what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 50 of 50 RSS Feed

Files Date: 2012-02-10 to 2012-02-11

Secunia Security Advisory 47969
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Vulnerability-Lab has discovered a vulnerability in Dolibarr ERP/CRM, which can be exploited by malicious users to conduct SQL injection attacks.

tags | advisory, sql injection
SHA-256 | 140e2461dfc9fe15e375b5a5ffca2b63969d8c558447c5d1db00c9c0252effed
Secunia Security Advisory 47982
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - SUSE has issued an update for opera. This fixes a weakness and a vulnerability, which can be exploited by malicious people to disclose potentially sensitive information and bypass certain security restrictions.

tags | advisory
systems | linux, suse
SHA-256 | 3aea46f46c30eea9c483c048f5db5c63169a69a1175c23ac47299692af6b83f0
Secunia Security Advisory 47934
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been discovered in Pluck, which can be exploited by malicious people to conduct cross-site request forgery attacks.

tags | advisory, csrf
SHA-256 | b4b5187044f01bd10fb9055158320d00e6b4b8df69aeac9c726916c1d2e1278d
Secunia Security Advisory 47978
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - SUSE has issued an update for apache2. This fixes two weaknesses and a vulnerability, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to bypass certain security restrictions.

tags | advisory, local
systems | linux, suse
SHA-256 | 2693f55ec8d94c1c545ca5ee821b6e0b4d360a10a7f7410f1be881995149fddc
Secunia Security Advisory 47988
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - SUSE has issued an update for curl. This fixes a weakness and two vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, disclose potentially sensitive information, hijack a user's session, and manipulate certain data.

tags | advisory, vulnerability
systems | linux, suse
SHA-256 | a10cb67f4b56b24ecb1307720a223fb45c275972de16a33cbc022597c80c6a28
Secunia Security Advisory 47986
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - SUSE has issued an update for lighttpd. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).

tags | advisory, denial of service
systems | linux, suse
SHA-256 | 05a7d48ab9749c07cf4205029eb63bdcf9ba129ab871cb52571cae49ac9b755f
Secunia Security Advisory 47925
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Ubuntu has issued an update for openssl. This fixes multiple vulnerabilities, which can be exploited by malicious people to disclose sensitive information, cause a DoS (Denial of Service), and potentially compromise an application using the library.

tags | advisory, denial of service, vulnerability
systems | linux, ubuntu
SHA-256 | 7fe75496fb4ec9c67c30f1129a934a509975710d4d85053feab30980d8efef3c
Secunia Security Advisory 47942
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been discovered in XRay CMS, which can be exploited by malicious people to conduct SQL injection attacks.

tags | advisory, sql injection
SHA-256 | 5f2b6ef784db835cc8e4781b4f8f1cadd46e35861aa9bcd5bfa7e88cd12503f4
Secunia Security Advisory 47918
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Emilien Girault has discovered a vulnerability in GLPI, which can be exploited by malicious users to compromise a vulnerable system.

tags | advisory
SHA-256 | 580d8bc682763e58f52b0b042a77839080d1ad3cba9e12a6de8990f6b991004a
Secunia Security Advisory 47882
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Multiple vulnerabilities have been reported in MyBB, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks.

tags | advisory, vulnerability, xss, csrf
SHA-256 | 04f72376f4c841caead4fdf8673be840432a1e84618f3243f93379317cea6aeb
Secunia Security Advisory 47947
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been discovered in Gazie, which can be exploited by malicious people to conduct cross-site request forgery attacks.

tags | advisory, csrf
SHA-256 | 01b0f629f1fb3911ebc0279fe05ee3c7913542b78800ac09a6102b77996b89da
Secunia Security Advisory 47966
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Luigi Auriemma has discovered two vulnerabilities in RabidHamster R2 Extreme, which can be exploited by malicious users to disclose potentially sensitive information and compromise a vulnerable system.

