|
Colapse all |
Post message
Miranda IM and Miranda Installer Let Local Users Execute Arbitrary Code 2005-04-08 Kozan (kozan netmagister com) OpenText FirstClass 8.0 Client Arbitrary File Execution 2005-04-08 dila (dilabox gmail com) Product: OpenText FirstClass 8.0 Client Homepage: http://www.firstclass.com Platform: Microsoft Windows Description: Insufficient validation of user input allows arbitrary file execution FirstClass bookmark files allow the user to organise their web address's using the familiar FirstClass desktop e [ more ] [ reply ] UPDATE: [ GLSA 200503-35 ] Smarty: Template vulnerability 2005-04-10 Thierry Carrez (koon gentoo org) SUSE Security Announcement: various KDE security problems (SUSE-SA:2005:022) 2005-04-11 Marcus Meissner (meissner suse de) [ GLSA 200504-07 ] GnomeVFS, libcdaudio: CDDB response overflow 2005-04-08 Thierry Carrez (koon gentoo org) [USN-110-1] Linux kernel vulnerabilities 2005-04-11 Martin Pitt (martin pitt canonical com) =========================================================== Ubuntu Security Notice USN-110-1 April 11, 2005 linux-source-2.6.8.1 vulnerabilities CAN-2005-0867, CAN-2005-0937 =========================================================== A security issue affects the following Ubuntu releases: Ubu [ more ] [ reply ] UnixWare 7.1.4 UnixWare 7.1.3 UnixWare 7.1.1 : telnet client multiple issues 2005-04-08 please_reply_to_security sco com -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ________________________________________________________________________ ______ SCO Security Advisory Subject: UnixWare 7.1.4 UnixWare 7.1.3 UnixWare 7.1.1 : telnet client multiple issues Advisory number: SCOSA-2005.21 Issue date: 2005 April 0 [ more ] [ reply ] How to Report a Security Vulnerability to Microsoft 2005-04-08 Microsoft Security Response Center (secure microsoft com) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Hello! The Microsoft Security Response Center investigates all reports of security vulnerabilities sent to us that affect Microsoft products. If you believe you have found a security vulnerability affecting a Microsoft product, we would like to work wi [ more ] [ reply ] iDEFENSE Security Advisory 04.08.05: Microsoft Multiple E-Mail Client Address Spoofing Vulnerability 2005-04-08 iDEFENSE Labs (labs-no-reply idefense com) Microsoft Multiple E-Mail Client Address Spoofing Vulnerability iDEFENSE Security Advisory 04.08.05 http://www.idefense.com/application/poi/display?type=vulnerabilities April 8, 2005 I. BACKGROUND Microsoft Outlook provides an integrated solution for managing and organizing e-mail messages, sched [ more ] [ reply ] Double Choco Latte Remote Code Execution 2005-04-08 JeiAr (security gulftech org) ########################################################## # GulfTech Security Research April 8th, 2005 ########################################################## # Vendor : Michael Dean # URL : http://dcl.sourceforge.net/ # Version : Double Choco Latte 0.9.4 .3 && Earlier # Risk : Mult [ more ] [ reply ] PunBB <= 1.2.4 - change email to become admin exploit 2005-04-08 exploits (at) nopiracy (dot) de [email concealed] (exploits nopiracy de) MDKSA-2005:069 - Updated gdk-pixbuf packages fix vulnerability 2005-04-07 Mandrakelinux Security Team (security linux-mandrake com) MDKSA-2005:068 - Updated gtk+2.0 packages fix vulnerability 2005-04-07 Mandrakelinux Security Team (security linux-mandrake com) MacOSX Java Runtime Environment Remote Denial-of-Service (DoS) Vulnerability 2005-04-07 Marc Schoenefeld (schonef uni-muenster de) Sql injection, xss and path disclosure vulnerabilities in PostNuke 0.760-RC3 2005-04-08 dcrab (dcrab hackerscenter com) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Dcrab 's Security Advisory [Hsc Security Group] http://www.hackerscenter.com/ [dP Security] http://digitalparadox.org/ Get Dcrab's Services to audit your Web servers, scripts, networks, etc. Learn more at http://www.digitalparadox.org/services.ah GE [ more ] [ reply ] phpBB Upload Script "up.php" Arbitrary File Upload 2005-04-08 Status-x (phr4xz gmail com) ##################################################################### Advisory #1 "phpBB Upload Script "up.php" Arbitrary File Upload" $ Author: Status-x $ Contact: phr4xz (at) gmail (dot) com [email concealed] - status-x (at) hackersoft (dot) net [email concealed] $ Date: 7 April 2005 $ Website: http://defacers.com.mx $ Original Advisory: http://www.def [ more ] [ reply ] MDKSA-2005:067 - Updated sharutils packages fix multiple vulnerabilities 2005-04-07 Mandrakelinux Security Team (security linux-mandrake com) UnixWare 7.1.4 : cdrecord local root exploit 2005-04-07 please_reply_to_security sco com -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ________________________________________________________________________ ______ SCO Security Advisory Subject: UnixWare 7.1.4 : cdrecord local root exploit Advisory number: SCOSA-2005.20 Issue date: 2005 April 07 Cross reference: sr891408 fz53 [ more ] [ reply ] UnixWare 7.1.4 : libtiff Multiple vulnerabilities 2005-04-07 please_reply_to_security sco com -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ________________________________________________________________________ ______ SCO Security Advisory Subject: UnixWare 7.1.4 : libtiff Multiple vulnerabilities Advisory number: SCOSA-2005.19 Issue date: 2005 April 07 Cross reference: sr892971 [ more ] [ reply ] OpenServer 5.0.6 OpenServer 5.0.7 : cscope local attacker can remove arbitrary files 2005-04-07 please_reply_to_security sco com -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ________________________________________________________________________ ______ SCO Security Advisory Subject: OpenServer 5.0.6 OpenServer 5.0.7 : cscope local attacker can remove arbitrary files Advisory number: SCOSA-2005.11 Issue date: 200 [ more ] [ reply ] OpenServer 5.0.6 OpenServer 5.0.7 : termsh atcronsh auditsh environment buffer overflows 2005-04-07 please_reply_to_security sco com -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ________________________________________________________________________ ______ SCO Security Advisory Subject: OpenServer 5.0.6 OpenServer 5.0.7 : termsh atcronsh auditsh environment buffer overflows Advisory number: SCOSA-2005.15 Issue date: [ more ] [ reply ] UnixWare 7.1.4 UnixWare 7.1.3 UnixWare 7.1.1 : CDE dtlogin unspecified double free 2005-04-07 please_reply_to_security sco com -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ________________________________________________________________________ ______ SCO Security Advisory Subject: UnixWare 7.1.4 UnixWare 7.1.3 UnixWare 7.1.1 : CDE dtlogin unspecified double free Advisory number: SCOSA-2005.18 Issue date: 2005 [ more ] [ reply ] [SECURITYREASON.COM] phpnuke 7.6 Multiple vulnerabilities in Web_Links Module cXIb8O3.14 2005-04-07 Maksymilian Arciemowicz (max jestsuper pl) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [phpnuke 7.6 Multiple vulnerabilities in Web_Links Module cXIb8O3.14] Author: Maksymilian Arciemowicz (cXIb8O3) Date: 6.4.2005 from securityreason.com TEAM - --- 0.Description --- PHP-Nuke is a Web Portal System, storytelling software, news system, [ more ] [ reply ] Macromedia Security Bulletin - ColdFusion MX 6.1 2005-04-07 securityzone macromedia com (Macromedia Security Zone) ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ MPSB05-02 - Workaround available for ColdFusion MX 6.1 Updater file disclosure. Originally posted: April 7, 2005 http://www.macromedia.com/go/mpsb05-02 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Summary: Cold [ more ] [ reply ] [SECURITYREASON.COM] phpnuke 7.6 Multiple vulnerabilities in Downloads Module cXIb8O3.13 2005-04-07 Maksymilian Arciemowicz (max jestsuper pl) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [phpnuke 7.6 Multiple vulnerabilities in Downloads Module cXIb8O3.13] Author: Maksymilian Arciemowicz (cXIb8O3) Date: 5.4.2005 from securityreason.com TEAM - --- 0.Description --- PHP-Nuke is a Web Portal System, storytelling software, news system, [ more ] [ reply ] iDEFENSE Security Advisory 04.07.05: SGI IRIX gr_osview File Overwrite Vulnerability 2005-04-07 iDEFENSE Labs (labs-no-reply idefense com) SGI IRIX gr_osview File Overwrite Vulnerability iDEFENSE Security Advisory 04.07.05 http://www.idefense.com/application/poi/display?type=vulnerabilities April 7, 2005 I. BACKGROUND The gr_osview application is a setuid root application that provides a graphical display of usage of certain types [ more ] [ reply ] iDEFENSE Security Advisory 04.07.05: SGI IRIX gr_osview Information Disclosure Vulnerability 2005-04-07 iDEFENSE Labs (labs-no-reply idefense com) SGI IRIX gr_osview Information Disclosure Vulnerability iDEFENSE Security Advisory 04.07.05 http://www.idefense.com/application/poi/display?type=vulnerabilities April 7, 2005 I. BACKGROUND The gr_osview application is a setuid root application that provides a graphical display of usage of certai [ more ] [ reply ] |
|
Privacy Statement |
Miranda IM and Miranda Installer Let Local Users Execute Arbitrary Code
------------------------------------------------------------------------
-----
I. BACKGROUND
------------------------------------------------------------------------
-----
Miranda IM:
-------------------
Miranda IM is a mu
[ more ] [ reply ]