what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 126 - 150 of 245 RSS Feed

Files Date: 1999-09-14 to 1999-09-15

CA-96.21.tcp_syn_flooding
Posted Sep 14, 1999

** This advisory supersedes the IP spoofing portion of CA-95:01. ** It describes denial-of-service attacks through TCP SYN flooding and IP spoofing. Advice about filtering is included.

tags | spoof, tcp
SHA-256 | 52e062591c7e9869b251e4205ec6250ca5ac156dba405b1482d50588105faae4
CA-96.20.sendmail_vul
Posted Sep 14, 1999

This advisory describes a vulnerability in all versions of sendmail prior to 8.7.6, and includes a workaround and patch information.

SHA-256 | 998a5cd9ce2b9e87b63e0503272f4368f6cf1ba92ea6129af45d3aeb0b7de397
CA-96.19.expreserve
Posted Sep 14, 1999

** This advisory supersedes CA-93:09 and CA-93:09a. ** It provides information about a vulnerability in the expreserve utility. A workaround and vendor information are included.

SHA-256 | 5d67e47a10afdc2c890b0693fac3fcae7aa4ae79e6739d23e27d0f949d9e46c2
CA-96.18.fm_fls
Posted Sep 14, 1999

This advisory reports a configuration problem in the floating license server for Adobe FrameMaker (fm_fls). A workaround is provided.

SHA-256 | b02d28358d675be8162ff04c3ce6ade3f4b5ff142a7e17582e5a80775e6acf26
CA-96.17.Solaris_vold_vul
Posted Sep 14, 1999

This advisory describes a vulnerability in the Solaris volume management daemon (vold) and gives a workaround.

systems | solaris
SHA-256 | 2456c89d8f7b0a0a749c3fcf0ffb80e9ceb859033d7d07c13325065dfc4402a4
CA-96.16.Solaris_admintool_vul
Posted Sep 14, 1999

This advisory describes a vulnerability in the Solaris admintool and gives a workaround.

tags | add administrator
systems | solaris
SHA-256 | a67fc62c820aac9ee488503d3dba867f74410e0bd3a1058e3c9d42f5ca783d2b
CA-96.15.Solaris_KCMS_vul
Posted Sep 14, 1999

This advisory describes a vulnerability in the Solaris 2.5 kcms programs and suggests a workaround.

systems | solaris
SHA-256 | 9a62a5bd7be91efc27f8127c7c794a6e79c656958e5800630e84e759fbc084f4
CA-96.14.rdist_vul
Posted Sep 14, 1999

** This advisory supersedes CA-91:20 and CA-94:04. ** It describes a vulnerability in the lookup subroutine of rdist, for which an exploitation script is available. Vendor information and a pointer to a new version of rdist are included.

SHA-256 | 22aa745dc6f62c2568343a61b66386bee6c1133ea35cf7e21da38c9fba72a46e
CA-96.12.suidperl_vul
Posted Sep 14, 1999

This advisory describes a vulnerability in systems that contain the suidperl program and that support saved set-user-ID and saved set-group-ID. Patch information is included.

SHA-256 | 3fc97f399a3d3ba7a8e1c5ae55a8c646b8ebf36a73a40ec13a161fabcf25bbe8
CA-96.13.dip_vul
Posted Sep 14, 1999

This advisory describes a vulnerability in the dip program, which is shipped with most Linux systems. Other UNIX systems may also use it. Pointers to dip 3.3.7 are included.

systems | linux, unix
SHA-256 | ed591a6b9d53447eea5878fb6f1ffa77bed5b64a763106b5cd2442625952be8f
CA-96.11.interpreters_in_cgi_bin_dir
Posted Sep 14, 1999

This advisory warns users not to put interpreters in a Web server's CGI bin directory and to evaluate all programs in that directory.

tags | web, cgi
SHA-256 | 53753e5bf01f05a243f70609248bfa7a4d0f252272c5a0f2ed66c25b065fac12
CA-96.10.nis+_configuration
Posted Sep 14, 1999

This advisory was originally released as AUSCERT advisory AA-96.02a. It describes a vulnerability and workarounds for versions of NIS+ in which the access rights on the NIS+ passwd table are left in an unsecure state.

SHA-256 | 1df885e22aa4d137bafc7e4aad398ff8c524de9b4031db9d76f307cbc7f9e8d4
CA-96.09.rpc.statd
Posted Sep 14, 1999

This advisory describes a vulnerability in the rpc.statd (or statd) program that allows authorized users to remove or create any file that a root user can. Vendor information is included.

tags | root
SHA-256 | e09f0d9b98976356ddad749cc029ac07cc36fa0590e1d1822b09e8fe3e9bb14b
CA-96.08.pcnfsd
Posted Sep 14, 1999

This advisory describes a vulnerability in the pcnfsd program (also known as rpc.pcnfsd). A patch is included.

