2009年7月30日木曜日

30日 木曜日、友引

[ANNOUNCE] Apache Tika 0.4 Released
http://www.apache.org/dist/lucene/tika/CHANGES-0.4.txt




+ HPSBUX02421 SSRT090047 rev.1 - HP-UX Running Kerberos, Remote Denial of Service (DoS), Execution of Arbitrary Code
http://www13.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c01717795-1

+ Cisco IOS Software Border Gateway Protocol 4-Byte Autonomous System Number Vulnerabilities
http://www.cisco.com/en/US/products/products_security_advisory09186a0080aea4c9.shtml
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00238.html
http://securitytracker.com/alerts/2009/Jul/1022619.html
http://www.securityfocus.com/bid/35862
http://www.securityfocus.com/bid/35860

+ Solution 259148: Security Vulnerability in the Solaris Simple Authentication and Security Layer (SASL) Library (see libsasl(3LIB)) Routine sasl_encode64(3SASL) may Allow Unprivileged Users to Crash Applications Using this Function
http://sunsolve.sun.com/search/document.do?assetkey=1-66-259148-1

+ RHSA-2009:1181-1: Important: bind security and bug fix update
http://rhn.redhat.com/errata/RHSA-2009-1181.html
http://rhn.redhat.com/errata/RHSA-2009-1180.html

+ VMware Multiple Products SVGA II FIFO 3D Capabilities Code Execution Vulnerability
http://www.securityfocus.com/bid/35866

+ PHP Interruptions and Calltime Arbitrary Code Execution Vulnerability
http://www.securityfocus.com/bid/35867

[ANNOUNCE] Apache Tuscany/SCA 2.0 M3 released
http://tuscany.apache.org/sca-java-releases.html

Apache 2.2.12 がリリースされました
http://www.apache.jp/

Kernel release: 2.6.30.4-rc1
http://www.linux.org/news/2009/07/28/0007.html

Navicat PostgreSQL GUI for Windows ver. 8.2.11 is now available
http://www.postgresql.org/about/news.1121

ウイルスバスターコーポレートエディション・Trend Microビジネスセキュリティにおける修正プログラム公開のお知らせ
http://www.trendmicro.co.jp/support/news.asp?id=1283

ServerProtect for Linux 3.0 用 Service Pack 1 Patch 1 公開のお知らせ
http://www.trendmicro.co.jp/support/news.asp?id=1282

VMware ESX and ESXi Comparison
http://kb.vmware.com/selfservice/microsites/microsite.do?cmd=displayKC&docType=kc&externalId=1006543&sliceId=1&docTypeID=DT_KB_1_1

Debian : New Linux 2.6.24 packages fix several vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29933

Debian : New Linux 2.6.26 packages fix several vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29934

Debian : New kvm packages fix denial of service
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29935

Debian : New bind9 packages fix denial of service
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29936

FreeBSD : bind
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29938

Mandriva : pidgin
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29921

Mandriva : perl-Compress-Raw-Zlib
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29922

Mandriva : pango
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29923

Mandriva : git
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29924

Mandriva : ruby
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29925

Mandriva : squid
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29926

Mandriva : mysql
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29927

Mandriva : compface
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29928

Ubuntu Security Notice : Bind vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29930

Cisco : Cisco Active Template Library (ATL) Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29937

Core Security Technologies : Firebird SQL op_connect_request main listener shutdown vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=29940

DNSサーバー「BIND9」にぜい弱性,JPRSが緊急パッチを呼びかけ
http://itpro.nikkeibp.co.jp/article/NEWS/20090729/334734/?ST=security

過去に類を見ないほど“怖い”脆弱性、MSがパッチを緊急リリース
開発ツールのライブラリーに“穴”、他社製品にも影響、Webアクセスだけで被害
http://itpro.nikkeibp.co.jp/article/NEWS/20090729/334737/?ST=security

米国版「2ちゃん」をAT&Tが一時遮断,「DoS攻撃を防止するため」と説明
http://itpro.nikkeibp.co.jp/article/NEWS/20090729/334532/?ST=security

