.:[ packet storm ]:.
                           
ten years, four continents, one cause
ten years, four continents, one cause

 Section:  .. / 0607-advisories  /

Page 18 of 22
<< 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 >> Files 425 - 450 of 526
Currently sorted by: Last ModifiedSort By: File Name, File Size

 ///  File Name: kailleraex.txt
Description:
Kaillera versions 0.86 and below suffer from a buffer overflow that can lead to arbitrary code execution.
Author:Luigi Auriemma
Homepage:http://aluigi.org/
Related Exploit:kailleraex.zip
File Size:4754
Last Modified:Jul 9 08:03:51 2006
MD5 Checksum:4027d4b09d4b9f96ea680299769eb21d

 ///  File Name: sparklet094.txt
Description:
Sparklet versions 0.9.4try3 and below suffer from a format string vulnerability.
Author:Luigi Auriemma
Homepage:http://aluigi.org/
File Size:1972
Last Modified:Jul 9 07:59:14 2006
MD5 Checksum:57692b1f37a10774a9780c1fb9b8a8e2

 ///  File Name: dsa-1104-2.txt
Description:
Debian Security Advisory 1104-2 - Loading malformed XML documents can cause buffer overflows in OpenOffice.org, a free office suite, and cause a denial of service or execute arbitrary code. It turned out that the correction in DSA 1104-1 was not sufficient, hence, another update.
Homepage:http://www.debian.org/security
File Size:14405
Related CVE(s):CVE-2006-3117
Last Modified:Jul 9 07:43:47 2006
MD5 Checksum:75ba8c067f5bea8c274442d86089828d

 ///  File Name: USN-310-1.txt
Description:
Ubuntu Security Notice 310-1: Marcus Meissner discovered that the winbind plugin of pppd does not check the result of the setuid() call. On systems that configure PAM limits for the maximum number of user processes and enable the winbind plugin, a local attacker could exploit this to execute the winbind NTLM authentication helper as root. Depending on the local winbind configuration, this could potentially lead to privilege escalation.
Homepage:http://security.ubuntu.com/
File Size:5538
Related CVE(s):CVE-2006-2194
Last Modified:Jul 9 07:39:16 2006
MD5 Checksum:ff48acb46e59a8b15cef35ff23e150f3

 ///  File Name: USN-309-1.txt
Description:
Ubuntu Security Notice 309-1: Several buffer overflows were found in libmms. By tricking a user into opening a specially crafted remote multimedia stream with an application using libmms, a remote attacker could overwrite an arbitrary memory portion with zeros, thereby crashing the program.
Homepage:http://security.ubuntu.com/
File Size:2937
Related CVE(s):CVE-2006-2200
Last Modified:Jul 9 07:38:33 2006
MD5 Checksum:e188e8fafa939589575c697a405f1872

 ///  File Name: USN-308-1.txt
Description:
Ubuntu Security Notice 308-1: Ilja van Sprundel discovered that passwd, when called with the -f, -g, or -s option, did not check the result of the setuid() call. On systems that configure PAM limits for the maximum number of user processes, a local attacker could exploit this to execute chfn, gpasswd, or chsh with root privileges.
Homepage:http://security.ubuntu.com/
File Size:6900
Last Modified:Jul 9 07:37:49 2006
MD5 Checksum:4af99ea7491c4cacf0261dc435622ab4

 ///  File Name: MDKSA-2006-116.txt
Description:
Mandriva Linux Security Advisory MDKSA-2006-116 - A ridiculous number of vulnerabilities were discovered and corrected in the Linux 2.6 kernel.
Homepage:http://www.mandriva.com/security/advisories
File Size:8263
Related CVE(s):CVE-2005-3359, CVE-2005-3784, CVE-2005-3858, CVE-2005-4618, CVE-2006-0096, CVE-2006-0555, CVE-2006-1242, CVE-2006-1525, CVE-2006-1528, CVE-2006-1855, CVE-2006-1856, CVE-2006-2071, CVE-2006-2271, CVE-2006-2272, CVE-2006-2444
Last Modified:Jul 9 07:26:05 2006
MD5 Checksum:12b37eb97cf938d9167829010d2fbdb8

 ///  File Name: phpSysInfo-file.txt
Description:
phpSysInfo version 2.5.1 has a remote flaw that allows for an attacker to verify if a file exists on the underlying system.
Author:Micheal Turner
File Size:1477
Last Modified:Jul 9 07:18:38 2006
MD5 Checksum:5885aa5ecc3628f74cb57c3b610c999f

 ///  File Name: touchControl.txt
Description:
Touch Control is susceptible to a remote file execution vulnerability.
Author:GYU TAE PARK
File Size:1557
Last Modified:Jul 9 07:16:01 2006
MD5 Checksum:5cfa86d593dbbb6b14b4b2ca1a5d8f27

 ///  File Name: weURL.txt
Description:
When Windows Explorer (explorer.exe) parses a malformed .url file it is susceptible to a denial of service.
Author:nanika
Homepage:http://hitcon.org/
File Size:774
Last Modified:Jul 9 07:14:41 2006
MD5 Checksum:f8c03051711fd9d568d0430b9b24b3ca

 ///  File Name: google-xss.txt
Description:
Google is vulnerable to a cross site scripting attack.
Author:RSnake
Homepage:http://ha.ckers.org/
File Size:875
Last Modified:Jul 9 07:13:14 2006
MD5 Checksum:4ab9358f627fde8aa48df16ef1ea11d3

 ///  File Name: SUSE-SA-2006-041.txt
Description:
SUSE Security Announcement SUSE-SA:2006:041 - Various unspecified security problems have been fixed in Acrobat Reader version 7.0.8.
Homepage:http://www.suse.com
File Size:14611
Related CVE(s):CVE-2006-3093
Last Modified:Jul 9 06:54:37 2006
MD5 Checksum:0f00c4291cdbc364933a24a0ab6ee735

 ///  File Name: scip-2352.txt
Description:
F5 FirePass 4100 versions below 6.x suffer from multiple cross site scripting flaws.
Author:Marc Ruef
Homepage:http://www.scip.ch/
File Size:3052
Last Modified:Jul 9 06:49:53 2006
MD5 Checksum:13fae8fd01d2859c11fe3abf8cdac74a

 ///  File Name: scip-2351.txt
Description:
Kyberna AG ky2help is susceptible to SQL injection attacks.
Author:Marc Ruef
Homepage:http://www.scip.ch/
File Size:3524
Last Modified:Jul 9 06:48:57 2006
MD5 Checksum:c2ac86924ebbf059ddc9a8f66ef78a8b

 ///  File Name: glsa-200607-01.txt
Description:
Gentoo Linux Security Advisory GLSA 200607-01 - In httpdget.c, a variable is assigned to the heap, and is supposed to receive a smaller allocation. As this variable was not terminated properly, strncpy() will overwrite the data assigned next in memory. Versions less than 0.59s-r11 are affected.
Homepage:http://security.gentoo.org
File Size:2428
Last Modified:Jul 9 06:06:51 2006
MD5 Checksum:6dcd93eed9fdb834f990c7b38ad6c91a

 ///  File Name: SUSE-SA-2006-040.txt
Description:
SUSE Security Announcement SUSE-SA:2006:040 - Multiple vulnerabilities have been discovered in OpenOffice. A security vulnerability in OpenOffice.org may make it possible to inject basic code into documents which is executed upon loading of the document. A security vulnerability related to OpenOffice.org documents may allow certain Java applets to break through the "sandbox" and therefore have full access to system resources with current user privileges. A buffer overflow in the XML UTF8 converter allows for a value to be written to an arbitrary location in memory. This may lead to command execution in the context of the current user.
Homepage:http://www.suse.com
File Size:55165
Related CVE(s):CVE-2006-2198, CVE-2006-2199, CVE-2006-3117
Last Modified:Jul 9 06:05:02 2006
MD5 Checksum:a364f0c11b9b8ec2bab518181300a6a4

 ///  File Name: SUSE-SA-2006-039.txt
Description:
SUSE Security Announcement SUSE-SA:2006:039 - The KDE Display Manager KDM stores the type of the previously used session in the user's home directory. By using a symlink a local attacker could trick kdm into also storing content of files that are normally not accessible by users, like for instance /etc/shadow.
Homepage:http://www.suse.com
File Size:14404
Related CVE(s):CVE-2006-2449
Last Modified:Jul 9 06:03:08 2006
MD5 Checksum:afd0358626f0526244b53ab6e7aae08b

 ///  File Name: SUSE-SA-2006-038.txt
Description:
SUSE Security Announcement SUSE-SA:2006:038 - Multiple flaws have been addressed in Opera. An integer overflow vulnerability exists in the Opera Web Browser due to the improper handling of JPEG files. Also, Opera did not reset the SSL security bar after displaying a download dialog from an SSL-enabled website, which allows remote attackers to spoof a trusted SSL certificate from an untrusted website and facilitates phishing attacks.
Homepage:http://www.suse.com
File Size:14513
Related CVE(s):CVE-2006-3198, CVE-2006-3331
Last Modified:Jul 9 06:01:46 2006
MD5 Checksum:58c188bfe06b8200d76e994a6e6dbd2d

 ///  File Name: excel-ohday.txt
Description:
Excel 2000/XP/2003 suffers from a vulnerability in repair mode.
Author:nanika
Related Exploit:Nanika.tgz
File Size:361
Last Modified:Jul 9 05:48:06 2006
MD5 Checksum:95a0ab6001b835adecb1a360195bcc86

 ///  File Name: TK8Safe305.txt
Description:
TK8 Safe version 3.0.5 suffers from password management and denial of service issues.
Author:Michael Kemp
Homepage:http://www.clappymonkey.com
File Size:1932
Last Modified:Jul 9 05:22:01 2006
MD5 Checksum:0bb60ab95476cad993623ef955904cb8

 ///  File Name: major_rls19.txt
Description:
AutoRank versions 5.01 and below suffer from multiple cross site scripting and cookie disclosure flaws.
Author:David "Aesthetico" Vieira-Kurz
Homepage:http://www.majorsecurity.de
File Size:2298
Last Modified:Jul 9 05:16:25 2006
MD5 Checksum:eb36fb57d9dccbb2969b580ed1584a1d

 ///  File Name: phpfusionXSS-IE.txt
Description:
Using a known flaw with execution in Internet Explorer, you can upload a malicious GIF file to PHP-Fusion to conduct cross site scripting attacks.
Author:ZeberuS, Redworm
File Size:822
Last Modified:Jul 9 05:12:05 2006
MD5 Checksum:d6e1f3e0904bd86d87c141371900fda5

 ///  File Name: sa19456.txt
Description:
Secunia Security Advisory - Secunia Research has discovered a vulnerability in jetAudio, which can be exploited by malicious people to compromise a user's system.
Homepage:http://secunia.com/advisories/19456/
File Size:2556
Last Modified:Jul 8 05:35:52 2006
MD5 Checksum:1a915e0a54725f718fa724c068e166ec

 ///  File Name: sa20268.txt
Description:
Secunia Security Advisory - Nanika has reported a vulnerability in Microsoft Excel, which potentially can be exploited by malicious people to compromise a user's system.
Homepage:http://secunia.com/advisories/20268/
File Size:2819
Last Modified:Jul 8 05:35:52 2006
MD5 Checksum:51c83c75df578d20c2ab9f723dfc6318

 ///  File Name: sa20920.txt
Description:
Secunia Security Advisory - A vulnerability has been reported in the Form_mail module for Drupal, which can be exploited by malicious people to bypass certain security restrictions.
Homepage:http://secunia.com/advisories/20920/
File Size:2206
Last Modified:Jul 8 05:35:52 2006
MD5 Checksum:f9e0fd8c0197c5206e690b9ac5741407