BugTraq Mode:
(Page 1531 of 1748)  < Prev  1526 1527 1528 1529 1530 1531 1532 1533 1534 1535 1536  Next >
RE: [RHSA-2004:112-01] Updated Mozilla packages fix security issues 2004-03-18
John Airey rnib org uk
OK, I'll bite. It's now over four hours since this update was released, but
the files still aren't on the advertised server. (I've tried from two
different locations, in case it was a weird location based problem). What
gives guys?

Also, where's the mozilla-psm package?

-
John Airey, BSc (Jt Hons

[ more ]  [ reply ]
[SECURITY] [DSA 466-1] New Linux 2.2.10 packages fix local root exploit (powerpc/apus) 2004-03-18
joey infodrom org (Martin Schulze)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
--
Debian Security Advisory DSA 466-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Martin Schulze
March 18th, 2004

[ more ]  [ reply ]
[RHSA-2004:112-01] Updated Mozilla packages fix security issues 2004-03-18
bugzilla redhat com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Updated Mozilla packages fix security issues
Advisory ID: RHSA-2004:112-01
Issue date: 2004-03-17
Updat

[ more ]  [ reply ]
Re: PLAXO: is that a cure or a disease? 2004-03-18
Stacy Martin (trust plaxo com)
In-Reply-To: <200403121752.i2CHqK8A028679 (at) web187.megawebservers (dot) com [email concealed]>

Thanks for the report. This problem was fixed within hours of the original post on 3/12/04.

While not diminishing the seriousness of the report, the impact of this vulnerability required the malicious user to already be in t

[ more ]  [ reply ]
Vcard 2.8 uninstall script problem 2004-03-17
saudi linux (ksa2ksa yahoo com)


Informations :

°°°°°°°°°°°°°°

Procduct: Vcard

Version : 2.9 may other VER

Problems : File uninstall & delete the table

PHP Code/Location :

°°°°°°°°°°°°°°°°°°°

/admin/uninstall.php :

------------------------------------------------------------------------

[...]

<?

$step = $HTTP_GET_V

[ more ]  [ reply ]
[RHSA-2004:121-01] Updated OpenSSL packages fix vulnerabilities 2004-03-17
bugzilla redhat com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Updated OpenSSL packages fix vulnerabilities
Advisory ID: RHSA-2004:121-01
Issue date: 2004-03-17
Updat

[ more ]  [ reply ]
[SECURITY] [DSA 465-1] New openssl packages fix multiple vulnerabilities 2004-03-17
Matt Zimmerman (mdz debian org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
--
Debian Security Advisory DSA 465-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Matt Zimmerman
March 17th, 2004

[ more ]  [ reply ]
FreeBSD Security Advisory FreeBSD-SA-04:05.openssl 2004-03-17
FreeBSD Security Advisories (security-advisories freebsd org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

========================================================================
=====
FreeBSD-SA-04:05.openssl Security Advisory
The FreeBSD Project

Topic: De

[ more ]  [ reply ]
Re: YabbSE (3 on 1) 2004-03-17
David (david simplemachines org)
In-Reply-To: <001701c3ff72$1270c1c0$461e5a0a@desanet69>

Hi,

Developers were never contacted regarding this vulnerability.

Currently the solution would be for users to upgrade to SMF version

1.0 Public Beta 4. YaBB SE development has ended and a fix will not be

released. We consider SMF a

[ more ]  [ reply ]
[ESA-20040317-003] 'openssl' Denial of Service vulnerabilities. 2004-03-17
EnGarde Secure Linux (security guardiandigital com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

+-----------------------------------------------------------------------
-+
| Guardian Digital Security Advisory March 17, 2004 |
| http://www.guardiandigital.com ESA-20040317-003 |
|

[ more ]  [ reply ]
MDKSA-2004:023 - Updated openssl packages fix multiple vulnerabilities 2004-03-17
Mandrake Linux Security Team (security linux-mandrake com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

_______________________________________________________________________

Mandrakelinux Security Update Advisory
_______________________________________________________________________

Package name: openssl
Advisory ID:

[ more ]  [ reply ]
SUSE Security Announcement: openssl (SuSE-SA:2004:007) 2004-03-17
thomas suse de (Thomas Biege)

-----BEGIN PGP SIGNED MESSAGE-----

________________________________________________________________________
______

SUSE Security Announcement

Package: openssl
Announcement-ID: SuSE-SA:2004:007
Date: Wednesday,

[ more ]  [ reply ]
Cisco Security Advisory: Cisco OpenSSL Implementation Vulnerability 2004-03-17
Cisco Systems Product Security Incident Response Team (psirt cisco com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Cisco Security Advisory: Cisco OpenSSL Implementation Vulnerability

Revision 1.0

For Public Release 2004 March 17 at 1300 UTC (GMT)

----------------------------------------------------------------------

Contents

Summary
Affec

[ more ]  [ reply ]
New OpenSSL releases fix denial of service attacks [17 March 2004] 2004-03-17
Mark J Cox (mark awe com) (2 replies)
-----BEGIN PGP SIGNED MESSAGE-----

OpenSSL Security Advisory [17 March 2004]

Updated versions of OpenSSL are now available which correct two
security issues:

1. Null-pointer assignment during SSL handshake
===============================================

Testing performed by the OpenSSL group u

[ more ]  [ reply ]
Re: New OpenSSL releases fix denial of service attacks [17 March 2004] 2004-03-17
Dave Markham (dave markham fjserv net)
Re: New OpenSSL releases fix denial of service attacks [17 March 2004] 2004-03-17
Marc Bejarano (bugtraq beej org) (1 replies)
Re: New OpenSSL releases fix denial of service attacks [17 March 2004] 2004-03-17
Mark J Cox (mark awe com) (1 replies)
RE: YaBB/YaBBse Cross Site Scripting Vulnerability 2004-03-16
Frog Man (leseulfrog hotmail com)
Hello,
this hole was discovered on 29/02/04 and published in french here :
http://www.phpsecure.info/v2/tutos/frog/YaBBSE-XSSPermanent.txt
We were waiting an official security fix by the YabbSE team (since 1 month)
to published the hole on some mailing-lists but they always didn't make
anything.
A

[ more ]  [ reply ]
PHPX 2.x - 3.2.4 2004-03-16
gdayworld hotmail com


~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~

PHPX 3.2.4 (http://www.phpx.org)

~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~

Versions Affected: PHPX 2.x - 3.2.4

Type of bug: Session Hi-jacking/Admin Access (via Cookies)

Impact: Ability to steal another users account

Found-by: HelloWorld (Ryan Wray)

Vendor: Notif

[ more ]  [ reply ]
Re: Fw: Bilbao Method Exposed 2004-03-16
Mark J Cox (mark awe com)
> - English Version: http://www.kernelpanik.org/docs/kernelpanik/bme.eng.pdf
> - Spanish Version: http://www.kernelpanik.org/docs/kernelpanik/bme.esp.pdf
>
> This paper explains a brief form to avoid .htaccess authentification in
> Apache, configured according to criteria of multiple references.

h

[ more ]  [ reply ]
new security alert #66 issued in Oracle web cache 2004-03-16
Pete Finnigan (plsql petefinnigan com)
Hi everyone,

Oracle have recently released a new Oracle security advisory on Oracle
application server web cache. Details of the versions and platforms
affected are available in Oracles advisory. This issue is reported as
severity 1.

For the issue to be exploited Web Cache must be running and lis

[ more ]  [ reply ]
Fw: Bilbao Method Exposed 2004-03-16
FraMe (frame hispalab com)
----- Original Message -----
From: "FraMe" <frame (at) hispalab (dot) com [email concealed]>
To: <bugtraq (at) securityfocus (dot) com [email concealed]>
Sent: Sunday, March 14, 2004 10:04 PM
Subject: [14-M Kernelpanik Release] Bilbao Method Exposed

> Hi!
>
> A brief study about <LIMIT> directive in .htaccess can be downloaded from
> following URL´s:
>

[ more ]  [ reply ]
Crafty Game Stack Overflow & Exploit 2004-03-15
Angelo Rosiello (angelo rosiello katamail com)


Copyright © Rosiello Security

http://www.rosiello.org

ADVISORY: http://www.rosiello.org/en/read_bugs.php?18

BACKGROUND: by SecurityTracker

EXPLOIT: http://www.rosiello.org/archivio/crafty.zip

Impact: Execution of arbitrary code via local syste

[ more ]  [ reply ]
ModSecurity 1.7.4 for Apache 2.x remote off-by-one overflow 2004-03-16
S-Quadra Security Research (research s-quadra com)
S-Quadra Advisory #2004-03-15

Topic: ModSecurity 1.7.4 for Apache 2.x remote off-by-one overflow
Severity: Average
Vendor URL: http://www.modsecurity.org
Advisory URL: http://www.s-quadra.com/advisories/Adv-20040315.txt
Release date: 15 Mar 2004

1. DESCRIPTION

ModSecurity is an open source intr

[ more ]  [ reply ]
Mambo Open Source Multiple Vulnerabilities 2004-03-16
JeiAr (security gulftech org)


Vendor : Mambo Open Source

URL : http://www.mamboserver.com

Version : Mambo Open Source 4.5 Stable 1.0.3 && Earlier

Risk : Multiple Vulnerabilities

Description:

Mambo Open Source is the finest open source Web Content Management System

available today. Mambo Open Source makes c

[ more ]  [ reply ]
JelSoft vBulletin Multiple XSS Vulnerabilities 2004-03-16
JeiAr (security gulftech org)


Vendor : Jelsoft Enterprises

URL : http://www.vbulletin.com

Version : vBulletin 3.0.0 RC4 && Others

Risk : Cross Site Scripting

Description:

vBulletin is a powerful, scalable and fully customisable forums package

for your web site. Based on the PHP language, backed with a blis

[ more ]  [ reply ]
[SECURITY] [DSA 464-1] New gdk-pixbuf packages fix denial of service 2004-03-16
joey infodrom org (Martin Schulze)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
--
Debian Security Advisory DSA 464-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Martin Schulze
March 16th, 2004

[ more ]  [ reply ]
Phorum 5.0.3 Beta && Earlier XSS Issues 2004-03-15
JeiAr (security gulftech org)


Vendor : Phorum

URL : http://www.phorum.org

Version : Phorum 5.0.3 Beta && Earlier

Risk : Cross Site Scripting

Description:

Phorum is a web based message board written in PHP. Phorum is designed

with high-availability and visitor ease of use in mind. Features such as

mailing

[ more ]  [ reply ]
(Page 1531 of 1748)  < Prev  1526 1527 1528 1529 1530 1531 1532 1533 1534 1535 1536  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus