Section: .. / 0708-advisories /
| /// File Name: |
08.15.07-1.txt |
Description:
|
iDefense Security Advisory 08.15.07 - Remote exploitation of a buffer overflow vulnerability within Environmental Systems Research Institute (ESRI) Inc.'s ArcSDE service allows attackers to crash the service or potentially execute arbitrary code. This vulnerability specifically exists due to insufficient buffer space when representing user-supplied numeric values in ASCII. Certain requests result in an sprintf() call using a static-sized 8 byte stack buffer. If an attacker supplies a number that's ASCII value cannot be represented within 8 bytes, a stack-based buffer overflow occurs. The vendor has confirmed that version 9.2 of ArcSDE, as bundled with ArcGIS, is vulnerable to this attack. All versions are suspected to be vulnerable.
| | Homepage: | http://www.idefense.com/ | | File Size: | 3533 | | Related CVE(s): | CVE-2007-4278 | | Last Modified: | Aug 16 10:45:46 2007 |
| MD5 Checksum: | efc19a0f0f68db26f16302283e1efab6 |
|
| /// File Name: |
cisco-sa-20070815-vpnclient.txt |
Description:
|
Cisco Security Advisory - Two vulnerabilities exist in the Cisco VPN Client for Microsoft Windows that may allow unprivileged users to elevate their privileges to those of the LocalSystem account.
| | Homepage: | http://www.cisco.com/ | | File Size: | 20711 | | Last Modified: | Aug 16 10:43:57 2007 |
| MD5 Checksum: | 6c2a8850eb338fc8f428f12d96e27b35 |
|
| /// File Name: |
SSRT061260.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP OpenView Operations Manager for Windows (OVOW) with the OpenView Operations (OVO) add on module for OpenView Operations-Business Availability Center (OVO-BAC) integration running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
| | Homepage: | http://www.hp.com/ | | File Size: | 6525 | | Last Modified: | Aug 16 10:43:04 2007 |
| MD5 Checksum: | 9e3666ef99dd1e1a4f75453786e8ca18 |
|
| /// File Name: |
mcafee-advisory-08-2007.txt |
Description:
|
A buffer overflow exists in McAfee Virus Scan for Linux and Unix version 5.10.0 that may allow for code execution in the context of the uid running it.
| | Author: | Sebastian Wolfgarten | | Homepage: | http://www.devtarget.org/ | | File Size: | 4762 | | Last Modified: | Aug 16 10:42:17 2007 |
| MD5 Checksum: | bfdf3833ccef43127c2e0bed56d2de14 |
|
| /// File Name: |
NSFOCUS-0701.txt |
Description:
|
The NSFocus Security Team has discovered a memory corruption vulnerability in Internet Explorer 5 that allows arbitrary code execution when parsing a malicious CSS file.
| | Author: | Hu Qianwei | | Homepage: | http://www.nsfocus.com/ | | File Size: | 2650 | | Related CVE(s): | CVE-2007-0943 | | Last Modified: | Aug 16 10:40:38 2007 |
| MD5 Checksum: | 78b66138c5a9c2f8b17a6c7accc0ccf0 |
|
| /// File Name: |
MDKSA-2007-162.txt |
Description:
|
Mandriva Linux Security Advisory - Maurycy Prodeus found an integer overflow vulnerability in the way various PDF viewers processed PDF files. An attacker could create a malicious PDF file that could cause kpdf to crash and possibly execute arbitrary code open a user opening the file.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 27449 | | Related CVE(s): | CVE-2007-3387 | | Last Modified: | Aug 16 10:34:59 2007 |
| MD5 Checksum: | 55cf063d551c12a226c033fbf592a01f |
|
| /// File Name: |
safari-upload.txt |
Description:
|
Safari version 3.0.3 allows for arbitrary file uploads.
| | Author: | laurent gaffi | | File Size: | 1093 | | Last Modified: | Aug 16 10:28:27 2007 |
| MD5 Checksum: | 229284aecd6ed83bb4917e9a29a1a241 |
|
| /// File Name: |
sa26466.txt |
Description:
|
Secunia Security Advisory - Tomasz Kuczynski has reported two vulnerabilities in Apache Tomcat, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/26466/ | | File Size: | 2836 | | Last Modified: | Aug 15 21:43:40 2007 |
| MD5 Checksum: | 547496355835fd94de6326302ab1676a |
|
| /// File Name: |
sa26491.txt |
Description:
|
Secunia Security Advisory - Wouter Coekaerts has discovered a vulnerability in Advanced mIRC Integration Plugin, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26491/ | | File Size: | 2485 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | 980584fdd8fc8490908489f340471625 |
|
| /// File Name: |
sa26490.txt |
Description:
|
Secunia Security Advisory - Wouter Coekaerts has reported a vulnerability in xmms.pl, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26490/ | | File Size: | 2412 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | b13cb1f17513b8c01c47c05d5b7db539 |
|
| /// File Name: |
sa26489.txt |
Description:
|
Secunia Security Advisory - Wouter Coekaerts has reported a vulnerability in xmms.bx, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26489/ | | File Size: | 2405 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | 9fcdf5b6b88734addeb283bfa86c5d62 |
|
| /// File Name: |
sa26488.txt |
Description:
|
Secunia Security Advisory - Wouter Coekaerts has reported a vulnerability in Another xmms-info script, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26488/ | | File Size: | 2470 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | 036f94bd73a21204bfa6639009e174fc |
|
| /// File Name: |
sa26487.txt |
Description:
|
Secunia Security Advisory - Wouter Coekaerts has reported a vulnerability in a2x, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26487/ | | File Size: | 2388 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | c600f5813b711bba8ec3f66dc5951dd7 |
|
| /// File Name: |
sa26486.txt |
Description:
|
Secunia Security Advisory - Wouter Coekaerts has reported a vulnerability in Disrok, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26486/ | | File Size: | 2398 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | 20715a2f890dabb3643e94007b33ce86 |
|
| /// File Name: |
sa26485.txt |
Description:
|
Secunia Security Advisory - Wouter Coekaerts has reported a vulnerability in XMMS Remote Control Script, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26485/ | | File Size: | 2479 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | b52784e86bb116f318c41cef4edd77a6 |
|
| /// File Name: |
sa26484.txt |
Description:
|
Secunia Security Advisory - Wouter Coekaerts has reported a vulnerability in xmms-thing, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26484/ | | File Size: | 2414 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | f98757b972c40fbd7d88074d23b6d2a9 |
|
| /// File Name: |
sa26483.txt |
Description:
|
Secunia Security Advisory - Wouter Coekaerts has reported a vulnerability in multiple irssi music announcement scripts, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26483/ | | File Size: | 3010 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | b1e664ff2e8bf57f30e07c04af9db031 |
|
| /// File Name: |
sa26482.txt |
Description:
|
Secunia Security Advisory - Will Dormann has reported multiple vulnerabilities in the acpRunner ActiveX control, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26482/ | | File Size: | 2909 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | 92228bf615e4c49c8cb3586772abd45b |
|
| /// File Name: |
sa26481.txt |
Description:
|
Secunia Security Advisory - Will Dormann has reported some vulnerabilities in the Motive Communications ActiveUtils EmailData ActiveX control, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26481/ | | File Size: | 3004 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | 96d5fdc63b957afcbbc96bcd021d255b |
|
| /// File Name: |
sa26477.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Opera, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26477/ | | File Size: | 2351 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | 88d80749b254a923de3c8903c6f7a4da |
|
| /// File Name: |
sa26476.txt |
Description:
|
Secunia Security Advisory - rPath has issued an update for openoffice.org. This fixes a vulnerability, which can potentially be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26476/ | | File Size: | 2142 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | b3b6bf2d3774db076e9ef909af55598b |
|
| /// File Name: |
sa26475.txt |
Description:
|
Secunia Security Advisory - rPath has issued an update for dovecot. This fixes a weakness, which can be exploited by malicious users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26475/ | | File Size: | 2114 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | cb2c67af3c0f1e7862043025ec2ea685 |
|
| /// File Name: |
sa26473.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in phpGroupWare, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/26473/ | | File Size: | 2243 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | 3f154757bb2b6a0bdbb63ef10060e157 |
|
| /// File Name: |
sa26472.txt |
Description:
|
Secunia Security Advisory - dun has reported a vulnerability in SOTEeSKLEP, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/26472/ | | File Size: | 2390 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | 830c5d8949d46927cdfa00b95d410986 |
|
|
|
|
|