BugTraq Mode:
(Page 1471 of 1748)  < Prev  1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476  Next >
CDE libDtHelp and dtlogin vulnerabilities on IRIX 2004-08-03
SGI Security Coordinator (agent99 sgi com)
-----BEGIN PGP SIGNED MESSAGE-----

________________________________________________________________________
______

SGI Security Advisory

Title: libDtHelp and dtlogin vulnerabilities
Number: 20040801-01-P
Date: August 3, 2004
Reference: SGI BUG

[ more ]  [ reply ]
DoS in Webbsyte Chat 0.9.0 2004-08-03
Donato Ferrante (fdonato autistici org)

Donato Ferrante

Application: Webbsyte Chat
http://sourceforge.net/projects/wchat/

Version: 0.9.0

Bug: Denial Of Service

Date: 02-Aug-2004

Author: Donato Ferrante
e-mail: fdonato (at) autistici (dot) org [email concealed]
web

[ more ]  [ reply ]
Re: Fwd: New possible scam method : forged websites using XUL (Firefox) 2004-08-03
Barry Fitzgerald (bkfsec sdf lonestar org)
Below is my message to bugtraq regarding the Mozilla XUL forgery
advisory. Please note that my post was rejected from bugtraq because
the moderator claimed openly that the "the Mozilla developers show how
amazingly out of touch they are" (his words) indicating that my message
was not relevent w

[ more ]  [ reply ]
[SECURITY] [DSA 535-1] New squirrelmail packages fix multiple vulnerabilities 2004-08-03
Matt Zimmerman (mdz debian org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
--
Debian Security Advisory DSA 535-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Matt Zimmerman
August 2nd, 2004

[ more ]  [ reply ]
RE: SideFind 2004-08-02
Polazzo Justin (Justin Polazzo facilities gatech edu)
Welcome to the world of Malware. There are many IE flaws that allow for the installation of spy/mal/ad :ware.

Either disable install on demand, apply XP SP2, or switch them to Mozilla to prevent future installs of this type.

Making HKLM\Software|Microsoft|Windows|CurrentVersion|Run read only via r

[ more ]  [ reply ]
OPEN3S - Local Privilege Elevation through Oracle products (Unix Platform) 2004-08-02
Juan Manuel Pascual (jmpascual open3s com)
*----------========== OPEN3S-2004-10-05-eng-oracle-so-libraries ==========----------
*

* Title:* Local Vulnerability in Oracle Products. RDBMS, IAs, etc
*All Versions*. (10g not tested)
* Date:* 10-05-2004
* Platform:* Tested in Linux, Solaris & HP-UX but can be exported to othe

[ more ]  [ reply ]
SideFind 2004-08-02
aborg mca org mt


Hi ..

Has anyone heard of this IE hijacker?

One of our uses went through a devastating Sunday when he tried to remove
this piece of software from his PC. It appears as a side panel (on the
left) and prompts with suggestions when the user utilises Google to perform
a search. Essentially, it

[ more ]  [ reply ]
Comersus 5.098 XSS Vulnerable 2004-08-02
Abdul Azis (az001 plasa com)


Comersus Shopping Cart 5.098 XSS Vulnerability

=======================================================

Vulnerable Systems:

* Comersus Cart Version 5.098

Comersus is an open source shopping cart.I found a few XSS Vulnerabilty :

Pages Affected:

/comersus/store/comersus_message.asp

/c

[ more ]  [ reply ]
DOS@MEHTTPS 2004-08-02
CoolICE (CoolICE China com)
::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::
:Application: MailEnable Professional HTTPMail
:Vendors: http://www.mailenable.com/
:Version: 1.19
:Platforms: Windows
:Bug: D.O.S
:Date: 2004-07-30
:Author: CoolICE
:E_mail: CoolICE#China.com
:::::::::::::::::::::::::::::::::

[ more ]  [ reply ]
SA-20040802 GnuTLS certificate chain verification bug 2004-08-02
Patrik Hornik (patrik hornik sk)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

======================================================================
Security advisory 20040802
- ----------------------------------------------------------------------
Product: GnuTLS
Vulnerability type: wrong algorithm
I

[ more ]  [ reply ]
7a69Adv#13 - USRobotics AP Wireless Denial of Service 2004-08-02
Albert Puigsech Galicia (ripe 7a69ezine org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------
7a69ezine Advisories                           7a69Adv#13
- ------------------------------------------------------------------
  http://www.7a69ezine.org

[ more ]  [ reply ]
Security contact for RSA Security 2004-08-01
Amit Klein (amit klein sanctuminc com)
Hi

I need a securty contact (email) at RSA Security. Does anyone know of
such email?

Thanks,
-Amit

[ more ]  [ reply ]
Re: Sonicwall diag tool includes VPN credentlials 2004-08-01
neil gardner (neil gardner alliedtelesyn co nz)
Nope, as a Sonicwall Certified Engineer I can tell you this is basically
wrong.

Yes, it does save all the important keys in Plaintext, but only if you
don't read the manual which warns about this, and only if you click ok
on the dialog box pop-up which warns you about this when you go to do
it.

Th

[ more ]  [ reply ]
RE: Sonicwall diag tool includes VPN credentlials 2004-08-02
Eric McCarty (eric lawmpd com)
You are specifically told that the information included in the report
contains confidential information, if you are concerned with privacy,
zip it and add a password or use another more secure method of
transferring the file such as the TSR upload feature of mysonicwall.com,
this has been this way f

[ more ]  [ reply ]
Re: Fwd: New possible scam method : forged websites using XUL (Firefox) 2004-08-02
Justin Polazzo (jo ojjo net) (1 replies)
In-Reply-To: <20040730210508.GT19188 (at) securityfocus (dot) com [email concealed]>

"The security implications of

this trick were considered as early as 1999 in Mozilla Bug 22183

(http://bugzilla.mozilla.org/show_bug.cgi?id=22183). However, the

Mozilla Foundation has kept the Bug confidential until recently,

when a re

[ more ]  [ reply ]
SoX Exploiter by Rosiello Security 2004-08-02
Angelo Rosiello (angelo rosiello org)


Rosiello Security SoX Exploiter

http://www.rosiello.org

Ulf Harnhammar reported that there are two buffer overflows in the 'sox' and 'play' commands.

The flaws reside in the st_wavstartread() function in 'wav.c', where the function reads data based on a user-supplied size variable into a buff

[ more ]  [ reply ]
[ GLSA 200408-01 ] MPlayer: GUI filename handling overflow 2004-08-01
Thierry Carrez (koon gentoo org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Gentoo Linux Security Advisory GLSA 200408-01
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

[ more ]  [ reply ]
Re: Citadel/UX Remote DoS Vulnerability 2004-07-31
error citadel org (IO ERROR)
For the record, none of the Citadel developers ever received a
communication from this person. This advisory was posted to our
bugzilla system at about the same time it was sent to BUGTRAQ.

A patch for this vulnerability has been placed into CVS and will be
included in the next release of Citad

[ more ]  [ reply ]
[EXPL] (MS04-022) Microsoft Windows XP Task Scheduler (.job) Universal Exploit 2004-07-31
houseofdabus HOD (houseofdabus inbox ru)


---snip---

/* HOD-ms04022-task-expl.c:

*

* (MS04-022) Microsoft Windows XP Task Scheduler (.job)

Universal Exploit

*

* Exploit version 0.1 coded by

*

*

* .::[ houseofdabus ]::.

*

*

* [at inbox dot ru]

* ------------------------------------------

[ more ]  [ reply ]
(Page 1471 of 1748)  < Prev  1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus