2010年8月18日水曜日

18日 水曜日、先負

+ Linux Kernel 64bit Maximum Stack Size Denial of Service Vulnerability
http://secunia.com/advisories/41002/

+ Linux Kernel Userspace Stack Growth Vulnerability
http://secunia.com/advisories/40965/

- Microsoft Windows 'win32k!GreStretchBltInternal()' Local Denial Of Service Vulnerability
http://www.securityfocus.com/bid/42496

- Microsoft Windows Kernel 'xxxRealDrawMenuItem()' Function Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/42497

- Microsoft Windows SMB2 '_Smb2ValidateProviderCallback()' Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36299

[SECURITY] [DSA 2092-1] New lxr-cvs packages fix cross-site scripting
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-08/msg00202.html

Geolocation spoofing and other UI woes
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-08/msg00201.html

[USN-973-1] KOffice vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-08/msg00200.html

[USN-972-1] FreeType vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-08/msg00203.html

Triologic Media Player 8 (.m3u) Local Universal Unicode Buffer Overflow [SEH]
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-08/msg00199.html

CVE-2010-2234: Apache CouchDB Cross Site Request Forgery Attack
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-08/msg00198.html

JVNVU#840249 Wind River Systems VxWorks の認証 API (loginLib) における問題
http://jvn.jp/cert/JVNVU840249/index.html

JVNDB-2010-001834 PHP の addcslashes 関数における重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001834.html

JVNDB-2010-001833 PHP における重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001833.html

JVNDB-2010-001832 PHP における重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001832.html

JVNDB-2010-001831 PHP の Zend Engine における重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001831.html

JVNDB-2010-001830 PHP の sysvshm 拡張における任意のメモリアドレスを書かれる脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001830.html

JVNDB-2010-001730 libpng に脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001730.html

JVNDB-2010-001726 Linux kernel の gfs2 におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001726.html

Do you like Bing? So do the RogueAV guys!
http://isc.sans.edu/diary.html?storyid=9418

Independent Researcher : Triologic Media Player 8 (.m3u) Local Universal Unicode Buffer Overflow [SEH]
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33397

Independent Researcher : Apache CouchDB Cross Site Request Forgery Attack
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33398

Blue Moon : Insecure secure cookie in Tornado
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33428

Dan Rosenberg : Coda Filesystem Kernel Memory Disclosure
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33400

High-Tech Bridge SA : XSS vulnerability in CMSimple
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33425

High-Tech Bridge SA : HTB22561: XSRF (CSRF) in CMSimple
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33426

High-Tech Bridge SA : HTB22562: XSS vulnerability in pimcore
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33449

Independent Researcher : Xilisoft Video Converter Wizard 3 ogg file processing DoS
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33424

Mandriva : [MDVSA-2010:151] libmikmod
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33407

Mandriva : [MDVSA-2010:152] apache
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33408

Mandriva : [MDVSA-2010:153] apache
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33409

Mandriva : [MDVSA-2010:154] cabextract
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33410

Salvatore "drosophila" Fresta : Jgrid 1.0 Joomla Component Local File Inclusion Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33427

Ubuntu Security Notice : [USN-971-1] OpenJDK vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33403

AmnPardaz Security Research Team : ACollab Multiple Vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33431

Glafkos Charalambous : Easy FTP Server v1.7.0.11 DELE, STOR, RNFR, RMD, XRMD Command Buffer Overflow
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33429

Glafkos Charalambous : Easy FTP Server v1.7.0.11 DELE, STOR, RNFR, RMD, XRMD Command Buffer Overflow
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33430

Mandriva : [MDVSA-2010:150] libsndfile
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33406

High-Tech Bridge SA : HTB22552: Local File Inclusion in CMS Source
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33435

High-Tech Bridge SA : HTB22554: XSS vulnerability in eazyCMS
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33436

High-Tech Bridge SA : HTB22547: SQL injection vulnerability in CMS Source
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33437

High-Tech Bridge SA : HTB22543: SQL injection vulnerability in i-Web Suite
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33438

High-Tech Bridge SA : HTB22544: XSS vulnerability in i-Web Suite
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33439

High-Tech Bridge SA : HTB22542: XSS vulnerability in Edit-X CMS
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33440

High-Tech Bridge SA : HTB22536: XSS vulnerability in Onyx
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33441

High-Tech Bridge SA : HTB22540: SQL injection vulnerability in SyntaxCMS
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33442

High-Tech Bridge SA : HTB22534: XSS vulnerability in Mystic
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33443

High-Tech Bridge SA : HTB22533: XSRF (CSRF) in Mystic
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33444

High-Tech Bridge SA : HTB22541: Directory Traversal in SoftX FTP Client
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33450

High-Tech Bridge SA : HTB22551: XSS vulnerability in CMS Source
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33451

iDEFENSE : Microsoft Office RTF Parsing Engine Memory Corruption Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33432

Independent Researcher : Windows Kerberos Authentication Bypass
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33399

MajorSecurity : [MajorSecurity SA-080] WordPress 3.0.1 - Cross Site Scripting Issue
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33434

Secunia : SWFTools Two Integer Overflow Vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33433

Cisco : Cisco IOS Software TCP Denial of Service Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33445

Debian : [DSA 2091-1] New squirrelmail packages fix cross-site request forgery
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33447

Mandriva : [MDVSA-2010:148] pidgin
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33404

Mandriva : [MDVSA-2010:149] freetype2
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33405

Secunia : Opera "Download" Dialog File Execution Security Issue
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33448

Check Point Software Technologies : Microsoft Office Word HTML Linked Objects Memory Corruption Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33462

Cisco : SQL Injection Vulnerability in Cisco Wireless Control System
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33461

MustLive : SQL Injection vulnerability in CMS WebManager-Pro
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33446

ProCheckUp : Unauthenticated File Retrieval (traversal) within ColdFusion administration console
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33466

Secunia : glpng PNG Processing Two Integer Overflow Vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33460

Ubuntu Security Notice : [USN-970-1] GnuPG2 vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33402

VUPEN Security : Microsoft Internet Explorer Table Element Use-after-free Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33463

VUPEN Security : Microsoft Internet Explorer "CIframeElement" Object Use-after-free Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33464

VUPEN Security : Microsoft Internet Explorer "OnPropertyChange_Src()" Use-after-free Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33465

VUPEN Security : Microsoft Internet Explorer "boundElements" Property Use-after-free Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33467

ZDI : ZDI-10-150: Microsoft Office Word Remote Code Execution Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33418

ZDI : ZDI-10-151: SAP Crystal Reports 2008 GIOP Integer Overflow Remote Code Execution Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33419

ZDI : ZDI-10-151: Microsoft Office Word 2007 plcffldMom Parsing Remote Code Execution Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33420

ZDI : ZDI-10-152: Apple WebKit RTL LineBox Overflow Remote Code Execution Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33421

ZDI : ZDI-10-153: Apple Webkit SVG Floating Text Element Remote Code Execution Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33422

ZDI : ZDI-10-154: Apple Webkit Button First-Letter Style Rendering Remote Code Execution Vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=33423

123 Flash Chat Information Disclosure Security Issue
http://secunia.com/advisories/41028/

123 Flash Chat Multiple Vulnerabilities
http://secunia.com/advisories/40994/

Fedora update for java-1.6.0-openjdk
http://secunia.com/advisories/41006/

Ubuntu update for openjdk-6
http://secunia.com/advisories/40991/

i-Web Suite Multiple Vulnerabilities
http://secunia.com/advisories/40968/

Apache Geronimo Multiple Vulnerabilities
http://secunia.com/advisories/41025/

Apache Geronimo Information Disclosure and Denial of Service
http://secunia.com/advisories/41021/

Ezyweb Multiple Vulnerabilities
http://secunia.com/advisories/40957/

Explorer Suite CFF Explorer Name Identifier Buffer Overflow Vulnerability
http://secunia.com/advisories/40974/

CMSQLite Arbitrary File Upload and Security Bypass Vulnerabilities
http://secunia.com/advisories/40972/

SUSE Update for Multiple Packages
http://secunia.com/advisories/41011/

Pimcore Cross-Site Request Forgery Vulnerability
http://secunia.com/advisories/40990/

CMSimple Cross-Site Request Forgery Vulnerability
http://secunia.com/advisories/40989/

Linux Kernel 64bit Maximum Stack Size Denial of Service Vulnerability
http://secunia.com/advisories/41002/

Linux Kernel Userspace Stack Growth Vulnerability
http://secunia.com/advisories/40965/

Fedora update for mipv6-daemon
http://secunia.com/advisories/41004/

Fedora update for ghostscript
http://secunia.com/advisories/40996/

MUSE Playlist Processing Buffer Overflow Vulnerabilities
http://secunia.com/advisories/40993/

GrowSmartBusiness Small Business Success Index Widget Security Issue
http://secunia.com/advisories/40995/

Liferay Portal JSON Information Disclosure Security Issue
http://secunia.com/advisories/40976/

Linux-PAM pam_xauth PAM Module Privilege Escalation Security Issue
http://secunia.com/advisories/40978/

Edit-X CMS "search_text" Cross-Site Scripting Vulnerability
http://secunia.com/advisories/40977/

Apache Geronimo Multiple Vulnerabilities
http://secunia.com/advisories/41016/

Joomla onGallery Component "id" SQL Injection Vulnerability
http://secunia.com/advisories/41017/

Apache CXF XML Document Type Declaration Processing Vulnerability
http://secunia.com/advisories/40969/

Palm webOS Unspecified Flaws Have Unspecified Impact
http://securitytracker.com/alerts/2010/Aug/1024343.html

Fedora Security Update Fixes iputils ping Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2010/2104

Fedora Security Update Fixes Ghostscript Memory Corruption Vulnerability
http://www.vupen.com/english/advisories/2010/2103

Fedora Security Update Fixes MIPv6 Spoofing and Buffer Overflow
http://www.vupen.com/english/advisories/2010/2102

Mandriva Security Update Fixes Cabextract Code Execution and DoS
http://www.vupen.com/english/advisories/2010/2101

Mandriva Security Update Fixes Apache Information Disclosure and DoS
http://www.vupen.com/english/advisories/2010/2100

Mandriva Security Update Fixes libmikmod Heap Overflow Vulnerabilities
http://www.vupen.com/english/advisories/2010/2099

SuSE Security Update Fixes Multiple Code Execution Vulnerabilities
http://www.vupen.com/english/advisories/2010/2098

Microsoft SRV2.SYS SMB Negotiate ProcessID Function Table Dereference (MS09-050)
http://www.exploit-db.com/exploits/14674/

A-PDF WAV to MP3 Converter 1.0.0 (.m3u) Stack Buffer Overflow
http://www.exploit-db.com/exploits/14676/

Triologic Media Player 8 (.m3u) Local Universal Unicode Buffer Overflow (SEH)
http://www.exploit-db.com/exploits/14673/

Brazip 9.0 (.zip File) Buffer Overflow (SEH)
http://www.exploit-db.com/exploits/14671/

Microsoft Windows nt!SeObjectCreateSaclAccessBits() Missed ACE Bounds Checks (MS10-047)
http://www.exploit-db.com/exploits/14670/

Microsoft Windows win32k!GreStretchBltInternal() Does Not Handle src == dest
http://www.exploit-db.com/exploits/14669/

Microsoft Windows win32k!xxxRealDrawMenuItem() Missing HBITMAP Bounds Checks
http://www.exploit-db.com/exploits/14668/

Microsoft Windows KTM Invalid Free with Reused Transaction GUID (MS10-047)
http://www.exploit-db.com/exploits/14667/

Microsoft Windows nt!NtCreateThread Race Condition with Invalid Code Segment (MS10-047)
http://www.exploit-db.com/exploits/14666/

LXR Cross Referencer Version Prior to 0.9.7 Multiple Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/41193

LXR Cross Referencer 'title' Parameter Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/39865

LXR Cross Referencer Multiple Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/37612

GnuPG 'GPGSM Tool' Certificate Importing Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/41945

strongSwan IETF Attribute or Identification Parsing Multiple Remote Code Execution Vulnerabilities
http://www.securityfocus.com/bid/42444

KVIrc '\r' Carriage Return in DCC Handshake Remote Command Execution Vulnerability
http://www.securityfocus.com/bid/42026

Ghostscript PostScript Identifier Remote Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/40103

WebKit HTML Tables Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40671

WebKit 'WebCore::toAlphabetic()' Memory Corruption Vulnerability
http://www.securityfocus.com/bid/41575

WebKit Geolocation Events Use After Free Memory Corruption Vulnerability
http://www.securityfocus.com/bid/41573

WebKit IBM1147 Character Set Text Transform Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40653

WebKit Fonts Handling Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40670

WebKit HTML Document Subtrees Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40667

Webkit 'textarea' Element Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/40726

Adobe Acrobat and Reader APSB10-17 Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/42238

WebKit DOM Range Objects Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40663

Microsoft Windows 'win32k!GreStretchBltInternal()' Local Denial Of Service Vulnerability
http://www.securityfocus.com/bid/42496

WebKit 'Node.normalize' Method Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40665

Xpdf JBIG2 Processing Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/34568

Xpdf Multiple Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/36703

CUPS and Xpdf JBIG2 Symbol Dictionary Processing Heap Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34791

Linux Kernel XDR Implementation Local Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/42249

Linux Kernel CIFS 'CIFSSMBWrite()' Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/42242

Linux Kernel NFS Automount 'symlinks' Denial of Service Vulnerability
http://www.securityfocus.com/bid/39044

Linux Kernel VM/VFS 'invalidatepage()' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/39569

Linux Kernel 'drivers/firewire/ohci.c' NULL Pointer Dereference Denial of Service Vulnerability
http://www.securityfocus.com/bid/37339

Linux Kernel Bluetooth Sysfs File Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/38898

Linux Kernel 'release_one_tty()' Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/39480

Linux Kernel USB interface Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/39042

Linux Kernel 'dvb_net_ule()' Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/38479

Linux Kernel 'sctp_process_unk_param()' Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/39794

Linux Kernel 'knfsd' 'current->mm' Modifier Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/40377

Linux Kernel 'find_keyring_by_name()' Local Memory Corruption Vulnerability
http://www.securityfocus.com/bid/39719

WebKit Keyboard Focus Cross Domain Information Disclosure Vulnerability
http://www.securityfocus.com/bid/40698

WebKit 'execCommand()' Function Clipboard Overwrite Security Weakness
http://www.securityfocus.com/bid/40754

WebKit 'frame.src' Validation Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/40710

WebKit CSS-Styled HTML Handling Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40672

WebKit SVG Image Pattern Cross Domain Security Bypass Vulnerability
http://www.securityfocus.com/bid/40714

WebKit 'history.replaceState' Cross-Origin Information Disclosure Vulnerability
http://www.securityfocus.com/bid/41051

WebKit Custom Vertical Positioning Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40659

Microsoft Windows Kernel 'xxxRealDrawMenuItem()' Function Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/42497

Ghostscript PostScript Infinite Recursion Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/40107

WebKit HTML Button Use After Free Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40644

Apache CXF XML DTD Processing Security Vulnerability
http://www.securityfocus.com/bid/42492

FreeType Stack Buffer Overflow and Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/42285

FreeType Compact Font Format (CFF) Multiple Stack Based Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/42241

Triologic Media Player '.m3u' File Heap Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/33221

Expat UTF-8 Character XML Parsing Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/36097

squidGuard Multiple Security Bypass Vulnerabilities
http://www.securityfocus.com/bid/36800

Expat Unspecified XML Parsing Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/37203

libvorbis OGG Vorbis Processing Multiple Remote Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/36018

Sun Java Runtime Environment XML Parsing Denial of Service Vulnerability
http://www.securityfocus.com/bid/35958

Mozilla Firefox 3.5.1/3.0.12 Multiple Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/35927

Ghostscript 'errprintf()' Function PDF Handling Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/37410

MIT Kerberos GSS-API Checksum NULL Pointer Dereference Denial Of Service Vulnerability
http://www.securityfocus.com/bid/40235

PCSC-Lite 'PCSCD' Daemon Unspecified Local Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/40758

Microsoft Windows SMB2 '_Smb2ValidateProviderCallback()' Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36299

Microsoft Windows Kernel Threads Creation Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/42211

Microsoft Windows Kernel Access Control Lists Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/42221

Microsoft Windows Kernel Double Free Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/42213

Spring Framework 'class.classLoader' Code Injection Vulnerability
http://www.securityfocus.com/bid/40954

Apache Axis2 Document Type Declaration Processing Security Vulnerability
http://www.securityfocus.com/bid/40976

iputils 'ping.c' Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/41911

Mp3 Millenium '.mpf' File Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/40576

Millennium Mp3 Studio '.m3u' File Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/40602

Apple QuickTime 'QuickTimeStreaming.qtx' Remote Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/41962

Usagi Project mipv6-daemon Unicast Kernel Message Spoofing Vulnerability
http://www.securityfocus.com/bid/41524

Usagi Project mipv6-daemon ND Options Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/41522

Apache CouchDB Cross Site Request Forgery Vulnerability
http://www.securityfocus.com/bid/42501

WebKit (CVE-2010-1760) Unspecified Security Vulnerability
http://www.securityfocus.com/bid/42494

0 件のコメント:

コメントを投稿