SecurityFocus Newsletter #272
Peter Laborge <[email protected]> 26 Oct 2004 16:57:55 -0000
| Newsgroups | gmane.comp.security.news.general |
|---|---|
| Message-ID | <[email protected]> |
SecurityFocus Newsletter #272
------------------------------
This Issue is Sponsored By: Check Point
Learn how Check Point Connectra delivers secure SSL VPN access, protecting
your network from worms and other malware threats. Download this free Web
Security Information Kit with whitepapers from Stratecast Partners and
Ziff-Davis, plus much more.
It's free! Download now.
http://www.securityfocus.com/sponsor/CheckPoint_sf-news_041026
------------------------------------------------------------------------
I. FRONT AND CENTER
1. Issues Discovering Compromised Machines
2. The Latest Tool in Competition: Hacking
3. Security, 1994-2004: Then And Now
II. BUGTRAQ SUMMARY
1. ARJ Software UNARJ Remote Directory Traversal Vulnerability
2. CoolPHP Multiple Remote Input Validation Vulnerabilities
3. 3Com OfficeConnect ADSL Wireless 11g Firewall Router Authent...
4. Mozilla Multiple Memory Corruption Vulnerabilities
5. Mozilla Invalid Pointer Dereference Vulnerability
6. Opera Browser TBODY COL SPAN Memory Corruption Denial Of Ser...
7. Links Malformed Table Denial Of Service Vulnerability
8. Lynx Malformed HTML Infinite Loop Denial Of Service Vulnerab...
9. H+BEDV AntiVir MS-DOS Name Scan Evasion Vulnerability
10. Gnofract 4D Remote Script Code Execution Vulnerability
11. Microsoft Outlook 2003 Security Policy Bypass Vulnerability
12. Microsoft Outlook Express Plaintext Email Security Policy By...
13. Multiple Vendor Antivirus Software Zip Files Detection Evasi...
14. cPanel Remote Backup Information Disclosure Vulnerability
15. Best Software SalesLogix Multiple Remote Vulnerabilities
16. Proland Software Protector Plus AntiVirus MS-DOS Name Scan E...
17. YaPiG Comment Field HTML Injection Vulnerability
18. FIL Security Laboratory Twister Anti-TrojanVirus MS-DOS Name...
19. dadaIMC Comment Field HTML Injection Vulnerability
20. cPanel Front Page Extension Installation File Ownership Vuln...
21. cPanel Front Page Extension Installation Information Disclos...
22. BMON Local Privilege Escalation Vulnerability
23. IBM Lotus Domino Cross-Site Scripting and HTML Injection Vul...
24. Sun Solaris LDAP RBAC Local Privilege Escalation Vulnerabili...
25. Cabextract Remote Directory Traversal Vulnerability
26. Vypress Tonecast Remote Denial Of Service Vulnerability
27. Jan Erdmann Jebuch HTML Injection Vulnerability
28. LANDesk Management Suite Remote Denial Of Service Vulnerabil...
29. HP Tru64 X Window System Multiple Local Vulnerabilities
30. Microsoft Internet Explorer Valid File Drag and Drop Embedde...
31. Microsoft Internet Explorer HTML Help Control Local Zone Sec...
32. MPG123 Remote URL Open Buffer Overflow Vulnerability
33. Apple Safari Cross-Domain Dialog Box Spoofing Vulnerability
34. Maxthon Web Browser Cross-Domain Dialog Box Spoofing Vulnera...
35. Apache mod_include Local Buffer Overflow Vulnerability
36. Avant Browser Cross-Domain Dialog Box Spoofing Vulnerability
37. Mozilla Browser Cross-Domain Dialog Box Spoofing Vulnerabili...
38. Mozilla Browser Cross-Domain Tab Window Form Field Focus Vul...
39. Opera Web Browser Cross-Domain Dialog Box Spoofing Vulnerabi...
40. Maxthon Web Browser Cross-Domain Tab Window Form Field Focus...
41. Konqueror Browser Cross-Domain Dialog Box Spoofing Vulnerabi...
42. Avant Browser Cross-Domain Tab Window Form Field Focus Vulne...
43. Akella Privateer's Bounty: Age of Sail II Remote Buffer Over...
44. MediaWiki Title.php Cross-Site Scripting Vulnerability
45. LibPNG Graphics Library Image Height Integer Overflow Vulner...
46. Gaim MSN SLP Remote Buffer Overflow Vulnerability
47. Gaim MSN Remote File Transfer Denial Of Service Vulnerabilit...
48. Gaim MSN Remote SLP Denial Of Service Vulnerability
49. Coppermine Photo Gallery Voting Restriction Failure Vulnerab...
50. DokuWiki Remote Arbitrary File Upload Vulnerability
51. Ecartis Remote Undisclosed Privilege Escalation Vulnerabilit...
52. Linux Kernel IPTables Logging Rules Integer Underflow Vulner...
53. SuSE Linux IBM S/390 Kernel Local Privilege Escalation Vulne...
54. Zinf/Freeamp Unspecified Insecure Temporary File Creation Vu...
55. Linux Kernel TIOCSETD Terminal Subsystem Race Condition Vuln...
56. Linux Kernel Terminal Locking Race Condition Vulnerability
57. HP-UX STMKFONT Local Privilege Escalation Vulnerability
58. Veritas NetBackup Privilege Escalation Vulnerability
59. Nortel Contivity VPN Client Gateway Certificate Check Failur...
60. Speedtouch USB Driver Local Format String Vulnerability
61. Serendipity Exit.PHP HTTP Response Splitting Vulnerability
62. Altiris Deployment Server Remote Command Execution Vulnerabi...
63. OpenSkat Multiple Unspecified Vulnerabilities
64. Altiris Carbon Copy Remote Control System Tray Application L...
65. Xpdf PDFTOPS Multiple Integer Overflow Vulnerabilities
66. UBBCentral UBB.threads Dosearch.PHP SQL Injection Vulnerabil...
67. Microsoft Windows XP WAV File Handler Denial Of Service Vuln...
68. Netbilling NBMEMBER Script Information Disclosure Vulnerabil...
69. Socat Remote Format String Vulnerability
70. LibTIFF OJPEG Heap Buffer Overflow Vulnerability
71. HP ServiceGuard Undisclosed Remote Vulnerability
72. Code-Crafters Ability Server FTP STOR Argument Remote Buffer...
III. SECURITYFOCUS NEWS ARTICLES
1. Report card day looms for federal agencies
2. California reports massive data breach
3. U.S. Air Traffic Control Found Vulnerable
4. Mac OS X rootkit surfaces
5. Purdue says someone hacked into university's computers
6. 419ers take Aussie financial advisor for AU$1m
IV. SECURITYFOCUS TOP 6 TOOLS
1. antinat v0.81
2. PopMessenger 1.60
3. ByteShelter I 1.0
4. MobileJavaScanner 1.0
5. JavaCallTester 1.0
6. DiskInternals Uneraser 2.01
V. SECURITYJOBS LIST SUMMARY
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
VI. INCIDENTS LIST SUMMARY
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
VII. VULN-DEV RESEARCH LIST SUMMARY
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
VIII. MICROSOFT FOCUS LIST SUMMARY
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
IX. SUN FOCUS LIST SUMMARY
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
X. LINUX FOCUS LIST SUMMARY
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
XI. UNSUBSCRIBE INSTRUCTIONS
XII. SPONSOR INFORMATION
I. FRONT AND CENTER
-------------------
1. Issues Discovering Compromised Machines
By Anton Chuvakin
This article discusses the discovery of compromised machines in large
enterprise environments, and offers some suggestions on correlating NIDS
and HIPS logs to avoid false positives.
http://www.securityfocus.com/infocus/1808
2. The Latest Tool in Competition: Hacking
By Mark Rasch
A new federal case illustrates the role computer intrusion is taking in the
high-stakes world of niche Internet commerce.
http://www.securityfocus.com/columnists/273
3. Security, 1994-2004: Then And Now
By Daniel Hanson
Comparing the state of security in 1994 versus 2004, has anything really
changed over the course of ten years?
http://www.securityfocus.com/columnists/272
II. BUGTRAQ SUMMARY
-------------------
1. ARJ Software UNARJ Remote Directory Traversal Vulnerability
BugTraq ID: 11436
Remote: Yes
Date Published: Oct 16 2004
Relevant URL: http://www.securityfocus.com/bid/11436
Summary:
Reportedly ARJ Software UNARJ is affected by a remote directory traversal vulnerability. This issue is due to a failure of the application to properly sanitize or validate file names prior to compression or decompression.
This issue may allow an attacker to arbitrarily overwrite files with a user's privileges when a malicious compressed file is decompressed with the affected application.
2. CoolPHP Multiple Remote Input Validation Vulnerabilities
BugTraq ID: 11437
Remote: Yes
Date Published: Oct 16 2004
Relevant URL: http://www.securityfocus.com/bid/11437
Summary:
Reportedly CoolPHP is affected by multiple remote input validation vulnerabilities. These issues are due to a failure of the application to properly sanitize user supplied input prior to using it to make critical actions.
An attacker can leverage these issues to steal cookie-based authentication credentials as well as carry out other malicious activities through cross-site scripting attacks. An attacker can also leverage this issue to execute arbitrary server-side scripts using file include attacks.
3. 3Com OfficeConnect ADSL Wireless 11g Firewall Router Authent...
BugTraq ID: 11438
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11438
Summary:
3Com OfficeConnect ADSL Wireless 11g Firewall Router is affected by an authentication bypass vulnerability; This issue is due to a failure of the device to properly validate an authenticated administrator.
An attacker could leverage this issue to gain administrative access to the affective device facilitating disclosure of administrator passwords, WEP encryption keys, configuration manipulation and denial of service.
It should be noted that this issue was originally reported in vulnerability report '3Com OfficeConnect ADSL Wireless 11g Firewall Router Multiple Unspecified Vulnerabilities' (BID 11422). It has been assigned its own BID as more information has been made available.
4. Mozilla Multiple Memory Corruption Vulnerabilities
BugTraq ID: 11439
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11439
Summary:
Multiple memory corruption vulnerabilities have been reported in Mozilla. These issues are related to malformed HTML involving the TEXTAREA, INPUT, FRAMESET, and IMG tags. These issues could cause the browser to crash when rendering the malformed HTML, though there is an additional possibility of leveraging the issues to execute arbitrary code.
Although these issues were reported in the Mozilla browser, other applications based on the same code may also be affected such as Firefox/Thunderbird/Netscape.
5. Mozilla Invalid Pointer Dereference Vulnerability
BugTraq ID: 11440
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11440
Summary:
A vulnerability exists in Mozilla that will most likely cause a denial of service. The source of the issue is that an invalid pointer is dereferenced when the browser renders an unusual combination of visual elements.
Although this issue was reported in the Mozilla browser, other applications based on the same code may also be affected such as Firefox/Thunderbird/Netscape.
6. Opera Browser TBODY COL SPAN Memory Corruption Denial Of Ser...
BugTraq ID: 11441
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11441
Summary:
A memory corruption vulnerability exists in Opera. This issue may be triggered if an excessive COL SPAN is specified in the TBODY tag. The issue could result in a minor denial of service condition.
7. Links Malformed Table Denial Of Service Vulnerability
BugTraq ID: 11442
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11442
Summary:
Links is prone to a denial of service vulnerability when handling HTML tables of excessive size. This issue may cause excessive resource consumption on the host computer.
8. Lynx Malformed HTML Infinite Loop Denial Of Service Vulnerab...
BugTraq ID: 11443
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11443
Summary:
Lynx is prone to a denial of service vulnerability when handling certain malformed HTML. This condition could be exploited to cause the application to enter an infinite loop.
9. H+BEDV AntiVir MS-DOS Name Scan Evasion Vulnerability
BugTraq ID: 11444
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11444
Summary:
AntiVir is affected by a scan evasion vulnerability when handling files with MS-DOS reserved device names. This issue is due to a design error that allows the files to avoid being scanned.
Apparently it is possible for an attacker to name a standard file after a reserved MS-DOS device name. The attacker may deliver the file to a user through various delivery mechanisms. If successful, the attacker may leverage this issue to bypass the scanner protection provided by the vulnerable antivirus scanner, giving users a false sense of security.
A similar vulnerability affecting Symantec Norton AntiVirus was reported in BID 11328 (Symantec Norton AntiVirus MS-DOS Name Scan Evasion Vulnerability). The researcher responsible for discovering this issue has stated that this vulnerability is identical to the issue described in BID 11328. Therefore, it is conjectured that this issue does not present a risk factor when a file is sent through email and only arises once the file is already present on a vulnerable computer.
This BID will be updated as more information becomes available.
10. Gnofract 4D Remote Script Code Execution Vulnerability
BugTraq ID: 11445
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11445
Summary:
Gnofract 4D is affected by a remote script code execution vulnerability. This issue is due to a design error that allows for the execution of code in parameter files.
A remote attacker may leverage this issue to execute arbitrary script code with the privileges of a user that activates the vulnerable application.
11. Microsoft Outlook 2003 Security Policy Bypass Vulnerability
BugTraq ID: 11446
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11446
Summary:
Microsoft Outlook 2003 is reported prone to a security policy bypass vulnerability.
It is reported that by including a base64 encoded image in an email and labeling that image in a sufficient manner, it is then possible to reference this base64 encoded image.
This will result in a policy bypass because the image will be automatically rendered when the email is viewed in Outlook 2003. Although this issue is reported to affect Outlook 2003, other mail transfer agents may also be affected.
12. Microsoft Outlook Express Plaintext Email Security Policy By...
BugTraq ID: 11447
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11447
Summary:
Microsoft Outlook Express is reported prone to a security policy bypass vulnerability.
The vulnerability presents itself if an attached image file is referenced using a specially crafted CID URI.
This will result in a policy bypass because the image will be automatically rendered when the email is viewed in Outlook Express.
13. Multiple Vendor Antivirus Software Zip Files Detection Evasi...
BugTraq ID: 11448
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11448
Summary:
Multiple Vendor Antivirus applications are reported vulnerable to a zip file detection evasion vulnerability. This vulnerability may allow maliciously crafted zip files to avoid being scanned and detected.
A remote attacker can craft a malicious zip archive and send it a vulnerable user. The malicious archive can bypass the protection provided by a vulnerable antivirus program, giving users a false sense of security. If the user opens and executes the file, this attack can result in a malicious code infection.
This issue is reported to affected products offered by McAfee, Computer Associates, Kaspersky, Sophos, Eset and RAV.
Latest antivirus products by Symantec, Bitdefender, Trend Micro and Panda are not vulnerable to this issue.
14. cPanel Remote Backup Information Disclosure Vulnerability
BugTraq ID: 11449
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11449
Summary:
It is reported that cPanel is susceptible to an information disclosure vulnerability in its remote backup function.
Attackers can reportedly exploit this vulnerability to retrieve the contents of potentially sensitive files located in the same slice as their home directory. This may aid them in further attacks.
Version 9.4.1-RELEASE-64 of cPanel was reported vulnerable. Other versions may also be affected.
15. Best Software SalesLogix Multiple Remote Vulnerabilities
BugTraq ID: 11450
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11450
Summary:
Best Software SalesLogix is affected by multiple vulnerabilities. These issues are due to design errors that reveal sensitive information, access control validation issues that allow unauthorized access and input validation issues facilitating SQL injection attacks.
An attacker may leverage these issues to manipulate and disclose database contents through SQL injection attacks, steal authentication credentials due to information disclosure vulnerabilities and bypass authentication to gain administrator access to the server.
16. Proland Software Protector Plus AntiVirus MS-DOS Name Scan E...
BugTraq ID: 11451
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11451
Summary:
Protector Plus is affected by a scan evasion vulnerability when handling files with MS-DOS reserve device names. This issue is due to a design error that allows the files to avoid being scanned.
Apparently it is possible for an attacker to name a standard file after a reserved MS-DOS device name. The attacker may deliver the file to a user through various delivery mechanisms. If successful, the attacker may leverage this issue to bypass the scanner protection provided by the vulnerable antivirus scanner, giving users a false sense of security.
A similar vulnerability affecting Symantec Norton AntiVirus was reported in BID 11328 (Symantec Norton AntiVirus MS-DOS Name Scan Evasion Vulnerability). The researcher responsible for discovering this issue has stated that this vulnerability is identical to the issue described in BID 11328. Therefore, it is conjectured that this issue does not present a risk factor when a file is sent through email and only arises once the file is already present on a vulnerable computer.
This BID will be updated as more information becomes available.
17. YaPiG Comment Field HTML Injection Vulnerability
BugTraq ID: 11452
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11452
Summary:
YaPiG is reported to contain an HTML injection vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied input before including it in dynamically generated web page content.
The problem is reported to present itself due to a lack of sanitization performed on certain field data.
This may allow an attacker to inject malicious HTML and script code into the application.
18. FIL Security Laboratory Twister Anti-TrojanVirus MS-DOS Name...
BugTraq ID: 11453
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11453
Summary:
Twister Anti-TrojanVirus is affected by a scan evasion vulnerability when handling files with MS-DOS reserve device names. This issue is due to a design error that allows the files to avoid being scanned.
Apparently it is possible for an attacker to name a standard file after a reserved MS-DOS device name. The attacker may deliver the file to a user through various delivery mechanisms. If successful, the attacker may leverage this issue to bypass the scanner protection provided by the vulnerable antivirus scanner, giving users a false sense of security.
A similar vulnerability affecting Symantec Norton AntiVirus was reported in BID 11328 (Symantec Norton AntiVirus MS-DOS Name Scan Evasion Vulnerability). The researcher responsible for discovering this issue has stated that this vulnerability is identical to the issue described in BID 11328. Therefore, it is conjectured that this issue does not present a risk factor when a file is sent through email and only arises once the file is already present on a vulnerable computer.
This BID will be updated as more information becomes available.
19. dadaIMC Comment Field HTML Injection Vulnerability
BugTraq ID: 11454
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11454
Summary:
dadaIMC is reported to contain an HTML injection vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied input before including it in dynamically generated web page content.
The problem is reported to present itself due to a lack of sanitization performed on certain field data.
This may allow an attacker to inject malicious HTML and script code into the application.
20. cPanel Front Page Extension Installation File Ownership Vuln...
BugTraq ID: 11455
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11455
Summary:
It is reported that cPanel is susceptible to a file ownership vulnerability in its function to enable Front Page extensions.
This vulnerability allows malicious users to gain full access to potentially sensitive files. Depending on the layout of the hard drive slices, it may be possible for attackers to exploit this vulnerability to gain elevated privileges.
Version 9.4.1-RELEASE-64 of cPanel was reported vulnerable. Other versions may also be affected.
21. cPanel Front Page Extension Installation Information Disclos...
BugTraq ID: 11456
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11456
Summary:
It is reported that cPanel is susceptible to an information disclosure vulnerability in its function to enable Front Page extensions.
This vulnerability reportedly allows attackers to gain access to the contents of arbitrary, potentially sensitive files. This may aid them in further attacks.
Version 9.9.1-RELEASE-3 of cPanel was reported vulnerable. Other versions may also be affected.
22. BMON Local Privilege Escalation Vulnerability
BugTraq ID: 11457
Remote: No
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11457
Summary:
It is reported that bmon is susceptible to a privilege escalation vulnerability if installed with setuid permissions.
This vulnerability allows local attackers to execute arbitrary code with the privileges of the bmon package. It is reported that the FreeBSD port system installs bmon with setuid superuser privileges, allowing local attackers to execute arbitrary code with superuser privileges.
This vulnerability is reported to exist in bmon version 1.2.1 on any platform that installs it with setuid privileges. Other versions may also be affected.
For FreeBSD, versions prior to 1.2.1_2 are reported susceptible. Other platforms that install bmon with setuid privileges are unknown at this time.
23. IBM Lotus Domino Cross-Site Scripting and HTML Injection Vul...
BugTraq ID: 11458
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11458
Summary:
It is reported that Lotus Domino is susceptible to a cross-site scripting and an HTML injection vulnerability. These issues are due to a failure of the application to properly sanitize user-supplied input.
The cross-site scripting issue could permit a remote attacker to create a malicious URI link that includes hostile HTML and script code. If this link were to be followed, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the affected web site and may allow for theft of cookie-based authentication credentials or other attacks.
The HTML injection issue may allow an attacker to inject malicious HTML and script code into the application. An unsuspecting user viewing a page that contains the malicious comment will have the attacker-supplied script code executed within their browser in the context of the vulnerable site. This issue may be leveraged to steal cookie based authentication credentials. Other attacks are also possible.
24. Sun Solaris LDAP RBAC Local Privilege Escalation Vulnerabili...
BugTraq ID: 11459
Remote: No
Date Published: Oct 19 2004
Relevant URL: http://www.securityfocus.com/bid/11459
Summary:
Sun Solaris is affected by a local privilege escalation vulnerability due to LDAP and RBAC implementation issues. The problem likely presents itself due to a design error.
A local attacker may exploit this issue to gain superuser privileges on an affected computer.
25. Cabextract Remote Directory Traversal Vulnerability
BugTraq ID: 11460
Remote: Yes
Date Published: Oct 19 2004
Relevant URL: http://www.securityfocus.com/bid/11460
Summary:
cabextract is reported prone to a remote directory traversal vulnerability. This issue presents itself due to insufficient sanitization of user-supplied data.
An attacker may exploit this issue to corrupt or manipulate sensitive data. This may aid in further attacks against a computer.
cabextract versions 1.0 and prior are reported prone to this issue.
26. Vypress Tonecast Remote Denial Of Service Vulnerability
BugTraq ID: 11462
Remote: Yes
Date Published: Oct 19 2004
Relevant URL: http://www.securityfocus.com/bid/11462
Summary:
Vypress Tonecast is reported prone to a remote denial of service vulnerability.
It is reported that, when handled, a sufficiently malformed audio stream will cause the affected software to crash.
An attacker may exploit this condition to deny service to legitimate users.
27. Jan Erdmann Jebuch HTML Injection Vulnerability
BugTraq ID: 11463
Remote: Yes
Date Published: Oct 19 2004
Relevant URL: http://www.securityfocus.com/bid/11463
Summary:
It is reported that Jebuch is susceptible to an HTML injection vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied input.
This may allow an attacker to inject malicious HTML and script code into the application. An unsuspecting user viewing a page that contains the malicious embedded code will have the attacker-supplied script executed within their browser in the context of the vulnerable site. This issue may be leveraged to steal cookie based authentication credentials. Other attacks are also possible.
Version 1.0 of Jebuch is reported vulnerable to this issue.
28. LANDesk Management Suite Remote Denial Of Service Vulnerabil...
BugTraq ID: 11464
Remote: Yes
Date Published: Oct 19 2004
Relevant URL: http://www.securityfocus.com/bid/11464
Summary:
LANDesk Management Suite is reported prone to a denial of service vulnerability. Reports indicate that when a connection is made to the Remote Desktop service, the computer that is running the affected software will crash and restart.
A remote attacker may exploit this condition to trigger a denial of service in the affected software for legitimate users.
29. HP Tru64 X Window System Multiple Local Vulnerabilities
BugTraq ID: 11465
Remote: No
Date Published: Oct 19 2004
Relevant URL: http://www.securityfocus.com/bid/11465
Summary:
It is reported that the X Window System on HP Tru64 is affected by an unspecified file permissions vulnerability. The cause of this issue is currently unknown. An unspecified local buffer overflow vulnerability was reported as well. These issues may allow local attackers to gain superuser privileges on a computer.
Due to a lack of details, further information is not currently available. This BID will be updated as more information becomes available.
30. Microsoft Internet Explorer Valid File Drag and Drop Embedde...
BugTraq ID: 11466
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11466
Summary:
The Microsoft cumulative Internet Explorer patch (MS04-038) attempted to limit what files may be dragged and dropped onto the local computer from the Internet Zone to prevent executable objects from being placed on the file system in this manner. However, a number of file types are still permitted for drag and drop operations. It is has demonstrated that it is possible to embed hostile HTML and script code in one of these file types, remove the file extension and then allow the operating system to dynamically determine the file type based on its contents.
If this issue were combined with other vulnerabilities, such as that described in BID 11467, it may result in execution of arbitrary code on the client computer.
31. Microsoft Internet Explorer HTML Help Control Local Zone Sec...
BugTraq ID: 11467
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11467
Summary:
Microsoft Windows XP SP2 and Internet Explorer 6 SP2 have included enhanced Local Zone security restrictions to prevent various exploits that have depended on the previous relaxed security settings associated with this Security Zone. A proof-of-concept has been released demonstrating that it is possible to bypass these restrictions through the use of the 'hhctrl.ocx' HTML ActiveX control.
If the attacker is able to place malicious HTML/scripting content on the system through another vulnerability, such as BID 11466, then this control could be exploited to bypass Local Zone security restrictions that would normally prevent the content from being executed. The proof-of-concept also employs various ADODB methods such as ADODB.Connection and ADODB.recordset to write malicious arbitrary code to the file system, in the form of an .HTA file.
32. MPG123 Remote URL Open Buffer Overflow Vulnerability
BugTraq ID: 11468
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11468
Summary:
Reportedly mpg123 is affected by a remote buffer overflow vulnerability. This issue is due to insufficient bounds checking when copying user-supplied strings into finite process buffers.
An attacker may leverage this issue to execute arbitrary machine code on an affected computer with the privileges of an unsuspecting user that activated the vulnerable application.
33. Apple Safari Cross-Domain Dialog Box Spoofing Vulnerability
BugTraq ID: 11469
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11469
Summary:
Apple Safari is reported prone to a cross-domain dialog box spoofing vulnerability. This issue may allow a remote attacker to carry out phishing style attacks as an attacker may exploit this vulnerability to spoof an interface of a trusted web site.
Apple Safari 1.2.3 (v125.9) is reported vulnerable to this issue. It is likely that other versions are affected as well.
34. Maxthon Web Browser Cross-Domain Dialog Box Spoofing Vulnera...
BugTraq ID: 11470
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11470
Summary:
Maxthon web browser is reported prone to a cross-domain dialog box spoofing vulnerability. This issue may allow a remote attacker to carry out phishing style attacks as an attacker may exploit this vulnerability to spoof the interface of a trusted web site.
35. Apache mod_include Local Buffer Overflow Vulnerability
BugTraq ID: 11471
Remote: No
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11471
Summary:
The problem presents itself when the affected module attempts to parse mod_include specific tag values. A failure to properly validate the lengths of user-supplied tag strings prior to copying them into finite buffers facilitates the overflow.
A local attacker may leverage this issue to execute arbitrary code on the affected computer with the privileges of the affected Apache server.
36. Avant Browser Cross-Domain Dialog Box Spoofing Vulnerability
BugTraq ID: 11472
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11472
Summary:
Avant Browser is reported prone to a cross-domain dialog box spoofing vulnerability. This issue may allow a remote attacker to carry out phishing style attacks as an attacker may exploit this vulnerability to spoof an interface of a trusted web site.
37. Mozilla Browser Cross-Domain Dialog Box Spoofing Vulnerabili...
BugTraq ID: 11473
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11473
Summary:
Mozilla Browsers are reported prone to a cross-domain dialog box spoofing vulnerability. This issue may allow a remote attacker to carry out phishing style attacks as an attacker may exploit this vulnerability to spoof an interface of a trusted web site.
Due to code similarities, Netscape Navigator is affected by this issue as well.
38. Mozilla Browser Cross-Domain Tab Window Form Field Focus Vul...
BugTraq ID: 11474
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11474
Summary:
A cross-domain tab window form field focus vulnerability reportedly affects Mozilla browser and all browsers derived from it. This issue is due to an access validation error that allows a web page to gain access to form fields in other web pages rendered in different tabs of the same browser window.
This issue may be leveraged to facilitate convincing phishing style attacks designed to reveal sensitive information such as passwords and financial details.
39. Opera Web Browser Cross-Domain Dialog Box Spoofing Vulnerabi...
BugTraq ID: 11475
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11475
Summary:
Opera is reported prone to a cross-domain dialog box spoofing vulnerability. This issue may allow a remote attacker to carry out phishing style attacks as an attacker may exploit this vulnerability to spoof an interface of a trusted web site.
Opera version 7.54 is reported susceptible to this issue, but other versions may also be affected.
40. Maxthon Web Browser Cross-Domain Tab Window Form Field Focus...
BugTraq ID: 11476
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11476
Summary:
A cross-domain tab window form field focus vulnerability reportedly affects the Maxthon Web browser. This issue is due to an access validation error that allows a web page to gain access to form fields in other web pages rendered in different tabs of the same browser window.
This issue may be leveraged to facilitate convincing phishing style attacks designed to reveal sensitive information such as passwords and financial details.
41. Konqueror Browser Cross-Domain Dialog Box Spoofing Vulnerabi...
BugTraq ID: 11477
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11477
Summary:
Konqueror Browser is reported prone to a cross-domain dialog box spoofing vulnerability. This issue may allow a remote attacker to carry out phishing style attacks as an attacker may exploit this vulnerability to spoof an interface of a trusted web site.
42. Avant Browser Cross-Domain Tab Window Form Field Focus Vulne...
BugTraq ID: 11478
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11478
Summary:
A cross-domain tab window form field focus vulnerability reportedly affects Avant Browser. This issue is due to an access validation error that allows a web page to gain access to form fields in other web pages rendered in different tabs of the same browser window.
This issue may be leveraged to facilitate convincing phishing style attacks designed to reveal sensitive information such as passwords and financial details.
43. Akella Privateer's Bounty: Age of Sail II Remote Buffer Over...
BugTraq ID: 11479
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11479
Summary:
Akella Privateer's Bounty: Age of Sail II is reportedly affected by a remote buffer overflow vulnerability. This issue is due to a failure of the application to do sufficient bounds checking on user-supplied input.
An attacker can leverage this issue to execute arbitrary code on an affected computer with the privileges of a user running a vulnerable version of the game.
44. MediaWiki Title.php Cross-Site Scripting Vulnerability
BugTraq ID: 11480
Remote: Yes
Date Published: Oct 18 2004
Relevant URL: http://www.securityfocus.com/bid/11480
Summary:
MediaWiki is reported prone to a cross-site scripting vulnerability. This issue arises due to insufficient sanitization of user-supplied data. A remote attacker may exploit this vulnerability to execute arbitrary HTML and script code in the browser of a vulnerable user.
MediaWiki versions 1.3.6 and prior are affected by this vulnerability.
45. LibPNG Graphics Library Image Height Integer Overflow Vulner...
BugTraq ID: 11481
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11481
Summary:
LibPNG is the official Portable Network Graphics (PNG) reference library.
LibPNG is reported susceptible to an image height integer overflow vulnerability.
A specially crafted PNG image could reportedly overflow an integer value, and possibly result in overwriting of critical memory regions allowing for the alteration of proper program execution. This vulnerability may be exploited to execute attacker-supplied code in the context of an application that utilized the affected library.
46. Gaim MSN SLP Remote Buffer Overflow Vulnerability
BugTraq ID: 11482
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11482
Summary:
Gaim is reportedly affected by a remote buffer overflow vulnerability in its MSN SLP message functionality of gaim. This issue is due to a failure of the application to verify buffer bounds when copying user-supplied input.
An attacker can leverage this issue to execute arbitrary code on an affected computer with the privileges of the user that executed the vulnerable application.
47. Gaim MSN Remote File Transfer Denial Of Service Vulnerabilit...
BugTraq ID: 11483
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11483
Summary:
Gaim is affected by a remote MSN file transfer denial of service vulnerability. This issue is due to a failure of the application to properly handle exceptional conditions.
An attacker may leverage this issue to cause an affected client to crash, denying service to legitimate users.
48. Gaim MSN Remote SLP Denial Of Service Vulnerability
BugTraq ID: 11484
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11484
Summary:
Gaim is affected by a remote MSN SLP denial of service vulnerability. This issue is due to a failure of the application to properly handle exceptional conditions.
An attacker may leverage this issue to cause an affected client to crash, denying service to legitimate users.
49. Coppermine Photo Gallery Voting Restriction Failure Vulnerab...
BugTraq ID: 11485
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11485
Summary:
Coppermine Photo Gallery is reported prone to a design error that may allow users to cast multiple votes for a picture.
All versions of Coppermine Photo Gallery are considered vulnerable at the moment.
50. DokuWiki Remote Arbitrary File Upload Vulnerability
BugTraq ID: 11486
Remote: Yes
Date Published: Oct 20 2004
Relevant URL: http://www.securityfocus.com/bid/11486
Summary:
DokuWiki is reported prone to a remote arbitrary file upload vulnerability. This issue can allow attackers to upload arbitrary files such as PHP scripts to a vulnerable computer. These files could be executed by the hosting Web server, resulting in arbitrary code execution.
This vulnerability has been reported for DokuWiki 2004-09-30 and prior.
51. Ecartis Remote Undisclosed Privilege Escalation Vulnerabilit...
BugTraq ID: 11487
Remote: Yes
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11487
Summary:
Ecartis is reported prone to a remote undisclosed privilege escalation vulnerability. A remote attacker may exploit this issue to gain administrative access to the ecartis list.
52. Linux Kernel IPTables Logging Rules Integer Underflow Vulner...
BugTraq ID: 11488
Remote: Yes
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11488
Summary:
It is reported that an integer underflow vulnerability is present in the iptables logging rules of the Linux kernel 2.6 branch.
A remote attacker may exploit this vulnerability to crash a computer that is running the affected kernel.
The 2.6 Linux kernel is reported prone to this vulnerability, the 2.4 kernel is not reported to be vulnerable.
53. SuSE Linux IBM S/390 Kernel Local Privilege Escalation Vulne...
BugTraq ID: 11489
Remote: No
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11489
Summary:
SuSE Linux is reported prone to a local privilege escalation vulnerability. It is reported that this vulnerability only affects SuSE Linux Enterprise Server 9 when it is installed on the IBM S/390 platform.
A local attacker may exploit this vulnerability to escalate privileges.
54. Zinf/Freeamp Unspecified Insecure Temporary File Creation Vu...
BugTraq ID: 11490
Remote: No
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11490
Summary:
Zinf/Freeamp are affected by an unspecified insecure temporary file creation vulnerability. This issue is likely due to a design error that causes the application to fail to verify the existence of a file before writing to it.
An attacker may leverage this issue to overwrite arbitrary files with the privileges of an unsuspecting user that activates the vulnerable application.
55. Linux Kernel TIOCSETD Terminal Subsystem Race Condition Vuln...
BugTraq ID: 11491
Remote: No
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11491
Summary:
The Linux Kernel is prone to a local vulnerability in the terminal subsystem. Reportedly, this issue can be triggered by issuing a TIOCSETD ioctl to a terminal interface at the moment a read or write operation is being performed by another thread. This could result in a denial of service or allow kernel memory to be read.
56. Linux Kernel Terminal Locking Race Condition Vulnerability
BugTraq ID: 11492
Remote: Yes
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11492
Summary:
A race condition vulnerability exists in the Linux Kernel terminal subsystem. This issue is related to terminal locking and is exposed when a remote user connects to the computer through a PPP dialup port.
Reportedly, when the remote user issues the switch from console to PPP, there is a small window of opportunity to send data that will trigger the vulnerability. The report indicates that this may cause a denial of service. It is unknown if there are other impacts for this vulnerability.
57. HP-UX STMKFONT Local Privilege Escalation Vulnerability
BugTraq ID: 11493
Remote: No
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11493
Summary:
HP-UX stmkfont is reported prone to a local privilege escalation vulnerability. This issue is due to the handling of paths to external executables by stmkfont, allowing an attacker-specified program to be run with the privileges of stmkfont. stmkfont is typically installed with setgid 'bin' privileges.
58. Veritas NetBackup Privilege Escalation Vulnerability
BugTraq ID: 11494
Remote: Yes
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11494
Summary:
Veritas NetBackup is reported prone to a privilege escalation vulnerability. This issue may allow remote attackers to gain elevated privileges on a vulnerable computer.
An attacker can supply specially crafted commands to the server, which execute with superuser privileges.
59. Nortel Contivity VPN Client Gateway Certificate Check Failur...
BugTraq ID: 11495
Remote: Yes
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11495
Summary:
Nortel Contivity VPN Client is reported prone to a certificate check failure. The vulnerability is present because the VPN connection is established before the user permits the connection.
This may allow the attacker to launch further attacks against the vulnerable computer.
60. Speedtouch USB Driver Local Format String Vulnerability
BugTraq ID: 11496
Remote: No
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11496
Summary:
Speedtouch USB Driver is prone to a locally exploitable format string vulnerability. The problem occurs due to insufficient sanitization of user-supplied data.
This vulnerability may be exploited in order to have arbitrary code executed with superuser privileges.
61. Serendipity Exit.PHP HTTP Response Splitting Vulnerability
BugTraq ID: 11497
Remote: Yes
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11497
Summary:
Serendipity is reported prone to an HTTP response splitting vulnerability.
A remote attacker may exploit this vulnerability to influence or misrepresent how web content is served, cached or interpreted.
This issue is identified in Serendipity 0.7-beta4 and prior.
62. Altiris Deployment Server Remote Command Execution Vulnerabi...
BugTraq ID: 11498
Remote: Yes
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11498
Summary:
Altiris Deployment Server is reported vulnerable to a remote command execution vulnerability in the client portion of the software. This is due to a failure of the application to properly authenticate that commands originate from an authorized server.
This vulnerability allows attackers with local access to a network to impersonate a valid deployment server and issue arbitrary commands to the client computers.
63. OpenSkat Multiple Unspecified Vulnerabilities
BugTraq ID: 11499
Remote: Yes
Date Published: Oct 19 2004
Relevant URL: http://www.securityfocus.com/bid/11499
Summary:
OpenSkat is reported prone to multiple unspecified vulnerabilities. The cause and impact of these issues is currently unknown, however, it is reported that these issues are related to non-interactive zero knowledge protocols. It is conjectured that these issues are remote in nature.
Further details regarding these vulnerabilities is not available at this time. This BID will be updated, as further information becomes available.
64. Altiris Carbon Copy Remote Control System Tray Application L...
BugTraq ID: 11500
Remote: No
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11500
Summary:
Altiris Carbon Copy Remote Control application allows a user to activate certain functionality by launching the software from an icon in the Windows system tray.
It is reported that a privilege escalation vulnerability exists in the Altiris client System Tray application.
65. Xpdf PDFTOPS Multiple Integer Overflow Vulnerabilities
BugTraq ID: 11501
Remote: Yes
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11501
Summary:
It is reported that pdftops is susceptible to multiple integer overflow vulnerabilities. This issue is due to a failure of the application to properly ensure that user-supplied input does not result in the overflowing of integer values. This may result in data being copied past the end of a memory buffer.
These overflows cause smaller than expected memory regions to be allocated by the application. Subsequent operations are likely to overwrite memory regions past the end of the allocated buffer, allowing attackers to overwrite critical memory control structures. This may allow attackers to control the flow of execution, and potentially execute attacker-supplied code in the context of the affected application.
Applications using embedded xpdf code may be vulnerable to these issues as well.
66. UBBCentral UBB.threads Dosearch.PHP SQL Injection Vulnerabil...
BugTraq ID: 11502
Remote: Yes
Date Published: Oct 21 2004
Relevant URL: http://www.securityfocus.com/bid/11502
Summary:
It is reported that UBBCentral UBB.threads is prone to an SQL injection vulnerability. This issue is due to a failure of the application to properly validate user supplied URI input.
Because of this, a malicious user may influence database queries in order to view or modify sensitive information, potentially compromising the software or the database.
67. Microsoft Windows XP WAV File Handler Denial Of Service Vuln...
BugTraq ID: 11503
Remote: Yes
Date Published: Oct 22 2004
Relevant URL: http://www.securityfocus.com/bid/11503
Summary:
Microsoft Windows XP is reported prone to a denial of service vulnerability. The issue exists due to a lack of sufficient sanitization performed on WAV file header values before they are processed.
If an exploit attempt is successful, the Windows Explorer process will begin to consume CPU resources. An attacker may exploit this vulnerability to deny service to legitimate users.
68. Netbilling NBMEMBER Script Information Disclosure Vulnerabil...
BugTraq ID: 11504
Remote: Yes
Date Published: Oct 22 2004
Relevant URL: http://www.securityfocus.com/bid/11504
Summary:
Netbilling 'nbmember.cgi' script is reported prone to an information disclosure vulnerability. This issue may allow remote attackers to gain access to user authentication credentials and potentially sensitive configuration information.
69. Socat Remote Format String Vulnerability
BugTraq ID: 11505
Remote: Yes
Date Published: Oct 22 2004
Relevant URL: http://www.securityfocus.com/bid/11505
Summary:
It is reported that socat is susceptible to a remote format string vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied input before using it as the format specifier in a formatted printing function.
This vulnerability reportedly allows remote attackers to execute arbitrary code in the context of the socat process.
Versions prior to 1.4.0.3 are reported to be vulnerable.
70. LibTIFF OJPEG Heap Buffer Overflow Vulnerability
BugTraq ID: 11506
Remote: Yes
Date Published: Oct 22 2004
Relevant URL: http://www.securityfocus.com/bid/11506
Summary:
LibTIFF is affected by a heap buffer overflow vulnerability. This issue is due to a failure of the application to properly perform boundary checks prior to copying user-supplied strings into finite process buffers.
An attacker may leverage this issue to execute arbitrary code on a vulnerable computer with the privileges of the user running the vulnerable application, facilitating unauthorized access. This issue may also be leveraged to cause an affected application to crash.
71. HP ServiceGuard Undisclosed Remote Vulnerability
BugTraq ID: 11507
Remote: Yes
Date Published: Oct 22 2004
Relevant URL: http://www.securityfocus.com/bid/11507
Summary:
HP ServiceGuard is reported prone to an undisclosed remote vulnerability.
The exact details of this vulnerability are unclear, but it is reported that an attacker may exploit this vulnerability to gain elevated privileges.
This BID will be updated as soon as further information regarding this vulnerability is made available.
72. Code-Crafters Ability Server FTP STOR Argument Remote Buffer...
BugTraq ID: 11508
Remote: Yes
Date Published: Oct 22 2004
Relevant URL: http://www.securityfocus.com/bid/11508
Summary:
Ability Server is reported prone to a remote buffer overflow vulnerability. This issue affects the FTP component of the application and arises due to insufficient boundary checks performed by the FTP server.
A successful attack can result in memory corruption leading to a crash, however, if an attacker is able to overwrite sensitive memory addresses, they could execute code on a computer. Arbitrary code execution occurs in the context of the FTP process and may result in unauthorized access to the vulnerable computer.
Ability Server versions 2.34 and prior were identified to be vulnerable to this issue.
III. SECURITYFOCUS NEWS ARTICLES
--------------------------------
1. Report card day looms for federal agencies
By: Kevin Poulsen
Cyber security audits find improvement in some agencies, but viruses and worms still plague the halls of government.
http://www.securityfocus.com/news/9788
2. California reports massive data breach
By: Kevin Poulsen
An intruder who cracked a U.C. Berkeley research system in August had access to private data on 1.4 million caregivers and beneficiaries participating in a state social program.
http://www.securityfocus.com/news/9758
3. U.S. Air Traffic Control Found Vulnerable
By: Kevin Poulsen
In the wake of last month's air traffic communications failure, investigators report that computer security issues haunt the FAA's most critical systems.
http://www.securityfocus.com/news/9729
4. Mac OS X rootkit surfaces
By: John Leyden, The Register
One of the first pieces of malicious code targeting Apple's Mac OS X operating system has been discovered.
http://www.securityfocus.com/news/9796
5. Purdue says someone hacked into university's computers
By: , The Associated Press
http://www.securityfocus.com/news/9786
6. 419ers take Aussie financial advisor for AU$1m
By: Lester Haines, The Register
A Melbourne financial manager faces a hefty prison sentence after stealing AU$1m from his clients and handing it over to Nigerian advance fee fraudsters.
http://www.securityfocus.com/news/9753
IV. SECURITYFOCUS TOP 6 TOOLS
-----------------------------
1. antinat v0.81
By: Malcolm Smith
Relevant URL: http://yallara.cs.rmit.edu.au/~malsmith/products/antinat/
Platforms: MacOS, POSIX, Windows 2000, Windows 95/98, Windows NT, Windows XP
Summary:
The Antinat SOCKS Server is a multi-threaded, scalable SOCKS server with a client library for writing proxy-based applications. It supports SOCKS 4, SOCKS 5, authentication, firewalling, UDP, and name resolution.
2. PopMessenger 1.60
By: LeadMind Development
Relevant URL: http://www.leadmind.com
Platforms: Windows 2000, Windows 95/98, Windows NT, Windows XP
Summary:
Chat and send text messages and files to anyone on your LAN easily and securely!
3. ByteShelter I 1.0
By: MazZoft NDA
Relevant URL: http://www.mazzoft.com/bs1.zip
Platforms: Windows 2000, Windows 95/98
Summary:
This steganography tools lets you conceal data in Outlook e-mail messages and .doc files.
4. MobileJavaScanner 1.0
By: Arne Vidstrom
Relevant URL: http://vidstrom.net/stools/mobilejavascanner/
Platforms: Java
Summary:
MobileJavaScanner is a TCP port scanner MIDlet (Java program for cellular phones).
5. JavaCallTester 1.0
By: Arne Vidstrom
Relevant URL: http://www.vidstrom.net/stools/javacalltester/
Platforms: Java
Summary:
JavaCallTester is a MIDlet (Java program for cellular phones) that tries to make a phone call. You can use JavaCallTester to test if your mobile phone implements the correct security policy for MIDlets or not.
6. DiskInternals Uneraser 2.01
By: Alexey Babenko
Relevant URL: http://diskinternals.com/download/Uneraser_Setup.zip
Platforms: Windows 2000, Windows 95/98, Windows NT, Windows XP
Summary:
DiskInternals Uneraser can recover any deleted file, including documents, photos, mp3 and zip files, or even folders and damaged disks. In addition to HDD, the program supports any type of storage media (music sticks, cameras, flash drives, USB drives, etc)! It works with encrypted files and helps you undelete file lost because of a virus attack or an employee's malicious behavior. No special skills needed; 100% free to try.
V. SECURITYJOBS LIST SUMMARY
----------------------------
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
VI. INCIDENTS LIST SUMMARY
--------------------------
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
VII. VULN-DEV RESEARCH LIST SUMMARY
-----------------------------------
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
VIII. MICROSOFT FOCUS LIST SUMMARY
----------------------------------
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
IX. SUN FOCUS LIST SUMMARY
--------------------------
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
X. LINUX FOCUS LIST SUMMARY
---------------------------
NO NEW POSTS FOR THE WEEK 2004-10-19 to 2004-10-26.
XI. UNSUBSCRIBE INSTRUCTIONS
----------------------------
To unsubscribe send an e-mail message to [email protected] from the subscribed address. The contents of the subject or message body do not matter. You will receive a confirmation request message to which you will have to answer. Alternatively you can also visit http://www.securityfocus.com/newsletters and unsubscribe via the website.
If your email address has changed email [email protected] and ask to be manually removed.
XII. SPONSOR INFORMATION
-----------------------
This Issue is Sponsored By: Check Point
Learn how Check Point Connectra delivers secure SSL VPN access, protecting
your network from worms and other malware threats. Download this free Web
Security Information Kit with whitepapers from Stratecast Partners and
Ziff-Davis, plus much more.
It's free! Download now.
http://www.securityfocus.com/sponsor/CheckPoint_sf-news_041026
------------------------------------------------------------------------