2009年6月26日金曜日

26日 金曜日、友引

The latest snapshot for the stable Linux kernel tree is: 2.6.31-rc1-git1
http://git.kernel.org/?p=linux%2Fkernel%2Fgit%2Ftorvalds%2Flinux-2.6.git;a=summary

Internet Scanner 7.0 SP2 XPU 7.2.70, 7.2.71
http://www-935.ibm.com/services/jp/index.wss/offerfamily/its/b1331513

IBM,機密を保ったまま暗号化データを処理する技術を開発
http://itpro.nikkeibp.co.jp/article/NEWS/20090626/332629/?ST=security

JVNDB-2009-001330: Apple Mac OS X の QuickDraw Manager における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001330.html

JVNDB-2009-001329: NTP の ntpq における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001329.html

JVNDB-2009-001328: Apple Mac OS X の Launch Services におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001328.html

JVNDB-2009-001327: Apple Mac OS X の xnu (Mach) Kernel における権限昇格の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001327.html

JVNDB-2009-001326: Apple Mac OS X の ICU におけるクロスサイトスクリプティングを誘導される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001326.html

JVNDB-2009-001325: Apple Mac OS X の iChat における SSL を無効にすることによる情報漏えいの脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001325.html

JVNDB-2009-001191: MIT Kerberos の asn1buf_imbed 関数におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001191.html

JVNDB-2009-001190: MIT Kerberos の asn1_decode_generaltime 関数におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001190.html

JVNDB-2009-001189: MIT Kerberos の spnego_gss_accept_sec_context 関数におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001189.html

JVNDB-2009-001188: MIT Kerberos の SPNEGO 実装におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001188.html

JVNDB-2009-001098: Adobe Flash Player における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001098.html

JVNDB-2009-001097: Adobe Flash Player における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001097.html

JVNDB-2009-001096: Adobe Flash Player の 設定マネージャにおける任意の URL に誘導可能な脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001096.html

JVNDB-2008-002221: GNU Enscript の read_special_escape 関数におけるバッファオーバーフローの脆弱性
http://jvndb.jvn.jp/ja/contents/2008/JVNDB-2008-002221.html

JVNDB-2008-001702: libxml2 の xmlParseAttValueComplex 関数におけるヒープベースのバッファオーバーフローの脆弱性
http://jvndb.jvn.jp/ja/contents/2008/JVNDB-2008-001702.html

JVNDB-2008-001657: IPsec-tools の racoon における orphaned ph1(phase 1) を取り除かないことによるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2008/JVNDB-2008-001657.html

JVNDB-2008-001656: IPsec-tools の racoon デーモンにおけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2008/JVNDB-2008-001656.html

JVNDB-2008-001610: Apache の mod_proxy_ftp モジュールにおけるクロスサイトスクリプティングの脆弱
http://jvndb.jvn.jp/ja/contents/2008/JVNDB-2008-001610.html

JVNDB-2005-000055: GNU enscript における複数のバッファオーバーフローの脆弱性
http://jvndb.jvn.jp/ja/contents/2005/JVNDB-2005-000055.html

JVNDB-2005-000054: GNU enscript における不正なファイル名による任意のコマンドを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2005/JVNDB-2005-000054.html

JVNDB-2005-000053: GNU enscript の EPS ファイルのサニタイズ処理における任意のコマンドを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2005/JVNDB-2005-000053.html

How Malware Defends Itself Using TLS Callback Functions
http://isc.sans.org/diary.html?storyid=6655

IBM Rational ClearQuest Bugs Permit Cross-Site Scripting Attacks and Username/Password Disclosure
http://securitytracker.com/alerts/2009/Jun/1022456.html

Motorola Timbuktu PlughNTCommand Named Pipe Stack Overflow Lets Remote Users Execute Arbitrary Code
http://securitytracker.com/alerts/2009/Jun/1022455.html

Net-snmp GETBULK Request Processing Bug Lets Remote Users Deny Service
http://securitytracker.com/alerts/2009/Jun/1022448.html