「偽ソフト」の新手口、実行中のプログラムを勝手に終了
システムファイル以外を実行不能に、「実行したければ本製品の購入を」
http://itpro.nikkeibp.co.jp/article/NEWS/20090729/334700/?ST=security

JPCERT/CC Alert 2009-07-29
Microsoft ATL を使用した複数製品の脆弱性に関する注意喚起
Vulnerabilities in Microsoft ATL affect Multiple Products
http://www.jpcert.or.jp/at/2009/at090014.txt

JPCERT/CC WEEKLY REPORT 2009-07-29
http://www.jpcert.or.jp/wr/2009/wr092901.html

JVNVU#725188 ISC BIND 9 におけるサービス運用妨害 (DoS) の脆弱性
http://jvn.jp/cert/JVNVU725188/index.html

VNTA09-209A Microsoft Windows、Internet Explorer および Active Template Library (ATL) における脆弱性
http://jvn.jp/cert/JVNTA09-209A/index.html

JVN#59748723 MySQL Connector/J における SQL インジェクションの脆弱性
http://jvn.jp/jp/JVN59748723/index.html

JVNDB-2009-001830 複数の Mozilla 製品におけるポリシーチェックの不備によるアクセス制限を回避される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001830.html

JVNDB-2009-001829 Mozilla Firefox/SeaMonkey におけるロケーションバーを偽装される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001829.html

JVNDB-2009-001828 Mozilla Firefox における不正なプリンシパルの処理に関するアクセス制限を回避される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001828.html

JVNDB-2009-001827 Mozilla Firefox/SeaMonkey における任意の Cookie を読まれる脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001827.html

JVNDB-2009-001826 複数の Mozilla 製品における CONNECT レスポンスに関する任意の Web スクリプトを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001826.html

JVNDB-2009-001825 複数の Mozilla 製品における任意の Web スクリプトを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001825.html

[ MDVSA-2009:181 ] bind
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00248.html

Pre-Beta Invite , New (Free) Anti-Virus Software
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00237.html

Cisco Security Advisory: Cisco IOS Software Border Gateway Protocol 4-Byte Autonomous System Num
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00238.html

[ MDVSA-2009:180 ] compface
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00247.html

[ MDVSA-2009:179 ] mysql
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00245.html

[ MDVSA-2009:178 ] squid
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00244.html

[ MDVSA-2009:177 ] ruby
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00243.html

[ MDVSA-2009:176 ] git
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00242.html

[ MDVSA-2009:175 ] pango
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00241.html

[ MDVSA-2009:174 ] perl-Compress-Raw-Zlib
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00240.html

[SECURITY] [DSA 1847-1] New bind9 packages fix denial of service
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00239.html

[USN-808-1] Bind vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00235.html

[SECURITY] [DSA 1846-1] New kvm packages fix denial of service
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00234.html

[SECURITY] [DSA 1845-1] New Linux 2.6.26 packages fix several vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00233.html

[ MDVSA-2009:173 ] pidgin
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00231.html

[SECURITY] [DSA 1844-1] New Linux 2.6.24 packages fix several vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00232.html

FreeBSD Security Advisory FreeBSD-SA-09:12.bind
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00230.html

[ MDVSA-2009:172 ] dhcp
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00236.html

[ MDVSA-2009:170 ] initscripts
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00229.html

[ MDVSA-2009:171 ] pulseaudio
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-07/msg00228.html

Increasing number of attacks on security sites
http://isc.sans.org/diary.html?storyid=6883

BIND 9 DoS attacks in the wild
http://isc.sans.org/diary.html?storyid=6886

RHSA-2009:1179-2: Important: bind security update
http://rhn.redhat.com/errata/RHSA-2009-1179.html

Fedora update for kdelibs
http://secunia.com/advisories/36062/

Debian update for bind9
http://secunia.com/advisories/36061/

Ubuntu update for bind9
http://secunia.com/advisories/36060/

Fedora update for bugzilla
http://secunia.com/advisories/36058/

Fedora update for kdelibs3
http://secunia.com/advisories/36057/

NetBSD update for BIND
http://secunia.com/advisories/36056/

Debian update for kvm
http://secunia.com/advisories/36055/

Debian update for linux-2.6
http://secunia.com/advisories/36054/

Cisco Unity Active Template Library Security Bypass Vulnerability
http://secunia.com/advisories/36052/

Debian update for linux-2.6.24
http://secunia.com/advisories/36051/

Adobe Shockwave Player Active Template Library Vulnerabilities
http://secunia.com/advisories/36049/

Slackware update for mozilla-firefox
http://secunia.com/advisories/36048/

Debian update for squid3
http://secunia.com/advisories/36047/

Ubuntu update for kernel
http://secunia.com/advisories/36045/

NetBSD SHA2 Implementation Buffer Overflow Vulnerability
http://secunia.com/advisories/36044/

NetBSD update for ISC DHCP
http://secunia.com/advisories/36043/

ISC BIND Dynamic Update Denial of Service Vulnerability
http://secunia.com/advisories/36038/

Ultrize TimeSheet "config[include_dir]" File Inclusion Vulnerability
http://secunia.com/advisories/36033/

TinyBrowser Cross-Site Scripting and Cross-Site Request Forgery
http://secunia.com/advisories/36031/

Firebird "op_connect_request" Packet Denial of Service
http://secunia.com/advisories/36026/

PaoLink/PaoBacheca/PaoLiber Authentication Bypass Vulnerability
http://secunia.com/advisories/36023/

PunBB Reputation Plugin "poster" SQL Injection Vulnerability
http://secunia.com/advisories/36020/

MySQL Connector/J SQL Injection Vulnerability
http://secunia.com/advisories/35995/

HP ProLiant Onboard Administrator Powered By LO100i Denial of Service
http://secunia.com/advisories/35990/

Linux Kernel eCryptfs Two Vulnerabilities
http://secunia.com/advisories/35985/

FreeBSD update for bind
http://secunia.com/advisories/35981/

Tukanas Classifieds Script "b" SQL Injection Vulnerability
http://secunia.com/advisories/35977/

Joomla UIajaxIM Component Script Insertion Vulnerability
http://secunia.com/advisories/35968/

PHP Open Classifieds Script Cross-Site Scripting Vulnerabilities
http://secunia.com/advisories/35929/

Ajax IM Script Insertion Vulnerability
http://secunia.com/advisories/35927/

Cisco IOS 4-Byte ASN Support Bugs in Processing BGP Updates Let Remote Users Deny Service
http://www.securitytracker.com/id?1022619

HP ProLiant Server Lights-Out Bug Lets Remote Users Deny Service
http://www.securitytracker.com/id?1022617

BIND Dynamic Update Bug in dns_db_findrdataset() Lets Remote Users Deny Service
http://www.securitytracker.com/id?1022613

Asterisk RTP Text Frames Handling Remote Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2009/2067

Adobe Shockwave Player Active Template Library Vulnerability
http://www.vupen.com/english/advisories/2009/2066

Adobe Flash Player Active Template Library Code Execution Vulnerability
http://www.vupen.com/english/advisories/2009/2065

Cisco Unity Active Template Library Code Execution Vulnerability
http://www.vupen.com/english/advisories/2009/2064

Linux Kernel eCryptfs Tag 3 and 11 Packets Buffer Overflow Vulnerabilities
http://www.vupen.com/english/advisories/2009/2041

ISC BIND Dynamic Update Message Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2009/2036

OpenEXR Multiple Integer Overflow and Memory Corruption Vulnerabilities
http://www.vupen.com/english/advisories/2009/2035

Microsoft Visual Studio ATL Memory Corruption Vulnerabilities (MS09-035)
http://www.vupen.com/english/advisories/2009/2034

Microsoft Internet Explorer Memory Corruption Vulnerabilities (MS09-034)
http://www.vupen.com/english/advisories/2009/2033

IXXO Cart! "parent" Parameter Remote SQL Injection Vulnerability
http://www.vupen.com/english/advisories/2009/2032

Allomani Movies and Clips "username" Remote SQL Injection Vulnerability
http://www.vupen.com/english/advisories/2009/2031

Allomani Songs and Clips "username" Remote SQL Injection Vulnerability
http://www.vupen.com/english/advisories/2009/2030

Allomani Mobile "username" Remote SQL Injection Vulnerability
http://www.vupen.com/english/advisories/2009/2029

Inout Adserver "id" Parameter Remote SQL Injection Vulnerability
http://www.vupen.com/english/advisories/2009/2028

Super Mod System "s" Parameter Remote SQL Injection Vulnerability
http://www.vupen.com/english/advisories/2009/2027

VS PANEL "Cat_ID" Parameter Remote SQL Injection Vulnerability
http://www.vupen.com/english/advisories/2009/2026

iWiccle Local File Inclusion and Remote SQL Injection Vulnerabilities
http://www.vupen.com/english/advisories/2009/2025

URA "cat" Parameter Handling Remote SQL Injection Vulnerability
http://www.vupen.com/english/advisories/2009/2024

Garage Sales "key" Parameter SQL Injection and Cross Site Scripting
http://www.vupen.com/english/advisories/2009/2023

Sun Solaris Auditing Extended File Attributes Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2009/2022

Cisco Wireless Products Configuration Modification and DoS Vulnerabilities
http://www.vupen.com/english/advisories/2009/2021

VLC Media Player "real_get_rdt_chunk_header() Integer Underflow Issue
http://www.vupen.com/english/advisories/2009/2020

MPlayer RTSP "real_get_rdt_chunk()" Integer Underflow Vulnerability
http://www.vupen.com/english/advisories/2009/2019

VMware Multiple Products SVGA II FIFO 3D Capabilities Code Execution Vulnerability
http://www.securityfocus.com/bid/35866

WordPress Comment Author URI Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/35755

IBM Proventia RAR/ZIP/CAB File Scan Evasion Vulnerability
http://www.securityfocus.com/bid/34345

ISC BIND 9 Remote Dynamic Update Message Denial of Service Vulnerability
http://www.securityfocus.com/bid/35848

Multiple Vendor Browser 'HTMLSelectElement' Denial of Service Vulnerability
http://www.securityfocus.com/bid/35446

Compface '.xbm' File Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/35863

Django URL Information Disclosure Vulnerability
http://www.securityfocus.com/bid/35859

Drupal Bibliography Module 'title' HTML Injection Vulnerability
http://www.securityfocus.com/bid/35865

Sun Ray Server Multiple Vulnerabilities
http://www.securityfocus.com/bid/35713

Linux Kernel 'tun_chr_pool()' NULL Pointer Dereference Vulnerability
http://www.securityfocus.com/bid/35724

Sun Ray Server Software 'utdmsession' Command Security Bypass Vulnerability
http://www.securityfocus.com/bid/35711

Sun Solaris IP Filter (ipf(5)) Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/35715

Sun Solaris SCTP Packet Processing Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/35712

Sun Solaris NFS Version 4 Kernel Module Local Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35714

eCryptfs 'parse_tag_3_packet()' Packet Heap Based Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/35850

Matterdaddy Market 'index.php' Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/35856

TinyBrowser Multiple Vulnerabilities
http://www.securityfocus.com/bid/35855

Joomla! Permis ('com_groups') Component 'id' Parameter SQL Injection Vulnerability
http://www.securityfocus.com/bid/35849

Firebird 'op_connect_request' Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35842

Mozilla Firefox 'XPCCrossOriginWrapper' Multiple Cross Domain Scripting Vulnerabilities
http://www.securityfocus.com/bid/35773

Mozilla Firefox and Thunderbird Remote Integer Overflow Vulnerability
http://www.securityfocus.com/bid/35769

Mozilla Firefox 'watch()' and ' __defineSetter__ ()' Functions Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35772

Mozilla Firefox Flash Player Unloading Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35767

Mozilla Firefox and Thunderbird RDF File Handling Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35775

Mozilla Firefox/Thunderbird Double Frame Construction Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/35770

Mozilla Firefox 'setTimeout()' Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35766

Mozilla Firefox and Thunderbird Multiple Remote Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/35765

Squid Multiple Remote Denial of Service Vulnerabilities
http://www.securityfocus.com/bid/35812

Pango 'pango_glyph_string_set_size()' Integer Overflow Vulnerability
http://www.securityfocus.com/bid/34870

Ruby BigDecimal Library Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35278

Joomla! UIajaxIM Component Arbitrary Script Injection Vulnerability
http://www.securityfocus.com/bid/35798

Git Parameter Processing Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35338

'Compress::Raw::Zlib' Perl Module Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35307

PulseAudio setuid Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/35721

Pidgin Multiple Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/35067

PHP 'exif_read_data()' JPEG Image Processing Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35440

Multiple Drupal Modules Date Wizard HTML Injection Vulnerability
http://www.securityfocus.com/bid/35790

JasPer JPC_QCX_GetCompParm Function JP2 File Handling Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/24052

JasPer 1.900.1 Multiple Vulnerabilities
http://www.securityfocus.com/bid/31470

Little CMS Memory Leak and Multiple Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/34185

Intel System Management Mode Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/35861

Little CMS Monochrome Profiles Null Pointer Dereference Denial of Service Vulnerability
http://www.securityfocus.com/bid/34411

MySQL Connector/J Unicode Character String SQL Injection Vulnerability
http://www.securityfocus.com/bid/35858

MySQL 'sql_parse.cc' Multiple Format String Vulnerabilities
http://www.securityfocus.com/bid/35609

Mandriva 'initscripts' Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/35854

NetBSD SHA2 Implementation Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/35853

ISC DHCP Server Host Definition Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35669

University of Washington IMAP 'smtp.c' Null Pointer Dereference Denial of Service Vulnerability
http://www.securityfocus.com/bid/32280

University of Washington IMAP c-client Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/32958

University of Washington IMAP 'tmail' and 'dmail' Local Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/32072

Apache 'mod_proxy' Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35565

Apache 'mod_deflate' Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35623

Cisco IOS Malformed BGP Anonymous System Path Denial of Service Vulnerability
http://www.securityfocus.com/bid/35862

Cisco IOS Malformed Border Gateway Protocol Update Denial of Service Vulnerability
http://www.securityfocus.com/bid/35860

Linux Kernel 'PER_CLEAR_ON_SETID' Incomplete Personality List Access Validation Weakness
http://www.securityfocus.com/bid/35647

Linux Kernel RTL8169 NIC Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/35281

Linux Kernel 'kvm_arch_vcpu_ioctl_set_sregs()' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/35529

Linux Kernel 'e1000/e1000_main.c' Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/35185

Linux Kernel eCryptfs 'parse_tag_11()' Remote Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/35851

Linux Kernel NFS 'MAY_EXEC' Security Bypass Vulnerability
http://www.securityfocus.com/bid/34934

Linux Kernel 'splice(2)' Double Lock Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/35143

Linux Kernel CIFS 'decode_unicode_ssetup()' Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34612

Linux Kernel '/proc/iomem' Sparc64 Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/35415

Citrix XenCenterWeb Multiple Input Validation Vulnerabilities
http://www.securityfocus.com/bid/35592

HP ProLiant Onboard Administrator Powered by LO100i Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35852

WebKit Numeric Character References Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35607

WebKit SVGList Objects Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/34924

WebKit JavaScript Garbage Collector Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35309

WebKit CSS 'Attr' Function Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35318

WebKit DOM Event Handler Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35271

phpArcadeScript 'id' Parameter SQL Injection Vulnerability
http://www.securityfocus.com/bid/35843

LibTIFF 'LZWDecodeCompat()' Remote Buffer Underflow Vulnerability
http://www.securityfocus.com/bid/35451

LibTIFF Multiple Remote Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/35652

Fedora SSSD BE Database No Password Authentication Bypass Vulnerability
http://www.securityfocus.com/bid/35868

PHP Interruptions and Calltime Arbitrary Code Execution Vulnerability
http://www.securityfocus.com/bid/35867

0 件のコメント:

コメントを投稿