|
Colapse all |
Post message
ZDI-11-187: Oracle Java ICC Profile clrt Tag Parsing Remote Code Execution Vulnerability 2011-06-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-188: Oracle Java ICC Profile ncl2 Count Tag Parsing Remote Code Execution Vulnerability 2011-06-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-188: Oracle Java ICC Profile ncl2 Count Tag Parsing Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-188 June 8, 2011 -- CVE ID: CVE-2011-0862 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Oracle -- Affected Products: Oracle Java Run [ more ] [ reply ] ZDI-11-184: Oracle Java ICC Profile Sequence Description 'pseq' Tag Parsing Remote Code Execution Vulnerability 2011-06-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-184: Oracle Java ICC Profile Sequence Description 'pseq' Tag Parsing Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-184 June 8, 2011 -- CVE ID: CVE-2011-0862 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Oracle -- Affected Products [ more ] [ reply ] ZDI-11-186: Oracle Java ICC Profile Multi-Language 'curv' Tag Parsing Remote Code Execution Vulnerability 2011-06-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-186: Oracle Java ICC Profile Multi-Language 'curv' Tag Parsing Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-186 June 8, 2011 -- CVE ID: CVE-2011-0862 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Oracle -- Affected Products: Orac [ more ] [ reply ] ZDI-11-185: Oracle Java ICC Profile 'bfd ' Tag Parsing Remote Code Execution Vulnerability 2011-06-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-185: Oracle Java ICC Profile 'bfd ' Tag Parsing Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-185 June 8, 2011 -- CVE ID: CVE-2011-0862 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Oracle -- Affected Products: Oracle Java Runtime [ more ] [ reply ] ZDI-11-183: Oracle Java ICC Profile MultiLanguage 'mluc' Tag Parsing Remote Code Execution Vulnerability 2011-06-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-183: Oracle Java ICC Profile MultiLanguage 'mluc' Tag Parsing Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-183 June 8, 2011 -- CVE ID: CVE-2011-0862 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Oracle -- Affected Products: Oracl [ more ] [ reply ] ZDI-11-182: Oracle Java IE Browser Plugin Corrupted Window Procedure Hook Remote Code Execution Vulnerability 2011-06-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-182: Oracle Java IE Browser Plugin Corrupted Window Procedure Hook Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-182 June 8, 2011 -- CVE ID: CVE-2011-0817 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Oracle -- Affected Products: [ more ] [ reply ] Multiple vulnerabilities in several IP camera products 2011-06-08 roberto paleari emaze net Multiple vulnerabilities in several IP camera products ====================================================== [ADVISORY INFORMATION] Title: Multiple vulnerabilities in several IP camera products Release date: 08/06/2011 Last update: 08/06/2011 Credits: Roberto Paleari, Emaze Networks S.p [ more ] [ reply ] [HITB-Announce] HITB2011AMS Conference Materials & Photos 2011-06-08 Hafez Kamal (aphesz hackinthebox org) Hi everyone and greetings from Netherlands! We're finally done with the epicness that was HITB2011AMS! Over 300 attendees and 45 speakers joined us for 2 days of trainings and a 2 day quad-track conference and it was a blast as always! Presentation materials can be downloaded from: http://conferen [ more ] [ reply ] OWASP Zed Attack Proxy version 1.3.0 2011-06-06 psiinon (psiinon gmail com) Hi folks, Version 1.3.0 of the OWASP Zed Attack Proxy (ZAP) has now been released. ZAP is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications. This release adds the following main features: Fuzzing, using the JBroFuzz library Dynamic SSL Certificate [ more ] [ reply ] ZDI-11-181: Novell iPrint op-printer-list-all-jobs url Remote Code Execution Vulnerability 2011-06-06 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-181: Novell iPrint op-printer-list-all-jobs url Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-181 June 6, 2011 -- CVE ID: CVE-2011-1707 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Novell -- Affected Products: Novell iPrint -- T [ more ] [ reply ] ZDI-11-180: Novell iPrint op-printer-list-all-jobs cookie Remote Code Execution Vulnerability 2011-06-06 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-180: Novell iPrint op-printer-list-all-jobs cookie Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-180 June 6, 2011 -- CVE ID: CVE-2011-1708 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Novell -- Affected Products: Novell iPrint - [ more ] [ reply ] ZDI-11-179: Novell iPrint nipplib.dll iprint-client-config-info Remote Code Execution Vulnerability 2011-06-06 Fly, Kate (kate kate fly hp com) ZDI-11-179: Novell iPrint nipplib.dll iprint-client-config-info Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-179 June 6, 2011 -- CVE ID: CVE-2011-1706 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Novell -- Affected Products: Novell iPr [ more ] [ reply ] ZDI-11-178: Novell iPrint nipplib.dll client-file-name Remote Code