Section: .. / 0906-advisories /
| /// File Name: |
MDVSA-2009-146.txt |
Description:
|
Mandriva Linux Security Advisory 2009-146 - Security vulnerabilities has been identified and fixed in University of Washington IMAP Toolkit. These include multiple stack-based buffer overflows, a pointer dereference, and an off-by-one error.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 7107 | | Related CVE(s): | CVE-2008-5005, CVE-2008-5006, CVE-2008-5514 | | Last Modified: | Jun 29 19:21:29 2009 |
| MD5 Checksum: | 5366191de3ab4efd60c6002621fc32cc |
|
| /// File Name: |
n.runs-SA-2009.005.txt |
Description:
|
Safari fails to sanitize the file protocol handler thus leading to an information disclosure, e.g. local file theft. Dynamically creating a certain HTML tag and using a valid file path to an executable may lead to a denial of service condition. Apple's Safari browser version 3.2.3 is vulnerable.
| | Author: | Alexios Fakos | | Homepage: | http://www.nruns.com/ | | File Size: | 4368 | | Last Modified: | Jun 23 20:21:15 2009 |
| MD5 Checksum: | f1b5466013e50ce64d2a1f5364cd47bb |
|
| /// File Name: |
n.runs-SA-2009.006.txt |
Description:
|
A Null Class Pointer Dereference in CoreFoundation.dll has been found while parsing a URL fragment with a high-bit character in a common protocol handler. Apple's Safari browser version 3.2.3 is vulnerable.
| | Author: | Alexios Fakos | | Homepage: | http://www.nruns.com/ | | File Size: | 4755 | | Last Modified: | Jun 23 20:19:39 2009 |
| MD5 Checksum: | 8c3fdb50aca955687b3c30bcf6964c18 |
|
| /// File Name: |
nokia-spoofdos.txt |
Description:
|
The Nokia 6212 Classic suffers from denial of service and URL spoofing vulnerabilities.
| | Author: | Collin Mulliner | | File Size: | 2610 | | Last Modified: | Jun 19 00:06:03 2009 |
| MD5 Checksum: | f9074b65a1d9983b7ab3ae63bf6723d7 |
|
| /// File Name: |
printf-overrun.txt |
Description:
|
An array overrun vulnerability has been discovered in libc/gdtoa printf(3). Systems affected include OpenBSD version 4.5, NetBSD version 5.0, and FreeBSD versions 7.2 and 6.4.
| | Author: | Maksymilian Arciemowicz | | Homepage: | http://securityreason.com/ | | File Size: | 5381 | | Related CVE(s): | CVE-2009-0689 | | Last Modified: | Jun 26 15:02:10 2009 |
| MD5 Checksum: | b60dc8e7cd15abef3ab6de2a7b3a582f |
|
| /// File Name: |
recent-vulns.txt |
Description:
|
Michal Zalewski has released some details with links to proof of concept code for a MSIE same-origin bypass race condition, MSIE memory corruption on page transitions, CANVAS implementation crashes, and Safari page transition tailgating.
| | Author: | Michal Zalewski | | File Size: | 1582 | | Related CVE(s): | CVE-2007-3091, CVE-2008-2321, CVE-2009-1684 | | Last Modified: | Jun 11 15:59:20 2009 |
| MD5 Checksum: | 49789c0f64615f53186232d0ed0c3379 |
|
| /// File Name: |
sa29283.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for libapache-mod-jk. This fixes a vulnerability, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/ | | File Size: | 10061 | | Last Modified: | Jun 4 10:00:32 2009 |
| MD5 Checksum: | 7f8d49d2872b7050fddde3969e72fd90 |
|
| /// File Name: |
sa33371.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in the Services module for Drupal, which can be exploited by malicious users and potentially malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/ | | File Size: | 2327 | | Last Modified: | Jun 11 10:21:34 2009 |
| MD5 Checksum: | 8126d282284a962d99071936d8911386 |
|
| /// File Name: |
sa33634.txt |
Description:
|
Secunia Security Advisory - Ams has reported a vulnerability in Shop-Script Pro, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 2339 | | Last Modified: | Jun 10 08:30:44 2009 |
| MD5 Checksum: | 85a69fd6233211adcb2ecf2f7260d5c1 |
|
| /// File Name: |
sa33700.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in multiple ACDSee products, which can be exploited by malicious people to potentially compromise a user's system.
