|
Colapse all |
Post message
[RHSA-2004:091-01] Updated libxml2 packages fix security vulnerability 2004-02-26 bugzilla redhat com [RHSA-2004:063-01] Updated mod_python packages fix denial of service vulnerability 2004-02-26 bugzilla redhat com MDKSA-2004:015-1 - Updated x86_64 kernel packages fix multiple vulnerabilities 2004-02-26 Mandrake Linux Security Team (security linux-mandrake com) Sandblad #13: Cross-domain exploit on zombie document with event handlers 2004-02-25 Andreas Sandblad (sandblad acc umu se) Re: [waraxe-2004-SA#004] - Multiple vulnerabilities in XMB 1.8 Partagium Final SP2 2004-02-25 Ben (it xmbforum com) In-Reply-To: <20040223184737.27470.qmail (at) www.securityfocus (dot) com [email concealed]> TO ALL XMB USERS: All vulnerabilities have now been patched. XMB 1.8 SP3 will be released in the next hour. See the XMB Website for details. XMB 1.9 Nexus BETA has been updated in the CVS system - and a new build is now availa [ more ] [ reply ] PSOProxy's exploit for Windows by Rosiello Security 2004-02-25 Angelo Rosiello (angelo rosiello katamail com) Fw: [Unpatched] The Bizex worm 2004-02-25 Thor Larholm (thor pivx com) We have all talked about how most viruses and worms that actually spread in the wild could have been written so much better by any one of us. I guess someone stepped forward and took the bait. Everything indicates that Bizex is a worm which was created as a hired job. It's primary purpose was to co [ more ] [ reply ] MDKSA-2004:016 - Updated mtools packages fix local root vulnerability 2004-02-25 Mandrake Linux Security Team (security linux-mandrake com) MS ASN library is fraught not only with integer overflow, but also with stack overflow. 2004-02-20 flashsky fangxing (flashsky xfocus org) Alcatel Omniswitch 7000 series 2004-02-19 Michael Shekman (michaels80 ci manchester ct us) Running Nessus 2.0.9 against Alcatel 7000 series causing a swith to reboot via buffer overflow(?). Alcatel has multiple services running on the background, with no option to shut them down. Vulnerable ports: 80, 260, 261, 443. Disabling a service via qos policy (suggested by Alcatel) does ju [ more ] [ reply ] jgs webserver 0.1.0 Cross Site Scripting Vulnerabillity 2004-02-25 Rafel Ivgi, The-Insider (theinsider 012 net il) ZH2004-09SA (security advisory): PhpNewsManager Remote arbitrary files retrieving 2004-02-23 ZetaLabs (zetalabs zone-h org) BadBlue 2.4 Local Path Disclosure By phptest.php 2004-02-24 Rafel Ivgi, The-Insider (theinsider 012 net il) RE: blocking gzip encoded files 2004-02-24 Gervase Markham (gerv mozilla org) Darwin Mecham wrote: > It has recently come to my attention that most browsers happily > do Accept-encoding: gzip and streaming decompression of > HTML data received with Content-encoding: gzip > without asking. > ... > > Is there a way to configure the run-of-the-mill browser to > block the [ more ] [ reply ] New ICQ WORM 2004-02-24 Rafel Ivgi, The-Insider (theinsider 012 net il) The new ICQ WORM...spreading by 2 exploits on http://www.jokeworld.biz/index.html and uses icq to download a .chm file that uses the latest .chm exploit. The chm file is downloaded as ab icq sound wav file, to icq sounds directory. the file iefucker.html from inside the .chm file is ran. iefucker.h [ more ] [ reply ] Hidden Gamespy code leads to vulnerabilities in diffused games (BF1942, Halo, Dredd and more) 2004-02-24 Luigi Auriemma (aluigi altervista org) snort rules for ICQ http/https tunnels 2004-02-24 Alexander Antipov (antipov SecurityLab ru) Hi! From KasperskyLab: 'Bizex' worm attacks ICQ users - http://www.kaspersky.com/news.html?id=4272424 Rules for snort to deny ICQ via proxy and proxy chains: (more information can be found here http://securitylab.ru/40960.html): # icq.rules # snort rules for ICQ http/https tunnels # (c)ded by [ more ] [ reply ] Gigabyte Broadband Router - Multiple Vulnerabilities 2004-02-24 Rafel Ivgi, The-Insider (theinsider 012 net il) STG Security Advisory: [SSA-20040217-06] Apache for cygwin directory traversal vulnerability 2004-02-24 advisory stgsecurity com STG Security Advisory: [SSA-20040217-06] Apache for cygwin directory traversal vulnerability Revision 1.0 Date Published: 2004-02-17 (KST) Last Update: 2004-02-17 Disclosed by SSR Team (advisory (at) stgsecurity (dot) com [email concealed]) Abstract ======== Apache on cygwin environment has a directory traversal [ more ] [ reply ] iDEFENSE Security Advisory 02.23.04: Darwin Streaming Server Remote Denial of Service Vulnerability 2004-02-24 iDefense Labs (labs iDefense com) iDEFENSE Security Advisory 02.23.04 Darwin Streaming Server Remote Denial of Service Vulnerability http://www.idefense.com/application/poi/display?id=75 February 23, 2004 I. BACKGROUND Darwin Streaming Server is server technology allowing for the streaming of QuickTime data to clients across the [ more ] [ reply ] FlexWATCH-Webs 2.2 (NTSC) Authorization Bypass 2004-02-24 Rafel Ivgi, The-Insider (theinsider 012 net il) |
|
Privacy Statement |
Application: FreeChat
http://sourceforge.net/projects/vbfreechat/
Version: 1.1.1a
Bug: Denial Of Service
Author: Donato Ferrante
e-mail: fdonato (at) autistici (dot) org [email concealed]
web: www.autistici.org/fdon
[ more ] [ reply ]