Section: .. / 0710-advisories /
| /// File Name: |
dsa-1365-3.txt |
Description:
|
Debian Security Advisory 1365-3 - Nikolaus Schulz discovered that a programming error in id3lib, an ID3 Tag Library, may lead to denial of service through symlink attacks.
| | Homepage: | http://www.debian.org/security | | File Size: | 11932 | | Related CVE(s): | CVE-2007-4460 | | Last Modified: | Oct 2 20:20:29 2007 |
| MD5 Checksum: | 33560aae79d1bc515125ac61d6f593f2 |
|
| /// File Name: |
MDKSA-2007-192.txt |
Description:
|
Mandriva Linux Security Advisory - A heap-based buffer overflow was found in MPlayer's AVI handling that could allow a remote attacker to cause a denial of service or possibly execute arbitrary code via a crafted .avi file.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 3908 | | Related CVE(s): | CVE-2007-4938 | | Last Modified: | Oct 2 20:17:52 2007 |
| MD5 Checksum: | e3ec98049484e11c243e2a620b82a68c |
|
| /// File Name: |
MDKSA-2007-191.txt |
Description:
|
Mandriva Linux Security Advisory - A heap-based buffer overflow in libsndfile could allow remote attackers to execute arbitrary code via a FLAC file with crafted PCM data which contains a block with a size exceeding that of the previous block.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 3998 | | Related CVE(s): | CVE-2007-4974 | | Last Modified: | Oct 2 20:17:22 2007 |
| MD5 Checksum: | a410c18bdd0129aa5e7b7784c8322888 |
|
| /// File Name: |
xscript-sql.txt |
Description:
|
X-Script GuestBook suffers from a SQL injection vulnerability.
| | Homepage: | http://www.security-news.ws/ | | File Size: | 893 | | Last Modified: | Oct 2 20:16:03 2007 |
| MD5 Checksum: | 513692d846b931846eacb14233789323 |
|
| /// File Name: |
sa26946.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Google Mini Search Appliance, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/26946/ | | File Size: | 2629 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | 0c064222ab56f0e616d25f1f678713d1 |
|
| /// File Name: |
sa26985.txt |
Description:
|
Secunia Security Advisory - Chris Clark has reported a security issue in Ruby, which can be exploited by malicious people to conduct spoofing attacks.
| | Homepage: | http://secunia.com/advisories/26985/ | | File Size: | 2414 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | 4927501e63406b209932d0b4f71d9717 |
|
| /// File Name: |
sa27001.txt |
Description:
|
Secunia Security Advisory - xoron has reported a vulnerability in the phpbb-openid module for phpBB, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27001/ | | File Size: | 2529 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | 270b53ea3bba678c84662de047edea4b |
|
| /// File Name: |
sa27002.txt |
Description:
|
Secunia Security Advisory - Luigi Auriemma has reported a vulnerability in Doom 3, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27002/ | | File Size: | 2369 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | 7119aa5df962d6b157a3559158ec0d35 |
|
| /// File Name: |
sa27008.txt |
Description:
|
Secunia Security Advisory - Luigi Auriemma has reported two vulnerabilities in FSD, which potentially can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27008/ | | File Size: | 2507 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | 9e6cb4b70137f055ac1a6b944f848dbd |
|
| /// File Name: |
sa27015.txt |
Description:
|
Secunia Security Advisory - Luigi Auriemma has reported some vulnerabilities in America's Army, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/27015/ | | File Size: | 2290 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | 74eeeed3ba38294ec7653f50df657922 |
|
| /// File Name: |
sa27016.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for mplayer. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27016/ | | File Size: | 2934 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | dbde644cdd0cecdafa40ccd189edcbd4 |
|
| /// File Name: |
sa27018.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for libsndfile. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/27018/ | | File Size: | 3051 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | 8ce796255357adbbc59ed10831aa68cb |
|
| /// File Name: |
sa27022.txt |
Description:
|
Secunia Security Advisory - r0t has reported a vulnerability in OdysseySuite, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/27022/ | | File Size: | 2320 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | a9dfd523236a232a183ba67e03fe5529 |
|
| /// File Name: |
sa27023.txt |
Description:
|
Secunia Security Advisory - Luigi Auriemma has reported a vulnerability in Quake 4, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27023/ | | File Size: | 2277 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | b90db3b33a62221617bee51ee3342097 |
|
| /// File Name: |
sa27036.txt |
Description:
|
Secunia Security Advisory - Luigi Auriemma has reported a vulnerability in Prey, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27036/ | | File Size: | 2266 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | e7bf79a41a6f3a17373037a47e6ab3ed |
|
| /// File Name: |
sa27039.txt |
Description:
|
Secunia Security Advisory - rgod has discovered a vulnerability in CyberLink PowerDVD, which can be exploited by malicious people to overwrite arbitrary files.
| | Homepage: | http://secunia.com/advisories/27039/ | | File Size: | 2402 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | 2f9e1c77546e8dc2314705d9ac267290 |
|
| /// File Name: |
sa27045.txt |
Description:
|
Secunia Security Advisory - Luigi Auriemma has reported two vulnerabilities in FSFDT FSD, which potentially can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27045/ | | File Size: | 2177 | | Last Modified: | Oct 2 20:05:02 2007 |
| MD5 Checksum: | 26d0ad42d3770e9437d9b17076704158 |
|
| /// File Name: |
fearfspb.txt |
Description:
|
F.E.A.R. versions 1.08 and below suffer from a format string vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related Exploit: | fearfspb.zip | | File Size: | 2353 | | Last Modified: | Oct 2 00:51:40 2007 |
| MD5 Checksum: | 568296360b6533f1be24b90cc9b6f6b1 |
|
| /// File Name: |
aaboompb.txt |
Description:
|
America's Army and America's Army Special Forces versions 2.8.2 and below suffer from an unexploitable buffer overflow.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related Exploit: | aaboompb.zip | | File Size: | 2357 | | Last Modified: | Oct 2 00:48:38 2007 |
| MD5 Checksum: | 6c89cb6a29f4a73aa4c069626f2acb89 |
|
| /// File Name: |
d3engfspb.txt |
Description:
|
The Doom 3 engine suffers from a format string vulnerability. Doom 3 versions 1.3.1 and below, Quake 4 versions 1.4.2 and below, and Prey versions 1.3 and below are affected.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related Exploit: | d3engfspb.zip | | File Size: | 2953 | | Last Modified: | Oct 2 00:35:26 2007 |
| MD5 Checksum: | deed2567fa26aed88ab08bc35c53f2e5 |
|
| /// File Name: |
fsd-overflow.txt |
Description:
|
FSD versions 2.052 d9 and below and 3.000 d9 and below suffer from multiple buffer overflow vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | File Size: | 3255 | | Last Modified: | Oct 2 00:33:41 2007 |
| MD5 Checksum: | fe31d80021be2ff5458d4b26d6dc1ddb |
|
| /// File Name: |
glsa-200709-18.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200709-18 - Masahiro Yamada found that from the 2.17.1 version, Bugzilla does not properly sanitize the content of the buildid parameter when filing bugs. The next two vulnerabilities only affect Bugzilla 2.23.3 or later, hence the stable Gentoo Portage tree does not contain these two vulnerabilities: Loic Minier reported that the Email::Send::Sendmail() function does not properly sanitize from email information before sending it to the -f parameter of /usr/sbin/sendmail, and Frederic Buclin discovered that the XML-RPC interface does not correctly check permissions in the time-tracking fields. Versions less than 3.0.1 are affected.
| | Homepage: | http://security.gentoo.org/ | | File Size: | 3648 | | Related CVE(s): | CVE-2007-4538, CVE-2007-4539, CVE-2007-4543 | | Last Modified: | Oct 1 23:52:29 2007 |
| MD5 Checksum: | 75d435a9bb06b6f6027c646fd2235ca0 |
|
| /// File Name: |
sa26892.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in GroupLink eHelpDesk, which can be exploited by malicious users to conduct script insertion attacks and by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/26892/ | | File Size: | 2817 | | Last Modified: | Oct 1 23:39:22 2007 |
| MD5 Checksum: | 2de757d5db1a27de8b4a5e63dbdbdfa8 |
|
| /// File Name: |
sa26971.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for bugzilla. This fixes some vulnerabilities and a security issue, which can be exploited by malicious users to inject shell commands, and by malicious people to conduct cross-site scripting attacks and to disclose potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/26971/ | | File Size: | 2215 | | Last Modified: | Oct 1 23:39:22 2007 |
| MD5 Checksum: | a653cf8eca288e1245fb350b6b514f6e |
|
| /// File Name: |
sa26987.txt |
Description:
|
Secunia Security Advisory - SUSE has issued updates for multiple packages. This fixes some security issues and vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges, by malicious users to cause a DoS (Denial of Service), bypass certain security restrictions, gain escalated privileges, and compromise a vulnerable system, and by malicious people to cause a DoS or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26987/ | | File Size: | 3167 | | Last Modified: | Oct 1 23:39:22 2007 |
| MD5 Checksum: | 8e786d2fa91ad8c32a3aa10882652050 |
|
|
|
|
|