Section: .. / 1002-advisories /
| /// File Name: |
sa38726.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in OI.Blogs, which can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/ | | File Size: | 2062 | | Last Modified: | Feb 24 03:40:51 2010 |
| MD5 Checksum: | a5132c66580d73d4a84b4179fb816986 |
|
| /// File Name: |
sa38728.txt |
Description:
|
Secunia Security Advisory - Blue Coat has acknowledged a vulnerability in multiple products, which can be exploited by malicious people to manipulate certain data.
| | Homepage: | http://secunia.com/ | | File Size: | 2068 | | Last Modified: | Feb 24 03:40:44 2010 |
| MD5 Checksum: | 5e45c9f863b5565785c2a6939c91f060 |
|
| /// File Name: |
sa38729.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Adobe getPlus DLM (Download Manager), which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/ | | File Size: | 2058 | | Last Modified: | Feb 24 03:41:02 2010 |
| MD5 Checksum: | 3c5575610ae4cb24a53ad366541ae57a |
|
| /// File Name: |
sa38730.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Sawmill, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 1916 | | Last Modified: | Feb 24 03:40:49 2010 |
| MD5 Checksum: | f804ed698ea0802f4ba9cd781fa0ac8e |
|
| /// File Name: |
sa38732.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in TIBCO Administrator, which can be exploited by malicious users to bypass certain security restrictions.
| | Homepage: | http://secunia.com/ | | File Size: | 2164 | | Last Modified: | Feb 24 03:40:57 2010 |
| MD5 Checksum: | 19f3b6b61fde6d5a48ea8b021c313c67 |
|
| /// File Name: |
sa38734.txt |
Description:
|
Secunia Security Advisory - A security issue has been discovered in XMail, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/ | | File Size: | 1951 | | Last Modified: | Feb 26 11:07:23 2010 |
| MD5 Checksum: | 17f709fbe16d004150ea87db105265e3 |
|
| /// File Name: |
sa38737.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Hitachi products, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 2128 | | Last Modified: | Feb 26 11:07:21 2010 |
| MD5 Checksum: | 389d748b61a74eda2b5a9dd3915d33c1 |
|
| /// File Name: |
sa38738.txt |
Description:
|
Secunia Security Advisory - Matthias -apoc- Hecker has discovered a security issue in rbot, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/ | | File Size: | 2708 | | Last Modified: | Feb 26 04:48:24 2010 |
| MD5 Checksum: | 56be1c4e2f4c96a4be9d1e4a6b4ce3e4 |
|
| /// File Name: |
sa38740.txt |
Description:
|
Secunia Security Advisory - Hitachi has acknowledged a security issue in Hitachi JP1/Cm2/Network Node Manager, which can be exploited by malicious, local users to manipulate certain data and potentially gain escalated privileges.
| | Homepage: | http://secunia.com/ | | File Size: | 2365 | | Last Modified: | Feb 26 11:07:26 2010 |
| MD5 Checksum: | 400ecf6ba876514a39dd56de9dfb1069 |
|
| /// File Name: |
sa38741.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for cronie. This fixes a security issue, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
| | Homepage: | http://secunia.com/ | | File Size: | 1795 | | Last Modified: | Feb 24 03:40:39 2010 |
| MD5 Checksum: | 2bc91dc07415ae9112e0e4437314add3 |
|
| /// File Name: |
sa38742.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in tDiary, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/ | | File Size: | 2111 | | Last Modified: | Feb 26 04:48:01 2010 |
| MD5 Checksum: | 529d3ba0c4ee0ed94e0375adb6ca8bc0 |
|
| /// File Name: |
sa38743.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been discovered in Newbie CMS, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/ | | File Size: | 1890 | | Last Modified: | Feb 26 04:48:22 2010 |
| MD5 Checksum: | 7ea5122ff10b72f12e68fcd901cf6622 |
|
| /// File Name: |
sa38746.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for sudo. This fixes multiple security issues, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/ | | File Size: | 1749 | | Last Modified: | Feb 26 06:28:37 2010 |
| MD5 Checksum: | 05a457b3145f86a459da13c792cc55d5 |
|
| /// File Name: |
sa38747.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Website Baker, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/ | | File Size: | 1927 | | Last Modified: | Feb 26 11:07:13 2010 |
| MD5 Checksum: | 7e5b249bc94f294bc5677b0c6d6c47a5 |
|
| /// File Name: |
sa38750.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in the Facebook-style Statuses (Microblog) module for Drupal, which can be exploited by malicious users to manipulate certain data.
| | Homepage: | http://secunia.com/ | | File Size: | 1958 | | Last Modified: | Feb 26 04:48:14 2010 |
| MD5 Checksum: | 218d832ead041c0b97203ace2ee8201e |
|
| /// File Name: |
sa38752.txt |
Description:
|
Secunia Security Advisory - A security issue has been reported in Asterisk, which can be exploited by malicious people to potentially bypass certain security restrictions.
| | Homepage: | http://secunia.com/ | | File Size: | 2068 | | Last Modified: | Feb 26 11:07:31 2010 |
| MD5 Checksum: | d7c3cece8368548eb27ebb6c56e0fa47 |
|
| /// File Name: |
secunia-bccrypt.txt |
Description:
|
Secunia Research has discovered a security issue in Bournal, which can be exploited by malicious, local users to disclose sensitive information. The script uses e.g. the insecure "-K" command line parameter to pass the key to the ccrypt utilities, which can be exploited to obtain the key from the list of running processes. Note: This may not affect recent Linux versions, but is confirmed for FreeBSD 8.0. Other systems may also be affected. Version 1.4 is affected.
| | Homepage: | http://secunia.com/ | | File Size: | 4547 | | Related CVE(s): | CVE-2010-0119 | | Last Modified: | Feb 23 19:33:21 2010 |
| MD5 Checksum: | 11f1b94d185876d75700f271e65c9a57 |
|
| /// File Name: |
secunia-ffcorrupt.txt |
Description:
|
Secunia Research has discovered a vulnerability in Mozilla Firefox, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused by an error when handling out-of-memory conditions. This can be exploited to corrupt memory and execute arbitrary code via a specially crafted web page. Versions prior to 3.0.18 and 3.5.8 are susceptible.
| | Author: | Alin Rad Pop | | Homepage: | http://secunia.com/ | | File Size: | 4094 | | Related CVE(s): | CVE-2009-1571 | | Last Modified: | Feb 18 20:55:58 2010 |
| MD5 Checksum: | 1d0df647af1c0f63ee33a82c4812b374 |
|
| /// File Name: |
secunia-itf.txt |
Description:
|
Secunia Research has discovered a security issue in Bournal, which can be exploited by malicious, local users to perform certain actions with escalated privileges. The script uses temporary files in an insecure manner, which can be exploited to e.g. overwrite arbitrary files via symlink attacks when running the update check via the "--hack_the_gibson" parameter. Version 1.4 is affected.
| | Homepage: | http://secunia.com/ | | File Size: | 4274 | | Related CVE(s): | CVE-2010-0118 | | Last Modified: | Feb 23 19:40:41 2010 |
| MD5 Checksum: | ac22481ea21fc697a593c333cfaf0aa6 |
|
| /// File Name: |
secunia-libmikmod.txt |
Description:
|
Secunia Research has discovered some vulnerabilities in libmikmod, which can be exploited by malicious people to potentially compromise a user's system. Successful exploitation may allow arbitrary code execution in the context of the process using the libmikmod library when opening a specially crafted module file. Version 3.1.12 is affected.
| | Author: | Dyon Balding | | Homepage: | http://secunia.com/ | | File Size: | 4537 | | Related CVE(s): | CVE-2009-3995, CVE-2009-3996 | | Last Modified: | Feb 5 18:05:07 2010 |
| MD5 Checksum: | 2085f9e48cc5ec51d78d41e9fc9fc21b |
|
| /// File Name: |
secunia-msppfphbo.txt |
Description:
|
Secunia Research has discovered a vulnerability in Microsoft Office PowerPoint, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused by a boundary error when handling file paths and can be exploited to cause a stack-based buffer overflow via a specially crafted file. Successful exploitation allows execution of arbitrary code. Microsoft Powerpoint 2002 is affected.
| | Author: | Carsten Eiram | | Homepage: | http://secunia.com/ | | File Size: | 4387 | | Related CVE(s): | CVE-2010-0029 | | Last Modified: | Feb 9 17:55:35 2010 |
| MD5 Checksum: | 1f0f98264cce91f3f785b518aeb37784 |
|
| /// File Name: |
SS-2010-003.txt |
Description:
|
A vulnerability exists in the Microsoft SMB client which allows an attacker to trigger a kernel pool memory corruption by sending a specific 'Negotiate Protocol' response.
| | Author: | Renaud Feil,laurent gaffie | | Homepage: | http://www.stratsec.net/ | | File Size: | 7612 | | Related CVE(s): | CVE-2010-0016, CVE-2010-0017 | | Last Modified: | Feb 10 16:01:13 2010 |
| MD5 Checksum: | f6e83519161c3ca7896a5bd5923d0751 |
|
| /// File Name: |
symantec-overflow.txt |
Description:
|
VUPEN Vulnerability Research Team discovered a vulnerability in various Symantec security products. The vulnerability is caused by a buffer overflow error in the SYMLTCOM.dll module when processing user-supplied data, which could be exploited by remote attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page on a domain masqueraded as an authorized site.
| | Homepage: | http://www.vupen.com/ | | File Size: | 2569 | | Related CVE(s): | CVE-2010-0107 | | Last Modified: | Feb 25 01:29:19 2010 |
| MD5 Checksum: | df40fa11e520122e23c1100672594275 |
|
| /// File Name: |
TA10-040A.txt |
Description:
|
Technical Cyber Security Alert 2010-40A - Microsoft has released updates to address vulnerabilities in Microsoft Windows, Windows Server, Internet Explorer, and Microsoft Office.
| | Author: | US-CERT | | Homepage: | http://www.us-cert.gov/ | | File Size: | 3153 | | Last Modified: | Feb 9 18:03:55 2010 |
| MD5 Checksum: | 9108f9e15288839d67499d2558fcb5f3 |
|
| /// File Name: |
TA10-055A.txt |
Description:
|
Technical Cyber Security Alert 2010-55A - Malicious activity detected in mid-December targeted at least 20 organizations representing multiple industries including chemical, finance, information technology, and media. Investigation into this activity revealed that third parties routinely accessed the personal email accounts of dozens of users based in the United States, China, and Europe. Further analysis revealed these users were victims of previous phishing scams through which threat actors successfully gained access to their email accounts.
| | Author: | US-CERT | | Homepage: | http://www.us-cert.gov/ | | File Size: | 5579 | | Last Modified: | Feb 25 01:27:12 2010 |
| MD5 Checksum: | 86574b00afefa67252260df1c529ad3d |
|
|
|
|
|