabilities in XFree86, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/23684/ | | File Size: | 2650 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | 4cae77a334da4b0029306083157d6200 |
|
| /// File Name: |
sa23690.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Kerberos, which can potentially be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23690/ | | File Size: | 2627 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | 797cf7805a4c4dd1975d55583f322d3d |
|
| /// File Name: |
sa23696.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Kerberos, which can potentially be exploited by malicious people to cause a DoS (Denial of Service) or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23696/ | | File Size: | 2685 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | ddd51cded96f765972d13d88d2ea2f3d |
|
| /// File Name: |
sa23702.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in phpMyAdmin, some of which have unknown impacts, while some can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/23702/ | | File Size: | 2613 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | 38454d9be1e4177057ffcf1ffd98d261 |
|
| /// File Name: |
sa23706.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for krb5. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23706/ | | File Size: | 3509 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | 271294e2f5eccf417485851e3e956e4f |
|
| /// File Name: |
sa23707.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for krb5. This fixes two vulnerabilities, which can be exploited by malicious, local users to perform certain actions with escalated privileges, or by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23707/ | | File Size: | 3647 | | Last Modified: | Jan 10 13:19:08 2007 |
| MD5 Checksum: | 3ff3fb667b2aca63785abcf3a1913c7f |
|
| /// File Name: |
sa23575.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Kaspersky Antivirus, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/23575/ | | File Size: | 2957 | | Last Modified: | Jan 6 19:54:29 2007 |
| MD5 Checksum: | 9bed4dee46fdbfcd8f5c9294c20c7bf8 |
|
| /// File Name: |
sa23622.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Eudora WorldMail, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/23622/ | | File Size: | 2554 | | Last Modified: | Jan 6 19:54:29 2007 |
| MD5 Checksum: | 7b64b1e8cd2421f4d631338c79359ed8 |
|
| /// File Name: |
01.05.07-2.txt |
Description:
|
iDefense Security Advisory 01.05.07 - Remote exploitation of a heap overflow in Opera Software ASA's Opera Web browser could allow an attacker to execute arbitrary code in the security context of the current user. The vulnerability specifically exists due to Opera improperly processing a JPEG DHT marker. The DHT marker is used to define a Huffman Table which is used for decoding the image data. An invalid number of index bytes in the DHT marker will trigger a heap overflow with partially user controlled data. iDefense has confirmed the existence of this vulnerability in Opera version 9.02 on both Windows and Linux. Previous versions may also be affected.
| | Author: | Christoph Diehl | | Homepage: | http://www.idefense.com/ | | File Size: | 2940 | | Last Modified: | Jan 6 19:54:05 2007 |
| MD5 Checksum: | baa00e3119c312f9f99f074d96592fd7 |
|
| /// File Name: |
01.05.07-1.txt |
Description:
|
iDefense Security Advisory 01.05.07 - Remote exploitation of a typecasting bug in Opera Software ASA's Opera Web browser could allow an attacker to execute arbitrary code on the affected host. A flaw exists within Opera's Javascript SVG implementation. When processing a createSVGTransformFromMatrix request Opera does not properly validate the type of object passed to the function. Passing an incorrect object to this function can result in it using a pointer that is user controlled when it attempts to make the virtual function call. iDefense has confirmed the existence of this vulnerability in Opera version 9.02 on both Windows and Linux. Previous versions may also be affected.
| | Homepage: | http://www.idefense.com/ | | File Size: | 2979 | | Last Modified: | Jan 6 19:53:21 2007 |
| MD5 Checksum: | 8b6c9045a44515e5e1faa59cb9858d6e |
|
| /// File Name: |
veredirect.txt |
Description:
|
Verisign's Weblogs service is susceptible to redirection attacks.
| | Author: | ZeroKnock | | File Size: | 972 | | Last Modified: | Jan 6 19:49:34 2007 |
| MD5 Checksum: | 1bbfcaa10952c7cca665959a20f48269 |
|
| /// File Name: |
advisory_022007.141.txt |
Description:
|
Hardened PHP Project Security Advisory - WordPress versions 2.0.5 and below are susceptible to SQL injection and arbitrary PHP code execution vulnerabilities.
| | Author: | Stefan Esser | | Homepage: | http://www.hardened-php.net/ | | File Size: | 4881 | | Last Modified: | Jan 6 19:35:14 2007 |
| MD5 Checksum: | 1979b7121a3b4caad532914c3f3c4ce2 |
|
| /// File Name: |
advisory_012007.140.txt |
Description:
|
Hardened PHP Project Security Advisory - WordPress versions 2.0.5 and below are susceptible to a cross site scripting vulnerability.
| | Author: | Stefan Esser | | Homepage: | http://www.hardened-php.net/ | | File Size: | 3554 | | Last Modified: | Jan 6 19:34:22 2007 |
| MD5 Checksum: | 70bfd73413a7698ef03e25ec68a65aee |
|
| /// File Name: |
DRUPAL-SA-2007-002.txt |
Description:
|
Drupal security advisory - The way page caching was implemented allows a denial of service attack. An attacker has to have the ability to post content on the site. He or she would then be able to poison the page cache, so that it returns cached 404 page not found errors for existing pages. If the page cache is not enabled, your site is not vulnerable. The vulnerability only affects sites running on top of MySQL.
| | Author: | Uwe Hermann | | Homepage: | http://drupal.org/security | | File Size: | 1974 | | Last Modified: | Jan 6 19:33:00 2007 |
| MD5 Checksum: | 4ee5ccf0b9c894440a06c49e399edf6f |
|
| /// File Name: |
DRUPAL-SA-2007-001.txt |
Description:
|
Drupal security advisory - A few arguments passed via URLs are not properly sanitized before display. When an attacker is able to entice an administrator to follow a specially crafted link, arbitrary HTML and script code can be injected and executed in the victim's session. Such an attack may lead to administrator access if certain conditions are met.
| | Author: | Uwe Hermann | | Homepage: | http://drupal.org/security | | File Size: | 1914 | | Last Modified: | Jan 6 19:32:24 2007 |
| MD5 Checksum: | c63802f3ddcacfd814fb71e3b5b7048f |
|
| /// File Name: |
sa23549.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for OpenOffice_org. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/23549/ | | File Size: | 19094 | | Last Modified: | Jan 5 18:44:16 2007 |
| MD5 Checksum: | fa93dd1d0da084637e1804f2c7727f32 |
|
|
|
|
|