SHA-256 | 7fd12b4ccccf1b36bafdf25384c161751722c327d3c50316bf3185739d1418c6
CA-96.07.java_bytecode_verifier
Posted Sep 14, 1999

This advisory describes a vulnerability in the Java bytecode verifier portion of Sun Microsystems' Java Development Kit (JDK) 1.0 and 1.0.1. Workarounds are provided for this product and Netscape Navigator 2.0 and 2.01, which have the JDK built in.

tags | java
SHA-256 | cc70f47d859a0754e88ef63ee0c86b3e5f3bfd4a27039c44fef5f0b4df6b545c
CA-96.06.cgi_example_code
Posted Sep 14, 1999

This advisory describes a problem with example CGI code, as found in

tags | cgi
SHA-256 | 5a36824f9034fc19514120426e89567e1db843951c7a1ddf10b5d53f65dfa797
CA-96.05.java_applet_security_mgr
Posted Sep 14, 1999

This advisory describes a vulnerability in the Netscape Navigator 2.0 Java implementation and in Release 1.0 of the Java Developer's Kit from Sun Microsystems, Inc. Workarounds and pointers to a patch are included.

tags | java
SHA-256 | bbf339ee85871e6bdc4e0accee5513c66ec61321475dac3b989e6e62f82601fd
CA-96.04.corrupt_info_from_servers
Posted Sep 14, 1999

This advisory describes a vulnerability in network servers that can lead to corrupt information. The advisory includes information on subroutines for validating host names and IP addresses, patches for sendmail, and the status of vendor activity relating to the problem.

SHA-256 | ab520e4a498206e5ef116e255eb52739ffea19778c76eb3f80eb83c60e201d9d
CA-96.03.kerberos_4_key_server
Posted Sep 14, 1999

This advisory describes a problem with the Kerberos 4 key server, points to patches, and provides vendor information.

SHA-256 | de577388a7fd18adc1775697f39ca57df3037dac623db31c1ece854eba136b2f
CA-96.01.UDP_service_denial
Posted Sep 14, 1999

This advisory describes UDP port denial-of-service attacks, for which an exploitation script has been publicly posted. The advisory includes a workaround.

tags | udp
SHA-256 | e2c31f1c00a2288fc396d7cd8eb66db6acc1df86925318aa1a434e911eaa0c6b
CA-95:18.widespread.attacks
Posted Sep 14, 1999

This advisory warns readers of attacks on hundreds of Internet sites in which intruders exploit known vulnerabilities, all of which have been addressed in previous CERT advisories. These advisories are listed.

tags | vulnerability
SHA-256 | 605f919c21d637b5d9f046a226c4c8f9fed3fb781d3039ac6f870f952425140a
CA-95:17.rpc.ypupdated.vul
Posted Sep 14, 1999

This advisory describes a vulnerability in the rpc.ypupdated program, for which an exploitation program has been posted to several newsgroups. The advisory includes vendor information and a workaround.

SHA-256 | dfb7d8c41d58a499b0fa774900fe3541554fd48fda6f89dc90cab6f3c4fdf728
CA-95:16.wu-ftpd.vul
Posted Sep 14, 1999

This advisory describes a vulnerability in the wu-fptd SITE EXEC command and provides solutions for both Linux users and others.

systems | linux
SHA-256 | 35ecc7741553c9485ddea15365f5c4d40cc623e1c2aeee495baaffe3d76db8ad
CA-95:15.SGI.lp.vul
Posted Sep 14, 1999

This advisory points out accounts that are distributed without passwords and urges SGI customers to create passwords for those accounts.

SHA-256 | 0034542ee4160cb697f2a51a0589e2a130a4ac0fefba087c0674bc2a6996fb50
CA-95:14.Telnetd_Environment_Vulnerability
Posted Sep 14, 1999

This advisory describes a vulnerability with some telnet daemons and includes patch information from vendors, along with a workaround.

SHA-256 | 3cf719e0acc122edbbfe59fcfb75f9bd79c54bb101e9faa3d7119f55700f1a27
Page 6 of 10
Back45678Next

File Archive:

September 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Sep 1st
    261 Files
  • 2
    Sep 2nd
    17 Files
  • 3
    Sep 3rd
    38 Files
  • 4
    Sep 4th
    52 Files
  • 5
    Sep 5th
    23 Files
  • 6
    Sep 6th
    27 Files
  • 7
    Sep 7th
    0 Files
  • 8
    Sep 8th
    1 Files
  • 9
    Sep 9th
    16 Files
  • 10
    Sep 10th
    38 Files
  • 11
    Sep 11th
    0 Files
  • 12
    Sep 12th
    0 Files
  • 13
    Sep 13th
    0 Files
  • 14
    Sep 14th
    0 Files
  • 15
    Sep 15th
    0 Files
  • 16
    Sep 16th
    0 Files
  • 17
    Sep 17th
    0 Files
  • 18
    Sep 18th
    0 Files
  • 19
    Sep 19th
    0 Files
  • 20
    Sep 20th
    0 Files
  • 21
    Sep 21st
    0 Files
  • 22
    Sep 22nd
    0 Files
  • 23
    Sep 23rd
    0 Files
  • 24
    Sep 24th
    0 Files
  • 25
    Sep 25th
    0 Files
  • 26
    Sep 26th
    0 Files
  • 27
    Sep 27th
    0 Files
  • 28
    Sep 28th
    0 Files
  • 29
    Sep 29th
    0 Files
  • 30
    Sep 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close