BugTraq Mode:
(Page 1465 of 1748)  < Prev  1460 1461 1462 1463 1464 1465 1466 1467 1468 1469 1470  Next >
QuiXplorer directory traversal 2004-08-14
Cyrille Barthelemy (cb-lse ifrance com)
Title: QuiXplorer directory traversal
Affects:
<= QuiXplorer 2.3
Effect: file disclosure, web server's user read access
Id: cbsa-0003
Release Date: 2004 08 14
Author: Cyrille Barthelemy <cb-publicbox (at) ifrance (dot) com [email concealed]>

-- 1. Introduction
------------------
From QuiXplorer documentation :

"QuiXplorer

[ more ]  [ reply ]
SGI Advanced Linux Environment 2.4 security update #24 2004-08-13
SGI Security Coordinator (agent99 sgi com)
-----BEGIN PGP SIGNED MESSAGE-----

________________________________________________________________________
______
SGI Security Advisory

Title : SGI Advanced Linux Environment 2.4 security update #24
Number : 20040803-01-U
Date : August 13, 2004
Fixed

[ more ]  [ reply ]
SGI Advanced Linux Environment 3 Security Update #9 2004-08-13
SGI Security Coordinator (agent99 sgi com)
-----BEGIN PGP SIGNED MESSAGE-----

________________________________________________________________________
______
SGI Security Advisory

Title : SGI Advanced Linux Environment 3 Security Update #9
Number : 20040802-01-U
Date : August 13, 2004
Fixed in

[ more ]  [ reply ]
Re: JS/Zerolin 2004-08-13
K-OTiK Security (Special-Alerts k-otik com)
In-Reply-To: <1092386306.752.36.camel (at) bobby.exaprobe (dot) com [email concealed]>

>Nicolas Gregoire wrote :

>I've seen theses emails since last Friday, and my gateway has since

>received around 200 of them. KAV and ClamAV detect them as

>"TrojanDropper.VBS.Zerolin"

>

>It appears that a small Jscript.Encoded code is

[ more ]  [ reply ]
Corsaire Security Advisory - Clearswift MAILsweeper multiple encoding/compression issues 2004-08-13
advisories (advisories corsaire com)

-- Corsaire Security Advisory --

Title: Clearswift MAILsweeper multiple encoding/compression issues
Date: 07.08.03
Application: Clearswift MAILsweeper prior to 4.3.15
Environment: Windows 2000
Author: Martin O'Neal [martin.oneal (at) corsaire (dot) com [email concealed]]
Audience: General distribution
Reference: c030807-001

[ more ]  [ reply ]
Re: NETGEAR DG834G SPECIAL FEATURES 2004-08-13
thanasonic hack gr (1 replies)
In-Reply-To: <005e01c48141$4e82f880$0701a8c0@COOKIE>

Sorry for not mentioning that.Thats why the subject is called "SPECIAL FEATURE" and not a bug.

By the way, the second issue about zebra its true and as i informed about it ,it can be exploited localy or remotely.

Thanks for your reply,

Thana

[ more ]  [ reply ]
Re: NETGEAR DG834G SPECIAL FEATURES 2004-08-13
Dave Paris (dparis w3works com)
RE: NETGEAR DG834G SPECIAL FEATURES 2004-08-13
Andre Lorbach (alorbach ro1 adiscon com)
> -----Original Message-----
> From: thanasonic (at) hack (dot) gr [email concealed] [mailto:thanasonic (at) hack (dot) gr [email concealed]]
>
> By opening http://192.168.0.1/setup.cgi?todo=debug you enable
> the router's debug mode.Then you just telnet at 192.168.0.1
> at port 23 and then you have a root shell.
>
> Also i found that if you just teln

[ more ]  [ reply ]
Advanced usage of system() function. 2004-08-13
Adam Zabrocki (pi3ki31ny wp pl)


#########################################

## Advanced usage of system() function ##

#########################################

1. Introduction

In a last few years a lot of new patches for kernel which improve

security became available. Basic task o

[ more ]  [ reply ]
MDKSA-2004:082 - Updated mozilla packages fix multiple vulnerabilities 2004-08-13
Mandrake Linux Security Team (security linux-mandrake com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

_______________________________________________________________________

Mandrakelinux Security Update Advisory
_______________________________________________________________________

Package name: mozilla
Advisory ID:

[ more ]  [ reply ]
recent gaim advisory 2004-08-13
infamous41md hotpop com
if anyone else was looking for some of the overflows mentioned in the
rather cryptic advisory, i found one of them in:

/gaim-0.81/src/protocols/msn/slp.c :648 in the function msn_slp_sip_recv(). an
improper use of strncpy().

[---------------------------------------------]

not very interesting

[ more ]  [ reply ]
MDKSA-2004:081 - Updated gaim packages fix remotely exploitable vulnerabilities 2004-08-13
Mandrake Linux Security Team (security linux-mandrake com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

_______________________________________________________________________

Mandrakelinux Security Update Advisory
_______________________________________________________________________

Package name: gaim
Advisory ID:

[ more ]  [ reply ]
New Paper: Microsoft Windows, a lower Total Cost of Ownership 2004-08-13
Dave Aitel (dave immunitysec com)
Immunity is proud to present for public release our newest research paper: Microsoft Windows, a lower Total Cost of Ownership.

This can be found at http://www.immunitysec.com/resources-papers.shtml .

Thanks,
Dave Aitel
Immunity, Inc.

[ more ]  [ reply ]
NGSEC's response to Idefense overflow protections whitepaper. (PART II) 2004-08-12
lists@NGSEC (lists ngsec com)

Mr Johnson,

We have made available a paper conatining several (unpublished by

iDefense's paper) tests agains PAX-like solutions in WIN32. Only

tests not deep information on how this products works.

Grab it at: [264 KB]

http://www.ngsec.com/docs/whitepapers/NGSEC-Windows_overflow_protec

[ more ]  [ reply ]
[ GLSA 200408-12 ] Gaim: MSN protocol parsing function buffer overflow 2004-08-12
Sune Kloppenborg Jeppesen (jaervosz gentoo org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Gentoo Linux Security Advisory GLSA 200408-12
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

[ more ]  [ reply ]
Re: Driver for display goes to a infinite loop by viewing a html! 2004-08-12
Frank Nospam (fuy1 umbc edu)
For the sake of completeness: Mac OS X 10.3.5 doesn't crash or
consume excess CPU cycles at your test page.

The only notable quirk was a failure to scale the test image:
Safari 1.2.3 (KHTML) displayed a blank space 999999 pixels tall
and Mozilla 1.8a displayed a 999999x999999 black box.

> O

[ more ]  [ reply ]
[ GLSA 200408-13 ] kdebase, kdelibs: Multiple security issues 2004-08-12
Sune Kloppenborg Jeppesen (jaervosz gentoo org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Gentoo Linux Security Advisory GLSA 200408-13
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

[ more ]  [ reply ]
JS/Zerolin 2004-08-12
T.H. Haymore (bonk webchat chatsystems com) (1 replies)

There are incoming reports of a JS/Zerolin (java script virus). Anyone
else seeing this ? (I have no further information yet).

=================================================
Travis
www.cyberabuse.org/crimewatch
Email: Bonk (at) chatsystems (dot) com [email concealed] | Bonk (at) cyberabuse (dot) org [email concealed]
==========================

[ more ]  [ reply ]
Re: JS/Zerolin 2004-08-13
Nicolas Gregoire (ngregoire exaprobe com) (1 replies)
Re: JS/Zerolin 2004-08-13
T.H. Haymore (bonk webchat chatsystems com)
NETGEAR DG834G SPECIAL FEATURES 2004-08-12
thanasonic hack gr (1 replies)


By opening http://192.168.0.1/setup.cgi?todo=debug you enable the router's debug mode.Then you just telnet at 192.168.0.1 at port 23 and then you have a root shell.

Also i found that if you just telnet to 192.168.0.1 2602 you will get a prompt from the service ZEBRA that is running on the route

[ more ]  [ reply ]
Re: NETGEAR DG834G SPECIAL FEATURES 2004-08-13
Uday Moorjani (umoorjani wanadoo fr)
RE: NGSEC's response to Idefense overflow protections whitepaper. 2004-08-12
Richard Johnson (rjohnson iDefense com)
Mr. Serna,

We respect your wish to defend the integrity of your product, however, your comments to the list do not reflect our previous conversations nor do they speak to the proper version of the test platform which was released to the public during the conferences. I'll try to address your concer

[ more ]  [ reply ]
SUSE Security Announcement: gaim (SUSE-SA:2004:025) 2004-08-12
Thomas Biege (thomas suse de)

-----BEGIN PGP SIGNED MESSAGE-----

________________________________________________________________________
______

SUSE Security Announcement

Package: gaim
Announcement-ID: SUSE-SA:2004:025
Date: Thursday, Aug

[ more ]  [ reply ]
(Page 1465 of 1748)  < Prev  1460 1461 1462 1463 1464 1465 1466 1467 1468 1469 1470  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus