BugTraq Mode:
(Page 1603 of 1748)  < Prev  1598 1599 1600 1601 1602 1603 1604 1605 1606 1607 1608  Next >
Betr.: IE 6 XML Patch Bypass 2003-10-08
Philip Wagenaar (p wagenaar accon nl)
I tried tried the proof of concept and indeed it looks like your 'hack' was succesful. I have WinXP with all patches from WindowsUpdate and run Sophos AV.

However, you might want to put up a warning that running the proof of concept will change a on your harddisk.

Met vriendelijke groet,

Philip W

[ more ]  [ reply ]
New FAQ on worm/worm containment 2003-10-06
Stuart Staniford (stuart silicondefense com)

I just finished a first cut at a FAQ on worms and worm containment (my
obsession for the last couple of years). It should be of interest to a
number of bugtraq readers:

http://www.NetWorm.org/faq/

Stuart.

Stuart Staniford, President Tel: 707-445-4355 x 15
Silicon Defense -

[ more ]  [ reply ]
Re: Weaknesses in LEAP Challenge/Response 2003-10-07
Sharad Ahlawat (sahlawat cisco com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

This is in response to the mail posted by Joshua Wright. The original mail is
available at
http://www.securityfocus.com/archive/1/340365/2003-10-03/2003-10-09/0

On Monday 06 October 2003 05:06, Joshua Wright wrote:
> In August 2003, I sent a tool I ha

[ more ]  [ reply ]
[RHSA-2003:278-01] Updated SANE packages fix remote vulnerabilities 2003-10-07
bugzilla redhat com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Updated SANE packages fix remote vulnerabilities
Advisory ID: RHSA-2003:278-01
Issue date: 2003-10-07
U

[ more ]  [ reply ]
Re: The joys of impurity (was: MOSDEF, InlineEgg) 2003-10-07
dave immunitysec com
In-Reply-To: <20031006210520.GA3033 (at) gmx (dot) net [email concealed]>

Well, MOSDEF is fairly far along, but the C compiler is not quite done, so no, you can't compile nmap and send it over for execution.

Of course, that's not even an intended application. MOSDEF doesn't attach stdin and stdout to anything in particular

[ more ]  [ reply ]
Medieval Total War <= 1.1 broadcast crash 2003-10-07
Luigi Auriemma (aluigi altervista org)
#######################################################################

Luigi Auriemma

Application: Medieval Total War
http://www.totalwar.com
Versions: <= 1.1
Platforms: Windows
Bug: Remote crash of server and attached clients caused by

[ more ]  [ reply ]
Medieval Total War <= 1.1 broadcast Connection expired 2003-10-07
Luigi Auriemma (aluigi altervista org)
#######################################################################

Luigi Auriemma

Application: Medieval Total War
http://www.totalwar.com
Versions: <= 1.1
Platforms: Windows
Bug: "Connection expired" message to server and connected

[ more ]  [ reply ]
Adobe SVG Viewer Local and Remote File Reading (GM#003-MC) 2003-10-07
GreyMagic Software (security greymagic com)
GreyMagic Security Advisory GM#003-MC
=====================================

By GreyMagic Software, Israel.
07 Oct 2003.

Available in HTML format at http://security.greymagic.com/adv/gm003-mc/.

Topic: Adobe SVG Viewer Local and Remote File Reading.

Discovery date: 07 Sep 2003.

Affected applicati

[ more ]  [ reply ]
IE 6 XML Patch Bypass 2003-10-07
Mindwarper * (mindwarper linuxmail org)
IE 6 XML Patch Bypass

I have recently been playing around with the xml+windows media player exploit, and it
seems that even with the new Microsoft patch applied, the vulnerability works.
I have tried it on 7 different people, on win2k and xp, and it worked everytime.
The 8th person was using DAP

[ more ]  [ reply ]
Adobe SVG Viewer Cross Domain and Zone Access (GM#004-MC) 2003-10-07
GreyMagic Software (security greymagic com)
GreyMagic Security Advisory GM#004-MC
=====================================

By GreyMagic Software, Israel.
07 Oct 2003.

Available in HTML format at http://security.greymagic.com/adv/gm004-mc/.

Topic: Adobe SVG Viewer Cross Domain and Zone Access.

Discovery date: 07 Sep 2003.

