Section: .. / 0603-advisories /
| /// File Name: |
USN-262-1.txt |
Description:
|
Ubuntu Security Notice USN-262-1 - Karl Řie discovered that the Ubuntu 5.10 installer failed to clean passwords in the installer log files. Since these files were world-readable, any local user could see the password of the first user account, which has full sudo privileges by default.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 3735 | | Last Modified: | Mar 13 22:12:36 2006 |
| MD5 Checksum: | 67daa496198870fbd4f3c4b30e09ac5b |
|
| /// File Name: |
USN-263-1.txt |
Description:
|
Ubuntu Security Notice USN-263-1 - linux-source-2.6.8.1/-2.6.10/-2.6.12 vulnerabilities
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 97263 | | Last Modified: | Mar 13 22:13:11 2006 |
| MD5 Checksum: | a35e47f4bd15d03df463dc2fb74284b7 |
|
| /// File Name: |
USN-264-1.txt |
Description:
|
Ubuntu Security Notice USN-264-1 - Tavis Ormandy discovered a flaw in gnupg's signature verification. In some cases, certain invalid signature formats could cause gpg to report a 'good signature' result for auxiliary unsigned data which was prepended or appended to the checked message part.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 5091 | | Last Modified: | Mar 13 22:12:01 2006 |
| MD5 Checksum: | 328eeb466f963b532776fd6bdb5c2efe |
|
| /// File Name: |
vBookie.txt |
Description:
|
On vBulletin, with vBookie installed, it is not possible to donate a negative amount of VChips to yourself or another user; however is it possible to alter the input string to get around this limitation and donate any amount you want to your account, or that of another registered user.
| | Author: | admin | | Homepage: | http://ukgamblingforums.co.uk/vChipsHack.jsp | | File Size: | 6100 | | Last Modified: | Mar 14 21:03:59 2006 |
| MD5 Checksum: | aa0d11d03df114ed5098affe021a70a9 |
|
| /// File Name: |
vs60bo.txt |
Description:
|
A buffer overflow vulnerability exists in the handling of .dbp and .sln files for Visual Studio version 6.0 and Microsoft Development Environment version 6.0.
| | Author: | Kozan, ATmaCA | | Homepage: | http://www.spyinstructors.com | | File Size: | 2590 | | Last Modified: | Mar 6 10:52:42 2006 |
| MD5 Checksum: | 0b921981d4357bf921bd39913fd38c3c |
|
| /// File Name: |
windowsHelp.txt |
Description:
|
There is a heap based buffer overflow in the rendering engine of .hlp files in winhlp32.exe which will allow some attacker the possibility of modifying the internal structure of the process with a means to execute arbitrary and malicious code.
| | Author: | c0ntex | | Homepage: | http://www.open-security.org | | File Size: | 10274 | | Last Modified: | Apr 1 11:29:44 2006 |
| MD5 Checksum: | 6e1e64447f6b86d638f37dff20bc45c6 |
|
| /// File Name: |
WinHKI1.6x.txt |
Description:
|
WinHKI 1.6x Archive Extraction Directory traversal: Due to an input validation error when extracting files compressed with certain formats, it is possible to have files extracted to arbitrary locations on the filesystem.
| | Author: | h e | | Homepage: | http://www.hamid.ir | | File Size: | 1495 | | Last Modified: | Mar 24 00:10:04 2006 |
| MD5 Checksum: | 76b1ffaf3637e8207ea496345a74f5cd |
|
| /// File Name: |
WMNews.txt |
Description:
|
WMNews suffers from multiple XSS vulnerabilities.
| | Author: | R00T3RR0R | | Homepage: | http://www.biyosecurity.be | | File Size: | 858 | | Last Modified: | Mar 13 22:54:58 2006 |
| MD5 Checksum: | fbda328a8db9663fd5e255e8f3d3bf51 |
|
| /// File Name: |
xfocus-SD-060314.txt |
Description:
|
Eyas of XFOCUS Security Team discovered a buffer overflow vulnerability when Excel processes a malicious ".xls" file, which might cause Excel to crash or even execute arbitrary code.
| | Homepage: | http://www.xfocus.org | | File Size: | 2500 | | Last Modified: | Mar 15 21:48:17 2006 |
| MD5 Checksum: | 7add114eae1b0974a4cf4bbe1f941676 |
|
| /// File Name: |
xfocus-SD-060329.txt |
Description:
|
The XFOCUS team has discovered multiple integer overflows in MPlayer version 1.0.20060329 and below.
| | Homepage: | http://www.xfocus.org | | File Size: | 3532 | | Last Modified: | Apr 1 08:53:33 2006 |
| MD5 Checksum: | 9bf48c54ef9dbcaee08042b8ae309df6 |
|
| /// File Name: |
xpFireConvince.txt |
Description:
|
By naming a file without a name, the Windows XP firewall may inadvertently trick a user into allowing a malicious application to run.
| | Author: | Edu | | File Size: | 2012 | | Last Modified: | Apr 1 05:50:11 2006 |
| MD5 Checksum: | b9b91a76ab66e00166b5897ec186d1e7 |
|
| /// File Name: |
ZDI-06-003.txt |
Description:
|
Ipswitch Collaboration Suite 2006.02 and below suffers from a vulnerability in the IMAP daemon. A lack of bounds checking during the parsing of long arguments to the FETCH verb can result in an exploitable buffer overflow.
| | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 2771 | | Last Modified: | Mar 13 22:51:14 2006 |
| MD5 Checksum: | c4a211e18a34ccb1aea4f4cf0d51684c |
|
| /// File Name: |
ZDI-06-004.txt |
Description:
|
ZDI-06-004: Microsoft Excel File Format Parsing Vulnerability - This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Microsoft Office. Exploitation requires that the attacker coerce the target into opening a malicious .XLS file.
| | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 2930 | | Last Modified: | Mar 14 23:40:18 2006 |
| MD5 Checksum: | 2617b7f781934d3a726c47c2122032bc |
|
| /// File Name: |
ZDI-06-005.txt |
Description:
|
ZDI-06-005: A buffer overflow exists in the Symantec VERITAS Volume Manager. Version 6.0 is affected.
| | Author: | Sebastian Apelt | | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3078 | | Last Modified: | Apr 1 07:45:32 2006 |
| MD5 Checksum: | 82677173acd7a9b47769aa41a5d4f878 |
|
| /// File Name: |
ZDI-06-006.txt |
Description:
|
ZDI-06-006: A buffer overflow exists in the Symantec VERITAS NetBackup Database Manager. Version 6.0 is affected.
| | Author: | Sebastian Apelt | | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3096 | | Last Modified: | Apr 1 07:46:19 2006 |
| MD5 Checksum: | f38b6ec7ed39de2fa80303766c99d7d4 |
|
|
|
|
|