BugTraq Mode:
(Page 1683 of 1748)  < Prev  1678 1679 1680 1681 1682 1683 1684 1685 1686 1687 1688  Next >
serious vulnerability present. all doomed. over. 2003-04-01
Security Experts, Liability Limited (throwaway dione ids pl)

.--------------------------------------------------.
| S.E.L.L. -- ADVISORY NUMBER 4F4E45 -- .L.L.E.S |
| ------------------------------------------------ |
| April 1, 2003 |
|

[ more ]  [ reply ]
GLSA: sendmail (200303-27) 2003-03-31
Daniel Ahlberg (aliz gentoo org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - ---------------------------------------------------------------------
GENTOO LINUX SECURITY ANNOUNCEMENT 200303-27
- - ---------------------------------------------------------------------

PACKAGE : sendmail
SUMMARY : buffer ove

[ more ]  [ reply ]
GLSA: krb5 & mit-krb5 (200303-28) 2003-03-31
Daniel Ahlberg (aliz gentoo org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - ---------------------------------------------------------------------
GENTOO LINUX SECURITY ANNOUNCEMENT 200303-28
- - ---------------------------------------------------------------------

PACKAGE : krb5 & mit-krb5
SUMMARY : mul

[ more ]  [ reply ]
Ericsson Mobile Phones Security Contact? 2003-03-30
Ollie Whitehouse (ollie atstake com)
All,

Does anyone have one?

Thanks,

Rgds

Ollie

[ more ]  [ reply ]
Personal FTP Server 2003-03-31
subj (r2subj3ct dwclan org)


---------------------------------------

Product : Personal FTP Server

Version : ?

OSystem : Windows

Authors : CoolSoft

WebSite : http://www.cooolsoft.com

Problem :

* Buffer Overflow in field USER

---------------------------------------

Description:

------------

eng:

====

[ more ]  [ reply ]
NSFOCUS SA2003-02: Solaris lpq Stack Buffer Overflow Vulnerability 2003-03-31
NSFCOSU Security Team (security nsfocus com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

NSFOCUS Security Advisory(SA2003-02)

Topic: Solaris lpq Stack Buffer Overflow Vulnerability

Release Date: 2003-3-31

CVE CAN ID: CAN-2003-0091

Affected system:
===================

Sun Solaris 2.5.1 (SPARC/x86)
Sun Solaris 2.6 (SPARC/x86)
Sun Solari

[ more ]  [ reply ]
[OpenPKG-SA-2003.027] OpenPKG Security Advisory (sendmail) 2003-03-30
OpenPKG (openpkg openpkg org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

________________________________________________________________________

OpenPKG Security Advisory The OpenPKG Project
http://www.openpkg.org/security.html http://www.openpkg.org
openpkg-security (at) openpkg (dot) org [email concealed]

[ more ]  [ reply ]
[DDI-1012] Malformed request causes denial of service in HP Instant TopTools 2003-03-31
Erik Parker (erik parker digitaldefense net)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
----
Digital Defense Inc. Security Advisory DDI-1012 labs (at) digitaldefense (dot) net [email concealed]
http://www.digitaldefense.net/
- ---------------------------------------------------------------

[ more ]  [ reply ]
[RHSA-2003:034-01] Updated dhcp packages fix possible packet storm 2003-03-31
bugzilla redhat com
---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Updated dhcp packages fix possible packet storm
Advisory ID: RHSA-2003:034-01
Issue date: 2003-03-31
Updated on: 2003-03-31
Product: Re

[ more ]  [ reply ]
Security issues in D-Link DSL-300/DSL-300G+ Broadband Modem/Router 2003-03-31
Arhont Information Security (infosec arhont com)


Arhont Ltd - Information Security Company

Arhont Advisory by: Andrei Mikhailovsky (www.arhont.com)

Advisory: D-Link DSL Broadband Modem/Router

Router Model Name: D-Link DSL-300G/DSL-300G+

Model Specific: Other models might be vulnerable as well

Manufacturer site: http://www.dlink.c

[ more ]  [ reply ]
OpenSSH 3.6 released (fwd) 2003-03-31
Jonas Eriksson (je sekure net)

New OpenSSH version..