Affected applicatio

[ more ]  [ reply ]
ZH2003-3SP (security patch): multiple vulnerabilities in mod_gzip 1.3.x debug mode 2003-10-06
Astharot (secfoc email it)
ZH2003-3SP (security patch): multiple vulnerabilities in mod_gzip 1.3.x debug
mode

Released: 7 October 2003
Name: mod_gzip
Affected versions: all versions (debug mode)
Issue: stack overflow, format string and insecure file creation
Author: Astharot (at Zone-H.org)
Vendor: http://sourceforge.net/pro

[ more ]  [ reply ]
PeopleSoft Grid Option Vulnerability 2003-10-07
info i-assure com


Vendor: PeopleSoft

PS Solution ID: 200749183

Product: People Tools

Version: 8.42

Platform: Solaris 8, BEA WebLogic, Others?

Remote/Local: Remote, Unauthenticated

Title: File Availability

Impact: Data accessible by Everyone.

Descript

[ more ]  [ reply ]
Adobe SVG Viewer Active Scripting Bypass (GM#002-MC) 2003-10-07
GreyMagic Software (security greymagic com)
GreyMagic Security Advisory GM#002-MC
=====================================

By GreyMagic Software, Israel.
07 Oct 2003.

Available in HTML format at http://security.greymagic.com/adv/gm002-mc/.

Topic: Adobe SVG Viewer Active Scripting Bypass.

Discovery date: 19 Aug 2003.

Affected applications:
=

[ more ]  [ reply ]
The joys of impurity (was: MOSDEF, InlineEgg) 2003-10-06
Alexander E. Cuttergo (cuttergo gmx net)
Hi,
I enclose the impurity-1.0 release. The README follows. I would like to hear
some comparisons with MOSDEF and InlineEgg; can you guys implement nmap in
your shellcode ;) ?
peace,
algo

Impurity-1.0
by Alexander E. Cuttergo <cuttergo (at) gmx (dot) net [email concealed]>

Concept
Impurity is a set of scripts which make

[ more ]  [ reply ]
Update JBoss 308 & 321: Remote Command Injection 2003-10-06
Marc Schoenefeld (schonef uni-muenster de)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi Adam,

thanks for the question, here is the answer:

just downloaded the 3.0.8 from Jboss.org and
changed the port of the exploit code from
1701 to 1476, which is the HSQL port in
Version 3.0.8 of JBoss.
I can confirm that

JBOSS 3.0.8 is als

[ more ]  [ reply ]
JS/HTML code injection in File-Sharing for NET v1.5 and Forums Web Server v1.5 2003-10-06
"nimber" (nimber mail ru)
+-----------------------------+
Advisories: JS/HTML code injection in File-Sharing for NET v1.5 and Forums Web Server v1.5
Author: nimber [nimber (at) mail (dot) ru [email concealed]]
Date: 10/06/2003
+-----------------------------+
Vendor: http://www.minihttpserver.net
Version: 1.5 (and older versions?)
Shareware :)
Mini-desc

[ more ]  [ reply ]
Re: Local root exploit in SuSE Linux 8.2Pro 2003-10-06
Roman Drahtmueller (draht suse de)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I am answering both mails from Stefan Nordhausen to bugtraq, about symlink
race conditions in the packages susewm (1) and javarunt (Java Runtime
Environment) (2).

> Affected:               SuSE Linux 8.2Pro
> Not affected:           SuSE Linux 7.3Pro,

[ more ]  [ reply ]
SA-20031006 slocate vulnerability 2003-10-06
Patrik Hornik (patrik hornik ebitech sk)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

======================================================================
Security advisory 20031006
- ----------------------------------------------------------------------
Product: slocate
Vulnerability type: buffer overflow (c

[ more ]  [ reply ]
Access Runner DSL Console vulnerability update 2003-10-05
Chris Norton (kicktd hotmail com)


While doing some more testing I have found that some Access Runner's are actually "immune" to this type of attack. I do not know just yet why some are immune and some are not. Still trying to get in contact with Conexant on this but have yet to find any contact info.

Please do take note that t

[ more ]  [ reply ]
Vulnerabilities in Easy File Sharing Web Server (1.2 NEW). 2003-10-04
"nimber" (nimber mail ru)
Vulnerabilities in Easy File Sharing Web Server (1.2 NEW).

+-----------------------------+
Vendor: www.sharing-file.com
Version: 1.2 (new)
Date: Sep 22, 2003
Size: 2115KB
Mini-description:
"Easy File Sharing Web Server contains several built-in systems including HTTP Web Server,multi-threads databa

[ more ]  [ reply ]
Verisign fighting back at ICANN 2003-10-05
Thor Larholm (thor pivx com)
So now Verisign wants to protect your privacy .. and I've got a bridge or an
Eiffel Tower to sell, if you're interested.

