BugTraq Mode:
(Page 1514 of 1748)  < Prev  1509 1510 1511 1512 1513 1514 1515 1516 1517 1518 1519  Next >
[waraxe-2004-SA#025 - Multiple vulnerabilities in Protector System 1.15b1 for PhpNuke] 2004-04-23
Janek Vind (come2waraxe yahoo com)


{=======================================================================
=========}

{ [waraxe-2004-SA#025] }

{=======================================================================
=========}

{

[ more ]  [ reply ]
RE: [Full-Disclosure] EEYE: Symantec Multiple Firewall TCP Options Denial of Service 2004-04-23
Sym Security (secure symantec com)
On 04/23/2004: eEye Digital Security posted:

eE"Derek Soeder" <dsoeder (at) eeye (dot) com [email concealed]>

Sent by: full-disclosure-admin (at) lists.netsys (dot) com [email concealed]

04/23/2004 01:36 PM

Symantec Multiple Firewall TCP Options Denial of Service

Release Date:

April 23, 2004

Date Reported:

March 9th, 2004

Severity:

[ more ]  [ reply ]
EEYE: Symantec Multiple Firewall TCP Options Denial of Service 2004-04-23
Derek Soeder (dsoeder eeye com)
Symantec Multiple Firewall TCP Options Denial of Service

Release Date:
April 23, 2004

Date Reported:
March 9th, 2004

Severity:
High (Remote Denial of Service)

Vendor:
Symantec

Systems Affected:
Symantec Norton Internet Security 2003
Symantec Norton Internet Security 2004
Symantec Norton Interne

[ more ]  [ reply ]
Potential Microsoft PCT worm (MS04-011) 2004-04-23
advisories (advisories corsaire com)

Potential Microsoft PCT worm (MS04-011)

A revised exploit has been released for the PCT flaw in the last 24-hrs by
THC (THCIISSLame.c). For the last few hours we have also been receiving
uncorroborated anecdotal evidence from reliable sources that a working worm
is being trialled on the Internet,

[ more ]  [ reply ]
TCP Reset Attacks: Paper and Code Now Availble 2004-04-23
sullo cirt net
Just a quick note to announce that Paul Watson's research paper, slides and code
for the much publicized "Slipping in the Window: TCP Reset Attacks"
presentation are now available for download.

All materials can be found on OSVDB.org at:
http://www.osvdb.org/4030

Thanks,
Sullo

--

http://www.c

[ more ]  [ reply ]
Arbitrary file overwriting in Unreal engine through UMOD 2004-04-22
Luigi Auriemma (aluigi altervista org)

#######################################################################

Luigi Auriemma

Application: Unreal engine
http://unreal.epicgames.com
Versions: any game based on this engine that supports the UMOD
installation.
An

[ more ]  [ reply ]
SGI Advanced Linux Environment security update #18 2004-04-21
SGI Security Coordinator (agent99 sgi com)
-----BEGIN PGP SIGNED MESSAGE-----

________________________________________________________________________
____
SGI Security Advisory

Title : SGI Advanced Linux Environment security update #18
Number : 20040404-01-U
Date : April 21, 2004
Reference : R

[ more ]  [ reply ]
MDKSA-2004:031-1 - Updated utempter packages fix several vulnerabilities 2004-04-21
Mandrake Linux Security Team (security linux-mandrake com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

_______________________________________________________________________

Mandrakelinux Security Update Advisory
_______________________________________________________________________

Package name: utempter
Advisory ID:

[ more ]  [ reply ]
[slackware-security] xine security update (SSA:2004-111-01) 2004-04-21
Slackware Security Team (security slackware com)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

[slackware-security] xine security update (SSA:2004-111-01)

New xine packages are available for Slackware 9.1 and -current to
fix security issues.

Here are the details from the Slackware 9.1 ChangeLog:
+--------------------------+
Tue Apr 20 19:01:5

[ more ]  [ reply ]
Vulnerabilities in long-lived TCP connections on SGI systems 2004-04-21
SGI Security Coordinator (agent99 sgi com)
-----BEGIN PGP SIGNED MESSAGE-----

________________________________________________________________________
______
SGI Security Advisory

Title : Vulnerabilities in long-lived TCP connections
Number : 20040403-01-A
Date : April 21, 2004
Reference : NISC

[ more ]  [ reply ]
NetBSD Security Advisory 2004-005: Denial of service vulnerabilities in OpenSSL 2004-04-21
NetBSD Security-Officer (security-officer netbsd org)

-----BEGIN PGP SIGNED MESSAGE-----

NetBSD Security Advisory 2004-005
=================================

Topic: Denial of service vulnerabilities in OpenSSL

Version: NetBSD-current: source prior to March 22, 2004
NetBSD 2.0: branch unaffected, release will include the fix
NetBSD 1.6.2:

[ more ]  [ reply ]
EEYE: Yahoo! Mail Account Filter Overflow Hijack 2004-04-21
Drew Copley (dcopley eeye com)
"Yahoo! Mail" Account Filter Overflow Hijack

Release Date:
April 19, 2004

Date Reported:
March 10, 2004

Severity:
High

Vendor:
Yahoo!

Description:
"Yahoo! Mail" is one of the Internet's most popular
web based email solutions. They provide free email and
large capacity storage, as well as subs

[ more ]  [ reply ]
NetBSD Security Advisory 2004-006: TCP protocol and implementation vulnerability 2004-04-21
NetBSD Security-Officer (security-officer netbsd org)

-----BEGIN PGP SIGNED MESSAGE-----

NetBSD Security Advisory 2004-006
=================================

Topic: TCP protocol and implementation vulnerability

Version: NetBSD-current: source prior to April 22, 2004
NetBSD 2.0: branch affected, release will include the fix
NetBSD 1.6.2:

[ more ]  [ reply ]
[waraxe-2004-SA#022 - Multiple vulnerabilities in PostNuke 0.726 Phoenix - part 2] 2004-04-21
Janek Vind (come2waraxe yahoo com)


{=======================================================================
=========}

{ [waraxe-2004-SA#022] }

{=======================================================================
=========}

{

[ more ]  [ reply ]
[waraxe-2004-SA#021 - Multiple vulnerabilities in phprofession 2.5 module for PostNuke] 2004-04-21
Janek Vind (come2waraxe yahoo com)


{=======================================================================
=========}

{ [waraxe-2004-SA#021] }

{=======================================================================
=========}

{

[ more ]  [ reply ]
Advanced Guestbook 2.2 -- SQL Injection Exploit 2004-04-21
JQ (idiosyncrasie xs4all nl)


The widely-used Advanced Guestbook 2.2 webapplication (PHP, MySQL) appears vulnerable to SQL Injection granting the attacker administrator access. The attack is very simple and consists of inputting the following password string leaving the username entry blank:

') OR ('a' = 'a

Regards,

J

[ more ]  [ reply ]
[SECURITY] [DSA 493-1] New xchat packages fix arbitrary code execution 2004-04-21
joey infodrom org (Martin Schulze)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
--
Debian Security Advisory DSA 493-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Martin Schulze
April 21st, 2004

[ more ]  [ reply ]
[RHSA-2004:166-01] Updated kernel packages resolve security vulnerabilities 2004-04-21
bugzilla redhat com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Updated kernel packages resolve security vulnerabilities
Advisory ID: RHSA-2004:166-01
Issue date: 2004

[ more ]  [ reply ]
IETF Draft on Transmission Control Protocol security considerations 2004-04-21
Thor Larholm (thor pivx com)
From the Abstract:

TCP (RFC793 [1]) is widely deployed and one of the most often used
reliable end to end protocols for data communication. Yet when it was
defined over 20 years ago the internet, as we know it, was a
different place lacking many of the threats that are now common.
Re

[ more ]  [ reply ]
[PNSA 2004-2] PostNuke Security Advisory PNSA 2004-2 2004-04-20
Valerio Santinelli (tanis altralogica it)


------------------------------------------------------------------------
---

PostNuke Security Advisory PNSA 2004-2 Mark West

http://www.postnuke.com/

April 17th, 2004

For contacts: http://news.postnuke.com/index.php?module=vpContact

-------------------------------

[ more ]  [ reply ]
US-CERT Technical Cyber Security Alert TA04-111B -- Cisco IOS SNMP Message Handling Vulnerability 2004-04-21
CERT Advisory (cert-advisory cert org)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Cisco IOS SNMP Message Handling Vulnerability

Original release date: April 20, 2004
Last revised: --
Source: US-CERT

Systems Affected

* Cisco routers and switches running vulnerable versions of IOS.
Vulnerable IOS versions known

[ more ]  [ reply ]
Linux kernel setsockopt MCAST_MSFILTER integer overflow 2004-04-20
Wojciech Purczynski (cliph isec pl)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Synopsis: Linux kernel setsockopt MCAST_MSFILTER integer overflow
Product: Linux kernel
Version: 2.4.22 - 2.4.25, 2.6.1 - 2.6.3
Vendor: http://www.kernel.org/
URL: http://isec.pl/vulnerabilities/isec-0015-msfilter.txt
Author: Paul Star

[ more ]  [ reply ]
Cisco Security Advisory: TCP Vulnerabilities in Multiple IOS Based Cisco Products 2004-04-20
Cisco Systems Product Security Incident Response Team (psirt cisco com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Cisco Security Advisory: TCP Vulnerabilities in Multiple IOS-Based Cisco
Products

Revision 1.0

For Public Release 2004 April 20 21:00 UTC (GMT)

- ------------------------------------------------------------------------
-
Summary
=======
A vulnerabilit

[ more ]  [ reply ]
Cisco Security Advisory: Vulnerabilities in SNMP Message Processing 2004-04-20
Cisco Systems Product Security Incident Response Team (psirt cisco com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Cisco Security Advisory: Vulnerabilities in SNMP Message Processing

Revision 1.0 INTERIM

For Public Release 2004 April 20 UTC 2100

- -----------------------------------------------------------------------

Contents
========

Summary
Affected

[ more ]  [ reply ]
WinSCP Denial of Service 2004-04-15
Luca Ercoli (luca e seeweb com)


Package: WinSCP

Auth: http://winscp.sourceforge.net

Version(s): 3.5.6 (maybe also prior versions are vulnerable)

Vulnerability: Denial of Service

What?s WinSCP:

?WinSCP is an open source SFTP (SSH File Transfer Protocol) and

SCP (Secure CoPy) client for Windows us

[ more ]  [ reply ]
Cisco Security Advisory: TCP Vulnerabilities in Multiple Non-IOS-Based Cisco Products 2004-04-20
Cisco Systems Product Security Incident Response Team (psirt cisco com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Cisco Security Advisory: TCP Vulnerabilities in Multiple Non-IOS Cisco
Products

Revision 1.0

For Public Release 2004 April 20 21:00 UTC (GMT)

- ------------------------------------------------------------------------
-

Summary
=======
A vulnerability

[ more ]  [ reply ]
(Page 1514 of 1748)  < Prev  1509 1510 1511 1512 1513 1514 1515 1516 1517 1518 1519  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus