2009年5月7日木曜日

7日 木曜日、仏滅

PostgreSQL.org Website Design Contest
http://www.postgresql.org/about/news.1081

ダメージクリーンナップエンジン 6.1 (ビルド1027) 公開のお知らせ
http://www.trendmicro.co.jp/support/news.asp?id=1253

コンピュータウイルス・不正アクセスの届出状況[4月分]について
http://www.ipa.go.jp/security/txt/2009/05outline.html

ノートPCのHDDを遠隔消去、富士通とウィルコムが盗難対策サービスを共同開発
http://itpro.nikkeibp.co.jp/article/NEWS/20090507/329598/?ST=security

2009年Q1はボットネットが急拡大,感染マシンが50%増加
http://itpro.nikkeibp.co.jp/article/Research/20090507/329550/?ST=security

JVNDB-2009-001191 MIT Kerberos の asn1buf_imbed 関数におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001191.html

JVNDB-2009-001190 MIT Kerberos の asn1_decode_generaltime 関数におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001190.html

JVNDB-2009-001189 MIT Kerberos の spnego_gss_accept_sec_context 関数におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001189.html

JVNDB-2009-001188 MIT Kerberos の SPNEGO 実装におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001188.html

JVNDB-2009-001187 LittleCMS の cmsxform.c におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001187.html

JVNDB-2009-001134 LittleCMS におけるバッファオーバーフローの脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001134.html

JVNDB-2009-001133 LittleCMS における整数オーバーフローの脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001133.html

JVNDB-2009-001132 LittleCMS におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001132.html

JVNDB-2009-001127 curl および libcurl の redirect 実装における任意のコマンドを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001127.html

JVNDB-2009-001094 透過型プロキシサーバが HTTP の Host ヘッダに依存して接続を行う問題
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001094.html

F-Secure Internet Security May Fail to Scan Certain ZIP and RAR Archives
http://securitytracker.com/alerts/2009/May/1022172.html

F-Secure Internet Gatekeeper May Fail to Scan Certain ZIP and RAR Archives
http://securitytracker.com/alerts/2009/May/1022171.html

F-Secure Anti-Virus May Fail to Scan Certain ZIP and RAR Archives
http://securitytracker.com/alerts/2009/May/1022170.html

PacSec カンファレンス 2009
http://pacsec.jp/index.html

Cyber Security Tip ST04-001 Why is Cyber Security a Problem?
http://www.us-cert.gov/cas/tips/ST04-001.html



+ FreeBSD 7.2-RELEASE Available
http://www.freebsd.org/releases/7.2R/relnotes.html

+ DBI-1.608 released
http://search.cpan.org/src/TIMB/DBI-1.608/README

+ Linux Kernel audit_syscall_entry() Function May Let Local Users Bypass Syscall Filtering
http://securitytracker.com/alerts/2009/Apr/1022153.html
http://www.securityfocus.com/bid/33951

+ Linux Kernel "ptrace_attach()" Privilege Escalation Vulnerability
http://secunia.com/advisories/34977/
http://www.vupen.com/english/advisories/2009/1236
http://www.securityfocus.com/bid/34799

+ HPSBUX02186 SSRT071299 rev.1 - Apacheを実行するHP-UX、任意コードのリモート実行、サービス拒否(DoS)、未許可アクセス
http://www13.itrc.hp.com/service/cki/docDisplay.do?docLocale=ja_JP&docId=emr_na-c01734427-1

+ HPSBUX02191 SSRT071302 rev.1 - SLSdを実行するHP-UX、リモート未許可任意ファイル作成
http://www13.itrc.hp.com/service/cki/docDisplay.do?docLocale=ja_JP&docId=emr_na-c01734415-1

+ HPSBUX02129 SSRT061149 rev.2 - SLPを実行するHP-UX、リモート未許可アクセス
http://www13.itrc.hp.com/service/cki/docDisplay.do?docLocale=ja_JP&docId=emr_na-c01734385-1

- HPSBUX02196 SSRT071318 rev.2 - HP-UX Java(JRE and JDK)、任意コードのリモート実行
http://www13.itrc.hp.com/service/cki/docDisplay.do?docLocale=ja_JP&docId=emr_na-c01731570-1

+ Release Notes for MySQL Enterprise 5.0.80
http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-80.html

Weakness in the Default Configuration of NetScaler/Access Gateway Enterprise Edition Could Result in Unauthorized Access to Network Resources
http://support.citrix.com/article/CTX118770

RHBA-2009:0461-1 sos bug fix and enhancement update
http://rhn.redhat.com/errata/RHBA-2009-0461.html

Support for Windows 7 and the Aero theme
http://kb.vmware.com/selfservice/microsites/microsite.do?cmd=displayKC&docType=kc&externalId=1010544&sliceId=1&docTypeID=DT_KB_1_1

Guest operating system displays BIOS update message
http://kb.vmware.com/selfservice/microsites/microsite.do?cmd=displayKC&docType=kc&externalId=1010501&sliceId=1&docTypeID=DT_KB_1_1

Unable to import a backup image or third-party virtual machine
http://kb.vmware.com/selfservice/microsites/microsite.do?cmd=displayKC&docType=kc&externalId=1010476&sliceId=1&docTypeID=DT_KB_1_1

Unable to deploy linked clones and provisioning fails with the error reject prepare
http://kb.vmware.com/selfservice/microsites/microsite.do?cmd=displayKC&docType=kc&externalId=1010431&sliceId=1&docTypeID=DT_KB_1_1

DSA 1791-1: New moin packages fix cross-site scripting
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29181

DSA 1790-1: New xpdf packages fix multiple vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29180

DSECRG-09-034: Sun Glassfish Enterprise Server - Multiple Linked XSS vulnerabilies
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29183

DSECRG-09-038: Sun Glassfish Woodstock Project - Linked XSS Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29184

HPSBMA02419 SSRT090060 rev.1: Insight Control Suite For Linux (ICE-LX) Multiple Remote Vulnerabilities In Nagios
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29182

TemaTres-SA-05/05/2009: MULTIPLE REMOTE VULNERABILITIES--TemaTres 1.0.3-->
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29185

TemaTres-SA-05/05/2009: BLIND SQL INJECTION EXPLOIT--TemaTres 1.0.3-->
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29186

MDVSA-2009:106: libwmf
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29179

RT-SA-2009-001: IceWarp WebMail Server: Cross Site Scripting in Email View
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29172

RT-SA-2009-002: IceWarp WebMail Server: User-assisted Cross Site Scripting in RSS Feed Reader
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29173

RT-SA-2009-003: IceWarp WebMail Server: SQL Injection in Groupware Component
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29174

RT-SA-2009-004: IceWarp WebMail Server: Client-Side Specification of "Forgot Password" eMail Content
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29175

DSA 1789-1: New php5 packages fix several vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29171

HPSBMA02425 SSRT080091 rev.1: HP OpenView Network Node Manager (OV NNM), Remote Execution of Code
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29177

HPSBMA02374 SSRT080046 rev.2: HP OpenView Network Node Manager (OV NNM), Remote Denial of Service (DoS)
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29178

Coppermine Photo Gallery-SA-05/04/2009: Coppermine Photo Gallery 1.4.21 Cross-Site Scripting
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29166

ProjectCMS-SA-05/04/2009: MULTPLE REMOTE VULNERABILITIES --ProjectCMS v-1.1 Beta-->
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29176

MDVSA-2009:105: memcached
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29156

Secunia Research-SA-05/04/2009: IBM Tivoli Storage Manager Remote Agent Service Buffer Overflows
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29165

USN-769-1: libwmf vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29157

USN-770-1: ClamAV vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29170

MyBB-SA-05/03/2009: Cross-Site Scripting vulnerability in MyBB
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29163

Grabit-SA-05/03/2009: Grabit <= 1.7.2 beta 3 NZB file parsing stack overflow http://www.criticalwatch.com/support/security-advisories.aspx?AID=29164

DSA 1787-1: New Linux 2.6.24 packages fix several vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29158

DSA 1786-1 : New acpid packages fix denial of service
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29159

GLSA 200905-01 : Asterisk: Multiple vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29161

DSA 1785-1 : New wireshark packages fix several vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29160

TamperData-SA-05/01/2009: Possible DoS in Add-on v10.1.0 for FireFox 3.0.8
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29162

MiniTwitter-SA-05/01/2009: USER OPTIONS CHANGER EXPLOIT --MiniTwitter v0.2-Beta+->
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29167

MiniTwitter-SA-05/01/2009: MULTIPLE SQL INJECTION VULNERABILITIES --MiniTwitter v0.2-Beta-->
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29168

Addonics-SA-05/01/2009: Addonics NAS Adapter FTP Remote Denial of Service
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29169

MDVSA-2009:102: apache
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29146

MDVSA-2009:103: udev
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29147

MDVSA-2009:104: udev
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29148

DSA 1784-1: New freetype packages fix arbitrary code execution
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29149

CA20090429-01: CA ARCserve Backup Apache HTTP Server Multiple Vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29153

PF-SA-04/30/2009: multiple vendor - PF NULL pointer dereference
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29154

Leap CMS-SA-04/30/2009: MULTIPLE REMOTE VULNERABILITIES--Leap CMS 0.1.4-->
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29155

RHSA-2009:0457-01: Moderate: libwmf security update
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29150

RHSA-2009:0458-01: Important: gpdf security update
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29151

RHSA-2009:0459-01: Important: kernel security and bug fix update
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29152

Making the Business Case for Software Assurance Published
http://www.cert.org/archive/pdf/09sr001.pdf

54220: Project Woodstock 404 Error Page UTF-7 Encoded XSS
http://osvdb.org/show/osvdb/54220

54219: 32bit FTP Server Banner Response Handling Remote Overflow
http://osvdb.org/show/osvdb/54219

54218: QuickTeam bin/qte_init.php qte_root Parameter Remote File Inclusion
http://osvdb.org/show/osvdb/54218

54217: QuickTeam qte_web.php qte_web_path Parameter Remote File Inclusion
http://osvdb.org/show/osvdb/54217

54216: AGTC MyShop Control Panel log_accept Cookie Manipulation Admin Authentication Bypass
http://osvdb.org/show/osvdb/54216

54215: Quick 'n Easy Mail Server SMTP Command Handling Remote DoS
http://osvdb.org/show/osvdb/54215

54211: Pecio CMS index.php language Parameter Traversal Arbitrary File Access
http://osvdb.org/show/osvdb/54211

EUSecWest 2009 (May27/28) London Agenda and PacSec 2009 (Nov 4/5) Tokyo CFP deadline: June 1 2009
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00051.html

Persistent XSS in Kayako Support Suite
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00050.html

[SECURITY] [DSA 1793-1] New kdegraphics packages fix multiple vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00049.html

[SECURITY] [DSA 1792-1] New drupal6 packages fix multiple vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00048.html

[SECURITY] [DSA 1791-1] New moin packages fix cross-site scripting
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00047.html

[ MDVSA-2009:106 ] libwmf
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00046.html

New Browser Security Paper: Why Silent Updates Boost Security
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00045.html

[security bulletin] HPSBMA02419 SSRT090060 rev.1 - Insight Control Suite For Linux (ICE-LX)
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00044.html

[SECURITY] [DSA 1790-1] New xpdf packages fix multiple vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00043.html

MULTIPLE REMOTE VULNERABILITIES--TemaTres 1.0.3-->
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00042.html

[DSECRG-09-038] Sun Glassfish Woodstock Project - Linked XSS Vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00041.html

[DSECRG-09-034] Sun Glassfish Enterprise Server - Multiple Linked XSS vulnerabilies
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00039.html

[RT-SA-2009-004] IceWarp WebMail Server: Client-Side Specification of "Forgot Password" eMail Content
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00035.html

[RT-SA-2009-003] IceWarp WebMail Server: SQL Injection in Groupware Component
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00038.html

[RT-SA-2009-002] IceWarp WebMail Server: User-assisted Cross Site Scripting in RSS Feed Reader
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00036.html

[RT-SA-2009-001] IceWarp WebMail Server: Cross Site Scripting in Email View
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00034.html

CONFidence 2009 trainings
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00040.html

[USN-770-1] ClamAV vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00037.html

[SECURITY] [DSA 1789-1] New php5 packages fix several vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00033.html

[SECURITY] [DSA 1787-1] New quagga packages fix denial of service
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00032.html

LayerOne 2009 - Final Announcement
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00031.html

[security bulletin] HPSBMA02374 SSRT080046 rev.2 - HP OpenView Network Node Manager (OV NNM), Remote Denial of Service (DoS)
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00030.html

[security bulletin] HPSBMA02425 SSRT080091 rev.1 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00029.html

MULTPLE REMOTE VULNERABILITIES --ProjectCMS v-1.1 Beta-->
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00028.html

[USN-769-1] libwmf vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00027.html

[ MDVSA-2009:105 ] memcached
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00026.html

Secunia Research: IBM Tivoli Storage Manager Remote Agent Service Buffer Overflows
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00024.html

Coppermine Photo Gallery 1.4.21 Cross-Site Scripting
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00019.html

Call for Papers Hack.lu 2009
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00020.html

Grabit <= 1.7.2 beta 3 NZB file parsing stack overflow http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00025.html

[SecNiche WhitePaper ] - PDF Silent HTTP Form Repurposing Attacks
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00023.html

=?windows-1252?Q?=93Cross=2DSite_Scripting=94_vulnerability_in_MyBB_1=2E4?= =?windows-1252?Q
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00022.html

[SECURITY] [DSA 1787-1] New Linux 2.6.24 packages fix several vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00021.html

[ GLSA 200905-01 ] Asterisk: Multiple vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00018.html

[SECURITY] [DSA 1786-1] New acpid packages fix denial of service
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00017.html

about inactive account hijacking
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00016.html

[TZO-18-2009] Mcafee multiple evasions/bypasses (RAR, ZIP)
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00014.html

[SECURITY] [DSA 1785-1] New wireshark packages fix several vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-05/msg00014.html

Vulnerability Note VU#576996 NuPoint Messenger server transmits authentication credentials in plain text
http://www.kb.cert.org/vuls/id/576996

Vulnerability Note VU#402580 Jetty HTTP server directory traversal vulnerability
http://www.kb.cert.org/vuls/id/402580

IceWarp WebMail Server Input Validation Flaw in Groupware Component Lets Remote Users Inject SQL Commands
http://www.securitytracker.com/id?1022169

IceWarp WebMail Server Input Validation Hole in RSS Feed Reader Permits Cross-Site Scripting Attacks
http://www.securitytracker.com/id?1022168

IceWarp WebMail Server Input Validation Flaw in 'Email View' Permits Cross-Site Scripting Attacks
http://www.securitytracker.com/id?1022167

IceWarp WebMail Server Password Reminder Lets Remote Users Inject Mail Header Values
http://www.securitytracker.com/id?1022166

HP Insight Control suite for Linux Bugs in Nagios Let Remote Users Conduct Cross-Site Request Forgery Attacks and Bypass Authentication
http://www.securitytracker.com/id?1022165

Quagga Bug in Processing Certain 4-Byte ASN Data Lets Remote Users Deny Service
http://www.securitytracker.com/id?1022164

HP OpenView Network Node Manager Bug Lets Remote Users Execute Arbitrary Code
http://www.securitytracker.com/id?1022163

MyBB Input Validation Flaw in Avatar URL Field Permits Cross-Site Scripting Attacks
http://www.securitytracker.com/id?1022162

Grabit Stack Overflow in Parsing NZB Files Lets Remote Users Execute Arbitrary Code
http://www.securitytracker.com/id?1022161

GnuTLS Command Line Interface Does Not Properly Validate X.509 Certificates
http://www.securitytracker.com/id?1022159

GnuTLS DSA Key Generation Creates RSA Keys Instead of DSA Keys
http://www.securitytracker.com/id?1022158

GnuTLS Bug in Validating DSA Signatures Lets Remote Users Deny Service
http://www.securitytracker.com/id?1022157

Linux Kernel audit_syscall_entry() Function May Let Local Users Bypass Syscall Filtering
http://www.securitytracker.com/id?1022153

Black Hat Japan について
http://d.hatena.ne.jp/kana0x00/20090503/1241341080

Glassfish Multiple Cross-Site Scripting Vulnerabilities
http://secunia.com/advisories/35009/

F-Secure Products ZIP and RAR Archives Security Bypass
http://secunia.com/advisories/35008/

Project Woodstock UTF-7 "404 Page Not Found" Cross-Site Scripting
http://secunia.com/advisories/35006/

HP Insight Control Suite For Linux Nagios Multiple Vulnerabilities
http://secunia.com/advisories/35002/

32bit FTP Server Response Buffer Overflow Vulnerability
http://secunia.com/advisories/34993/

TemaTres Cross-Site Scripting Vulnerabilities
http://secunia.com/advisories/34990/

TemaTres Script Insertion and SQL Injection
http://secunia.com/advisories/34983/

Debian update for xpdf
http://secunia.com/advisories/34959/

Debian update for moin
http://secunia.com/advisories/34945/

Merak Mail Server Multiple Vulnerabilities
http://secunia.com/advisories/34912/

Nucleus Kernel Recovery for Macintosh ".AMHH" Buffer Overflow
http://secunia.com/advisories/34860/

aMule Video Preview Arbitrary Parameter Injection Security Issue // 151 views
http://secunia.com/advisories/34839/

Debian update for php5
http://secunia.com/advisories/35007/

Debian update for php5
http://secunia.com/advisories/35003/

Ubuntu update for libwmf
http://secunia.com/advisories/35001/

Ubuntu update for clamav
http://secunia.com/advisories/35000/

Debian update for quagga
http://secunia.com/advisories/34999/

BluSky CMS "news_id" SQL Injection Vulnerability
http://secunia.com/advisories/34998/

QuickTeam Multiple File Inclusion Vulnerabilities
http://secunia.com/advisories/34997/

PHP Site Lock Cookie Security Bypass Vulnerability
http://secunia.com/advisories/34995/

Million Dollar Text Links Authentication Bypass Vulnerability
http://secunia.com/advisories/34994/

Quick 'n Easy Mail Server Denial of Service Vulnerability
http://secunia.com/advisories/34992/

schroot "/tmp/shm" Temporary File System Denial of Service
http://secunia.com/advisories/34971/

AGTC MyShop Insecure Cookie Handling Vulnerability
http://secunia.com/advisories/34968/

HP OpenView Network Node Manager Unspecified Code Execution
http://secunia.com/advisories/34942/

GrabIt ".NZB" File Processing Buffer Overflow Vulnerability
http://secunia.com/advisories/34893/

Fedora bash-completion Character Escaping Weakness
http://secunia.com/advisories/34989/

Fedora update for drupal
http://secunia.com/advisories/34988/

Fedora update for prelude-manager
http://secunia.com/advisories/34987/

Fedora update for pam_ssh
http://secunia.com/advisories/34986/

Openfire No Password Changes Security Bypass
http://secunia.com/advisories/34984/

Gentoo update for asterisk
http://secunia.com/advisories/34982/

Debian update for linux-2.6.24
http://secunia.com/advisories/34981/

MyBB Script Insertion and Unspecified Vulnerability
http://secunia.com/advisories/34979/

Cscope Multiple Buffer Overflow Vulnerabilities
http://secunia.com/advisories/34978/

Linux Kernel "ptrace_attach()" Privilege Escalation Vulnerability
http://secunia.com/advisories/34977/

Openfire jabber:iq:auth "passwd_change" Security Bypass
http://secunia.com/advisories/34976/

Jetty Information Disclosure and Cross-Site Scripting
http://secunia.com/advisories/34975/

iPassConnect Privilege Escalation Vulnerability
http://secunia.com/advisories/34974/

Debian update for wireshark
http://secunia.com/advisories/34970/

Debian update for acpid
http://secunia.com/advisories/34918/

IBM Tivoli Storage Manager Multiple Vulnerabilities
http://secunia.com/advisories/32604/

Beltane Cross-Site Request Forgery Vulnerability
http://secunia.com/advisories/34973/

Debian update for freetype
http://secunia.com/advisories/34967/

Red Hat update for libwmf
http://secunia.com/advisories/34964/

Red Hat update for gpdf
http://secunia.com/advisories/34963/

Red Hat update for kernel
http://secunia.com/advisories/34962/

AXIGEN Mail Server Script Insertion Vulnerability
http://secunia.com/advisories/34958/

Mercury Audio Player Playlist Processing Buffer Overflows
http://secunia.com/advisories/34957/

McAfee Products Archive Handling Security Bypass
http://secunia.com/advisories/34949/

Baofeng Storm ActiveX Control "OnBeforeVideoDownload()" Buffer Overflow
http://secunia.com/advisories/34944/

Leap Multiple Vulnerabilities
http://secunia.com/advisories/34943/

CA ARCserve Backup Apache HTTP Server Multiple Vulnerabilities
http://secunia.com/advisories/34920/

libwmf Embedded GD Library Use-After-Free Vulnerability
http://secunia.com/advisories/34901/

Slackware update for ruby
http://secunia.com/advisories/34882/

Adobe Flash Media Server RPC Security Bypass Vulnerability
http://secunia.com/advisories/34878/

HP Insight Control Suite For Linux Nagios Multiple Remote Vulnerabilities
http://www.vupen.com/english/advisories/2009/1256

Sun GlassFish Enterprise Server Cross Site Scripting Vulnerabilities
http://www.vupen.com/english/advisories/2009/1255

Sun GlassFish Woodstock URL Data Cross Site Scripting Vulnerability
http://www.vupen.com/english/advisories/2009/1254

IceWarp eMail Server Cross Site Scripting and SQL Injection Vulnerabilities
http://www.vupen.com/english/advisories/2009/1253

ProjectCMS File Upload and Information Disclosure Vulnerabilities
http://www.vupen.com/english/advisories/2009/1251

HP OpenView Network Node Manager Remote Code Execution
http://www.vupen.com/english/advisories/2009/1250

PHP Site Lock Cookie Data Processing Authentication Bypass Issue
http://www.vupen.com/english/advisories/2009/1249

eLitius Administrative Interface Arbitrary PHP File Upload Vulnerability
http://www.vupen.com/english/advisories/2009/1248

QT-cute QuickTeam "qte_web_path" and "qte_root" File Inclusion Issues
http://www.vupen.com/english/advisories/2009/1247

BluSky CMS "news_id" Parameter Remote SQL Injection Vulnerability
http://www.vupen.com/english/advisories/2009/1246

AGTC MyShop "log_accept" Remote Authentication Bypass Vulnerability
http://www.vupen.com/english/advisories/2009/1245

Winn ASP Guestbook Remote Database Disclosure Vulnerability
http://www.vupen.com/english/advisories/2009/1244

GrabIt NZB File Processing DTD Reference Stack Overflow Vulnerability
http://www.vupen.com/english/advisories/2009/1243

Cscope Data Processing Multiple Buffer Overflow Vulnerabilities
http://www.vupen.com/english/advisories/2009/1238

Openfire "jabber:iq:auth" Request Password Manipulation Vulnerability
http://www.vupen.com/english/advisories/2009/1237

Linux Kernel "ptrace_attach()" Local Privilege Escalation Vulnerability
http://www.vupen.com/english/advisories/2009/1236

IBM Tivoli Storage Manager Buffer Overflow and Security Bypass Issues
http://www.vupen.com/english/advisories/2009/1235

Adobe Flash Media Server Remote Procedure Call Execution Vulnerability
http://www.vupen.com/english/advisories/2009/1234

CA ARCserve Backup Apache HTTP Server Multiple Vulnerabilities
http://www.vupen.com/english/advisories/2009/1233

Baofeng Storm MPS ActiveX Remote Buffer Overflow Vulnerability
http://www.vupen.com/english/advisories/2009/1232

libwmf Embedded GD Library "gdClipSetAdd" Use-After-Free Vulnerability
http://www.vupen.com/english/advisories/2009/1228

Cscope 'find.c' Stack Based Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34832

SilverStripe 'AjaxUniqueTextField' Parameter SQL Injection Vulnerability
http://www.securityfocus.com/bid/34852

ReVou 'adminlogin/password.php' Remote Password Change Vulnerability
http://www.securityfocus.com/bid/34851

Multiple F-Secure Products RAR/ZIP Files Scan Evasion Vulnerability
http://www.securityfocus.com/bid/34849

FunGamez Local File Include and SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/34610

Flatchat 'pmscript.php' Local File Include Vulnerability
http://www.securityfocus.com/bid/34734

Sun Solaris DTrace Handler IOCTL Request Multiple Local Denial of Service Vulnerabilities
http://www.securityfocus.com/bid/34753

Coccinelle Insecure Temporary File Creation Vulnerability
http://www.securityfocus.com/bid/34848

acpid Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/34692

SMA-DB Cross Site Scripting and Remote File Include Vulnerabilities
http://www.securityfocus.com/bid/33562

FreeType Multiple Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/34550

libwmf WMF Image File Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/34792

Drupal HTML Injection and Information Disclosure Vulnerabilities
http://www.securityfocus.com/bid/34779

CUPS and Xpdf JBIG2 Symbol Dictionary Processing Heap Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34791

CUPS Insufficient 'Host' Header Validation Weakness
http://www.securityfocus.com/bid/34665

SunGard Banner Student 'twbkwbis.P_SecurityQuestion' HTML Injection Vulnerability
http://www.securityfocus.com/bid/34620

MIT Kerberos 'asn1_decode_generaltime()' Uninitialized Pointer Memory Corruption Vulnerability
http://www.securityfocus.com/bid/34409

Google Chrome 'chromehtml:' Protocol Handler Same Origin Policy Bypass Vulnerability
http://www.securityfocus.com/bid/34704

Mozilla Firefox 'nsTextFrame::ClearTextRun()' Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/34743

Nucleus Kernel Recovery for Mac and Novell Multiple Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/34846

VerliAdmin 'index.php' Multiple Cross-Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/34845

LinkBase Users Menu HTML Injection Vulnerability
http://www.securityfocus.com/bid/34844

32bit FTP 'CWD' Response Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34838

Cisco Subscriber Edge Services Manager Cross Site Scripting And HTML Injection Vulnerabilities
http://www.securityfocus.com/bid/34454

Almond Classifieds for Joomla! 'id' Parameter SQL Injection Vulnerability
http://www.securityfocus.com/bid/34843

TemaTres SQL Injection and Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/34830

Xpdf JBIG2 Processing Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/34568

CUPS '_cupsImageReadTIFF()' Integer Overflow Vulnerability
http://www.securityfocus.com/bid/34571

xvfb-run Insecure Magic Cookie Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/34828

Woodstock 404 Error Page Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/34829

32bit FTP 'banner' Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34822

GlassFish Enterprise Server Multiple Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/34824

Grabit 'NZB' File Remote Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34807

IceWarp Merak Mail Server 'item.php' Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/34825

IceWarp Merak Mail Server 'Forgot Password' Input Validation Vulnerability
http://www.securityfocus.com/bid/34827

IceWarp Merak Mail Server 'cleanHTML()' Function Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/34823

IceWarp Merak Mail Server Groupware Component Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/34820

Mitel NuPoint Messenger Authentication Credentials Information Disclosure Vulnerability
http://www.securityfocus.com/bid/34847

MoinMoin 'AttachFile.py' Multiple Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/34631

Nagios External Commands and Adaptive Commands Unspecified Vulnerability
http://www.securityfocus.com/bid/32611

Nagios Web Interface Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/32156

Adobe Flash Player Unspecified Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/33890

Adobe Flash Player Invalid Object Reference Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/33880

Kayako SupportSuite Ticket Notes HTML Injection Vulnerability
http://www.securityfocus.com/bid/34853

Sorinara Streaming Audio Player '.m3u' File Remote Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34842

Sun Glassfish 'name' Parameter Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/29646

schroot '/tmp/shm' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/34819

MyBB 1.4.5 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/34798

ProjectCMS Multiple Input Validation Vulnerabilities
http://www.securityfocus.com/bid/34816

Quagga Autonomous System Number Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/34817

aMule 'wxExecute()' Arbitrary Command Execution Vulnerability
http://www.securityfocus.com/bid/34683

CoolPlayer M3U File Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/30418

CoolPlayer Skin File Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/32947

Quick 'n Easy Mail Server SMTP Request Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/34814

AGTC MyShop Insecure Cookie Authentication Bypass Vulnerability
http://www.securityfocus.com/bid/34808

BluSky CMS 'index.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/34811

Bmxplay 'BMX' File Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34810

Million Dollar Text Links Administrative Interface Authentication Bypass Vulnerability
http://www.securityfocus.com/bid/34809

EW-MusicPlayer '.m3u' File Remote Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34806

Openfire jabber:iq:auth 'passwd_change' Remote Password Change Vulnerability
http://www.securityfocus.com/bid/34804

Cscope Multiple Stack Based Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/34805

pecio cms 'index.php' Local File Include Vulnerability
http://www.securityfocus.com/bid/34802

Memcached and MemcacheDB ASLR Information Disclosure Weakness
http://www.securityfocus.com/bid/34756

iPassConnect Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/34801

Jetty Cross Site Scripting and Information Disclosure Vulnerabilities
http://www.securityfocus.com/bid/34800

pam_ssh Existing/Non-Existing Username Enumeration Weakness
http://www.securityfocus.com/bid/34333

Mercury Audio Player 'm3u/b4s/pls' File Multiple Remote Stack Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/34788

BaoFeng Storm ActiveX Control 'OnBeforeVideoDownload()' Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34789

Linux Kernel 'ecryptfs_write_metadata_to_contents()' Information Disclosure Vulnerability
http://www.securityfocus.com/bid/34216

LibTIFF Multiple Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/11406

LibTIFF Heap Corruption Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/12075

ClamAV 'clamav-milter' Initscript File Permission Vulnerability
http://www.securityfocus.com/bid/34818

IPsec-Tools Prior to 0.7.2 Multiple Remote Denial Of Service Vulnerabilities
http://www.securityfocus.com/bid/34765

PHP 'mbstring.func_overload' Webserver Denial Of Service Vulnerability
http://www.securityfocus.com/bid/33542

PHP 5.2.8 and Prior Versions Multiple Vulnerabilities
http://www.securityfocus.com/bid/33927

PHP 'mbstring' Extension Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/32948

PHP SAPI 'php_getuid()' Safe Mode Restriction-Bypass Vulnerability
http://www.securityfocus.com/bid/32688

PHP ZipArchive::extractTo() '.zip' Files Directory Traversal Vulnerability
http://www.securityfocus.com/bid/32625

PHP 5.2.5 and Prior Versions Multiple Vulnerabilities
http://www.securityfocus.com/bid/29009

eLitius Arbitrary File Upload and Authentication Bypass Vulnerabilities
http://www.securityfocus.com/bid/34813

Coppermine Photo Gallery 'css' Parameter Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/34782

Mozilla Firefox/SeaMonkey UTF-8 Stack-Based Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/31397

RM Downloader '.smi' File Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34794

Linux Kernel 'ptrace_attach()' Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/34799

Asterisk Authentication SIP Response Remote Information Disclosure Vulnerability
http://www.securityfocus.com/bid/34353

Asterisk IAX2 Firmware Provisioning Packet Amplification Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/30350

Asterisk IAX 'POKE' Requests Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/30321

Asterisk IAX2 Authentication Response Remote Information Disclosure Vulnerability
http://www.securityfocus.com/bid/33174

Asterisk IAX2 Packet Amplification Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/28901

Asterisk IAX2 Unauthenticated Session Handling Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/32773

HP OpenView Network Node Manager Remote Unspecified Code Execution Vulnerabilityhttp://www.securityfocus.com/bid/34812

HP OpenView Network Node Manager 'ovtopmd' Variant Unspecified Denial of Service Vulnerability
http://www.securityfocus.com/bid/31669

Mozilla Firefox/SeaMonkey/Thunderbird Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/31346

Mozilla Firefox Mac OS X GIF Rendering Memory Corruption Vulnerability
http://www.securityfocus.com/bid/30266

Mozilla Firefox/Thunderbird/SeaMonkey Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/32281

Mozilla Firefox/Thunderbird/Seamokey Arbitrary Image Cross Domain Security Bypass Vulnerability
http://www.securityfocus.com/bid/32351

Mozilla SeaMonkey/Thunderbird Newsgroup Cancel Message Handling Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/31411

Mozilla Firefox/Thunderbird/SeaMonkey Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/32882

Mozilla Firefox '.url' Shortcut Processing Information Disclosure Vulnerability
http://www.securityfocus.com/bid/31747

Mozilla Firefox CSSValue Array Data Structure Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/29802

Mozilla Firefox 2.0.0.14 Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/30038

Adobe Acrobat and Reader Collab 'getIcon()' JavaScript Method Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/34169

Mozilla Firefox URI Splitting Security Bypass Vulnerability
http://www.securityfocus.com/bid/30242

Adobe Flash Player Remote Command Execution Vulnerability
http://www.securityfocus.com/bid/32896

Linux Kernel 'sock.c' SO_BSDCOMPAT Option Information Disclosure Vulnerability
http://www.securityfocus.com/bid/33846

Symantec WinFax Pro 'DCCFAXVW.DLL' Heap Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34766

Linux Kernel '/ipc/shm.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/34020

Linux Kernel Cloned Process 'CLONE_PARENT' Local Origin Validation Weakness
http://www.securityfocus.com/bid/33906

Linux Kernel Audit System 'audit_syscall_entry()' System Call Security Bypass Vulnerability
http://www.securityfocus.com/bid/33951

Linux Kernel 'drivers/char/agp/generic.c' Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/34673

Linux Kernel Frame Size Integer Overflow Remote Information Disclosure Vulnerability
http://www.securityfocus.com/bid/34654

Linux Kernel 'kill_something_info()' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/34558

Linux Kernel 'exit_notify()' CAP_KILL Verification Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/34405

Linux Kernel 'dell_rbu' Local Denial of Service Vulnerabilities
http://www.securityfocus.com/bid/33428

Linux Kernel 'EFER_LME' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/34331

Linux Kernel 'readlink' Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/33412

Linux Kernel Console Selection Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/33672

Linux Kernel 'keyctl_join_session_keyring()' Denial of Service Vulnerability
http://www.securityfocus.com/bid/33339

Linux Kernel 'locks_remove_flock()' Local Race Condition Vulnerability
http://www.securityfocus.com/bid/33237

Linux Kernel 64 Bit ABI System Call Parameter Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/33275

Linux Kernel 'net/atm/proc.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/32676

Linux Kernel MIPS Untrusted User Application Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/32716

Linux Kernel 'FWD-TSN' Chunk Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/33113

Linux Kernel 'ib700wdt.c' Buffer Underflow Vulnerability
http://www.securityfocus.com/bid/33003

Linux Kernel 'parisc_show_stack()' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/32636

Linux Kernel CIFS Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34453

Wireshark Prior to 1.0.7 Multiple Denial Of Service Vulnerabilities
http://www.securityfocus.com/bid/34457

Wireshark PN-DCP Data Format String Vulnerability
http://www.securityfocus.com/bid/34291

PHP Site Lock Cookie Authentication Bypass Vulnerability
http://www.securityfocus.com/bid/34815

IBM Tivoli Storage Manager Multiple Vulnerabilities
http://www.securityfocus.com/bid/34803

Adobe Reader 'spell.customDictionaryOpen()' JavaScript Function Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/34740

Adobe Reader 'getAnnots()' JavaScript Function Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/34736

McAfee Products RAR/ZIP Files Scan Evasion Vulnerability
http://www.securityfocus.com/bid/34780

Beatport Player '.m3u' File Remote Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34793

Golabi CMS 'Common/ImageVer.php' Authentication Bypass Vulnerability
http://www.securityfocus.com/bid/34797

Addonics NAS Adapter FTP Server Multiple Command Remote Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/34796

MiniTwitter Security Bypass and SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/34795

Gowon Designs Leap Multiple Input Validation Vulnerabilities
http://www.securityfocus.com/bid/34787

OpenBSD PF Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/34482

libmodplug 'load_pat.c' Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34747

Ruby REXML Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/30802

Poppler Multiple Denial of Service Vulnerabilities
http://www.securityfocus.com/bid/33749

Ghostscript Multiple Input Validation and Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/34184

Ghostscript 'gdevpdtb.c' Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34340

Ghostscript 'CCITTFax' Decoding Filter Denial of Service Vulnerability
http://www.securityfocus.com/bid/34337

Ghostscript 'jbig2dec' JBIG2 Processing Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34445

udev Netlink Message Validation Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/34536

udev Path Encoding Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/34539

Multiple China-on-site.com Products Username and Password SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/32810

Joomla HBS Multiple Components 'showhoteldetails' SQL Injection Vulnerability
http://www.securityfocus.com/bid/32952

Adobe Flash Media Server Unspecified RPC Call Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/34790

Multiple Symantec Products Log Viewer Multiple Script Injection Vulnerabilities
http://www.securityfocus.com/bid/34669

Microsoft Excel Invalid Object Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/33870

Apache Web Server Linefeed Memory Allocation Denial Of Service Vulnerability
http://www.securityfocus.com/bid/7254

Apache Web Server Configuration File Environment Variable Local Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/11182

HPSBMA02374 SSRT080046 rev.2 - HP OpenView Network Node Manager (OV NNM), Remote Denial of Service (DoS)
http://www11.itrc.hp.com/service/cki/docDisplay.do?docLocale=en&docId=emr_na-c01567813-2

HPSBMA02425 SSRT080091 rev.1 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
http://www11.itrc.hp.com/service/cki/docDisplay.do?docLocale=en&docId=emr_na-c01728300-1

HPSBMA02419 SSRT090060 rev.1 - Insight Control Suite For Linux (ICE-LX) Multiple Remote Vulnerabilities In Nagios
http://www11.itrc.hp.com/service/cki/docDisplay.do?docLocale=en&docId=emr_na-c01712457-1

0 件のコメント:

コメントを投稿