Unisys Business Information Server Stack Overflow Lets Remote Users Execute Arbitrary Code
http://securitytracker.com/alerts/2009/Jun/1022447.html

MDPro Survey Module 'pollID' Parameter SQL Injection Vulnerability
http://www.securityfocus.com/bid/35495

PHP 'exif_read_data()' JPEG Image Processing Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35440

Multiple Browser Malicious Proxy HTTPS Man In The Middle Vulnerability
http://www.securityfocus.com/bid/35380

Net-SNMP GETBULK Divide By Zero Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/35492

Ruby BigDecimal Library Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35278

Unisys Business Information Server Remote Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/35494

Motorola Timbuktu Pro 'PlughNTCommand' Named Pipe Remote Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/35496

Adobe Reader and Acrobat U3D Model Remote Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/35282

Adobe Shockwave Player Director File Parsing Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35469

OpenSSL 'dtls1_retrieve_buffered_fragment()' DTLS Packet Denial of Service Vulnerability
http://www.securityfocus.com/bid/35417

OpenSSL 'dtls1_retrieve_buffered_fragment()' DTLS Packet Denial of Service Vulnerability
http://www.securityfocus.com/bid/35138

OpenSSL DTLS Packets Multiple Denial of Service Vulnerabilities
http://www.securityfocus.com/bid/35001

OpenSSL 'ChangeCipherSpec' DTLS Packet Denial of Service Vulnerability
http://www.securityfocus.com/bid/35174

WebKit DOM Event Handler Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35271

WebKit JavaScript Garbage Collector Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35309

WebKit CSS 'Attr' Function Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35318

WebKit SVG Animation Elements User After Free Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35334

WebKit SVGList Objects Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/34924

Ghostscript Multiple Input Validation and Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/34184

Ghostscript 'CCITTFax' Decoding Filter Denial of Service Vulnerability
http://www.securityfocus.com/bid/34337

Ghostscript 'gdevpdtb.c' Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34340
Ghostscript 'jbig2dec' JBIG2 Processing Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34445

Samba Format String And Security Bypass Vulnerabilities
http://www.securityfocus.com/bid/35472

Moodle HotPot Module 'report.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/33878

Moodle 'Login As' Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/33617

Moodle Wiki Page Name Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/32714

Moodle Calendar Export Unspecified Information Disclosure Vulnerability
http://www.securityfocus.com/bid/33612

Linux Kernel i915 Driver 'drivers/char/drm/i915_dma.c' Memory Corruption Vulnerability
http://www.securityfocus.com/bid/31792

Moodle Forum Unspecified Cross-Site Request Forgery Vulnerability
http://www.securityfocus.com/bid/33615

Moodle 'spell-check-logic.cgi' Insecure Temporary File Creation Vulnerability
http://www.securityfocus.com/bid/32402

Moodle Log Table HTML Injection Vulnerability
http://www.securityfocus.com/bid/33610

Moodle TeX Filter Remote File Disclosure Vulnerability
http://www.securityfocus.com/bid/34278

Linux Kernel 'FWD-TSN' Chunk Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/33113

Linux Kernel 'net/atm/proc.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/32676

Linux Kernel 'e1000/e1000_main.c' Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/35185

Linux Kernel 'pppol2tp_recvmsg()' Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/29747

Linux Kernel RTL8169 NIC Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/35281

Apache APR-util 'xml/apr_xml.c' Denial of Service Vulnerability
http://www.securityfocus.com/bid/35253

Apache APR-util 'apr_brigade_vprintf' Off By One Vulnerability
http://www.securityfocus.com/bid/35251

IBM WebSphere MQ Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/35170

Apache APR-util 'apr_strmatch_precompile()' Integer Underflow Vulnerability
http://www.securityfocus.com/bid/35221

Apple Safari 'file://' Protocol Handler Information Disclosure and Denial of Service Vulnerability
http://www.securityfocus.com/bid/35482

Apple Safari 'CFCharacterSetInitInlineBuffer()' Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35481

Mozilla Firefox/Thunderbird/SeaMonkey MFSA 2009 -14 through -22 Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/34656

Mozilla Firefox/Thunderbird/SeaMonkey Null Owner Document Arbitrary Code Execution Vulnerability
http://www.securityfocus.com/bid/35383

Mozilla Firefox/Thunderbird/SeaMonkey Multiple JavaScript Engine Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/35372

Mozilla Firefox/Thunderbird/SeaMonkey Multiple Browser Engine Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/35370

Mozilla Firefox/SeaMonkey 'file://' URI Information Disclosure Vulnerability
http://www.securityfocus.com/bid/35391

Mozilla Firefox/Thunderbird/SeaMonkey Double Frame Construction Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35371

Mozilla Firefox and SeaMonkey JavaScript Chrome Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/35373

Mozilla Thudnerbird/Seamonkey Multipart Alternative Message Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35461

Mozilla Firefox/Thunderbird/SeaMonkey 'file://' URI Security Bypass Vulnerability
http://www.securityfocus.com/bid/35386

Mozilla Firefox/Thunderbird/SeaMonkey XUL Scripts Content-Policy Check Security Bypass Vulnerability
http://www.securityfocus.com/bid/35377

Mozilla Firefox and SeaMonkey Address Bar URI Spoofing Vulnerability
http://www.securityfocus.com/bid/35388

Mozilla Firefox 'NPObject' Access Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35360

Cisco ASA Appliance HTML Rewriting Security Bypass Vulnerability
http://www.securityfocus.com/bid/35480

Cisco Video Surveillance Stream Manager Firmware Denial of Service Vulnerability
http://www.securityfocus.com/bid/35479

Pidgin Multiple Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/35067
vGit Parameter Processing Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35338

Cisco Physical Access Gateway Malformed Packet Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/35477

International Components for Unicode Invalid Byte Sequence Handling Vulnerability
http://www.securityfocus.com/bid/34974

GStreamer gst-plugins-good 'gstpngdec.c' PNG Output Buffer Integer Overflow Vulnerability
http://www.securityfocus.com/bid/35172

Cisco Video Surveillance 2500 Series IP Cameras Remote Information Disclosure Vulnerability
http://www.securityfocus.com/bid/35478

FreeBSD Direct Pipe Write Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/35279

F5 Networks FirePass SSL VPN Unspecified Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/35312

Cisco Adaptive Security Appliance Web VPN FTP or CIFS Authentication Form Phishing Vulnerability
http://www.securityfocus.com/bid/35475

Cisco ASA Appliance WebVPN DOM Wrapper Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/35476

'Compress::Raw::Zlib' Perl Module Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35307




+ Apache Tomcat 4.1.40 released
http://tomcat.apache.org/download-41.cgi

+ RHSA-2009:1124-1: Moderate: net-snmp security update
http://rhn.redhat.com/errata/RHSA-2009-1124.html

+ RHSA-2009:1127-1: Critical: kdelibs security update
http://rhn.redhat.com/errata/RHSA-2009-1127.html

+ RHSA-2009:1128-1: Important: kdelibs security update
http://rhn.redhat.com/errata/RHSA-2009-1128.html

+ Solution 262288: Multiple Security Vulnerabilities in Solaris Ghostscript (GS(1)) May lead to Denial of Service (DoS) or Execution of Arbitrary Code
http://sunsolve.sun.com/search/document.do?assetkey=1-66-262288-1
http://secunia.com/advisories/35569/
http://secunia.com/advisories/35559/

[ANNOUNCE] MyJSQLView 3.03 Released
http://myjsqlview.org/

[ANNOUNCE] Request for proposals: Python Conference Argentina 2009 - 1st Local & Spanish Speaking Python Conference
http://ar.pycon.org/2009/conference/proposals/

[ANNOUNCE] Benetl, a free ETL tool for files using postgreSQL, is out in version 2.8
http://en.wikipedia.org/wiki/Extract,_transform,_load

[ANNOUNCE] Contest: PostgreSQL Website Redesign
http://wiki.postgresql.org/wiki/Website_Overhaul_Requirements

[ANNOUNCE] PgDay Athens 2009: Call for Presentations
http://wiki.postgresql.org/wiki/PgDaySanJose2009

[ANNOUNCE] Apache jSPF 0.9.7 released
http://james.apache.org/download.cgi

MySQL Server 5.4.1-beta has been released
http://dev.mysql.com/doc/refman/5.4/en/news-5-4-x.html

Top 500 List Dominated by x86, Linux
http://www.linux.org/news/2009/06/25/0007.html

Linux at heart of Intel's mobile plans, following Nokia deal?
http://www.linux.org/news/2009/06/25/0006.html

Google Chrome 3.0.190.x gets better on Linux, Mac
http://www.linux.org/news/2009/06/25/0005.html

Red Hat profits rise amid rivals' earnings losses
http://www.linux.org/news/2009/06/25/0004.html

Red Hat CEO Calls on Oracle to Keep Java Open
http://www.linux.org/news/2009/06/25/0003.html

Berlin art colleges switch to Linux
http://www.linux.org/news/2009/06/25/0002.html

Should Oracle's Linux strategy be...Ubuntu?
http://www.linux.org/news/2009/06/25/0001.html

RHSA-2009:1122-1: Moderate: icu security update
http://rhn.redhat.com/errata/RHSA-2009-1122.html

RHSA-2009:1123-1: Moderate: gstreamer-plugins-good security update
http://rhn.redhat.com/errata/RHSA-2009-1123.html

RHBA-2009:1129-1: lvm2 bug-fix update
http://rhn.redhat.com/errata/RHBA-2009-1129.html

RHSA-2009:1125-1: Moderate: thunderbird security update
http://rhn.redhat.com/errata/RHSA-2009-1125.html

SSA:2009-176-01: slackware-security seamonkey
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29661

cisco-sa-20090624-gateway: Cisco Physical Access Gateway Denial of Service Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29662

cisco-sa-20090624-video: Vulnerabilities in Cisco Video Surveillance Products
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29663

TWSL2009-002: Trustwave's SpiderLabs Security Advisory
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29664

BASE-SA-06/24/2009: Exploit: Authentication Bypass in BASE version 1.2.4 and prior
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29666

MDVSA-2009:139: libtorrent-rasterbar
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29656

USN-790-1: Cyrus SASL vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29657

USN-791-1: Moodle vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29658

USN-791-2: Moodle vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29659

USN-791-3: Smarty vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29660

ZDI-09-044: Adobe Shockwave Player Director File Parsing Pointer Overwrite Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29665

Webウイルスが猛威、「一度改ざんされたWebサイトは何度も狙われる」
米ウェブセンスが警告、「続けざまに3回改ざんされた大使館サイトも」
http://itpro.nikkeibp.co.jp/article/NEWS/20090625/332625/?ST=security

iDefense Security Advisory 06.25.09: Motorola Timbuktu Pro PlughNTCommand Stack Based Buffer Overflow Vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-06/msg00227.html

[SECURITY] [DSA 1823-1] New samba packages fix several vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-06/msg00228.html

[USN-792-1] OpenSSL vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-06/msg00224.html

iDefense Security Advisory 06.25.09: Unisys Business Information Server Stack Buffer Overflow
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-06/msg00225.html

SQL INJECTION VULNERABILITY --AlumniServer v-1.0.1-->
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-06/msg00226.html

[ MDVSA-2009:140 ] gaim
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-06/msg00223.html

[USN-791-2] Moodle vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-06/msg00220.html

[USN-791-3] Smarty vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-06/msg00222.html

[USN-791-1] Moodle vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-06/msg00221.html

[USN-790-1] Cyrus SASL vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-06/msg00219.html

PUBLIC ADVISORY: 06.25.09: Unisys Business Information Server Stack Buffer Overflow
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=808

Michael J & Farrah F death SPAM
http://isc.sans.org/diary.html?storyid=6646

Special SANSFIRE 2009 Podcast Presentations - John Bambenek
http://isc.sans.org/diary.html?storyid=6643

Special SANSFIRE 2009 Podcast Presentations - Deb Hale
http://isc.sans.org/diary.html?storyid=6640

Ubuntu update for moodle
http://secunia.com/advisories/35570/

Sun Solaris Ghostscript Multiple Vulnerabilities
http://secunia.com/advisories/35569/

Fedora update for git
http://secunia.com/advisories/35568/

Fedora update for rt3
http://secunia.com/advisories/35567/

Fedora update for kernel
http://secunia.com/advisories/35566/

Fedora update for apr-util
http://secunia.com/advisories/35565/

IBM Rational ClearQuest CQWeb Server Two Vulnerabilities
http://secunia.com/advisories/35564/

Openswan ASN.1 Parsing Denial of Service Vulnerabilities
http://secunia.com/advisories/35563/

Slackware update for seamonkey
http://secunia.com/advisories/35561/

Cisco Video Surveillance 2500 Series IP Camera Information Disclosure Vulnerability
http://secunia.com/advisories/35560/

Sun Solaris 9 Ghostscript Multiple Vulnerabilities
http://secunia.com/advisories/35559/

Joomla PinMe! Component File Upload Vulnerability
http://secunia.com/advisories/35551/

Cisco Video Surveillance Services Platform and Integrated Services Platform Denial of Service
http://secunia.com/advisories/35542/

Cisco Physical Access Gateway Denial of Service Vulnerability
http://secunia.com/advisories/35541/

Tribiq CMS Cross-Site Scripting and Local File Inclusion
http://secunia.com/advisories/35535/

Php-I-Board Cross-Site Scripting and Directory Traversal
http://secunia.com/advisories/35532/

Ubuntu update for moodle
http://secunia.com/advisories/35531/

Ubuntu update for smarty
http://secunia.com/advisories/35530/

Ubuntu update for cyrus-sasl2
http://secunia.com/advisories/35514/

Tree BBS Cross-Site Scripting Vulnerability
http://secunia.com/advisories/35466/

Mozilla Firefox/SeaMonkey 'file://' URI Information Disclosure Vulnerability
http://www.securityfocus.com/bid/35391

Mozilla Firefox/Thunderbird/SeaMonkey Multiple JavaScript Engine Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/35372

Mozilla Firefox/Thunderbird/SeaMonkey Double Frame Construction Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35371

Multiple Browser Malicious Proxy HTTPS Man In The Middle Vulnerability
http://www.securityfocus.com/bid/35380

Mozilla Firefox/Thunderbird/SeaMonkey MFSA 2009 -14 through -22 Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/34656

Mozilla Firefox/Thunderbird/SeaMonkey Null Owner Document Arbitrary Code Execution Vulnerability
http://www.securityfocus.com/bid/35383

Mozilla Firefox and SeaMonkey JavaScript Chrome Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/35373

Mozilla Thudnerbird/Seamonkey Multipart Alternative Message Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35461

Mozilla Firefox/Thunderbird/SeaMonkey Multiple Browser Engine Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/35370

Ghostscript 'gdevpdtb.c' Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34340

Ghostscript Multiple Input Validation and Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/34184

Ghostscript 'CCITTFax' Decoding Filter Denial of Service Vulnerability
http://www.securityfocus.com/bid/34337

Ghostscript 'jbig2dec' JBIG2 Processing Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34445

Cisco Video Surveillance 2500 IP Camera Information Disclosure Issue
http://www.vupen.com/english/advisories/2009/1681

Cisco Video Surveillance SP/ISP Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2009/1680

Cisco Physical Access Gateway Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2009/1679

RT "ShowConfigTab" Right RT at a Glance Edition Vulnerability
http://www.vupen.com/english/advisories/2009/1676

0 件のコメント:

コメントを投稿