Execution Vulnerability 2011-06-06 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-178: Novell iPrint nipplib.dll client-file-name Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-178 June 6, 2011 -- CVE ID: CVE-2011-1705 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Novell -- Affected Products: Novell iPrint -- T [ more ] [ reply ] ZDI-11-176: Novell iPrint nipplib.dll driver-version Remote Code Vulnerability 2011-06-06 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-176: Novell iPrint nipplib.dll driver-version Remote Code Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-176 June 6, 2011 -- CVE ID: CVE-2011-1703 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Novell -- Affected Products: Novell iPrint -- TippingPoint( [ more ] [ reply ] ZDI-11-175: Novell iPrint nipplib.dll file-date-time Remote Code Execution Vulnerability 2011-06-06 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-175: Novell iPrint nipplib.dll file-date-time Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-175 June 6, 2011 -- CVE ID: CVE-2011-1702 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Novell -- Affected Products: Novell iPrint -- Tip [ more ] [ reply ] ZDI-11-174: Novell iPrint nipplib.dll profile-name Remote Code Execution Vulnerability 2011-06-06 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-174: Novell iPrint nipplib.dll profile-name Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-174 June 6, 2011 -- CVE ID: CVE-2011-1701 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Novell -- Affected Products: Novell iPrint -- Tippi [ more ] [ reply ] ZDI-11-177: Novell iPrint nipplib.dll core-package Remote Code Execution Vulnerability 2011-06-06 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-177: Novell iPrint nipplib.dll core-package Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-177 June 6, 2011 -- CVE ID: CVE-2011-1704 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Novell -- Affected Products: Novell iPrint -- Tippi [ more ] [ reply ] ZDI-11-173: Novell iPrint nipplib.dll profile-time Remote Code Execution Vulnerability 2011-06-06 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-173: Novell iPrint nipplib.dll profile-time Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-173 June 6, 2011 -- CVE ID: CVE-2011-1700 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Novell -- Affected Products: Novell iPrint -- Tippi [ more ] [ reply ] ZDI-11-172: Novell iPrint nipplib.dll uri Remote Code Execution Vulnerability 2011-06-06 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-172: Novell iPrint nipplib.dll uri Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-172 June 6, 2011 -- CVE ID: CVE-2011-1699 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Novell -- Affected Products: Novell iPrint -- TippingPoint(T [ more ] [ reply ] Java HotSpot Cryptographic Provider signature verification vulnerability 2011-06-06 Zacheusz Siedlecki (Zacheusz Siedlecki gmail com) An attacker can add a cryptographic provider containing cipher implementation signed by an untrusted certificate. The attacker can also create his or her own jurisdiction policy files signed by an untrusted certificate. In order to achieve this, the attacker must first of all add a fake cryptographi [ more ] [ reply ] ESA-2011-009 (revised): RSA, The Security Division of EMC, announces new fix for potential security vulnerability in RSA(r) Access Manager Server. 2011-06-06 Security_Alert emc com -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ESA-2011-009 (revised): RSA, The Security Division of EMC, announces new fix for potential security vulnerability in RSA® Access Manager Server. Advisories Updated June 2, 2011 Summary: RSA Access Manager Server has been updated with the [ more ] [ reply ] Squiz Matrix - Cross-Site Scripting Vulnerability 2011-06-06 Patrick Webster (patrick osisecurity com au) Squiz Matrix - Cross-Site Scripting Vulnerability http://www.osisecurity.com.au/advisories/squiz-matrix-cross-site-scripti ng Release Date: 06-Jun-2011 Software: Squiz - Matrix http://www.squiz.net/ "Squiz Matrix delivers highly flexible and robust business integration engine and application devel [ more ] [ reply ] PopScript Multiple Vulnerabilities 2011-06-05 root d99y com ########################################################## # Exploit Title: PopScript Multiple Vulnerabilities # home : http://www.D99Y.com # Google Dork: Do as you would be done by ; ) # Date: 5/6/2011 # Author: NassRawI # Software Link: http://www.popscript.com/ ################################## [ more ] [ reply ] AppSec USA 2011 CFP Reminder, CTF Pre-Conference Challenge #2 2011-06-04 adam baso owasp org Hello netizens! This is an update about the OWASP AppSec USA 2011 software security conference in Minneapolis this September. *** CALL FOR PAPERS *** Have something important to say about software security? The OWASP AppSec USA 2011 Call for Papers is still open. We're looking for hardcore tal [ more ] [ reply ] |
|
Privacy Statement |
http://www.zerodayinitiative.com/advisories/ZDI-11-187
June 8, 2011
-- CVE ID:
CVE-2011-0862
-- CVSS:
9, (AV:N/AC:L/Au:N/C:P/I:P/A:C)
-- Affected Vendors:
Oracle
-- Affected Products:
Oracle Java Runtime
[ more ] [ reply ]