According to Verisign, ICANN is an organization whose sole existance seems to be
to invade your privacy and spam you to death.

http://www.verisign.com/corporate/news/2003/pr_200

[ more ]  [ reply ]
SNAP Innovation's PrimeBase Database 4.2 poor default file permissions. 2003-10-04
Larry W. Cashdollar (lwc vapid ath cx)

SNAP Innovation's PrimeBase Database 4.2 poor default file permissions and
use of symlinks during install.
September 1, 2003

I. BACKGROUND

From the readme.txt file

"The PrimeBase Database Server is a relational Database Management System
(DBMS) for Mac, UNIX and Windows platforms. The PrimeBase

[ more ]  [ reply ]
RE: Cobalt RaQ Control Panel Cross Site Scripting 2003-10-05
Steve Manzuik (steve entrenchtech com)
> it is a security hole because it demonstrates that the message.cgi script

> does not have

> an input validation system.

This isn't a security hole but more of a scripting mistake. You don't gain any additional access, you don't r00t the box, you don't even steal another users session. Commo

[ more ]  [ reply ]
Re: Cisco 6509 switch telnet vulnerability 2003-10-05
twig les (twigles yahoo com)
I could not replicate this on a 6509 using remote authentication
and secureID, and those are the only ones we have around. Has
anyone been able to replicate this?

--- Bob Niederman <btrq (at) bob-n (dot) com [email concealed]> wrote:
>
>
>
> While this is clearly a bug, the example given does not show
> that it's
> serious

[ more ]  [ reply ]
GLSA: cfengine (200310-02) 2003-10-05
Kurt Lieber (klieber gentoo org)
------------------------------------------------------------------------
-------
GENTOO LINUX SECURITY ANNOUNCEMENT 200310-02
------------------------------------------------------------------------
-------
Package : cfengine
Summary : stack overflow in cfengine network code

[ more ]  [ reply ]
GuppY : XSS, Files Reading/Writing 2003-10-05
Frog Man (leseulfrog hotmail com)
Informations :
°°°°°°°°°°°°°
Language : PHP
Bugged Version : 2.4p3 (and less ?)
Patched version : 2.4p4
Website : http://www.freeguppy.org
Problems :
- Permanent XSS
- Files Reading
- Files Writing

PHP Code/Location :
°°°°°°°°°°°°°°°°°°°

postguest.php :

-------------------------------------------

[ more ]  [ reply ]
RE: New IE crash: CSS + HTML 2003-10-05
psz maths usyd edu au (Paul Szabo)
"Russ Uhte (Lists)" <russlists (at) mailtest.parallax (dot) ws [email concealed]> and
Sherlock <sherl0ck (at) comcast (dot) net [email concealed]> wrote:

> ... It also crashes Eudora version 6.0.0.22 ...
> ... Eudora crashed with a MSHTML.DLL error. ...

You need to disable "Use Microsoft's viewer" in Tools > Options > Viewing
Mail. This, and other Eudora

[ more ]  [ reply ]
FreeBSD Security Advisory FreeBSD-SA-03:15.openssh 2003-10-05
FreeBSD Security Advisories (security-advisories freebsd org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

========================================================================
=====
FreeBSD-SA-03:15.openssh Security Advisory
The FreeBSD Project

Topic: Op

[ more ]  [ reply ]
Re: I have fixes for the Geeklog vulnerabilities 2003-10-05
Dirk Haun (dirk haun-online de)
This is in response to "Geeklog Multiple Versions Vulnerabilities",
<http://www.securityfocus.com/archive/1/339494> and a follow-up post to
Full Disclosure which, I assume, was also sent to BugTraq:

Lorenzo Hernandez Garcia-Hierro wrote:

>Due to the completely incorrect treatment and work of the

[ more ]  [ reply ]
JBoss 3.2.1: Remote Command Injection 2003-10-05
Marc Schoenefeld (schonef uni-muenster de)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

================================
Illegalaccess.org Security Alert
================================

Date : 10/04/2003
Application : JBoss, java server for running J2EE enterprise
applications
Version : 3.2.1
Website : http:/

[ more ]  [ reply ]
(Page 1603 of 1748)  < Prev  1598 1599 1600 1601 1602 1603 1604 1605 1606 1607 1608  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus