BugTraq Mode:
(Page 1605 of 1748)  < Prev  1600 1601 1602 1603 1604 1605 1606 1607 1608 1609 1610  Next >
Cafelog WordPress / b2 SQL injection vulnerabilities discovered and fixed in CVS 2003-10-03
Seth Woolley (seth tautology org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Vendor:
Cafelog

Product:
WordPress (formerly b2)
http://www.wordpress.org/

Vulnerable Versions:
* CVS versions before October 1, 2003
* Vulnerability affects code inherited from b2, so all versions of
wordpress released before CVS fix are affected a

[ more ]  [ reply ]
Minihttpserver File-Sharing for NET Directory Traversal Vulnerability 2003-10-03
Bahaa Naamneh (b_naamneh hotmail com)


Minihttpserver File-Sharing for NET Directory Traversal Vulnerability

Affected Systems: File-Sharing for NET

version: 1.5 (and possibly earlier versions)

Vendor: Minihttpserver - http://www.minihttpserver.net

Issue: Directory Traversal Vulnerability

Released: 2 October 2003

[ more ]  [ reply ]
FreeBSD Security Advisory FreeBSD-SA-03:17.procfs 2003-10-03
FreeBSD Security Advisories (security-advisories freebsd org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

========================================================================
=====
FreeBSD-SA-03:17.procfs Security Advisory
The FreeBSD Project

Topic: ke

[ more ]  [ reply ]
[RHSA-2003:256-02] Updated Perl packages fix security issues. 2003-10-03
bugzilla redhat com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Updated Perl packages fix security issues.
Advisory ID: RHSA-2003:256-02
Issue date: 2003-09-22
Updated

[ more ]  [ reply ]
TSLSA-2003-0001 - openssl 2003-10-02
Tawie Security Advisor (tsl tawie org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
--
Tawie Server Linux Security Advisory #2003-0001

Package name: openssl
Summary: Several issues
Date: 2003-10-02
Affected versions: TSL 1.2, 1.5, 2.0

[ more ]  [ reply ]
New Tool: MetaCoretex (DB Security Scanner) 2003-10-02
visigoth (visigoth securitycentric com)

Greetings all! I am pleased to announce the initial public release of a
toy I have been working on for a little while now...

MetaCoretex is an OpenSource, JAVA based, database capable security scanner
with a kewl set of features. We have a bunch of spiffy probes already which
are capable of do

[ more ]  [ reply ]
Visualroute Server - reverse tracerouting 2003-10-02
morning_wood (se_cur_ity hotmail com)
Vendor Response follows...
------------------------------------------------------------------
- EXPL-A-2003-025 exploitlabs.com Advisory 025
------------------------------------------------------------------
-= Visualroute Server =-

Donnie Werner
Oct 1, 2003

[ more ]  [ reply ]
New OpenSSL remote vulnerability (issue date 2003/10/02) 2003-10-02
Patrik Hornik (patrik hornik ebitech sk)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

======================================================================
Security advisory 20031002
- ----------------------------------------------------------------------
Product: openssl
Issue date: 2003/10/02
Last updated: 2003/10/02
==========

[ more ]  [ reply ]
Process Killing - Playing with PostThreadMessage 2003-10-02
Brett Moore (brett moore security-assessment com) (1 replies)
========================================================================
=
= Process Killing - Playing with PostThreadMessage
=
= brett.moore (at) security-assessment (dot) com [email concealed]
= http://www.security-assessment.com
=
= Originally posted: October 02, 2003
==========================================================

[ more ]  [ reply ]
Re: Process Killing - Playing with PostThreadMessage 2003-10-02
Thor Larholm (thor pivx com)
MOSDEF Initial Release 2003-10-02
dave immunitysec com


Immunity is pleased to announce that MOSDEF, a 100% Python retargetable compiler for C->shellcode has been released to the public under the LGPL.

http://www.immunitysec.com/MOSDEF/

Dave Aitel

VP Research and Development

Immunity, Inc.

[ more ]  [ reply ]
CERT Advisory CA-2003-26 Multiple Vulnerabilities in SSL/TLS Implementations 2003-10-01
CERT Advisory (cert-advisory cert org)

-----BEGIN PGP SIGNED MESSAGE-----

CERT Advisory CA-2003-26 Multiple Vulnerabilities in SSL/TLS
Implementations

Original issue date: October 1, 2003
Last revised: --
Source: CERT/CC

A complete revision history is at the end of this file.

Systems Affected

* OpenSSL versions pr

[ more ]  [ reply ]
Re: SSGbook (ASP) 2003-10-01
Terry Bankert (tbankert script-shed com)
In-Reply-To: <F127ak1HTJcwXAtPyFC00019ee5 (at) hotmail (dot) com [email concealed]>

This issue has been fixed

>Received: (qmail 27350 invoked from network); 8 Oct 2002 17:28:07 -0000

>Received: from outgoing2.securityfocus.com (HELO outgoing.securityfocus.com) (205.206.231.26)

> by mail.securityfocus.com with SMTP; 8 Oct

[ more ]  [ reply ]
NOVL-2003-10087450 - Novell Response to NISCC/CERT Advisoriesre: OpenSSL - revised url 2003-10-01
Ed Reed (ereed novell com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

For Immediate Disclosure

============================== Summary ==============================

Security Alert: NOVL-2003-10087450
Title: Novell Response to NISCC/CERT Advisories re: OpenSSL
Date: 01-Oct-2003
Revision: Orig

[ more ]  [ reply ]
SuSE Security Announcement: lsh (SuSE-SA:2003:041) 2003-10-01
krahmer suse de (Sebastian Krahmer)
-----BEGIN PGP SIGNED MESSAGE-----

________________________________________________________________________
______

SuSE Security Announcement

Package: lsh
Announcement-ID: SuSE-SA:2003:041
Date: Wed Oct 1 10:2

[ more ]  [ reply ]
Multiple vulnerabilities in WinShadow 2003-10-01
Bahaa Naamneh (b_naamneh hotmail com)


Multiple vulnerabilities in WinShadow

-------------------------------------

Affected Systems: OmniCom WinShadow

version: 2.0 (and possibly earlier versions)

Vendor: OmniCom Technologies - http://www.omnicomtech.com

Issue: 1. Buffer overflow in client handling hostnames in host files

[ more ]  [ reply ]
ptl-2003-01: IBM DB2 LOAD Command Stack Overflow Vulnerability 2003-10-01
Pentest Security Advisories (alerts pentest co uk)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Pentest Limited Security Advisory

IBM DB2 LOAD Command Stack Overflow Vulnerability

Advisory Details
- ----------------

Title: IBM DB2 LOAD Command Stack Overflow Vulnerability
Announcement date: 1st October 2003
Advisory Reference: ptl-2003-01
CVE

[ more ]  [ reply ]
ptl-2003-02: IBM DB2 INVOKE Command Stack Overflow Vulnerability 2003-10-01
Pentest Security Advisories (alerts pentest co uk)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Pentest Limited Security Advisory

IBM DB2 INVOKE Command Stack Overflow Vulnerability

Advisory Details
- ----------------

Title: IBM DB2 INVOKE Command Stack Overflow Vulnerability
Announcement date: 1st October 2003
Advisory Reference: ptl-2003-02

[ more ]  [ reply ]
NOVL-2003-10087450 - Novell Response to NISCC/CERT Advisoriesre: OpenSSL 2003-10-01
Ed Reed (ereed novell com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

For Immediate Disclosure

============================== Summary ==============================

Security Alert: NOVL-2003-10087450
Title: Novell Response to NISCC/CERT Advisories re: OpenSSL
Date: 01-Oct-2003
Revision: Orig

[ more ]  [ reply ]
SuSE Security Announcement: openssl (SuSE-SA:2003:043) 2003-10-01
Thomas Biege (thomas suse de)
-----BEGIN PGP SIGNED MESSAGE-----

________________________________________________________________________
______

SuSE Security Announcement

Package: openssl
Announcement-ID: SuSE-SA:2003:043
Date: Wednesday,

[ more ]  [ reply ]
DCP Portal - 5.5 holes 2003-10-01
Lifo Fifo (lifofifo20 yahoo com)


Never use this product if you have turned off magic_quotes_gpc. And this product won't work anyway if you have turned off register_globals.

All the files in the product, dont check for integrity of variables. You can easily exploit this using some SQL Injection techniques. For example, if you w

[ more ]  [ reply ]
[slackware-security] OpenSSL security update (SSA:2003-273-01) 2003-10-01
Slackware Security Team (security slackware com)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

[slackware-security] OpenSSL security update (SSA:2003-273-01)

Upgraded OpenSSL packages are available for Slackware 8.1, 9.0,
9.1, and -current. These fix problems with ASN.1 parsing which
could lead to a denial of service. It is not known whether

[ more ]  [ reply ]
Cisco Security Advisory: SSL Implementation Vulnerabilities 2003-10-01
Cisco Systems Product Security Incident Response Team (psirt cisco com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Cisco Security Advisory: SSL Implementation Vulnerabilities

Revision 1.0

For Public Release 2003 September 30 at 2330 GMT

----------------------------------------------------------------------

Contents

Summary
Affected Pr

[ more ]  [ reply ]
MDKSA-2003:098 - Updated openssl packages fix vulnerabilities 2003-10-01
Mandrake Linux Security Team (security linux-mandrake com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

________________________________________________________________________

Mandrake Linux Security Update Advisory
________________________________________________________________________

Package name: openssl
Advisory ID:

[ more ]  [ reply ]
[Full-Disclosure] [SECURITY] [DSA-393-1] New OpenSSL packages correct denial of service issues 2003-10-01
debian-security-announce lists debian org
-----BEGIN PGP SIGNED MESSAGE-----

- ------------------------------------------------------------------------
--
Debian Security Advisory DSA 393-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Michael Stone
October 1, 2003

[ more ]  [ reply ]
SuSE Security Announcement: mysql (SuSE-SA:2003:042) 2003-10-01
krahmer suse de (Sebastian Krahmer)
-----BEGIN PGP SIGNED MESSAGE-----

________________________________________________________________________
______

SuSE Security Announcement

Package: mysql
Announcement-ID: SuSE-SA:2003:042
Date: Wed Oct 1 12

[ more ]  [ reply ]
GLSA: openssl (200309-19) 2003-10-01
aliz gentoo org (Daniel Ahlberg)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - - ---------------------------------------------------------------------
GENTOO LINUX SECURITY ANNOUNCEMENT 200309-19
- - - ---------------------------------------------------------------------

          PACKAGE : openssl
          SUMMARY : vulnera

[ more ]  [ reply ]
MDKSA-2003:097 - Updated mplayer packages fix buffer overflow vulnerability 2003-09-30
Mandrake Linux Security Team (security linux-mandrake com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

________________________________________________________________________

Mandrake Linux Security Update Advisory
________________________________________________________________________

Package name: mplayer
Advisory ID:

[ more ]  [ reply ]
[CLA-2003:751] Conectiva Security Announcement - openssl 2003-09-30
Conectiva Updates (secure conectiva com br)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
--
CONECTIVA LINUX SECURITY ANNOUNCEMENT
- ------------------------------------------------------------------------
--

PACKAGE : openssl
SUMMARY : Remote vulnerabilities
DATE

[ more ]  [ reply ]
(Page 1605 of 1748)  < Prev  1600 1601 1602 1603 1604 1605 1606 1607 1608 1609 1610  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus