Section: .. / 0807-advisories /
| /// File Name: |
sa31229.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and potentially gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/31229/ | | File Size: | 2209 | | Last Modified: | Jul 25 20:50:29 2008 |
| MD5 Checksum: | 46477db039c2d9f9fee3a14bc92943a9 |
|
| /// File Name: |
sa31221.txt |
Description:
|
Secunia Security Advisory - Citrix has acknowledged a vulnerability in NetScaler, which can be exploited by malicious people to poison the DNS cache.
| | Homepage: | http://secunia.com/advisories/31221/ | | File Size: | 2305 | | Last Modified: | Jul 25 14:25:43 2008 |
| MD5 Checksum: | 23f33135808e33270502e06ca52e5f22 |
|
| /// File Name: |
secunia-realnetworks.txt |
Description:
|
Secunia Research has discovered a vulnerability in RealPlayer, which can potentially be exploited by malicious people to compromise a user's system. The vulnerability is caused due to a design error within the handling of frames in Shockwave Flash (SWF) files and can be exploited to cause a heap-based buffer overflow. Successful exploitation may allow execution of arbitrary code. Affected is RealNetworks RealPlayer version 10.5 Build 6.0.12.1483.
| | Author: | Dyon Balding | | Homepage: | http://secunia.com/ | | File Size: | 4353 | | Related CVE(s): | CVE-2007-5400 | | Last Modified: | Jul 25 14:24:02 2008 |
| MD5 Checksum: | e44f432fc16d17e09063fe9acb1b39c4 |
|
| /// File Name: |
dsa-1617-1.txt |
Description:
|
Debian Security Advisory 1617-1 - In DSA-1603-1, Debian released an update to the BIND 9 domain name server, which introduced UDP source port randomization to mitigate the threat of DNS cache poisoning attacks (identified by the Common Vulnerabilities and Exposures project as CVE-2008-1447). The fix, while correct, was incompatible with the version of SELinux Reference Policy shipped with Debian Etch, which did not permit a process running in the named_t domain to bind sockets to UDP ports other than the standard 'domain' port (53). The incompatibility affects both the 'targeted' and 'strict' policy packages supplied by this version of refpolicy. This update to the refpolicy packages grants the ability to bind to arbitrary UDP ports to named_t processes. When installed, the updated packages will attempt to update the bind policy module on systems where it had been previously loaded and where the previous version of refpolicy was 0.0.20061018-5 or below.
| | Homepage: | http://www.debian.org/security | | File Size: | 5335 | | Related CVE(s): | CVE-2008-1447 | | Last Modified: | Jul 25 14:20:30 2008 |
| MD5 Checksum: | 1f7434c7ae5c8345c7101b841bffb229 |
|
| /// File Name: |
USN-629-1.txt |
Description:
|
Ubuntu Security Notice 629-1 - Various flaws in the mozilla-thunderbird package have been addressed including improper handling, weaknesses, denial of service, and code execution issues.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 19876 | | Related CVE(s): | CVE-2008-2785, CVE-2008-2798, CVE-2008-2799, CVE-2008-2802, CVE-2008-2803, CVE-2008-2807, CVE-2008-2809, CVE-2008-2811 | | Last Modified: | Jul 25 13:49:41 2008 |
| MD5 Checksum: | 6423df1ff327f2272abae252a822f5cf |
|
| /// File Name: |
sa27620.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in RealPlayer, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/27620/ | | File Size: | 2272 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | 7383a474abf09e488ef296c87ace7684 |
|
| /// File Name: |
sa31172.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in the Linux Kernel, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and potentially gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/31172/ | | File Size: | 2330 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | 0ea64e0db98dcaae0555685d5d530e6e |
|
| /// File Name: |
sa31176.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for iceweasel. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, disclose sensitive information, and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/31176/ | | File Size: | 8054 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | 3f85f3c4e73125401dc1e762c527b9a6 |
|
| /// File Name: |
sa31183.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for xulrunner. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and spoofing attacks, bypass certain security restrictions, disclose sensitive information, or potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/31183/ | | File Size: | 28553 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | f46ee9c95f9eb822ee48aa31f07dbe8a |
|
| /// File Name: |
sa31195.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for thunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to conduct spoofing attacks, disclose sensitive information, or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/31195/ | | File Size: | 2478 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | 320e91a31dbdcb5d79f8a0d49230eb0c |
|
| /// File Name: |
sa31198.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for the kernel. This fixes a vulnerability, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/31198/ | | File Size: | 2092 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | 89ae2f28aa7906c46f1d628c7e1f4c65 |
|
| /// File Name: |
sa31200.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for php. This fixes some vulnerabilities, where some have unknown impacts and others can be exploited by malicious users to bypass certain security restrictions, and potentially by malicious people to cause a DoS (Denial of Service) or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/31200/ | | File Size: | 55036 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | 7989e86030e9f826af65f2d0bc31d085 |
|
| /// File Name: |
sa31206.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for clamav. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/31206/ | | File Size: | 15301 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | 355108afad63ffcc2a8110c83b77f38b |
|
| /// File Name: |
sa31207.txt |
Description:
|
Secunia Security Advisory - Secure Computing has acknowledged a vulnerability in Sidewinder and CyberGuard, which can be exploited by malicious people to poison the DNS cache.
| | Homepage: | http://secunia.com/advisories/31207/ | | File Size: | 2387 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | 96d9c79715357b62ca7c1ea851e030f2 |
|
| /// File Name: |
sa31208.txt |
Description:
|
Secunia Security Advisory - An updated version of IPCop has been released, which fixes some vulnerabilities in perl, which can potentially be exploited by malicious people to cause a Denial of Service or to compromise a vulnerable perl application.
| | Homepage: | http://secunia.com/advisories/31208/ | | File Size: | 2047 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | 68a4d68bf88108c46c053f67f94b677a |
|
| /// File Name: |
sa31209.txt |
Description:
|
Secunia Security Advisory - Slackware has issued an update for dnsmasq. This fixes a vulnerability, which can be exploited by malicious people to poison the DNS cache.
| | Homepage: | http://secunia.com/advisories/31209/ | | File Size: | 2869 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | 3d37bfd18e801cd7bf17b0f84e7ebcee |
|
| /// File Name: |
sa31211.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Drupal, which can be exploited by malicious people to conduct session fixation attacks.
| | Homepage: | http://secunia.com/advisories/31211/ | | File Size: | 2297 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | 67cfc9b09ceab5b4fd2b77967773bf2f |
|
| /// File Name: |
sa31212.txt |
Description:
|
Secunia Security Advisory - OpenBSD has acknowledged a vulnerability in BIND, which can be exploited by malicious people to poison the DNS cache.
| | Homepage: | http://secunia.com/advisories/31212/ | | File Size: | 2238 | | Last Modified: | Jul 25 13:41:34 2008 |
| MD5 Checksum: | f4d05e93f2bba5f11259bdb60995cee5 |
|
| /// File Name: |
sa31194.txt |
Description:
|
Secunia Security Advisory - Fedora has issued an update for asterisk. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or to conduct DoS attacks.
| | Homepage: | http://secunia.com/advisories/31194/ | | File Size: | 2001 | | Last Modified: | Jul 24 12:15:07 2008 |
| MD5 Checksum: | 885cd129a77cb77e936df69ae30ae76c |
|
| /// File Name: |
dsa-1616-1.txt |
Description:
|
Debian Security Advisory 1616-1 - Damian Put discovered a vulnerability in the ClamAV anti-virus toolkit's parsing of Petite-packed Win32 executables. The weakness leads to an invalid memory access, and could enable an attacker to crash clamav by supplying a maliciously crafted Petite-compressed binary for scanning. In some configurations, such as when clamav is used in combination with mail servers, this could cause a system to "fail open," facilitating a follow-on viral attack.
| | Homepage: | http://www.debian.org/security | | File Size: | 16558 | | Related CVE(s): | CVE-2008-2713 | | Last Modified: | Jul 24 12:14:46 2008 |
| MD5 Checksum: | aedebbf953275b7079e71948199d5566 |
|
| /// File Name: |
sa31178.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in Asterisk, which can be exploited by malicious people to cause a DoS (Denial of Service) or to conduct DoS attacks.
| | Homepage: | http://secunia.com/advisories/31178/ | | File Size: | 3380 | | Last Modified: | Jul 23 19:53:09 2008 |
| MD5 Checksum: | 18141ca18feadc2b788db08d66f6de07 |
|
| /// File Name: |
sa31203.txt |
Description:
|
Secunia Security Advisory - Tim Loshak has reported some vulnerabilities in SocialEngine, which can be exploited by malicious users to compromise a vulnerable system, and by malicious people to conduct SQL injection attacks and bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/31203/ | | File Size: | 2744 | | Last Modified: | Jul 23 19:53:09 2008 |
| MD5 Checksum: | 33de9db9ca1aeaa7cf492b3f4b25c856 |
|
| /// File Name: |
dsa-1615-1.txt |
Description:
|
Debian Security Advisory 1615-1 - Several remote vulnerabilities have been discovered in Xulrunner, a runtime environment for XUL applications.
| | Homepage: | http://www.debian.org/security | | File Size: | 31926 | | Related CVE(s): | CVE-2008-2785, CVE-2008-2798, CVE-2008-2799, CVE-2008-2800, CVE-2008-2801, CVE-2008-2802, CVE-2008-2803, CVE-2008-2805, CVE-2008-2807, CVE-2008-2808, CVE-2008-2809, CVE-2008-2811, CVE-2008-2933 | | Last Modified: | Jul 23 19:50:15 2008 |
| MD5 Checksum: | 814da2c25fb7c7e932ae2c2849d21d29 |
|
| /// File Name: |
dsa-1614-1.txt |
Description:
|
Debian Security Advisory 1614-1 - Several remote vulnerabilities have been discovered in the Iceweasel web browser, an unbranded version of the Firefox browser. It was discovered that missing boundary checks on a reference counter for CSS objects can lead to the execution of arbitrary code. Billy Rios discovered that passing an URL containing a pipe symbol to Iceweasel can lead to Chrome privilege escalation.
| | Homepage: | http://www.debian.org/security | | File Size: | 8712 | | Related CVE(s): | CVE-2008-2785, CVE-2008-2933 | | Last Modified: | Jul 23 19:49:36 2008 |
| MD5 Checksum: | 357a585f8c33728c1e761bc85d365a57 |
|
|
|
|
|