| | Homepage: | http://secunia.com/ | | File Size: | 2435 | | Last Modified: | Jun 2 09:39:46 2009 |
| MD5 Checksum: | 4d952c53f1baf9db0e7b340ce81a5eea |
|
| /// File Name: |
sa34200.txt |
Description:
|
Secunia Security Advisory - Vrs-hCk has reported a vulnerability in PDshopPro, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 2325 | | Last Modified: | Jun 15 06:16:59 2009 |
| MD5 Checksum: | a617bd323edc6f1b38089c1dff3d9707 |
|
| /// File Name: |
sa34241.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for libtorrent-rasterbar. This fixes a vulnerability, which can be exploited by malicious people to potentially compromise an application using the library.
| | Homepage: | http://secunia.com/ | | File Size: | 9786 | | Last Modified: | Jun 16 03:04:53 2009 |
| MD5 Checksum: | d75f9bcbd7f5460f15cac48604b78881 |
|
| /// File Name: |
sa34580.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Adobe Reader and Acrobat, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/ | | File Size: | 4492 | | Last Modified: | Jun 10 11:58:46 2009 |
| MD5 Checksum: | f9f2af771f4934b211c56625aeffb4a2 |
|
| /// File Name: |
sa34724.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for apr-util. This fixes some vulnerabilities, which can be exploited by malicious users and malicious people to disclose potentially sensitive information or cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/ | | File Size: | 2200 | | Last Modified: | Jun 17 10:30:18 2009 |
| MD5 Checksum: | 58b710e65760c6e7e74147130deec0b8 |
|
| /// File Name: |
sa34895.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in IronPort AsyncOS, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 2617 | | Last Modified: | Jun 4 11:42:33 2009 |
| MD5 Checksum: | 8836f1f5e94f9506b2b0d340a7ba729f |
|
| /// File Name: |
sa34934.txt |
Description:
|
Secunia Security Advisory - Inferno has discovered a vulnerability in LogMeIn, which can be exploited by malicious people to conduct cross-site request forgery attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 2387 | | Last Modified: | Jun 2 12:10:58 2009 |
| MD5 Checksum: | 1fbbe4643a552de98d1dc2d89341eb64 |
|
| /// File Name: |
sa35180.txt |
Description:
|
Secunia Security Advisory - Tielei Wang has discovered a vulnerability in PDFlib Lite, which can potentially be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/ | | File Size: | 2388 | | Last Modified: | Jun 10 08:30:37 2009 |
| MD5 Checksum: | c284460299a101d8d4fb83b6cb3100c6 |
|
| /// File Name: |
sa35184.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in Microsoft PowerPoint, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/ | | File Size: | 2652 | | Last Modified: | Jun 10 11:58:51 2009 |
| MD5 Checksum: | 1e8340958b495551e49364c17bff108c |
|
| /// File Name: |
sa35205.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in GStreamer Good Plug-ins, which can be exploited by malicious people to potentially compromise an application using the library.
| | Homepage: | http://secunia.com/ | | File Size: | 2512 | | Last Modified: | Jun 2 10:56:21 2009 |
| MD5 Checksum: | 01bd8b73a31ee788f806335082c6e760 |
|
| /// File Name: |
sa35235.txt |
Description:
|
Secunia Security Advisory - A security issue and a vulnerability have been reported in IBM DB2, which can be exploited by malicious people to bypass certain security restrictions or to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/ | | File Size: | 2495 | | Last Modified: | Jun 2 10:56:23 2009 |
| MD5 Checksum: | cb292e0ffa061df2085742be27dcc669 |
|
| /// File Name: |
sa35236.txt |
Description:
|
Secunia Security Advisory - Jacques Copeau has reported a vulnerability in WoltLab Burning Board, which can be exploited by malicious users to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 2486 | | Last Modified: | Jun 2 12:11:06 2009 |
| MD5 Checksum: | a9823da06c8635d5b8ae2703acf57011 |
|
| /// File Name: |
sa35241.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in ATEN KH1516i and KN9116, which can be exploited by malicious people to disclose sensitive information, manipulate certain data, and potentially compromise a user's system.
| | Homepage: | http://secunia.com/ | | File Size: | 2823 | | Last Modified: | Jun 16 03:05:06 2009 |
| MD5 Checksum: | fcb4259a2408b72ea0b0ba75511cbf3c |
|
| /// File Name: |
sa35256.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Ston3D, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/ | | File Size: | 2567 | | Last Modified: | Jun 2 09:39:51 2009 |
| MD5 Checksum: | da47c8e02516f68b9e685eb85a481c17 |
|
|
|
|
|