Section: .. / 0709-advisories /
| /// File Name: |
ZDI-07-053.txt |
Description:
|
A vulnerability allows remote attackers to extract IP addresses visited through the SOCKS4 Proxy on vulnerable ISA Server installations. Authentication is not required to exploit this vulnerability. This specific flaw exists when an empty packet is sent to the SOCKS4. The server will return a packet containing the last IP address it proxied to.
| | Author: | CIRT.DK | | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3052 | | Related CVE(s): | CVE-2007-4991 | | Last Modified: | Sep 24 23:08:01 2007 |
| MD5 Checksum: | ac0f7602768ad8686a6dab1d8f433dfd |
|
| /// File Name: |
DDIVRT-2007-04.txt |
Description:
|
The NetSupport Manager client that listens on TCP port 5405 does not properly handle authentication sessions. It is possible to pose as the NetSupport Manager, associate to a client, and then issue commands without performing the authentication sequence. Both the basic and advanced authentication schemes can be bypassed in the same manner. When properly exploited, this flaw will results in a complete compromise of the target system. Version 10.20 is susceptible.
| | Homepage: | http://www.netsupportmanager.com/ | | File Size: | 1681 | | Last Modified: | Sep 24 23:03:04 2007 |
| MD5 Checksum: | 4dee000df98b5afe03e2e7605156220f |
|
| /// File Name: |
dsa-1377-2.txt |
Description:
|
Debian Security Advisory 1377-2 - Matthias Andree discovered that fetchmail, an SSL enabled POP3, APOP and IMAP mail gatherer/forwarder, can under certain circumstances attempt to dereference a NULL pointer and crash.
| | Homepage: | http://www.debian.org/security | | File Size: | 2394 | | Related CVE(s): | CVE-2007-4565 | | Last Modified: | Sep 24 22:13:06 2007 |
| MD5 Checksum: | 8677ba6eb258cf94983d6e38b149edb3 |
|
| /// File Name: |
dsa-1377-1.txt |
Description:
|
Debian Security Advisory 1377-1 - Matthias Andree discovered that fetchmail, an SSL enabled POP3, APOP and IMAP mail gatherer/forwarder, can under certain circumstances attempt to dereference a NULL pointer and crash.
| | Homepage: | http://www.debian.org/security | | File Size: | 4413 | | Related CVE(s): | CVE-2007-4565 | | Last Modified: | Sep 24 22:11:54 2007 |
| MD5 Checksum: | 4e0d56b9efe48730352e38c5035f7915 |
|
| /// File Name: |
dsa-1376-1.txt |
Description:
|
Debian Security Advisory 1376-1 - iKees Huijgen discovered that under certain circumstances KDM, an X session manage for KDE, it is possible for KDM to be tricked into allowing user logins without a password.
| | Homepage: | http://www.debian.org/security | | File Size: | 41254 | | Related CVE(s): | CVE-2007-4569 | | Last Modified: | Sep 24 22:10:58 2007 |
| MD5 Checksum: | c49bea5391596d92bf13342e932b53ec |
|
| /// File Name: |
sa26884.txt |
Description:
|
Secunia Security Advisory - Krystian Kloskowski has discovered a vulnerability in Xitami, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26884/ | | File Size: | 2368 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | b44bdc5f979bab22ea84dc28a713c75d |
|
| /// File Name: |
sa26885.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Webmin, which can be exploited by malicious users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/26885/ | | File Size: | 2235 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 99a44cbb7cec49256b7e1d9f57d0ea84 |
|
| /// File Name: |
sa26887.txt |
Description:
|
Secunia Security Advisory - EP_X0FF has reported some vulnerabilities in Kasperky AntiVirus, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/26887/ | | File Size: | 2672 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | ce8cc6c63b995976bd60988edf8848be |
|
| /// File Name: |
sa26895.txt |
Description:
|
Secunia Security Advisory - Mandriva has issued an update for php. This fixes some vulnerabilities, where some have unknown impacts and others can be exploited by malicious, local users to bypass certain security restrictions, malicious users to bypass certain security restrictions, gain escalated privileges, disclose potentially sensitive information, or cause a DoS (Denial of Service), and by malicious people to bypass certain security restrictions and cause a DoS.
| | Homepage: | http://secunia.com/advisories/26895/ | | File Size: | 4724 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 80144b4d69a02686c61cbacfcd97850f |
|
| /// File Name: |
sa26910.txt |
Description:
|
Secunia Security Advisory - Mahmood_ali has discovered a vulnerability in Helplink, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26910/ | | File Size: | 2342 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 24bb867d48397ee05266a443d7d43c18 |
|
| /// File Name: |
sa26920.txt |
Description:
|
Secunia Security Advisory - BiNgZa has discovered some vulnerabilities in DFD Cart, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26920/ | | File Size: | 2610 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | c15acc441c7833b937b8396779b898d8 |
|
| /// File Name: |
sa26923.txt |
Description:
|
Secunia Security Advisory - BorN To K!LL has discovered a vulnerability in the Nuke Mobile Entertainment module for PHP-Nuke, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/26923/ | | File Size: | 2472 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 63f293e96332582a64e792543b4aff85 |
|
| /// File Name: |
sa26924.txt |
Description:
|
Secunia Security Advisory - ShockShadow has reported a vulnerability in Wordsmith, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26924/ | | File Size: | 2418 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | f466c7f0924812f81901fbd358899dc2 |
|
| /// File Name: |
sa26925.txt |
Description:
|
Secunia Security Advisory - HP has acknowledged a vulnerability in HP OpenVMS, which can be exploited by malicious people to poison the DNS cache.
| | Homepage: | http://secunia.com/advisories/26925/ | | File Size: | 2687 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 4c9038d88803d6cd927a2cc4c01cd975 |
|
| /// File Name: |
sa26926.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in ImageMagick, which can be exploited by malicious people to conduct DoS (Denial of Service) attacks or compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26926/ | | File Size: | 3525 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 208782b8813861ccaa44a89b67c4ca23 |
|
| /// File Name: |
sa26927.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in NetSupport Manager, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26927/ | | File Size: | 2851 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | a6294d4fc47f3ab2bfedd53440303107 |
|
| /// File Name: |
sa26928.txt |
Description:
|
Secunia Security Advisory - irk4z has discovered a vulnerability in CMS Made Simple, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26928/ | | File Size: | 2387 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 457057d47dfd6687d52ad5f627e9c12d |
|
| /// File Name: |
sa26931.txt |
Description:
|
Secunia Security Advisory - irk4 has discovered some vulnerabilities in iziContents, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26931/ | | File Size: | 3034 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 153a9a9241318b96c7d7369aed0ec6c5 |
|
| /// File Name: |
sa26933.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for jrockit-jdk-bin. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, to cause a DoS (Denial of Service), or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/26933/ | | File Size: | 2216 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 5ff9b1235ffb595f7b80ec5e8d5e76a5 |
|
| /// File Name: |
sa26934.txt |
Description:
|
Secunia Security Advisory - Wojciech Purczynski has reported a vulnerability in the Linux kernel, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/26934/ | | File Size: | 2578 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 16b3187552fa26faca54114eb4a7a452 |
|
| /// File Name: |
sa26941.txt |
Description:
|
Secunia Security Advisory - x0kster has reported a vulnerability in Xcms, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/26941/ | | File Size: | 2214 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 614db02a0f47f51e42613b51a55750f0 |
|
| /// File Name: |
sa26943.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in ChironFS, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/26943/ | | File Size: | 2309 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 5850a386617d0f4d0cad4c0893d1c46e |
|
| /// File Name: |
sa26945.txt |
Description:
|
Secunia Security Advisory - nights shadow has discovered a vulnerability in bcoos, which can be exploited by malicious users or malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/26945/ | | File Size: | 2441 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 5caaed13a98d2c22fa17f74db9cc3ba9 |
|
| /// File Name: |
sa26947.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Balsa, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/26947/ | | File Size: | 2307 | | Last Modified: | Sep 24 20:19:43 2007 |
| MD5 Checksum: | 9a44344990f4d33541d4584fe3da8153 |
|
|
|
|
|