Core Security Technologies Advisory - A vulnerability has been found in the ActiveX control DLL (axvlc.dll) used by VLC player. This library contains three methods whose parameters are not correctly checked, and may produce a bad initialized pointer. By providing these functions specially crafted parameters, an attacker can overwrite memory zones and execute arbitrary code. Vulnerable versions include VLC media player 0.86, 0.86a, 0.86b and 0.86c.
a87e849266c4e77d90eb2721b17cdf3a56fc7d7192d74bad333d639a52d5e13e
SWFIntruder (pronounced Swiff Intruder) is the first tool specifically developed for analyzing and testing security of Flash applications at runtime. Some features include predefined attack patterns, highly customizable attacks, semi-automated cross site scripting checks, and more.
ed7bcff3fefd34be99edafb8554813713aebb26330bb5743201776c9eff34d1e
Directory traversal, cross site scripting, and SQL injection vulnerabilities exist in the Absolute News Manager .NET version 5.1.
c20201b4d8c8d24e7310c36b1d34160f498e4b267278ba9e50ad2889cd7016c1
phpMyChat version 0.14.5 suffers from remote file inclusion and multiple cross site scripting vulnerabilities.
cbdc379948181cc0dd079f73ebe7b767a54889b85e4975cf29449591a650404c
SEC Consult Security Advisory 20071204-0 - SonicWALL Global VPN Client suffers from a format string vulnerability that can be triggered by supplying a specially crafted configuration file. Versions below 4.0.0.830 are vulnerable.
b97b54d87bbc935b01eccf81c297be574aecaedace6de6a4b4127979150d7bba
The Twitgit and Twitterlex widgets are susceptible to an insecure use of eval().
c0efe3ad63409b28bf852e96d194e0acab3c0e2d8b5bdc8c07bc9781ffee6966
Secunia Security Advisory - rPath has issued an update for rsync. This fixes some vulnerabilities, which can be exploited by malicious users to bypass certain security restrictions.
fa240a62a276ad643a434e17ae50e93d208973db9a46f3fed638912b47678a83
Secunia Security Advisory - A vulnerability has been discovered in Mac OS X, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
0e06cdf7b18b60fae773a662fd4a0be634fa0f8ac690cc80555c048af7a7dda5
Secunia Security Advisory - A security issue has been reported in the Linux Kernel, which can be exploited by malicious, local users to disclose potentially sensitive information.
99896ccbf05d25dee812f4050e0f20fd154ca5deb6dddff57299e90e670dd858
Secunia Security Advisory - A vulnerability has been reported in Xen, which can be exploited by malicious, local users to bypass certain security restrictions.
e38324a53f0ba733f473548eaa7796897628b5de8a2be2e0de789979bb829139
Secunia Security Advisory - A vulnerability has been discovered in SonicWALL GLobal VPN Client, which potentially can be exploited by malicious people to compromise a user's system.
b3fd155c383bb0ea697bafe8072604ddb983676f886604ba92515c681dcf6b12
Secunia Security Advisory - Some vulnerabilities have been reported in Absolute News Manager .NET, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks, or to disclose sensitive information.
5a233cc3a4f2c2e6447b8f9731d737243f7ceb1e062fcb1867e823a434dfd14a
Secunia Security Advisory - A vulnerability has been reported in HP Select Identity, which can be exploited by malicious people to bypass certain security restrictions.
51ef2fbf156857ea2a7afbfaabee8a77ec8d8ae9e37f610538abcc7cde06be11
Secunia Security Advisory - Some vulnerabilities have been reported in Jetty, which can be exploited by malicious people to conduct HTTP response splitting and cross-site scripting attacks and potentially hijack a user session.
fd3a9c5112b23e2b20e7c15a95b60cf4c29f7d33f63c9b0dc463c3ac54e6abb2
Secunia Security Advisory - A vulnerability has been reported in OpenOffice, which potentially can be exploited by malicious people to compromise a user's system.
da1538a305e3f09762314fc265a1936706c65098f4d283515ea557ba39860771
Secunia Security Advisory - A vulnerability with an unknown impact has been reported in avast! Home/Professional.
54592e38c10c393648d2bcc1ee4854c532d6b0805ad7215c70e4f45ef6457218
Secunia Security Advisory - Mandriva has issued an update for openssl. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
00cbc1121775d085790519eb02331b2611e9cbf8c48be25ef518d0c7aff99087
Secunia Security Advisory - A weakness has been reported in Citrix EdgeSight, which can be exploited by malicious, local users to disclose sensitive information.
33577de7175f9d287b3dc0a32a844e71a085ce7cad2a76f6eaa2023bec142202
Secunia Security Advisory - Ubuntu has issued an update for mono. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
76d1aa8bb69091564d9ee6aa968d14063f9c0aec64be60b39e34f8d6326ac893