tags | advisory, vulnerability
SHA-256 | deda558e727cf10929ad24f7297272dcc8a24c38c525e7ba9f28c7a9abb6cbde
Secunia Security Advisory 47878
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Ubuntu has issued an update for php5. This fixes a security issue and multiple vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, cause a DoS (Denial of Service), and compromise a vulnerable system.

tags | advisory, denial of service, vulnerability
systems | linux, ubuntu
SHA-256 | b73bf481979d1c4e85be7551b8114fc82facb67012f8653ecd3b408c35605d7a
Yoono Desktop 1.8.16 Cross Site Scripting
Posted Feb 10, 2012
Authored by r007k17-w

Yoono Desktop add-on version 1.8.16 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | a8417c2a0833fd85e7aa35fa63e272e82bb16abb6d03a52d1c45f412dc36d3b1
Yoono Firefox 7.7.0 Cross Site Scripting
Posted Feb 10, 2012
Authored by r007k17-w

Yoono Firefox add-on version 7.7.0 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | 457734c2085a327eb9139eddfc1fcfd7acb34333fb01e3e55e61f34a2dceec41
Ubuntu Security Notice USN-1358-1
Posted Feb 10, 2012
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 1358-1 - It was discovered that PHP computed hash values for form parameters without restricting the ability to trigger hash collisions predictably. This could allow a remote attacker to cause a denial of service by sending many crafted parameters. ATTENTION: this update changes previous PHP behavior by limiting the number of external input variables to 1000. This may be increased by adding a "max_input_vars" directive to the php.ini configuration file. See http://www.php.net/manual/en/info.configuration.php#ini.max-input-vars for more information. Various other issues were also addressed.

tags | advisory, remote, web, denial of service, php
systems | linux, ubuntu
advisories | CVE-2011-4885, CVE-2012-0830, CVE-2011-4153, CVE-2012-0057, CVE-2012-0788, CVE-2012-0831, CVE-2011-0441, CVE-2011-0441, CVE-2011-4153, CVE-2011-4885, CVE-2012-0057, CVE-2012-0788, CVE-2012-0830, CVE-2012-0831
SHA-256 | 4e7832bc4af2f7480c0583d5776cc3ff599367f5f6f7376c2832f74a7230342c
Red Hat Security Advisory 2012-0108-01
Posted Feb 10, 2012
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2012-0108-01 - JBoss Cache is the clustering backbone for data distribution in JBoss Enterprise Application Platform. It provides the backing implementation for web session replication, stateful session bean replication and entity caching. It was found that NonManagedConnectionFactory would log the username and password in plain text when an exception was thrown. This could lead to the exposure of authentication credentials if local users had permissions to read the log file. Warning: Before applying this update, back up your existing JBoss Enterprise Application Platform's "jboss-as/server/[PROFILE]/lib/jbosscache-core.jar" file.

tags | advisory, web, local
systems | linux, redhat
advisories | CVE-2012-0034
SHA-256 | d227121dcf7f790e49aced4a493d3ca7c879925c5a0c967c8967022516509935
Ubuntu Security Notice USN-1357-1
Posted Feb 10, 2012
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 1357-1 - It was discovered that the elliptic curve cryptography (ECC) subsystem in OpenSSL, when using the Elliptic Curve Digital Signature Algorithm (ECDSA) for the ECDHE_ECDSA cipher suite, did not properly implement curves over binary fields. This could allow an attacker to determine private keys via a timing attack. This issue only affected Ubuntu 8.04 LTS, Ubuntu 10.04 LTS, Ubuntu 10.10 and Ubuntu 11.04. Adam Langley discovered that the ephemeral Elliptic Curve Diffie-Hellman (ECDH) functionality in OpenSSL did not ensure thread safety while processing handshake messages from clients. This could allow a remote attacker to cause a denial of service via out-of-order messages that violate the TLS protocol. This issue only affected Ubuntu 8.04 LTS, Ubuntu 10.04 LTS, Ubuntu 10.10 and Ubuntu 11.04. Various other issues were also addressed.

tags | advisory, remote, denial of service, protocol
systems | linux, ubuntu
advisories | CVE-2011-1945, CVE-2011-3210, CVE-2011-4108, CVE-2011-4108, CVE-2012-0050, CVE-2011-4109, CVE-2011-4354, CVE-2011-4576, CVE-2011-4577, CVE-2011-4619, CVE-2012-0027, CVE-2011-1945, CVE-2011-3210, CVE-2011-4108, CVE-2011-4109, CVE-2011-4354, CVE-2011-4576, CVE-2011-4577, CVE-2011-4619, CVE-2012-0027, CVE-2012-0050
SHA-256 | 35a63a05c4a33b71a7bcfee436327107866cecc57861e8d07b69574145af5179
Red Hat Security Advisory 2012-0107-01
Posted Feb 10, 2012
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2012-0107-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Using the SG_IO ioctl to issue SCSI requests to partitions or LVM volumes resulted in the requests being passed to the underlying block device. If a privileged user only had access to a single partition or LVM volume, they could use this flaw to bypass those restrictions and gain read and write access to the entire block device. Refer to Red Hat Knowledgebase article DOC-67874, linked to in the References, for further details about this issue.

tags | advisory, kernel
systems | linux, redhat
advisories | CVE-2011-3638, CVE-2011-4086, CVE-2011-4127, CVE-2012-0028, CVE-2012-0207
SHA-256 | 0f06f08a25a1cc6f395b307753e4762964477f1ec0e20c7adb0a86df4fce7422
Debian Security Advisory 2407-1
Posted Feb 10, 2012
Authored by Debian | Site debian.org

Debian Linux Security Advisory 2407-1 - It was discovered that a malicious CVS server could cause a heap overflow in the CVS client, potentially allowing the server to execute arbitrary code on the client.

tags | advisory, overflow, arbitrary
systems | linux, debian
advisories | CVE-2012-0804
SHA-256 | 1489ddea367ba0fd14946999e8941cbabe33fe51ca09e8d921dea8e46f7770df
Debian Security Advisory 2406-1
Posted Feb 10, 2012
Authored by Debian | Site debian.org

Debian Linux Security Advisory 2406-1 - Several vulnerabilities have been discovered in Icedove, Debian's variant of the Mozilla Thunderbird code base.

tags | advisory, vulnerability
systems | linux, debian
advisories | CVE-2011-3670, CVE-2012-0442, CVE-2012-0444, CVE-2012-0449
SHA-256 | 8c380c84934737b4f02c7cf785dbda1b2cc651735d0eb54d87525fbaa5777161
Secunia Security Advisory 47941
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Multiple vulnerabilities have been reported in the Finder module for Drupal, which can be exploited by malicious people to conduct script insertion attacks.

tags | advisory, vulnerability
SHA-256 | f4d066722c1c58dd949e71d012f978ac0ac9ca09f8923c4844c7241c8a349699
Secunia Security Advisory 47915
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been discovered in the Finder module for Drupal, which can be exploited by malicious users to compromise a vulnerable system.

tags | advisory
SHA-256 | 5c601a29b4a90693bffd30ea0765a1eca8efe38532cf44e6780b118dc934bd17
Secunia Security Advisory 47943
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Multiple vulnerabilities have been reported in the Finder module for Drupal, which can be exploited by malicious users to compromise a vulnerable system and by malicious people to conduct script insertion attacks.

tags | advisory, vulnerability
SHA-256 | 791906a03acbd29ebaf757f928215eeac33a23b5fe6597354066058e4b2b27b9
Secunia Security Advisory 47967
Posted Feb 10, 2012
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Red Hat has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users and malicious, local users in a guest virtual machine to gain escalated privileges and by malicious, local users and malicious people to cause a DoS (Denial of Service).

tags | advisory, denial of service, kernel, local, vulnerability
systems | linux, redhat
SHA-256 | 8cbc53bac12119c016d93c72385e7a8b33da8846bedf7c40b28fa98424943200
Page 2 of 2
Back12Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close