BugTraq Mode:
(Page 1538 of 1748)  < Prev  1533 1534 1535 1536 1537 1538 1539 1540 1541 1542 1543  Next >
Denial Of Service in FreeChat 1.1.1a 2004-02-26
Donato Ferrante (fdonato autistici org)
Donato Ferrante

Application: FreeChat
http://sourceforge.net/projects/vbfreechat/

Version: 1.1.1a

Bug: Denial Of Service

Author: Donato Ferrante
e-mail: fdonato (at) autistici (dot) org [email concealed]
web: www.autistici.org/fdon

[ more ]  [ reply ]
[RHSA-2004:091-01] Updated libxml2 packages fix security vulnerability 2004-02-26
bugzilla redhat com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Updated libxml2 packages fix security vulnerability
Advisory ID: RHSA-2004:091-01
Issue date: 2004-02-2

[ more ]  [ reply ]
[RHSA-2004:063-01] Updated mod_python packages fix denial of service vulnerability 2004-02-26
bugzilla redhat com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Updated mod_python packages fix denial of service vulnerability
Advisory ID: RHSA-2004:063-01
Issue date:

[ more ]  [ reply ]
MDKSA-2004:015-1 - Updated x86_64 kernel packages fix multiple vulnerabilities 2004-02-26
Mandrake Linux Security Team (security linux-mandrake com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

_______________________________________________________________________

Mandrakelinux Security Update Advisory
_______________________________________________________________________

Package name: kernel
Advisory ID:

[ more ]  [ reply ]
Sandblad #13: Cross-domain exploit on zombie document with event handlers 2004-02-25
Andreas Sandblad (sandblad acc umu se)


PUBLIC SECURITY ADVISORY: Sandblad #13
--------------------------------------------------------------
Title: Cross-domain exploit on zombie document with
event handlers
Date: 2004-02-25
Software: Mozilla web browser
Vendor: http://www.mozilla.org/
Status: Patched
R

[ more ]  [ reply ]
Re: [waraxe-2004-SA#004] - Multiple vulnerabilities in XMB 1.8 Partagium Final SP2 2004-02-25
Ben (it xmbforum com)
In-Reply-To: <20040223184737.27470.qmail (at) www.securityfocus (dot) com [email concealed]>

TO ALL XMB USERS:

All vulnerabilities have now been patched.

XMB 1.8 SP3 will be released in the next hour. See the XMB Website for details.

XMB 1.9 Nexus BETA has been updated in the CVS system - and a new build is now availa

[ more ]  [ reply ]
PSOProxy's exploit for Windows by Rosiello Security 2004-02-25
Angelo Rosiello (angelo rosiello katamail com)


Copyright © Rosiello Security

http://www.rosiello.org

The exploit supports:

Windows XP Home Edtion SP1

Windows XP Pro Edtion SP1

Win2k Pro Edtion

http://www.rosiello.org/en/read_bugs.php?15

http://www.rosiello.org/archivio/psoproxy-exploit.c

[ more ]  [ reply ]
Fw: [Unpatched] The Bizex worm 2004-02-25
Thor Larholm (thor pivx com)
We have all talked about how most viruses and worms that actually spread
in the wild could have been written so much better by any one of us. I
guess someone stepped forward and took the bait.

Everything indicates that Bizex is a worm which was created as a hired
job. It's primary purpose was to co

[ more ]  [ reply ]
MDKSA-2004:016 - Updated mtools packages fix local root vulnerability 2004-02-25
Mandrake Linux Security Team (security linux-mandrake com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

_______________________________________________________________________

Mandrake Linux Security Update Advisory
_______________________________________________________________________

Package name: mtools
Advisory ID:

[ more ]  [ reply ]
MS ASN library is fraught not only with integer overflow, but also with stack overflow. 2004-02-20
flashsky fangxing (flashsky xfocus org)


MS ASN library is fraught not only with integer overflow, but also with stack overflow.

After eEye published the vulnerability with ASN library, many people discussed it, and focused on whether we can exploit it and gain privilege.

Theoretically speaking, we can gain privileg

[ more ]  [ reply ]
Alcatel Omniswitch 7000 series 2004-02-19
Michael Shekman (michaels80 ci manchester ct us)


Running Nessus 2.0.9 against Alcatel 7000 series causing a swith to reboot via buffer overflow(?).

Alcatel has multiple services running on the background, with no option to shut them down. Vulnerable ports: 80, 260, 261, 443. Disabling a service via qos policy (suggested by Alcatel) does ju

[ more ]  [ reply ]
jgs webserver 0.1.0 Cross Site Scripting Vulnerabillity 2004-02-25
Rafel Ivgi, The-Insider (theinsider 012 net il)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Software: jgs
Vendor: UnKnown
Versions: 0.1.0
Platforms: Windows
Bug: Cross Site Scripting Vulnerabillity
Risk: Low
Exploitation: Remote with browser
Date:

[ more ]  [ reply ]
ZH2004-09SA (security advisory): PhpNewsManager Remote arbitrary files retrieving 2004-02-23
ZetaLabs (zetalabs zone-h org)


ZH2004-09SA (security advisory): PhpNewsManager Remote arbitrary files retrieving

Discovered: 02 february 2004

Vendor Contacted: 10 february 2004

Published: 23 february 2004

Name: PhpNewsManager

Affected Systems: 1.46

Issue: Remote file retrieving

Author: G00db0y from Zone-h S

[ more ]  [ reply ]
BadBlue 2.4 Local Path Disclosure By phptest.php 2004-02-24
Rafel Ivgi, The-Insider (theinsider 012 net il)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Software: BadBlue
Vendor: http://www.BadBlue.com
Versions: 2.4
Platforms: Windows
Bug: Local Path Disclosure By phptest.php
Risk: Low
Exploitation: Remote with brows

[ more ]  [ reply ]
Advisory 02/2004: Trillian remote overflows 2004-02-24
Stefan Esser (s esser e-matters de)
e-matters GmbH
www.e-matters.de

-= Security Advisory =-

Advisory: Trillian remote overflows
Release Date: 2004/02/24
Last Modified: 2004/02/24
Author: Stefan Esser [s.esser (at) e-matters (dot) de [email concealed]]

Application: Tril

[ more ]  [ reply ]
RE: blocking gzip encoded files 2004-02-24
Gervase Markham (gerv mozilla org)
Darwin Mecham wrote:
> It has recently come to my attention that most browsers happily
> do Accept-encoding: gzip and streaming decompression of
> HTML data received with Content-encoding: gzip
> without asking.
> ...
>
> Is there a way to configure the run-of-the-mill browser to
> block the

[ more ]  [ reply ]
New ICQ WORM 2004-02-24
Rafel Ivgi, The-Insider (theinsider 012 net il)
The new ICQ WORM...spreading by 2 exploits on
http://www.jokeworld.biz/index.html
and uses icq to download a .chm file that uses the latest .chm exploit.
The chm file is downloaded as ab icq sound wav file, to icq sounds
directory.
the file iefucker.html from inside the .chm file is ran.

iefucker.h

[ more ]  [ reply ]
Hidden Gamespy code leads to vulnerabilities in diffused games (BF1942, Halo, Dredd and more) 2004-02-24
Luigi Auriemma (aluigi altervista org)

#######################################################################

Luigi Auriemma

Application: Gamespy SDK used for online cd-keys validation in third
party code (hidden "security through obscurity" code)

Games/ver: Battlefield 1942

[ more ]  [ reply ]
snort rules for ICQ http/https tunnels 2004-02-24
Alexander Antipov (antipov SecurityLab ru)
Hi!
From KasperskyLab: 'Bizex' worm attacks ICQ users -
http://www.kaspersky.com/news.html?id=4272424

Rules for snort to deny ICQ via proxy and proxy chains: (more
information can be found here http://securitylab.ru/40960.html):

# icq.rules
# snort rules for ICQ http/https tunnels
# (c)ded by

[ more ]  [ reply ]
Gigabyte Broadband Router - Multiple Vulnerabilities 2004-02-24
Rafel Ivgi, The-Insider (theinsider 012 net il)
#######################################################################

Device: Gigabyte Broadband Router - Multiple
Vulnerabilities
Vendors: http://www.giga-byte.com
Versions: Gn-B46B
Firmware Version: 1.003.00
Platforms:

[ more ]  [ reply ]
Remote crash in Ghost Recon engine 2004-02-24
Luigi Auriemma (aluigi altervista org)

#######################################################################

Luigi Auriemma

Application: Ghost Recon engine and some games developed by Redstorm
http://www.ghostrecon.com
Games/Ver: Ghost Recon <= 1.4
Desert Siege

[ more ]  [ reply ]
STG Security Advisory: [SSA-20040217-06] Apache for cygwin directory traversal vulnerability 2004-02-24
advisory stgsecurity com


STG Security Advisory: [SSA-20040217-06] Apache for cygwin directory

traversal vulnerability

Revision 1.0

Date Published: 2004-02-17 (KST)

Last Update: 2004-02-17

Disclosed by SSR Team (advisory (at) stgsecurity (dot) com [email concealed])

Abstract

========

Apache on cygwin environment has a directory traversal

[ more ]  [ reply ]
iDEFENSE Security Advisory 02.23.04: Darwin Streaming Server Remote Denial of Service Vulnerability 2004-02-24
iDefense Labs (labs iDefense com)
iDEFENSE Security Advisory 02.23.04

Darwin Streaming Server Remote Denial of Service Vulnerability
http://www.idefense.com/application/poi/display?id=75
February 23, 2004

I. BACKGROUND

Darwin Streaming Server is server technology allowing for the streaming
of QuickTime data to clients across the

[ more ]  [ reply ]
FlexWATCH-Webs 2.2 (NTSC) Authorization Bypass 2004-02-24
Rafel Ivgi, The-Insider (theinsider 012 net il)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Application: FlexWATCH-Webs
Vendors: Seyeon TECH Co., Ltd.
http://www.flexwatch.com/
http://www.seyeon.co.kr
Versions: <= 2.2 (NTSC)
Platforms: Windows
Bug:

[ more ]  [ reply ]
(Page 1538 of 1748)  < Prev  1533 1534 1535 1536 1537 1538 1539 1540 1541 1542 1543  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus