Section: .. / 0708-advisories /
| /// File Name: |
sa26343.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for tetex-bin. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26343/ | | File Size: | 8452 | | Last Modified: | Aug 8 06:01:26 2007 |
| MD5 Checksum: | 09b649578dc3d3ee7c5f5a31b12df255 |
|
| /// File Name: |
HPSBMA02242.txt |
Description:
|
HP Security Bulletin - A potential vulnerability has been identified with HP OpenView Network Node Manager (OV NNM) running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
| | Homepage: | http://www.hp.com | | File Size: | 8390 | | Last Modified: | Aug 14 06:04:44 2007 |
| MD5 Checksum: | dd2e6da4fcb3ac720a1c0ade14802d0a |
|
| /// File Name: |
dumsdei.txt |
Description:
|
Doomsday versions 1.9.0-beta5.1 and below suffer from buffer overflow and format string vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related Exploit: | dumsdei.zip | | File Size: | 8349 | | Last Modified: | Aug 30 10:15:31 2007 |
| MD5 Checksum: | 3f4767bc7e6e053246ecf8f765f81257 |
|
| /// File Name: |
sa26470.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for kdegraphics. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26470/ | | File Size: | 8221 | | Last Modified: | Aug 15 21:37:35 2007 |
| MD5 Checksum: | 0f98337c76a6a6f26a88bb08e09d2075 |
|
| /// File Name: |
FreeBSD-SA-07-01.jail.txt |
Description:
|
FreeBSD Security Advisory - Due to the lack of handling of potential symbolic links the host's jail rc.d(8) script is vulnerable to "symlink attacks". By replacing /var/log/console.log inside the jail with a symbolic link it is possible for the superuser (root) inside the jail to overwrite files on the host system outside the jail with arbitrary content. This in turn can be used to execute arbitrary commands with non-jailed superuser privileges.
| | Homepage: | http://security.freebsd.org/ | | File Size: | 8186 | | Related CVE(s): | CVE-2007-0166 | | Last Modified: | Aug 8 06:59:47 2007 |
| MD5 Checksum: | 91c3bba6bc61df9f97171190e093fef4 |
|
| /// File Name: |
sa26342.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for libextractor. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/26342/ | | File Size: | 8167 | | Last Modified: | Aug 8 06:01:26 2007 |
| MD5 Checksum: | 4a0696f146b3cd4ea00eaa260d76c7dc |
|
| /// File Name: |
dsa-1359-1.txt |
Description:
|
Debian Security Advisory 1359-1 - It was discovered that dovecot, a secure mail server that supports mbox and maildir mailboxes, when configured to use non-system-user spools and compressed folders, may allow directory traversal in mailbox names.
| | Homepage: | http://www.debian.org/security | | File Size: | 8016 | | Related CVE(s): | CVE-2007-2231 | | Last Modified: | Aug 29 06:32:31 2007 |
| MD5 Checksum: | 3792aaa1f9e025b0d53212d5c628ad5e |
|
| /// File Name: |
SSRT071449.txt |
Description:
|
HP Security Bulletin - A potential vulnerability has been identified with HP-UX running BIND. The vulnerability could be exploited remotely to poison the DNS cache.
| | Homepage: | http://www.hp.com/ | | File Size: | 8000 | | Related CVE(s): | CVE-2007-2926 | | Last Modified: | Aug 8 09:22:58 2007 |
| MD5 Checksum: | 39021d82f847d79c5714b130df3847bc |
|
| /// File Name: |
AST-2007-021.txt |
Description:
|
Asterisk Project Security Advisory - Asterisk suffers from a crash vulnerability when passed invalid MIME bodies when using voicemail with IMAP storage.
| | Author: | Mark Michelson | | Homepage: | http://www.asterisk.org/security | | File Size: | 7835 | | Related CVE(s): | CVE-2007-4521 | | Last Modified: | Aug 25 21:18:45 2007 |
| MD5 Checksum: | 93014d535c4f78e94d23d6c9ee447326 |
|
| /// File Name: |
cisco-sr-20070808-mp.txt |
Description:
|
Cisco Security Response - This is the Cisco PSIRT response to an issue discovered and reported to Cisco by Roger Jefferiss and Rob Pope of SecureTest Ltd, UK regarding cross-site scripting (XSS) vulnerability in Cisco Unified MeetingPlace Web Conferencing.
| | Homepage: | http://www.cisco.com/ | | File Size: | 7742 | | Last Modified: | Aug 9 03:01:46 2007 |
| MD5 Checksum: | edbf0f5753204684b5ed59fa311d5e14 |
|
| /// File Name: |
sa26447.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft XML Core Services, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26447/ | | File Size: | 7709 | | Last Modified: | Aug 15 04:09:30 2007 |
| MD5 Checksum: | 7bdd5f54eea44030e9bf275cbcbb4cc8 |
|
| /// File Name: |
SSRT071442.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified in HP-UX running the Ignite-UX or the DynRootDisk (DRD) get_system_info command. The vulnerable command can change system networking parameters without notification.
| | Homepage: | http://www.hp.com/ | | File Size: | 7608 | | Last Modified: | Aug 28 04:39:42 2007 |
| MD5 Checksum: | 067196925602247164561609fce2ee65 |
|
| /// File Name: |
dsa-1353-1.txt |
Description:
|
Debian Security Advisory 1353-1 - It was discovered that an integer overflow in the BGP dissector of tcpdump, a powerful tool for network monitoring and data acquisition, may lead to the execution of arbitrary code.
| | Homepage: | http://www.debian.org/security | | File Size: | 7350 | | Related CVE(s): | CVE-2007-3798 | | Last Modified: | Aug 14 02:35:58 2007 |
| MD5 Checksum: | ea0580ab837c6465107dbc49ab891f73 |
|
| /// File Name: |
drac-ssh.txt |
Description:
|
The SSH daemon embedded on the Dell DRAC4 is susceptible to a remote denial of service condition when being scanned.
| | Author: | ETES GmbH | | Homepage: | http://www.etes.de/ | | File Size: | 7236 | | Last Modified: | Aug 14 05:52:27 2007 |
| MD5 Checksum: | e876a09adfd0da1c650b1bc62b1ba3ae |
|
| /// File Name: |
MDKSA-2007-165.txt |
Description:
|
Mandriva Linux Security Advisory - Maurycy Prodeus found an integer overflow vulnerability in the way various PDF viewers processed PDF files. An attacker could create a malicious PDF file that could cause cups to crash and possibly execute arbitrary code open a user opening the file.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 7172 | | Related CVE(s): | CVE-2007-3387 | | Last Modified: | Aug 16 10:47:55 2007 |
| MD5 Checksum: | 99560061e62852f302dc418de9ecbe74 |
|
| /// File Name: |
toribashish.txt |
Description:
|
Toribash versions 2.71 and below suffer from buffer overflow and format string vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related Exploit: | toribashish.zip | | File Size: | 7133 | | Last Modified: | Aug 20 03:41:18 2007 |
| MD5 Checksum: | a41802309d644a473be3e484e199e5ae |
|
| /// File Name: |
sa26404.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for tcpdump. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26404/ | | File Size: | 7028 | | Last Modified: | Aug 14 02:06:50 2007 |
| MD5 Checksum: | 1dd6b18bf55d1244ce45b032c1da9654 |
|
| /// File Name: |
HPSBMA02244.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with the HP OpenView Business Process Insight family of products running Shared Trace Service on Windows. The vulnerability could be remotely exploited to execute arbitrary code. The HP OpenView Business Process Insight family of products includes HP OpenView Business Process Insight (OVBPI), HP Business Process Insight (HPBPI) , HP OpenView Service Desk Process Insight (SDPI), and HP Service Desk Process Insight (HPSDPI).
| | Homepage: | http://www.hp.com | | File Size: | 6980 | | Last Modified: | Aug 14 06:06:07 2007 |
| MD5 Checksum: | 4dfb45ad0c5bb74806c6f7d471403c22 |
|
| /// File Name: |
HPSBMA02237.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP OpenView Performance Agent (OVPA) running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
| | Homepage: | http://www.hp.com | | File Size: | 6829 | | Last Modified: | Aug 14 06:01:47 2007 |
| MD5 Checksum: | 499d4cfe7e864bce4079df7a29f0db80 |
|
| /// File Name: |
MDKSA-2007-167.txt |
Description:
|
Mandriva Linux Security Advisory - David Thiel discovered that libvorbis did not correctly verify the size of certain headers, and did not correctly clean up a broken stream. If a user were tricked into processing a specially crafted Vorbis stream, a remote attacker could possibly cause a denial of service or execute arbitrary code with the user's privileges.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 6817 | | Related CVE(s): | CVE-2007-3106, CVE-2007-4029 | | Last Modified: | Aug 20 03:48:15 2007 |
| MD5 Checksum: | b4bd12856430c6ad4b005b1447ea5561 |
|
| /// File Name: |
HPSBMA02235.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP OpenView Internet Service (OVIS) running Shared Trace Service on HP-UX, Linux, Solaris, and Windows. The vulnerability could be remotely exploited to execute arbitrary code.
| | Homepage: | http://www.hp.com | | File Size: | 6650 | | Last Modified: | Aug 14 06:00:32 2007 |
| MD5 Checksum: | 51bc5f9d668bed43e2e0bfdf1adff919 |
|
| /// File Name: |
HPSBMA02246.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP OpenView Performance Insight (OVPI) running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
| | Homepage: | http://www.hp.com | | File Size: | 6626 | | Last Modified: | Aug 14 06:08:21 2007 |
| MD5 Checksum: | 29a45446c2a6c1f64352b49bb2758144 |
|
| /// File Name: |
HPSBMA02241.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP OpenView Service Quality Manager (OV SQM) running Shared Trace Service. The vulnerability could be remotely exploited to execute arbitrary code.
| | Homepage: | http://www.hp.com | | File Size: | 6556 | | Last Modified: | Aug 14 06:03:54 2007 |
| MD5 Checksum: | ceddbaa056765285681986b355c7775c |
|
|
|
|
|