Regards,
Jonas Eriksson

---------- Forwarded message ----------
Date: Mon, 31 Mar 2003 14:48:52 +0200
From: Markus Friedl <markus (at) openbsd (dot) org [email concealed]>
To: announce (at) openbsd (dot) org [email concealed]
Subject: OpenSSH 3.6 released

OpenSSH 3.6 has just been released. It will be available from the
mirrors li

[ more ]  [ reply ]
NSFOCUS SA2003-03: Solaris dtsession Heap Buffer Overflow Vulnerability 2003-03-31
NSFCOSU Security Team (security nsfocus com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

NSFOCUS Security Advisory(SA2003-03)

Topic: Solaris dtsession Heap Buffer Overflow Vulnerability

Release Date: 2003-03-31

CVE CAN ID: CAN-2003-0092

Affected system:
===================

Sun Solaris 2.5.1 (SPARC/x86)
Sun Solaris 2.6 (SPARC/x86)
Sun

[ more ]  [ reply ]
CGI Citys CCLOG and CCGuestbook Script Injection Vulns Fixed!!! 2003-03-31
BrainRawt . (brainrawt hotmail com)

Dear Bugtraq Readers,

Peter Go from CGI-City has confirmed that the script injection
vulns found in CCLOG and CCGuestbook have been fixed. The latest
(fixed) versions of these two scripts can be downloaded from
the following links.

http://www.icthus.net/CGI-City/scr_cgicity.shtml#CCLOG

and

htt

[ more ]  [ reply ]
Vulnerability in News/îÏ×ÏÓÔÉ 2003-03-31
Over_G (overg mail ru)
Product: News
Version: 1.0
OffSite: http://xonix.ru
Problem: Add news
--------------------------------------

You may add news without autorization.

http://[target]/admin/script.php?data=ENTER_THIS_YOUR_NEWS.

example:

http://[target]/admin/script.php?data=script.php?data=<? system($cmd) ?>
then o

[ more ]  [ reply ]
SRT2003-03-31-1219 - SAP world writable server binaries 2003-03-31
KF (dotslash snosoft com)
This data will be available at http://www.secnetops.biz/research/ shortly.

-KF

[ more ]  [ reply ]
[RHSA-2003:120-01] Updated sendmail packages fix vulnerability 2003-03-31
bugzilla redhat com
---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Updated sendmail packages fix vulnerability
Advisory ID: RHSA-2003:120-01
Issue date: 2003-03-31
Updated on: 2003-03-31
Product: Red Ha

[ more ]  [ reply ]
Oracle JDBC: Inconsistent handling of timestamps 2003-03-31
Peter Conrad (conrad tivano de)
Product: Oracle database 8.1.7 & JDBC "thin" driver 8.1.7.1
Issue: Inconsistent handling of timestamps
Impact: Minor (as a security issue, what comes to mind is bad timestamps
when logging to an Oracle DB)
Could be a major problem for any application relying on certain

[ more ]  [ reply ]
GLSA: dietlibc (200303-29) 2003-03-31
Daniel Ahlberg (aliz gentoo org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - ---------------------------------------------------------------------
GENTOO LINUX SECURITY ANNOUNCEMENT 200303-29
- - ---------------------------------------------------------------------

PACKAGE : dietlibc
SUMMARY : integer ov

[ more ]  [ reply ]
Positive Technologies Security Advisory 2003-0307: DoS-attack in Kerio WinRoute Firewall 2003-03-31
Dmitry Maksimov (dmaksimov ptsecurity ru)
Positive Technologies Security Advisory
http://www.ptsecurity.com

Title: DoS-attack in Kerio WinRoute Firewall
Date: March, 07 2003
Severity: High
Application: Kerio WinRoute Firewall 5.0.1
Platform: Windows 95/98/ME/NT/2000/XP
Vendo

[ more ]  [ reply ]
PHP-Nuke block-Forums.php subject vulnerabilities 2003-03-31
lethalman libero it


The block-Forums.php file have a vuln if an attacker

insert a malformatted subject to a topic of Splatt

Forum. A type of subject is:

"><script>alert('bug'");</script>

The 'alt' tag is closed by "> and the other text is

normal html. This bug is very bad if a subject is:

">&l

[ more ]  [ reply ]
[SCSA-014] Remote Denial of Service Vulnerability in EZ Server 2003-03-31
Grégory Le Bras (gregory lebras security-corporation com)


======================================================================

Security Corporation Security Advisory [SCSA-014]

Remote Denial of Service Vulnerability in EZ Server

======================================================================

PROGRAM: EZ Server

HOMEPAGE: http://www.html

[ more ]  [ reply ]
Sendmail: -1 gone wild 2003-03-29
Michal Zalewski (lcamtuf ghettot org)

CVE: CAN-2003-0161
CERT: VU#897604

********************************************************
*** FORCED RELEASE -- VENDOR NOTIFIED AS OF 03/18/03 ***
********************************************************

There is a vulnerability in Sendmail versions 8.12.8 and prior. The
address parser p

[ more ]  [ reply ]
[security (at) slackware (dot) com [email concealed]: [slackware-security] Sendmail buffer overflow fixed] 2003-03-29
White Vampire (whitevampire mindless com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ----- Forwarded message from Slackware Security Team <security (at) slackware (dot) com [email concealed]> -----

Return-Path: <owner-slackware-security (at) bob.slackware (dot) com [email concealed]>
Delivered-To: whitvamp@localhost
Received: (qmail 7993 invoked from network); 25 Mar 2003 17:44:33 -0000
Rec

[ more ]  [ reply ]
[security (at) slackware (dot) com [email concealed]: [slackware-security] Samba buffer overflow fixed] 2003-03-29
White Vampire (whitevampire mindless com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ----- Forwarded message from Slackware Security Team <security (at) slackware (dot) com [email concealed]> -----

Return-Path: <owner-slackware-security (at) bob.slackware (dot) com [email concealed]>
Delivered-To: whitvamp@localhost
Received: (qmail 18002 invoked from network); 25 Mar 2003 19:18:43 -0000
Re

[ more ]  [ reply ]
CGI-City's CCLOG Script Injection Vulns 2003-03-29
BrainRawt . (brainrawt hotmail com)
CGI-City's CCLOG USER-AGENT and REFERER Script Injection
Vulnerabilities Discovered By BrainRawt (brainrawt (at) hotmail (dot) com [email concealed])

About CCLOG:
------------------
CC Log is a very simple logging script which logs the hits to
a single web page. This script is typically useful for logging
the hits to the main

[ more ]  [ reply ]
CGI-City's CCGuestBook Script Injection Vulns 2003-03-29
BrainRawt . (brainrawt hotmail com)
CGI-City's CCGuestBook Script Injection Vulnerabilities
Discovered By BrainRawt (brainrawt (at) hotmail (dot) com [email concealed])

About CCGuestBook:
------------------
CC Guestbook is a simple guestbook program that is very easy
to configure and install. It features a notification facility
which sends an email alert to the

[ more ]  [ reply ]
sendmail 8.12.9 available 2003-03-29
Claus Assmann ca+announce (at) sendmail (dot) org [email concealed] (ca+announce sendmail org) (1 replies)
-----BEGIN PGP SIGNED MESSAGE-----

Sendmail, Inc., and the Sendmail Consortium announce the availability
of sendmail 8.12.9. It contains a fix for a critical security
problem discovered by Michal Zalewski whom we thank for bringing
this problem to our attention. Sendmail urges all users to either

[ more ]  [ reply ]
Re: sendmail 8.12.9 available 2003-03-29
Dan Harkless (bugtraq harkless org)
ScozBook BETA 1.1 vulnerabilities 2003-03-29
euronymous (just-a-user yandex ru)

=:=:=::=:=:=::=:=:=::=:=:=::=:=:=::=:=:=::=:=:=::=
topic: ScozBook BETA 1.1 vulnerabilities
product: ScozBook BETA 1.1
vendor: http://www.scoznet.com
risk: high
date: 03/29/2k3
discovered by: euronymous /F0KP
advisory urls: http://f0kp.iplus.ru/bz/018.en.txt
http://f0kp.iplus.ru/b

[ more ]  [ reply ]
Justice Guestbook 1.3 vulnerabilities 2003-03-29
euronymous (just-a-user yandex ru)

=:=:=::=:=:=::=:=:=::=:=:=::=:=:=::=:=:=::=:=:=::=
topic: Justice Guestbook 1.3 vulnerabilities
product: Justice Guestbook 1.3
vendor: http://www.justice-media.de
risk: high
date: 03/29/2k3
discovered by: euronymous /F0KP
advisory urls: http://f0kp.iplus.ru/bz/017.en.txt
http://f0k

[ more ]  [ reply ]
(Page 1683 of 1748)  < Prev  1678 1679 1680 1681 1682 1683 1684 1685 1686 1687 1688  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus