Section: .. / 0804-advisories /
| /// File Name: |
04.08.08-3.txt |
Description:
|
iDefense Security Advisory 04.08.08 - Remote exploitation of a heap based buffer overflow vulnerability in multiple versions of Microsoft Corp.'s Windows operating system could allow an attacker to execute arbitrary code with the privileges of the current user. iDefense has confirmed the existence of this vulnerability in Windows 2000 Service Pack 4, Windows XP Service Pack 2, Windows Server 2003 Service Pack 1, Windows Server 2003 Service Pack 2, and Windows Vista.
| | Author: | Jun Mao | | Homepage: | http://www.idefense.com/ | | File Size: | 4366 | | Related CVE(s): | CVE-2008-1083 | | Last Modified: | Apr 8 23:49:18 2008 |
| MD5 Checksum: | 60f3fc7a671c6778db875e863f646c5d |
|
| /// File Name: |
04.08.08-2.txt |
Description:
|
iDefense Security Advisory 04.08.08 - Remote exploitation of an integer overflow vulnerability in multiple versions of Microsoft Corp.'s Windows operating system could allow an attacker to execute arbitrary code with the privileges of the current user. iDefense has confirmed the existence of this vulnerability in Windows 2000 SP4 and Windows XP SP2.
| | Author: | Jun Mao | | Homepage: | http://www.idefense.com/ | | File Size: | 4393 | | Related CVE(s): | CVE-2008-1083 | | Last Modified: | Apr 8 23:47:33 2008 |
| MD5 Checksum: | 34d30137464d61e601f066344de4ddb9 |
|
| /// File Name: |
04.08.08-1.txt |
Description:
|
iDefense Security Advisory 04.08.08 - Remote exploitation of a heap corruption vulnerability in Microsoft Corp.'s Microsoft Help 2.5 ActiveX control allows an attacker to execute arbitrary code with the privileges of the logged-on user. iDefense has confirmed this vulnerability in version 2.05.50727.42 of hxvz.dll, which is installed with Visual Studio 2005.
| | Homepage: | http://www.idefense.com/ | | File Size: | 3697 | | Related CVE(s): | CVE-2008-1086 | | Last Modified: | Apr 8 23:44:24 2008 |
| MD5 Checksum: | 252bf709b78f3aa9cd4974404430f954 |
|
| /// File Name: |
sa29718.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in HP Integrity Servers, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29718/ | | File Size: | 2791 | | Last Modified: | Apr 8 23:38:37 2008 |
| MD5 Checksum: | 08651b6d780cf1d15cc9b471d313c5ff |
|
| /// File Name: |
ZDI-08-021.txt |
Description:
|
A vulnerability allows remote attackers to execute code on vulnerable installations of Adobe's Flash Player. User interaction is required in that a user must visit a malicious web site. The specific flaw exists when the Flash player attempts to access embedded Actionscript objects that have not been properly instantiated. In order for exploitation to occur, an attacker would have to modify a DeclareFunction2 Actionscript tag within an SWF file. Exploitation of this vulnerability can result in arbitrary code execution under the context of the currently logged in user.
| | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3273 | | Related CVE(s): | CVE-2007-6019 | | Last Modified: | Apr 8 23:38:14 2008 |
| MD5 Checksum: | 1c08f7fa969eb04fa424f7f014901bb5 |
|
| /// File Name: |
ZDI-08-020.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Microsoft Windows. User interaction is required in that a user must open a malicious file or visit a malicious web page. The specific flaw exists within the parsing of malformed WMF files. A vulnerability exists in the GDI function CreateDIBPatternBrushPt used when processing WMF files. Due to a mis-calculation of user data a heap chunk can be under-allocated and later used resulting in a heap overflow. Successful exploitation can result in system compromise under the credentials of the currently logged in user.
| | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3067 | | Related CVE(s): | CVE-2008-1083 | | Last Modified: | Apr 8 23:37:34 2008 |
| MD5 Checksum: | 13384b757b12fe9e07c41b89de003d0d |
|
| /// File Name: |
sa29724.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in LinPHA, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/29724/ | | File Size: | 2411 | | Last Modified: | Apr 8 23:18:21 2008 |
| MD5 Checksum: | 1a189b0159d727e8a5915973d69505af |
|
| /// File Name: |
TA08-099A.txt |
Description:
|
Technical Cyber Security Alert TA08-099A - Microsoft has released updates to address vulnerabilities that affect Microsoft Windows, Internet Explorer, and Office as part of the Microsoft Security Bulletin Summary for April 2008. The most severe vulnerabilities could allow a remote, unauthenticated attacker to execute arbitrary code.
| | Homepage: | http://www.us-cert.gov/ | | File Size: | 3469 | | Last Modified: | Apr 8 23:18:10 2008 |
| MD5 Checksum: | 82069bfe7ab0decef2056f8cf30cc852 |
|
| /// File Name: |
SSRT080018.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified with HP Storage Essentials Software. The vulnerability could be exploited remotely to gain unauthorized access to data.
| | Homepage: | http://www.hp.com/ | | File Size: | 7086 | | Related CVE(s): | CVE-2006-5750 | | Last Modified: | Apr 8 22:51:21 2008 |
| MD5 Checksum: | 75c3fdaf6cfffba07de1fa7af61a616f |
|
| /// File Name: |
sa29505.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for lighttpd. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29505/ | | File Size: | 12453 | | Last Modified: | Apr 8 22:48:15 2008 |
| MD5 Checksum: | 74a4d25e9f7acb8afed60bef8892c57c |
|
| /// File Name: |
SSRT071455.txt |
Description:
|
HP Security Bulletin - A potential security vulnerability has been identified in the embedded management console in certain HP Integrity Servers iLO-2 Management Processors (iLO-2 MP). The vulnerability could be remotely exploited to cause a Denial of Service (DoS).
| | Homepage: | http://www.hp.com/ | | File Size: | 6725 | | Related CVE(s): | CVE-2008-0711 | | Last Modified: | Apr 8 22:48:05 2008 |
| MD5 Checksum: | 29707edfb5a756fe04a2e9c07b304c30 |
|
| /// File Name: |
sa27707.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in Internet Explorer, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27707/ | | File Size: | 5268 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | b19dedcb71b3e9aed618bfbc7d9cf101 |
|
| /// File Name: |
sa27763.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered some vulnerabilities in Symantec Mail Security for Domino and Symantec Mail Security for Exchange, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/27763/ | | File Size: | 2789 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | 5a5296c2a963690f18ca5ceb6c06f77e |
|
| /// File Name: |
sa28140.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered multiple vulnerabilities in activePDF DocConverter, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28140/ | | File Size: | 2576 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | a42daee4a3b6e96d747ef35a80dd0f4f |
|
| /// File Name: |
sa28209.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered multiple vulnerabilities in Autonomy Keyview, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/28209/ | | File Size: | 5568 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | daee12fef5dbebb1de40e54a4e182ebd |
|
| /// File Name: |
sa28210.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered some vulnerabilities in Lotus Notes, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/28210/ | | File Size: | 2721 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | 8b6cf2e96893fe9fb1198353b9e4e8b7 |
|
| /// File Name: |
sa29342.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered some vulnerabilities in Symantec Mail Security for SMTP, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/29342/ | | File Size: | 2699 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | d83c438928ede12e3fe5982c3b3482e9 |
|
| /// File Name: |
sa29551.txt |
Description:
|
Secunia Security Advisory - sipher has reported a vulnerability in Aztech ADSL2/2+, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/29551/ | | File Size: | 2281 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | 8381910f9dd4504d4cff769200fbc490 |
|
| /// File Name: |
sa29671.txt |
Description:
|
Secunia Security Advisory - A vulnerability and a security issue have been reported in GNU M4, which can be exploited by malicious people to manipulate certain data or to potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/29671/ | | File Size: | 2809 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | efff05758ed0c0d0b164882a84cd0749 |
|
| /// File Name: |
sa29677.txt |
Description:
|
Secunia Security Advisory - Slackware has issued an update for bzip2. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/29677/ | | File Size: | 3295 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | 0211e5749ef382d4e7ca10c01c059498 |
|
| /// File Name: |
sa29685.txt |
Description:
|
Secunia Security Advisory - GoLd_M has discovered two vulnerabilities in Mole (Make Our Life Easy), which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/29685/ | | File Size: | 2299 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | 739af47dff6e43bfde769e8f0aa9c0fd |
|
| /// File Name: |
sa29687.txt |
Description:
|
Secunia Security Advisory - A weakness has been reported in IBM WebSphere Application Server, which can be exploited by malicious people to disclose system information.
| | Homepage: | http://secunia.com/advisories/29687/ | | File Size: | 2315 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | 171c7e6b26b2cc3e2442347370bcfce8 |
|
| /// File Name: |
sa29690.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Microsoft Project, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/29690/ | | File Size: | 2692 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | 037ce1a6a487f76a8fc14d6f779ba34f |
|
| /// File Name: |
sa29691.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in Microsoft Visio, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/29691/ | | File Size: | 3435 | | Last Modified: | Apr 8 22:22:39 2008 |
| MD5 Checksum: | 24c4d07ebbed56a1580572e6205eeb4f |
|
|
|
|
|