2009年5月19日火曜日

19日 火曜日、仏滅

+ マイクロソフト セキュリティ アドバイザリ (971492)
インターネット インフォメーション サービスの脆弱性により、特権が昇格される
http://www.microsoft.com/japan/technet/security/advisory/971492.mspx
http://www.microsoft.com/technet/security/advisory/971492.mspx

MySQL 6.0.12 (Not yet released)
http://dev.mysql.com/doc/refman/6.0/en/news-6-0-12.html

「2008年 国内における情報セキュリティ事象被害状況調査」報告書を公開
  ~USBメモリ経由で感染するW32/Autorunによりウイルス遭遇・感染率が6年ぶりに上昇~
http://www.ipa.go.jp/security/fy20/reports/isec-survey/index.html

LinuxやFreeBSDを狙うウイルス、感染するとスパム送信や偽ソフト販売
数百のコンピューターで感染確認、「UNIX系OSマシンもウイルスに注意」
http://itpro.nikkeibp.co.jp/article/NEWS/20090519/330239/?ST=security

JVNDB-2009-001234 Oracle Database の Password Policy コンポーネントにおける脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001234.html

JVNDB-2009-001233 Oracle Database の Database Vault コンポーネントにおける脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001233.html

JVNDB-2009-001232 Oracle Database の Application Express コンポーネントにおける脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001232.html

JVNDB-2009-001231 Oracle Database の Listener コンポーネントにおける脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001231.html

JVNDB-2009-001230 Oracle Database の Cluster Ready Services コンポーネントにおける脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001230.html

JVNDB-2009-001229 Oracle Database の Workspace Manager コンポーネントにおける脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001229.html

JVNDB-2009-001228 Oracle Database の Workspace Manager コンポーネントにおける脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001228.html

ntp crypto_recv() Autokey Stack Overflow Lets Remote Users Execute Arbitrary Code
http://www.securitytracker.com/id?1022243

HP System Management Homepage Input Validation Flaw Permits Cross-Site Scripting Attacks
http://www.securitytracker.com/id?1022242

OpenSSL DTLS Processing Bugs Let Users Deny Service
http://www.securitytracker.com/id?1022241

+ Microsoft IIS Unicode Requests to WebDAV Multiple Authentication Bypass Vulnerabilities
http://www.securityfocus.com/bid/34993



+ [ntp:announce] NTP 4.2.4p7 Released
http://support.ntp.org/bin/view/Main/SoftwareDownloads
http://www.eecis.udel.edu/~ntp/ntp_spool/ntp4/ChangeLog-stable

+ curl and libcurl 7.19.5 released
http://curl.haxx.se/changes.html

- RHSA-2009:1036-1: Important: ipsec-tools security update
http://rhn.redhat.com/errata/RHSA-2009-1036.html

+ RHSA-2009:1039-1: Important: ntp security update
http://rhn.redhat.com/errata/RHSA-2009-1040.html

+ Vulnerability Note VU#853097 ntpd autokey stack buffer overflow
http://www.kb.cert.org/vuls/id/853097
http://www.securityfocus.com/bid/35017

+ OpenSSL DTLS Memory Exhaustion Vulnerabilities
http://secunia.com/advisories/35128/
http://www.milw0rm.com/exploits/8720

+ Linux Kernel KVM Port 80h Denial of Service Security Issue
http://secunia.com/advisories/35127/

+ RHSA-2009:0955-2: Moderate: nfs-utils security and bug fix update
http://rhn.redhat.com/errata/RHSA-2009-0955.html

+ RHSA-2009:0981-2: Low: util-linux security and bug fix update
http://rhn.redhat.com/errata/RHSA-2009-0981.html

+ RHSA-2009:1024-1: Important: Red Hat Enterprise Linux 4.8 kernel security and bug fix update
http://rhn.redhat.com/errata/RHSA-2009-1024.html

HPSBMA02428 SSRT090048 rev.1 - HP System Management Homepage (SMH) for Linux and Windows, Remote Cross Site Scripting (XSS)
http://www11.itrc.hp.com/service/cki/docDisplay.do?docLocale=en&docId=emr_na-c01745065-1

SSH and BalaBit IT Security Partner to Further Strengthen Enterprise IT Defenses
http://www.ssh.com/company/news/2009/english/all/article/1001/

MDVSA-2009:113: cyrus-sasl
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29291

MDVSA-2009:114: ipsec-tools
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29292

rPSA-2009-0084-1 : kernel
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29285

DSA 1800-1 : New Linux 2.6.26 packages fix several vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29290

iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Multiple Spreadsheet Buffer Overflow Vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29286

iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Spreadsheet Buffer Overflow Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29287

iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Spreadsheet Integer Overflow Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29288

iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Multiple Integer Overflow Vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29289

myGesuad Multiple Cross-Site Scripting Vulnerabilities
http://secunia.com/advisories/35136/

Good Messaging Server Multiple Vulnerabilities
http://secunia.com/advisories/35135/

Fedora update for drupal
http://secunia.com/advisories/35134/

Fedora update for wireshark
http://secunia.com/advisories/35133/

NetDecision TFTP Server Directory Traversal Vulnerability
http://secunia.com/advisories/35131/

Good Messaging Server for Exchange Multiple Vulnerabilities
http://secunia.com/advisories/35129/

OpenSSL DTLS Memory Exhaustion Vulnerabilities
http://secunia.com/advisories/35128/

Linux Kernel KVM Port 80h Denial of Service Security Issue
http://secunia.com/advisories/35127/

Winamp libsndfile.dll VOC Processing Buffer Overflow Vulnerability
http://secunia.com/advisories/35126/

IBM Tivoli Storage Manager Client Multiple Vulnerabilities
http://secunia.com/advisories/35124/

CGI Rescue Trees Cross-Site Scripting Vulnerability
http://secunia.com/advisories/35123/

Debian update for linux-2.6
http://secunia.com/advisories/35121/

rPath update for kernel
http://secunia.com/advisories/35116/

Rama Zaiten CMS "file" File Disclosure Vulnerability
http://secunia.com/advisories/35116/

Custom T-shirt Design "id" SQL Injection Vulnerability
http://secunia.com/advisories/35114/

myColex Multiple Cross-Site Scripting Vulnerabilities
http://secunia.com/advisories/35112/

myColex Multiple SQL Injection Vulnerabilities
http://secunia.com/advisories/35111/

myGesuad Multiple SQL Injection Vulnerabilities
http://secunia.com/advisories/35110/

Microsoft Internet Information Services WebDAV Request Directory Security Bypass
http://secunia.com/advisories/35109/

HP System Management Homepage PHP Weakness and OpenSSL Vulnerability
http://secunia.com/advisories/35108/

Microsoft Internet Information Server WebDAV Input Validation Flaw Lets Remote Users Execute Arbitrary Code
http://securitytracker.com/alerts/2009/May/1022240.html

Winamp Libsndfile VOC File Processing Heap Overflow Vulnerability
http://www.vupen.com/english/advisories/2009/1348

DMXReady Registration Manager Database Disclosure Vulnerability
http://www.vupen.com/english/advisories/2009/1347

Harland Multiple Products Remote PHP Code Injection Vulnerability
http://www.vupen.com/english/advisories/2009/1346

myGesuad Multiple SQL Injection and Cross Site Scripting Vulnerabilities
http://www.vupen.com/english/advisories/2009/1345

myColex Multiple SQL Injection and Cross Site Scripting Vulnerabilities
http://www.vupen.com/english/advisories/2009/1344

Rama Zaiten CMS "file" Parameter Remote File Disclosure Vulnerability
http://www.vupen.com/english/advisories/2009/1343

PHPenpals "ID" Parameter Remote SQL Injection Vulnerability
http://www.vupen.com/english/advisories/2009/1342

Custom T-shirt Design "id" SQL Injection and Cross Site Scripting Issues
http://www.vupen.com/english/advisories/2009/1341

Eggdrop "servmsg.c" Message Handling Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2009/1340

Audioactive Player Playlist Processing Buffer Overflow Vulnerability
http://www.vupen.com/english/advisories/2009/1339

HP System Management Homepage PHP and OpenSSL Vulnerabilities
http://www.vupen.com/english/advisories/2009/1338

Linux Kernel "nfs_permission()" EXEC Security Bypass Vulnerability
http://www.vupen.com/english/advisories/2009/1331

Microsoft IIS WebDAV Remote Authentication Bypass Vulnerability
http://www.vupen.com/english/advisories/2009/1330

RHBA-2008:0883: traceroute bug fix update
http://rhn.redhat.com/errata/RHBA-2008-0883.html

RHBA-2008:0926: net-tools bug fix update
http://rhn.redhat.com/errata/RHBA-2008-0926.html

RHBA-2008:0989: tmpwatch bug fix update
http://rhn.redhat.com/errata/RHBA-2008-0989.html
RHBA-2008:1000: man-pages-ja bug fix update
http://rhn.redhat.com/errata/RHBA-2008-1000.html

RHBA-2008:1012: vsftpd bug fix update
http://rhn.redhat.com/errata/RHBA-2008-1012.html

RHBA-2009:0022: system-config-printer bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0022.html

RHBA-2009:0023: man-pages bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0023.html

RHBA-2009:0024: bluez-utils bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0024.html

RHBA-2009:0025: vixie-cron bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0025.html

RHBA-2009:0026: qt bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0026.html

RHBA-2009:0027: PyQt bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0027.html

RHBA-2009:0028: kdenetwork bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0028.html

RHBA-2009:0029: xemacs-sumo bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0029.html

RHBA-2009:0030: setup bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0030.html

RHBA-2009:0031: xemacs bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0031.html

RHBA-2009:0032: Canna bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0032.html

RHBA-2009:0039: vim bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0039.html

RHBA-2009:0253: rdesktop bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0253.html

RHBA-2009:0254: sane-backends bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0254.html

RHBA-2009:0255: isdn4k-utils bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0255.html

RHBA-2009:0263: sudo bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0263.html

RHBA-2009:0265: shared-mime-info bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0265.html

RHBA-2009:0485: crash bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0485.html

RHBA-2009:0486: netdump bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0486.html

RHBA-2009:0948: comps bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0948.html

RHBA-2009:0949: ghostscript bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0949.html

RHBA-2009:0950: procps bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0950.html

RHBA-2009:0951: rpm bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0951.html

RHBA-2009:0953: sysstat bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0953.html

RHBA-2009:0954: file bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0954.html

RHBA-2009:0956: dhcp bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0956.html

RHBA-2009:0957: tog-pegasus bug fix
http://rhn.redhat.com/errata/RHBA-2009-0957.html

RHBA-2009:0958: k3b bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0958.html

RHBA-2009:0959: coreutils bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0959.html

RHBA-2009:0960: bash bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0960.html

RHBA-2009:0961: perl bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0961.html

RHBA-2009:0962: device-mapper bug-fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0962.html

RHBA-2009:0963: pump bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0963.html

RHBA-2009:0964: OpenIPMI bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0964.html

RHBA-2009:0966: kernel-utils bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0966.html

RHBA-2009:0967: lvm2 bug-fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0967.html

RHBA-2009:0969: samba bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0969.html

RHBA-2009:0970: kudzu bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0970.html

RHBA-2009:0971: cvs bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0971.html

RHBA-2009:0972: up2date bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0972.html

RHBA-2009:0974: rhnlib bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0974.html

RHBA-2009:0975: rhn-applet bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0975.html

RHBA-2009:0976: lftp bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0976.html

RHBA-2009:0977: iputils bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0977.html

RHBA-2009:0978: anaconda bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0978.html

RHBA-2009:0980: booty bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0980.html

RHBA-2009:0982: gnome-vfs2 bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0982.html

RHBA-2009:0984: net-snmp bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0984.html

RHBA-2009:0985: vsftpd bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0985.html

RHBA-2009:0986: nss_ldap bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0986.html

RHBA-2009:0987: pam_krb5 bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0987.html

RHBA-2009:0988: wacomexpresskeys bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0988.html

RHBA-2009:0989: cups bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0989.html

RHBA-2009:0990: netpbm bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0990.html

RHBA-2009:0991: autofs bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0991.html

RHBA-2009:0992: kdebase bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0992.html

RHBA-2009:0993: openmotif bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0993.html

RHBA-2009:0994: sos bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0994.html

RHBA-2009:0995: pam bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0995.html

RHBA-2009:0996: e2fsprogs bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0996.html

RHBA-2009:0997: krb5 bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0997.html

RHBA-2009:0998: xorg-x11 bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0998.html

RHBA-2009:0999: sysklogd bug fix update
http://rhn.redhat.com/errata/RHBA-2009-0999.html

RHBA-2009:1000: initscripts bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1000.html

RHBA-2009:1001: ltrace bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1001.html

RHBA-2009:1004: udev bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1004.html

RHBA-2009:1005: firstboot bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1005.html

RHBA-2009:1006: hotplug bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1006.html

RHBA-2009:1007: cdrtools bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1007.html

RHBA-2009:1008: mkinitrd bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1008.html

RHBA-2009:1009: iscsi-initiator-utils bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1009.html

RHBA-2009:1010: autofs5 bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1010.html

RHBA-2009:1011: device-mapper-multipath bug-fix update and enhancement
http://rhn.redhat.com/errata/RHBA-2009-1011.html

RHBA-2009:1012: gnome-system-monitor bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1012.html

RHBA-2009:1013: php bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-1013.html

RHBA-2009:1014: redhat-artwork bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1014.html

RHBA-2009:1015: gdb bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1015.html

RHBA-2009:1016: gcc bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1016.html

RHBA-2009:1017: glibc bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-1017.html

RHBA-2009:1018: audit bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1018.html

RHBA-2009:1019: grep bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1019.html

RHBA-2009:1021: evolution28-gtk2 bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1021.html

RHBA-2009:1022: openib bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-1022.html

RHBA-2009:1026: selinux-policy-targeted bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1026.html

RHBA-2009:1027: gnuplot bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1027.html

RHBA-2009:1029: oprofile bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1029.html

RHBA-2009:1031: gftp bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1031.html

RHBA-2009:1033: gnome-panel bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1033.html

RHBA-2009:1034: alsa-utils bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1034.html

RHBA-2009:1035: nfs-utils-lib bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1035.html

RHBA-2009:1037: nss bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1037.html

RHBA-2009:1041: prelink bug fix update
http://rhn.redhat.com/errata/RHBA-2009-1041.html

RHEA-2009:0055: jwhois enhancement update
http://rhn.redhat.com/errata/RHEA-2009-0055.html

RHEA-2009:0952: diskdumputils enhancement update
http://rhn.redhat.com/errata/RHEA-2009-0952.html

RHEA-2009:0968: ttfonts-zh_CN enhancement update
http://rhn.redhat.com/errata/RHEA-2009-0968.html

RHEA-2009:0979: parted enhancement update
http://rhn.redhat.com/errata/RHEA-2009-0979.html

RHEA-2009:0983: hwdata enhancement update
http://rhn.redhat.com/errata/RHEA-2009-0983.html

RHEA-2009:1002: redhat-release bug fix and enhancement update
http://rhn.redhat.com/errata/RHEA-2009-1002.html

RHEA-2009:1020: gcc4 bug fix and enhancement update
http://rhn.redhat.com/errata/RHEA-2009-1020.html

RHEA-2009:1023: openmpi and mvapich bug fix and enhancement update
http://rhn.redhat.com/errata/RHEA-2009-1023.html

RHEA-2009:1028: module-init-tools enhancement update
http://rhn.redhat.com/errata/RHEA-2009-1028.html

RHEA-2009:1030: iptables enhancement update
http://rhn.redhat.com/errata/RHEA-2009-1030.html

RHEA-2009:1032: tcp_wrappers bug fix update
http://rhn.redhat.com/errata/RHEA-2009-1032.html

httpdx <= 0.5b FTP Server (USER) Remote BOF Exploit (SEH) http://www.milw0rm.com/exploits/8716

DGNews 3.0 Beta (id) Remote SQL Injection Vulnerability
http://www.milw0rm.com/exploits/8727

MaxCMS 2.0 (inc/ajax.asp) Remote SQL Injection Vulnerability
http://www.milw0rm.com/exploits/8726

Dana Portal Remote Change Admin Password Exploit
http://www.milw0rm.com/exploits/8719

DOURAN Portal <= 3.9.0.23 Multiple Remote Vulnerabilities http://www.milw0rm.com/exploits/8718

ClanWeb 1.4.2 Remote Change Password / Add Admin Exploit
http://www.milw0rm.com/exploits/8717

Coppermine Photo Gallery <= 1.4.22 Multiple Remote Vulnerabilities http://www.milw0rm.com/exploits/8713

Dream Windows Max CMS 'inc/ajax.asp' SQL Injection Vulnerability
http://www.securityfocus.com/bid/34981

httpdx Multiple Commands Remote Buffer OverflowVulnerabilities
http://www.securityfocus.com/bid/35006

Adobe Reader 'spell.customDictionaryOpen()' JavaScript Function Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/34740

Adobe Reader 'getAnnots()' JavaScript Function Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/34736

Coppermine Photo Gallery 'lang' Cookie Parameter Local File Include Vulnerability
http://www.securityfocus.com/bid/30480

phpMyAdmin 'setup.php' PHP Code Injection Vulnerability
http://www.securityfocus.com/bid/34236

GnuTLS Prior to 2.6.6 Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/34783

Smarty Template Engine 'function.math.php' Security Bypass Vulnerability
http://www.securityfocus.com/bid/34918

IPsec-Tools Prior to 0.7.2 Multiple Remote Denial Of Service Vulnerabilities
http://www.securityfocus.com/bid/34765

Wireshark Prior to 1.0.7 Multiple Denial Of Service Vulnerabilities
http://www.securityfocus.com/bid/34457

Wireshark PN-DCP Data Format String Vulnerability
http://www.securityfocus.com/bid/34291

Drupal UTF-7 'book-export-html.tpl.php' HTML Injection Vulnerability
http://www.securityfocus.com/bid/34946

libsndfile VOC and AIFF Processing Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/34978

IBM Tivoli Storage Manager Multiple Vulnerabilities
http://www.securityfocus.com/bid/34803

OpenSSL 'EVP_VerifyFinal' Function Signature Verification Vulnerability
http://www.securityfocus.com/bid/33150

Microsoft IIS Unicode Requests to WebDAV Multiple Authentication Bypass Vulnerabilities
http://www.securityfocus.com/bid/34993

NTP 'ntpd' Autokey Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/35017

DGNews 'id' Parameter SQL Injection Vulnerability
http://www.securityfocus.com/bid/35016

SLiM Insecure X Authority File Local Authentication Bypass Vulnerability
http://www.securityfocus.com/bid/35015

Mereo Malformed URI Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35014

Douran Portal Multiple Input Validation Vulnerabilities
http://www.securityfocus.com/bid/35013

ClanWeb 'save.php' Remote Password Change Vulnerability
http://www.securityfocus.com/bid/35012

Flyspeck CMS Remote Password Change Vulnerability and Local File Include Vulnerability
http://www.securityfocus.com/bid/35011

Multiple BitDefender Security Products PDF File Scan Evasion Vulnerability
http://www.securityfocus.com/bid/35010

Coppermine Photo Gallery Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/35009

Multiple Avira AntiVir Products PDF File Scan Evasion Vulnerability
http://www.securityfocus.com/bid/35008

Pluck 'langpref' Parameter Multiple Local File Include Vulnerabilities
http://www.securityfocus.com/bid/35007

Online Rent 'index.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/35005

Pc4Uploader 'code.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/35004

PHP Dir Submit Admin Login SQL Injection Vulnerability
http://www.securityfocus.com/bid/35003

CGI RESCUE Trees Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/34999

NetDecision TFTP Server Directory Traversal Vulnerability
http://www.securityfocus.com/bid/35002

0 件のコメント:

コメントを投稿