SecurityFocus Newsletter #277

Peter Laborge <[email protected]> 30 Nov 2004 18:22:31 -0000
Newsgroups gmane.comp.security.news.general
Message-ID <[email protected]>
SecurityFocus Newsletter #277
------------------------------

This Issue is Sponsored By: RSA

RSA Conference 2005
The RSA Conference is the most prestigious information security event of
the year!  This is the authoritative source for uncovering new ways to
thwart cyber-criminals.  Learn.  Network.  Grow.  RSA Conference 2005 takes
place February 14 to 18, 2005 in San Francisco.  Register before January
15, 2005 and save $500 off the Full Conference rate.

http://www.securityfocus.com/sponsor/RSA_sf-news_041130

------------------------------------------------------------------------

Need to know what's happening on YOUR network? Symantec DeepSight Analyzer
is a free service that gives you the ability to track and manage attacks.
Analyzer automatically correlates attacks from various Firewall and network
based Intrusion Detection Systems, giving you a comprehensive view of your
computer or general network. Sign up today!

http://www.securityfocus.com/sponsor/Symantec_sf-news_041130

------------------------------------------------------------------------
I. FRONT AND CENTER
     1. Profitware
     2. Seeds of Disaster
II. BUGTRAQ SUMMARY
     1. PHPBB Login Form Multiple Input Validation Vulnerabilities
     2. Computer Associates eTrust EZAntivirus User Interface Local ...
     3. W-Channel TC-IDE Embedded Linux Local Privilege Escalation V...
     4. IPBProArcade Remote SQL Injection Vulnerability
     5. Citrix MetaFrame Presentation Server Client Debugging Utilit...
     6. WeOnlyDo! wodFtpDLX ActiveX Component Remote Buffer Overflow...
     7. Sacred Multiple Connection Denial Of Service Vulnerability
     8. ZyXEL Prestige Router HTTP Remote Administration Configurati...
     9. Gearbox Software Halo Game Client Remote Denial Of Service V...
     10. PHPKIT Multiple Input Validation Vulnerabilities
     11. Sun Java Runtime Environment Java Plug-in JavaScript Securit...
     12. Plain Black Software WebGUI Unspecified Remote Vulnerability
     13. Apple iCal Calendar Import Alarm Notification Failure Vulner...
     14. Cyrus IMAPD Multiple Remote Vulnerabilities
     15. Nullsoft Winamp IN_CDDA.dll Remote Buffer Overflow Vulnerabi...
     16. Van Dyke SecureCRT Remote Command Execution Vulnerability
     17. F-Secure Anti-Virus ZIP Archive Scanner Bypass Vulnerability
     18. NuKed-Klan Submit Link Function HTML Injection Vulnerability
     19. ProZilla Multiple Remote Buffer Overflow Vulnerabilities
     20. Soldier Of Fortune 2 Buffer Overflow Vulnerability
     21. Alt-N MDaemon Local Privilege Escalation Vulnerability
     22. VMWare Workstation Local Format String Vulnerability
     23. Cyrus IMAPD Multiple Remote Unspecified Vulnerabilities
     24. SugarCRM Unspecified Vulnerabilities
     25. Jabber Server Multiple Remote Buffer Overflow Vulnerabilitie...
     26. Youngzsoft CMailServer Multiple Remote Vulnerabilities
     27. WMFrog Weather Monitor Symbolic Link Vulnerability
     28. KorWeblog Remote Directory Listing Vulnerability
     29. Zwiki Cross-Site Scripting Vulnerability
     30. JSPWiki Cross-Site Scripting Vulnerability
     31. Open DC Hub Remote Buffer Overflow Vulnerability
     32. PHPNews SQL Injection Vulnerability
     33. Win FTP Server Plaintext Password Storage Weakness
     34. LucasArts Star Wars Battlefront Game Server Multiple Remote ...
     35. Microsoft Internet Explorer Infinite Array Sort Denial Of Se...
     36. Mozilla Firefox Infinite Array Sort Denial Of Service Vulner...
     37. Yard Radius Remote Buffer Overflow Vulnerability
     38. Linux Kernel Unspecified Local Denial Of Service And Memory ...
     39. MailEnable IMAP Service Multiple Remote Pre-Authentication B...
     40. Atari800 Emulator Multiple Local Buffer Overflow Vulnerabili...
     41. Sun Java Applet Invocation Version Specification Weakness
     42. InShop and InMail Cross-Site Scripting Vulnerabilities
     43. Apple Safari Web Browser Infinite Array Sort Denial Of Servi...
     44. Mozilla Browser Infinite Array Sort Denial Of Service Vulner...
     45. Mozilla Camino Web Browser Infinite Array Sort Denial Of Ser...
     46. Opera Web Browser Infinite Array Sort Denial Of Service Vuln...
     47. Microsoft Windows WINS Replication Protocol Remote Memory Co...
     48. YaBB Shadow BBCode Tag JavaScript Injection Vulnerability
     49. PHPCMS Cross-Site Scripting Vulnerability
     50. PNTresMailer Directory Traversal Vulnerability
     51. Microsoft Internet Explorer Image Download Filename Extensio...
     52. Microsoft Windows WINS Arbitrary Association Delete Unspecif...
III. SECURITYFOCUS NEWS ARTICLES
     1. Hacking tool reportedly draws FBI subpoenas
     2. Judge dismisses keylogger case
     3. Petco settles with FTC over cyber security gaffe
     4. SCO hacked in apparent IP protest
     5. Phishers tapping botnets to automate attacks
     6. Warning: critical Winamp vuln
IV. SECURITYFOCUS TOP 6 TOOLS
     1. Oscanner 1.0.0
     2. Dekart Private Disk 2.03
     3. Remote Process Watcher 1.0
     4. AutoScan b0.92 R6
     5. Rkdscan 1.0
     6. Spybot-S&D 1.3
V. SECURITYJOBS LIST SUMMARY
     1. [SJ-JOB] Sales Representative, Surrey, GB (Thread)
     2. [SJ-JOB] Manager, Information Security, London, GB (Thread)
     3. [SJ-JOB] Sales Representative, Paris, FR (Thread)
     4. [SJ-JOB] Channel / Business Development, Scottsdale,... (Thread)
     5. [SJ-JOB] Sales Representative, Munich, DE (Thread)
     6. [SJ-JOB] Security Consultant, London, GB (Thread)
     7. [SJ-JOB] Sales Representative, Bern, CH (Thread)
     8. [SJ-JOB] Director of Privacy and Security, Milton Ke... (Thread)
     9. [SJ-JOB] Director, Information Security, Milton Keyn... (Thread)
     10. [SJ-JOB] Sr. Security Engineer, Dublin , US (Thread)
     11. [SJ-JOB] VP of Regional Sales, Anywhere in the US, U... (Thread)
     12. [SJ-JOB] Sr. Security Analyst, Jackson, US (Thread)
     13. [SJ-JOB] Developer, Fredericton, CA (Thread)
     14. [SJ-JOB] CISO, Chantilly, US (Thread)
     15. [SJ-JOB] Security Engineer, Columbus, US (Thread)
     16. [SJ-JOB] Regional Channel Manager, Chicago, US (Thread)
     17. [SJ-JOB] Regional Channel Manager, Dallas, US (Thread)
     18. [SJ-JOB] Quality Assurance, Dallas, US (Thread)
     19. [SJ-JOB] Security Architect, Frederick, US (Thread)
     20. [SJ-JOB] VP of Regional Sales, San Francisco Bay Are... (Thread)
     21. [SJ-JOB] Sr. Security Analyst, Clearwater, US (Thread)
     22. [SJ-JOB] Sr. Security Analyst, Springfield, US (Thread)
     23. [SJ-JOB] Security Product Manager, Dallas, US (Thread)
     24. [SJ-JOB] Regional Channel Manager, Atlanta, US (Thread)
     25. [SJ-JOB] VP / Dir / Mgr engineering, Nashua, US (Thread)
     26. [SJ-JOB] Quality Assurance, Fredericton, CA (Thread)
VI. INCIDENTS LIST SUMMARY
     1. Odd addresses on my wireless network (Thread)
     2. New/old Trojan? (Thread)
     3. PHP injection attempt from 200.222.244.154 (Thread)
VII. VULN-DEV RESEARCH LIST SUMMARY
     1. Problem exploiting a CGI overflow (Thread)
     2. [off topic] Book, articles and link recommendations (Thread)
     3. Changes in Aleph1 Smashing the Stack... (Thread)
     4. [Full-Disclosure] FIREFOX flaws: nested array sort()... (Thread)
     5. More Browser on Macosx flaws: nested array sort() lo... (Thread)
     6. Winamp - Buffer Overflow In IN_CDDA.dll (Thread)
     7. Immunity, Inc Advisor (Thread)
     8. php-4.3.7 Memory Limit Vuln POC (Thread)
     9. MSIE flaws: nested array sort() loop Stack overflow ... (Thread)
     10. FIREFOX flaws: nested array sort() loop Stack overfl... (Thread)
     11. Shellcode encoder used in IFRAME exploit. (Thread)
     12. Winamp - Buffer Overflow In IN_CDDA.dll [Unpatched] (Thread)
     13. SecureCRT - Remote Command Execution (Thread)
VIII. MICROSOFT FOCUS LIST SUMMARY
     1. A little nervous about service packs (Thread)
     2. Microsoft rights management server alternatives (Thread)
     3. SecurityFocus Microsoft Newsletter #216 (Thread)
IX. SUN FOCUS LIST SUMMARY
     NO NEW POSTS FOR THE WEEK 2004-11-23 to 2004-11-30.
X. LINUX FOCUS LIST SUMMARY
     NO NEW POSTS FOR THE WEEK 2004-11-23 to 2004-11-30.
XI. UNSUBSCRIBE INSTRUCTIONS
XII. SPONSOR INFORMATION

I. FRONT AND CENTER
-------------------
1. Profitware
By Kelly Martin

Some of the largest anti-virus companies have virtually ignored the spyware
problem because there is no profit incentive for them to do otherwise.
Meanwhile, spyware companies make millions.

http://www.securityfocus.com/columnists/278


2. Seeds of Disaster
By Mark Burnett

Internet Explorer's problems can be traced to Microsoft's shortsightedness
during the browser wars of the 1990s. Is the company sowing tomorrow's
security woes today?

http://www.securityfocus.com/columnists/279

II. BUGTRAQ SUMMARY
-------------------
1. PHPBB Login Form Multiple Input Validation Vulnerabilities
BugTraq ID: 11716
Remote: Yes
Date Published: Nov 20 2004
Relevant URL: http://www.securityfocus.com/bid/11716
Summary:
Multiple input validation vulnerabilities affect the login form of phpBB. These issues are due to a failure of the application to perform proper sanitization prior to including user-supplied input in dynamically generated content and SQL queries.

An attacker may leverage these issues to execute arbitrary client side script code in the browser of an unsuspecting user and inject arbitrary SQL syntax into SQL queries. This may potentially lead to theft of cookie-based authentication credentials, theft of sensitive information or corruption of data as well as other attacks. 

It should be noted that it is possible that one or more of these issues has been reported in a previous BID.  This BID will be updated as more information becomes available.

2. Computer Associates eTrust EZAntivirus User Interface Local ...
BugTraq ID: 11717
Remote: No
Date Published: Nov 20 2004
Relevant URL: http://www.securityfocus.com/bid/11717
Summary:
A local authentication bypass vulnerability affects the user interface of eTrust EZAntivirus.  This issue is due to a design error that allows a local attacker to bypass the implemented authentication.

A local attacker may exploit this issue to bypass the user interface authentication mechanisms, facilitating unauthorized access the software.  This may allow manipulation of virus scanning rules that may subsequently facilitate further attacks against the affected computer.

3. W-Channel TC-IDE Embedded Linux Local Privilege Escalation V...
BugTraq ID: 11718
Remote: No
Date Published: Nov 20 2004
Relevant URL: http://www.securityfocus.com/bid/11718
Summary:
Multiple local privilege escalation vulnerabilities reportedly exist in W-Channel TC-IDE.  These issues are due to input handling errors that allow a local attacker to start applications with escalated privileges.

A local attacker may leverage these issues to gain superuser access to the affected computer, facilitating privilege escalation.

4. IPBProArcade Remote SQL Injection Vulnerability
BugTraq ID: 11719
Remote: Yes
Date Published: Nov 20 2004
Relevant URL: http://www.securityfocus.com/bid/11719
Summary:
A remote SQL injection vulnerability reportedly affects ipbProArcade.  This issue is due to a failure of the application to properly sanitize user-supplied input prior to including it in an SQL query.

An attacker may leverage this issue to manipulate SQL query strings and potentially carry out arbitrary database queries. This may facilitate the disclosure or corruption of sensitive database information.

5. Citrix MetaFrame Presentation Server Client Debugging Utilit...
BugTraq ID: 11720
Remote: No
Date Published: Nov 22 2004
Relevant URL: http://www.securityfocus.com/bid/11720
Summary:
A vulnerability affects the Citrix MetaFrame Presentation Server client debugging utility.  This issue is due to a design error in the affected debugging utility that may aid an attacker in the theft of sensitive information.

An attacker may leverage this issue to record keystrokes of unsuspecting users, potentially revealing sensitive information and facilitating privilege escalation or other attacks.

6. WeOnlyDo! wodFtpDLX ActiveX Component Remote Buffer Overflow...
BugTraq ID: 11721
Remote: Yes
Date Published: Nov 22 2004
Relevant URL: http://www.securityfocus.com/bid/11721
Summary:
A remote buffer overflow vulnerability reportedly affects the WeOnlyDo! wodFtpDLX ActiveX Component.  This issue is due to a failure of the application to properly validate the length of user-supplied strings prior to copying them into finite process buffers.

An attacker may exploit this issue to execute arbitrary code with the privileges of a user that started an application that implements the vulnerable ActiveX conmponent.

7. Sacred Multiple Connection Denial Of Service Vulnerability
BugTraq ID: 11722
Remote: Yes
Date Published: Nov 22 2004
Relevant URL: http://www.securityfocus.com/bid/11722
Summary:
Sacred is reported susceptible to a multiple connection denial of service vulnerability.

This vulnerability allows remote attackers to block further network access to a Sacred server, denying access to legitimate users.

8. ZyXEL Prestige Router HTTP Remote Administration Configurati...
BugTraq ID: 11723
Remote: Yes
Date Published: Nov 22 2004
Relevant URL: http://www.securityfocus.com/bid/11723
Summary:
ZyXEL Prestige router series is reported prone to an access validation vulnerability. The vulnerability exists because the firmware of the router fails to restrict access to a configuration page that is a part of the ZyXEL Prestige HTTP based remote administration service.

A remote attacker may exploit this vulnerability to reset the configuration of the router.

9. Gearbox Software Halo Game Client Remote Denial Of Service V...
BugTraq ID: 11724
Remote: Yes
Date Published: Nov 22 2004
Relevant URL: http://www.securityfocus.com/bid/11724
Summary:
The Halo game client is reported prone to a remote denial of service vulnerability. It is reported that when using the in game browser to view a server list, a malicious reply from a server may crash the affected client.

A remote attacker may exploit this vulnerability to deny service to legitimate users.

10. PHPKIT Multiple Input Validation Vulnerabilities
BugTraq ID: 11725
Remote: Yes
Date Published: Nov 22 2004
Relevant URL: http://www.securityfocus.com/bid/11725
Summary:
It is reported that PHPKIT is susceptible to cross-site scripting and SQL injection vulnerabilities.

The cross-site scripting issue is present in a parameter of the 'popup.php' script.  An attacker can exploit this issue by creating a malicious link containing HTML and script code and send this link to a vulnerable user. This can allow for theft of cookie-based authentication credentials and other attacks.

An SQL injection issue exists in the application as well. This issue affects a parameter of the 'print.php' script.  Due to this, attackers may supply malicious parameters to manipulate the structure and logic of SQL queries.

11. Sun Java Runtime Environment Java Plug-in JavaScript Securit...
BugTraq ID: 11726
Remote: Yes
Date Published: Nov 22 2004
Relevant URL: http://www.securityfocus.com/bid/11726
Summary:
A vulnerability is reported to exist in the access controls of the Java to JavaScript data exchange within web browsers that employ the Sun Java Plug-in. Reports indicate that it is possible for a malicious website that contains JavaScript code to exploit this vulnerability to load a dangerous Java class and to pass this class to an invoked applet.

** UPDATE: It is reported that the various methods of invoking Java applets can be abused to specify which version of a plug-in will be used to run an applet. If a vulnerable version is still installed on the computer, it may be possible for to specify that this version runs the applet instead of an updated version that is not prone to the vulnerability. Users affected by this vulnerability should remove earlier versions of the plug-in. This functionality could also be abused to prompt users to install vulnerable versions of the plug-in, so users should be wary of doing so. This general security weakness has been assigned an individual BID (11757). It is not known to what degree the Sun Java Runtime Environment Java Plug-in JavaScript Security Restriction Bypass Vulnerability is affected by this security weakness, though a number of other known vulnerabilities could be affected.

12. Plain Black Software WebGUI Unspecified Remote Vulnerability
BugTraq ID: 11727
Remote: Unknown
Date Published: Nov 22 2004
Relevant URL: http://www.securityfocus.com/bid/11727
Summary:
An unspecified remote vulnerability affects Plain Black Software WebGUI.  The underlying issue causing this vulnerability is currently unknown.  This BID will be updated as more information becomes available.

The potential impact of this issue is currently unknown.  Due to nature of this issue it may facilitate theft of authentication credentials, however this is not confirmed.

13. Apple iCal Calendar Import Alarm Notification Failure Vulner...
BugTraq ID: 11728
Remote: Yes
Date Published: Nov 22 2004
Relevant URL: http://www.securityfocus.com/bid/11728
Summary:
It is reported that when importing an Apple iCal calendar, iCal fails to warn an end user if the calendar contains an alarm. This may result in a victim importing a calendar that is believed to be safe when in reality the calendar contains malicious alarm entries.

14. Cyrus IMAPD Multiple Remote Vulnerabilities
BugTraq ID: 11729
Remote: Yes
Date Published: Nov 23 2004
Relevant URL: http://www.securityfocus.com/bid/11729
Summary:
Several remote buffer overflow and heap corruption vulnerabilities in versions of Cyrus IMAPD up to 2.2.8 have been identified.

These vulnerabilities reportedly allow remote, attacker-supplied machine code to be executed in the context of the affected server process. Cyrus-IMAPD is usually running as a non-privileged user.

15. Nullsoft Winamp IN_CDDA.dll Remote Buffer Overflow Vulnerabi...
BugTraq ID: 11730
Remote: Yes
Date Published: Nov 23 2004
Relevant URL: http://www.securityfocus.com/bid/11730
Summary:
A remote buffer overflow vulnerability affects the IN_CDDA.dll library of Nullsoft's Winamp.  This issue is due to a failure of the application to properly validate the length of user-supplied strings prior to copying them into finite process buffers.  The issue would most likely be exposed through a malicious playlist designed to trigger the issue.

An attacker may exploit this issue to execute arbitrary code with the privileges of the user that activated the vulnerable application.

16. Van Dyke SecureCRT Remote Command Execution Vulnerability
BugTraq ID: 11731
Remote: Yes
Date Published: Nov 23 2004
Relevant URL: http://www.securityfocus.com/bid/11731
Summary:
A remote command execution vulnerability affects Van Dyke's SecureCRT.  This issue is due to a design error that allows a remote attacker to execute arbitrary script on the affected computer with the privileges of the affected application.

An attacker may leverage this issue to execute arbitrary code with the privileges of the user that activated the affected application; this may facilitate privilege escalation or unauthorized access.

17. F-Secure Anti-Virus ZIP Archive Scanner Bypass Vulnerability
BugTraq ID: 11732
Remote: Yes
Date Published: Nov 23 2004
Relevant URL: http://www.securityfocus.com/bid/11732
Summary:
A vulnerability is reported to be present in the F-secure Anti-Virus software that may cause the software to fail in detecting malicious ZIP archives. It is reported that the software does not filter certain ZIP archives.

Exploitation of this vulnerability may result in a false sense of security and in the execution of malicious applications.

18. NuKed-Klan Submit Link Function HTML Injection Vulnerability
BugTraq ID: 11733
Remote: Yes
Date Published: Nov 23 2004
Relevant URL: http://www.securityfocus.com/bid/11733
Summary:
NuKed-Klan 'submit URI link' function is reported prone to a HTML injection vulnerability. It is reported that the issue exists due to a lack of sufficient input validation performed on the 'website name' input field of the NuKed-Klan submit URI link form.

Attackers may potentially exploit this issue to manipulate web content or to steal cookie-based authentication credentials. It may also be possible to take arbitrary actions as the victim user.

19. ProZilla Multiple Remote Buffer Overflow Vulnerabilities
BugTraq ID: 11734
Remote: Yes
Date Published: Nov 23 2004
Relevant URL: http://www.securityfocus.com/bid/11734
Summary:
It is reported that multiple buffer overflow vulnerabilities exist in ProZilla. These issues are due to a failure of the application to properly bounds check user-supplied input prior to copying it into fixed sized memory buffers.

These vulnerabilities allow remote attackers to execute arbitrary code in the context of a user running the affected application. A victim user is required to attempt to download files from an attacker-controlled server for an exploit to succeed.

20. Soldier Of Fortune 2 Buffer Overflow Vulnerability
BugTraq ID: 11735
Remote: Yes
Date Published: Nov 23 2004
Relevant URL: http://www.securityfocus.com/bid/11735
Summary:
It is reported that Soldier of Fortune 2 is susceptible to a buffer overflow vulnerability. This issue is due to a failure of the application to perform sufficient bounds checking on user-supplied input prior to copying it to a fixed-sized memory buffer.

A remote attacker may exploit this vulnerability to deny service to legitimate users. Due to the nature of this vulnerability, it is conjectured that remote code execution may be possible, but this is not confirmed.

21. Alt-N MDaemon Local Privilege Escalation Vulnerability
BugTraq ID: 11736
Remote: No
Date Published: Nov 23 2004
Relevant URL: http://www.securityfocus.com/bid/11736
Summary:
A local privilege escalation vulnerability reportedly affects Alt-N MDaemon.  This issue is due to a failure of the application to properly drop privileges prior to executing child processes.

An attacker may leverage this issue to execute applications with SYSTEM privileges, facilitating privilege escalation.

22. VMWare Workstation Local Format String Vulnerability
BugTraq ID: 11737
Remote: No
Date Published: Nov 23 2004
Relevant URL: http://www.securityfocus.com/bid/11737
Summary:
A potential format string handling vulnerability is reported to exist in the VMWare workstation executable. It is reported that the affected executable does not correctly handle format specifier characters that are passed to the application as a command line argument. Although unconfirmed, under circumstances where the affected VMWare application is installed with setuid privileges, this failure to handle format strings may facilitate privilege escalation.

23. Cyrus IMAPD Multiple Remote Unspecified Vulnerabilities
BugTraq ID: 11738
Remote: Yes
Date Published: Nov 24 2004
Relevant URL: http://www.securityfocus.com/bid/11738
Summary:
Cyrus IMAPD is reported prone to multiple remote unspecified buffer overflow vulnerabilities. The following issues are reported:

It is reported that the first issue exists in the 'IMAPMAGICPLUS' functionality provided by Cyrus IMAPD. This vulnerability exists prior to authentication, and is therefore reportedly exploitable by anonymous remote attackers.

Additionally a buffer overflow vulnerability is reported to exist in the 'mysasl_canon_user' Cyrus IMAPD function.

These vulnerabilities reportedly may allow remote, attacker-supplied machine code to be executed in the context of the affected server process.

24. SugarCRM Unspecified Vulnerabilities
BugTraq ID: 11740
Remote: Yes
Date Published: Nov 23 2004
Relevant URL: http://www.securityfocus.com/bid/11740
Summary:
SugarCRM version 2.0.1a has been released to address multiple security vulnerabilities.  The vendor has not publicized specific details about the vulnerabilities that were addressed in this release.

25. Jabber Server Multiple Remote Buffer Overflow Vulnerabilitie...
BugTraq ID: 11741
Remote: Yes
Date Published: Nov 24 2004
Relevant URL: http://www.securityfocus.com/bid/11741
Summary:
Multiple remote buffer overflow vulnerabilities affect the Jabber Server. These issues are due to a failure of the application to properly validate the length of user-supplied strings prior to copying them into finite process buffers.

An attacker may leverage these issues to execute arbitrary code on a computer with the privileges of the server process.  This may facilitate unauthorized access or privilege escalation.

26. Youngzsoft CMailServer Multiple Remote Vulnerabilities
BugTraq ID: 11742
Remote: Yes
Date Published: Nov 24 2004
Relevant URL: http://www.securityfocus.com/bid/11742
Summary:
Multiple remote vulnerabilities affect the Youngzsoft CMailServer.  These issues are due to a failure of the application to properly sanitize user input and perform sufficient bounds checking.

The first issue is a buffer overflow vulnerability in the attachment functionality.  The second and third issues are SQL injection vulnerabilities.  The final issue is an HTML injection issue.  

An attacker may leverage these issues to execute arbitrary code on an affected computer, carry out SQL injection attacks that may delete sensitive data and perform HTML injection attacks facilitating the theft of authentication credentials.

27. WMFrog Weather Monitor Symbolic Link Vulnerability
BugTraq ID: 11743
Remote: No
Date Published: Nov 24 2004
Relevant URL: http://www.securityfocus.com/bid/11743
Summary:
A local symbolic link vulnerability affects wmFrog.  This issue is due to a failure of the application to securely handle temporary files.

An attacker may leverage this issue to corrupt or overwrite arbitrary files with the privileges of an unsuspecting user that activated the affected application.  It has been reported that this issue can be exploited to escalate privileges.

28. KorWeblog Remote Directory Listing Vulnerability
BugTraq ID: 11744
Remote: Yes
Date Published: Nov 24 2004
Relevant URL: http://www.securityfocus.com/bid/11744
Summary:
A vulnerability is reported in the KorWeblog software that may allow a remote user to disclose directory listings.

The problem presents itself when a malicious user crafts an URI request containing directory traversal sequences. When properly formatted, the request will present the malicious user with a listing of the contents of a specified server directory located outside of the web root.

An attacker may leverage this issue to gain access to sensitive information by disclosing directory listings; information disclosed in this way could lead to further attacks against the target system.

29. Zwiki Cross-Site Scripting Vulnerability
BugTraq ID: 11745
Remote: Yes
Date Published: Nov 24 2004
Relevant URL: http://www.securityfocus.com/bid/11745
Summary:
It is reported that Zwiki is susceptible to a cross-site scripting vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied URI input prior to including it in dynamic web page content.

This issue could permit a remote attacker to create a malicious URI link that includes hostile HTML and script code. If this link were to be followed, the hostile code may be rendered in the web browser of the victim user.

30. JSPWiki Cross-Site Scripting Vulnerability
BugTraq ID: 11746
Remote: Yes
Date Published: Nov 24 2004
Relevant URL: http://www.securityfocus.com/bid/11746
Summary:
It is reported that JSPWiki is susceptible to a cross-site scripting vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied URI input prior to including it in dynamically generated Web pages.

This issue could permit a remote attacker to create a malicious URI link that includes hostile HTML and script code. If this link were to be followed, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the affected web site and may allow for theft of cookie-based authentication credentials or other attacks.

This vulnerability is reported to exist in version 2.1.120 of JSPWiki. Other versions may also be affected.

31. Open DC Hub Remote Buffer Overflow Vulnerability
BugTraq ID: 11747
Remote: Yes
Date Published: Nov 24 2004
Relevant URL: http://www.securityfocus.com/bid/11747
Summary:
A remote buffer overflow vulnerability reportedly affects the Open DC Hub.  This issue is due to a failure of the application to properly validate the length of user-supplied strings prior to copying them into finite process buffers.

An attacker may exploit this issue to execute arbitrary code with the privileges of the user that activated the vulnerable application.  This may facilitate unauthorized access or privilege escalation.

32. PHPNews SQL Injection Vulnerability
BugTraq ID: 11748
Remote: Yes
Date Published: Nov 24 2004
Relevant URL: http://www.securityfocus.com/bid/11748
Summary:
It is reported that PHPNews is susceptible to an SQL injection vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied input prior to utilizing it in an SQL query.

An attacker can exploit this issue to manipulate and inject SQL queries into the underlying database. It may be possible to leverage this issue to steal database contents including user credentials as well as to attack the underlying database.

Version 1.2.3 is reported susceptible to this vulnerability. Other versions may also be affected.

33. Win FTP Server Plaintext Password Storage Weakness
BugTraq ID: 11749
Remote: No
Date Published: Nov 24 2004
Relevant URL: http://www.securityfocus.com/bid/11749
Summary:
It is reported that Win FTP Server stores user account information in a plaintext file on the server filesystem.

As a result, FTP user credentials could be exposed to other local users who have permissions to access this file. Malicious users that gain access to FTP user credentials may be able to gain access to potentially sensitive files served by the application.

Version 1.6 of the application is reportedly affected by this weakness. Other versions are also likely affected.

34. LucasArts Star Wars Battlefront Game Server Multiple Remote ...
BugTraq ID: 11750
Remote: Yes
Date Published: Nov 24 2004
Relevant URL: http://www.securityfocus.com/bid/11750
Summary:
LucasArts Star Wars Battlefront game server is reported prone to multiple remote denial of service vulnerabilities. The following issues are reported:

It is reported that the Star Wars Battlefront game server fails to perform sufficient boundary checks on 'nickname' data that is supplied by a client. 

A remote attacker may exploit this vulnerability to deny service to legitimate users.

Additionally, it is reported that the Star Wars Battlefront game server provides debugging functionality that may be leveraged by a malicious client to trigger a server crash.

A remote attacker may exploit this vulnerability to deny service to legitimate users.

This vulnerability is reported to affect LucasArts Star Wars Battlefront up to and including version 1.11.

35. Microsoft Internet Explorer Infinite Array Sort Denial Of Se...
BugTraq ID: 11751
Remote: Yes
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11751
Summary:
Microsoft Internet is prone to a vulnerability that may result in a browser crash.  This issue is exposed when the browser performs an infinite JavaScript array sort operation.  It is conjectured that this will only result in a denial of service and is not further exploitable to execute arbitrary code, though this has not been confirmed.

36. Mozilla Firefox Infinite Array Sort Denial Of Service Vulner...
BugTraq ID: 11752
Remote: Yes
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11752
Summary:
Mozilla Firefox is prone to a vulnerability that may result in a browser crash.  This issue is exposed when the browser performs an infinite JavaScript array sort operation.  It is conjectured that this will only result in a denial of service and is not further exploitable to execute arbitrary code, though this has not been confirmed.

It is not known if other Mozilla products or Gecko-based browsers are affected by this vulnerability.

37. Yard Radius Remote Buffer Overflow Vulnerability
BugTraq ID: 11753
Remote: Yes
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11753
Summary:
Yard Radius is prone to a remotely exploitable stack-based buffer overflow.  This issue could reportedly be exploited prior to authentication.  Successful exploitation may result in execution of arbitrary code in the context of the server, which may be running as the superuser.

38. Linux Kernel Unspecified Local Denial Of Service And Memory ...
BugTraq ID: 11754
Remote: No
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11754
Summary:
The Linux kernel is reported prone to multiple local vulnerabilities. The following issues are reported:

Reports indicate that a handcrafted 'a.out' file may be used to trigger a local denial of service condition.

A local attacker may exploit this vulnerability to trigger a system-wide denial of service, potentially resulting in a kernel panic.

A memory disclosure vulnerability is also reported to affect the Linux kernel. 

A local attacker may exploit this vulnerability to disclose random pages of physical memory.

This BID will be updated, as further details regarding these vulnerabilities are made available.

39. MailEnable IMAP Service Multiple Remote Pre-Authentication B...
BugTraq ID: 11755
Remote: Yes
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11755
Summary:
MailEnable IMAP service is reported prone to multiple remote buffer overflow vulnerabilities. The following individual issues are reported:

The first buffer overflow vulnerability is reported to exist due to a lack of sufficient bounds checking performed on IMAP command arguments before the argument is copied into a finite process memory buffer.

A remote attacker may exploit this vulnerability prior to authentication to execute arbitrary code in the context of the affected service.

The second buffer overflow vulnerability presents itself due to a lack of boundary checks performed on request data sent to the IMAP service.

A remote attacker may exploit this vulnerability prior to authentication to execute arbitrary code in the context of the affected service.

40. Atari800 Emulator Multiple Local Buffer Overflow Vulnerabili...
BugTraq ID: 11756
Remote: No
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11756
Summary:
Atari800 is reported prone to multiple local buffer overflow vulnerabilities. The issues exist in 'log.c' and 'rt-config.c' files and are due to a lack of sufficient boundary checks performed on user-supplied data.

A local attacker may exploit these vulnerabilities to have arbitrary attacker supplied instructions executed in the context of the vulnerable utility.

These vulnerabilities are reported to affect Atari800 1.3.1 and previous other versions might also be affected. It is reported that this application is installed setuid superuser when it is compiled to utilize SVGALIB.

This issue may be related to BID 8322.

41. Sun Java Applet Invocation Version Specification Weakness
BugTraq ID: 11757
Remote: Yes
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11757
Summary:
Java provides support for dynamic and static versioning when loading applets in the Java plug-in.  What this means is that it is possible during the invocation of an applet to request that a particular version of a plug-in is used to run the applet.  The feature is accessible through various HTML tags that allow Java applets to be embedded in HTML documents, such as the EMBED, OBJECT, and APPLET tags.

This feature presents a security weakness in that it may be abused to cause a previous version of a plug-in, that is known to be prone to security vulnerabilities, to be loaded in lieu of a more recent version that has been patched for said security vulnerabilities.   For this design flaw to pose a security threat, a vulnerable plug-in must either already be installed on the host computer or the user must manually install a version that is prone to security vulnerabilities.  In this instance that a targeted version is not installed, the user may be prompted to install the targeted plug-in version.  

This weakness could result in a false sense of security since it is believed that installing an updated version will eliminate vulnerabilities in previous versions.

It should be noted that this feature is supported in various Web browsers, and therefore the browsers themselves may be prone to the issue.  Some browsers may not allow a Java plug-in that is no longer registered with the browser to run.

This design flaw was originally discussed in an update to BID 11726.

42. InShop and InMail Cross-Site Scripting Vulnerabilities
BugTraq ID: 11758
Remote: Yes
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11758
Summary:
InMail and InShop are both reported susceptible to cross-site scripting vulnerabilities. These issues are due to a failure of the applications to properly sanitize user-supplied input prior to including it in dynamic Web pages.

These issues could permit a remote attacker to create a malicious URI link that includes hostile HTML and script code. If this link were to be followed, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the affected web site and may allow for theft of cookie-based authentication credentials or other attacks.

43. Apple Safari Web Browser Infinite Array Sort Denial Of Servi...
BugTraq ID: 11759
Remote: Yes
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11759
Summary:
Apple Safari Web Browser is prone to a vulnerability that may result in a browser crash.  This issue is exposed when the browser performs an infinite JavaScript array sort operation.  It is conjectured that this will only result in a denial of service and is not further exploitable to execute arbitrary code, though this has not been confirmed.

44. Mozilla Browser Infinite Array Sort Denial Of Service Vulner...
BugTraq ID: 11760
Remote: Yes
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11760
Summary:
Mozilla Browser is prone to a vulnerability that may result in a browser crash.  This issue is exposed when the browser performs an infinite JavaScript array sort operation.  It is conjectured that this will only result in a denial of service and is not further exploitable to execute arbitrary code, though this has not been confirmed.

45. Mozilla Camino Web Browser Infinite Array Sort Denial Of Ser...
BugTraq ID: 11761
Remote: Yes
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11761
Summary:
Mozilla Camino Web browser is prone to a vulnerability that may result in a browser crash.  This issue is exposed when the browser performs an infinite JavaScript array sort operation.  It is conjectured that this will only result in a denial of service and is not further exploitable to execute arbitrary code, though this has not been confirmed.

46. Opera Web Browser Infinite Array Sort Denial Of Service Vuln...
BugTraq ID: 11762
Remote: Yes
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11762
Summary:
The Opera Web browser is prone to a vulnerability that may result in a browser crash.  This issue is exposed when the browser performs an infinite JavaScript array sort operation.  It is conjectured that this will only result in a denial of service and is not further exploitable to execute arbitrary code, though this has not been confirmed.

47. Microsoft Windows WINS Replication Protocol Remote Memory Co...
BugTraq ID: 11763
Remote: Yes
Date Published: Nov 25 2004
Relevant URL: http://www.securityfocus.com/bid/11763
Summary:
It is reported that the WINS replication protocol contains a vulnerability that when exploited will result in memory corruption. The issue exists due to a protocol design flaw that allows a remote user to specify the location of a data structure in memory. 

Because the attacker may control the location of the data structure, this vulnerability may be exploited to corrupt process memory.

This issue could potentially be exploited remotely by a WINS client to execute arbitrary code with SYSTEM level privileges on a target WINS server. The service  may be exposed via TCP/UDP port 42 by default, but the vendor has stated that other attack vectors may exist though none are known at this time.

48. YaBB Shadow BBCode Tag JavaScript Injection Vulnerability
BugTraq ID: 11764
Remote: Yes
Date Published: Nov 26 2004
Relevant URL: http://www.securityfocus.com/bid/11764
Summary:
YaBB is reported prone to a JavaScript injection vulnerability. It is reported that the BBCode 'shadow' tag is not sufficiently sanitized of malicious script content. 

An attacker that has an account on the affected bulletin board may exploit this vulnerability to inject arbitrary JavaScript code into forum posts through the 'shadow' tag.

49. PHPCMS Cross-Site Scripting Vulnerability
BugTraq ID: 11765
Remote: Yes
Date Published: Nov 26 2004
Relevant URL: http://www.securityfocus.com/bid/11765
Summary:
It is reported that phpCMS is susceptible to a cross-site scripting vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied input prior to including it in dynamically generated Web pages.

It is reported that in order for phpCMS to be vulnerable, it must be configured with one, or both of 'STEALTH', or 'STEALTH_SECURE' modes being disabled.

This issue could permit a remote attacker to create a malicious URI link that includes hostile HTML and script code. If this link were to be followed, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the affected web site and may allow for theft of cookie-based authentication credentials or other attacks.

Versions prior to 1.2.1pl1 are reportedly affected by this issue.

50. PNTresMailer Directory Traversal Vulnerability
BugTraq ID: 11767
Remote: Yes
Date Published: Nov 26 2004
Relevant URL: http://www.securityfocus.com/bid/11767
Summary:
pnTresMailer is reported susceptible to a directory traversal vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied input data.

This vulnerability can be exploited to retrieve arbitrary, potentially sensitive files from the hosting computer with the privileges of the web server. This may aid a malicious user in further attacks.

Version 6.03 of the application is reportedly affected by this vulnerability.

51. Microsoft Internet Explorer Image Download Filename Extensio...
BugTraq ID: 11768
Remote: Yes
Date Published: Nov 26 2004
Relevant URL: http://www.securityfocus.com/bid/11768
Summary:
Microsoft Internet Explorer is reported susceptible to a filename extension spoofing vulnerability when utilizing the 'Save Image As' feature.

Reportedly, this vulnerability is only possible when Internet Explorer is configured with 'Hide extension for known file types' enabled. This is the default configuration.

This vulnerability may facilitate the spoofing of filename extensions, resulting in malicious content being inadvertently downloaded to vulnerable Web users.

This issue may be related to BID 3597.

52. Microsoft Windows WINS Arbitrary Association Delete Unspecif...
BugTraq ID: 11769
Remote: Yes
Date Published: Nov 26 2004
Relevant URL: http://www.securityfocus.com/bid/11769
Summary:
Microsoft Windows Internet Name Service (WINS) is reported prone to an unspecified buffer overflow vulnerability.

This issue could potentially be exploited remotely by a WINS client to execute arbitrary code with SYSTEM level privileges on a target WINS server. The service  may be exposed via TCP/UDP port 42 by default, but the vendor has stated that other attack vectors may exist for WINS-related vulnerabilities though none are known at this time.

This BID may be related to the issue described in BID 11763 (Microsoft Windows WINS Replication Protocol Remote Memory Corruption Vulnerability), however this is not confirmed. Few details regarding this vulnerability are available at the time of writing; this BID will be updated as further details are released.

III. SECURITYFOCUS NEWS ARTICLES
--------------------------------
1. Hacking tool reportedly draws FBI subpoenas
By: Kevin Poulsen

Law enforcement has sought to identify some users of the Nmap freeware port scanner, the author says.
http://www.securityfocus.com/news/10011

2. Judge dismisses keylogger case
By: Kevin Poulsen

Covert use of a hardware keystroke logger does not violate federal wiretap law, court rules.
http://www.securityfocus.com/news/9978

3. Petco settles with FTC over cyber security gaffe
By: Kevin Poulsen

It's the fifth time regulators have taken action against a company for failing to protect consumer data -- and the second time the same California coder blew the whistle.
http://www.securityfocus.com/news/9957

4. SCO hacked in apparent IP protest
By: Lester Haines, The Register

Visitors to SCO's website this morning were treated to a rare moment of corporate self-awareness after hackers apparently replaced an image linking to the undoubtedly scintillating "Extending Legacy Applications and Databases to the Web and Wireless Devices with SCOx Web Services Substrate" with a graphic bearing the rather more promising "We own all your code - pay us all your money"

http://www.securityfocus.com/news/10024

5. Phishers tapping botnets to automate attacks
By: John Leyden, The Register

Computer criminals are making phishing more potent by automating attacks. Anti-Phishing Working Group (APWG) analysts reckon fraudsters are using automated tools and botnets to ramp up attacks.
http://www.securityfocus.com/news/10017

6. Warning: critical Winamp vuln
By: John Leyden, The Register

Security researchers are warning of a serious - and unfixed - security hole with the popular Winamp media player.
http://www.securityfocus.com/news/10013

IV. SECURITYFOCUS TOP 6 TOOLS
-----------------------------
1. Oscanner 1.0.0
By: Patrik Karlsson
Relevant URL: http://www.cqure.net/tools.jsp?id=20
Platforms: Java
Summary: 

Oscanner is an Oracle assesment framework developed in Java. It has a plugin-based architecture and comes with a couple of plugins that currently do;

  - Sid Enumeration
  - Passwords tests (common & dictionary)
  - Enumerate Oracle version
  - Enumerate account roles
  - Enumerate account priveleges
  - Enumerate account hashes
  - Enumerate audit information
  - Enumerate password policies
  - Enumerate database links

The results are given in a graphical java tree.

2. Dekart Private Disk 2.03
By: Dekart
Relevant URL: http://www.private-disk.net/
Platforms: Windows XP
Summary: 

Private Disk - is an easy-to-use, reliable, user-friendly and smart program that lets you create encrypted disk partitions (drive letters) to keep your private and confidential data secure. Uses 256-bit AES encryption.

3. Remote Process Watcher 1.0
By: Fitsec Tmi
Relevant URL: http://www.fitsec.com/downloads
Platforms: Windows 2000, Windows NT, Windows XP
Summary: 

A Java based software that watches processes running on the computers inside a domain. Gives out warnings when it spots a process that it doesn't recognize or processes that have been marked on the warning list. It is also able to autokill processes marked as critical.

4. AutoScan b0.92 R6
By: Lagarde Thierry
Relevant URL: http://autoscan.free.fr/
Platforms: Linux
Summary: 

AutoScan is an application designed to explore and to manage your network. Entire subnets can be scanned simultaneously without human intervention. It features OS detection, automatic network discovery, a port scanner, a Samba share browser, and the ability to save the network state.

5. Rkdscan 1.0
By: Andres Tarasco - www.sia.es
Relevant URL: http://cyruxnet.org/download/rkdscan.rar
Platforms: Windows 2000
Summary: 

Rkdscan is able to remotely detect if NT based Computers are compromised With "Hacker Defender" Rootkit

6. Spybot-S&D 1.3
By: Patrick M. Kolla
Relevant URL: http://www.spybot.info/en/index.html
Platforms: Windows XP
Summary: 

Spybot - Search & Destroy can detect and remove spyware of different kinds
from your computer. Spyware is a relatively new kind of threat that
common anti-virus applications do not yet cover. If you see new toolbars in
your Internet Explorer that you didn't intentionally install, if your browser
crashes, or if you browser start page has changed without your knowing, you
most probably have spyware. But even if you don't see anything, you may be
infected.

V. SECURITYJOBS LIST SUMMARY
----------------------------
1. [SJ-JOB] Sales Representative, Surrey, GB (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382633

2. [SJ-JOB] Manager, Information Security, London, GB (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382632

3. [SJ-JOB] Sales Representative, Paris, FR (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382627

4. [SJ-JOB] Channel / Business Development, Scottsdale,... (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382619

5. [SJ-JOB] Sales Representative, Munich, DE (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382604

6. [SJ-JOB] Security Consultant, London, GB (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382601

7. [SJ-JOB] Sales Representative, Bern, CH (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382598

8. [SJ-JOB] Director of Privacy and Security, Milton Ke... (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382308

9. [SJ-JOB] Director, Information Security, Milton Keyn... (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382304

10. [SJ-JOB] Sr. Security Engineer, Dublin , US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382286

11. [SJ-JOB] VP of Regional Sales, Anywhere in the US, U... (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382189

12. [SJ-JOB] Sr. Security Analyst, Jackson, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382188

13. [SJ-JOB] Developer, Fredericton, CA (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382186

14. [SJ-JOB] CISO, Chantilly, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382185

15. [SJ-JOB] Security Engineer, Columbus, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382183

16. [SJ-JOB] Regional Channel Manager, Chicago, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382182

17. [SJ-JOB] Regional Channel Manager, Dallas, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382180

18. [SJ-JOB] Quality Assurance, Dallas, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382177

19. [SJ-JOB] Security Architect, Frederick, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382176

20. [SJ-JOB] VP of Regional Sales, San Francisco Bay Are... (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382175

21. [SJ-JOB] Sr. Security Analyst, Clearwater, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382174

22. [SJ-JOB] Sr. Security Analyst, Springfield, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382173

23. [SJ-JOB] Security Product Manager, Dallas, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382144

24. [SJ-JOB] Regional Channel Manager, Atlanta, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382143

25. [SJ-JOB] VP / Dir / Mgr engineering, Nashua, US (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382142

26. [SJ-JOB] Quality Assurance, Fredericton, CA (Thread)
Relevant URL:

http://www.securityfocus.com/archive/77/382139

VI. INCIDENTS LIST SUMMARY
--------------------------
1. Odd addresses on my wireless network (Thread)
Relevant URL:

http://www.securityfocus.com/archive/75/382594

2. New/old Trojan? (Thread)
Relevant URL:

http://www.securityfocus.com/archive/75/382577

3. PHP injection attempt from 200.222.244.154 (Thread)
Relevant URL:

http://www.securityfocus.com/archive/75/382104

VII. VULN-DEV RESEARCH LIST SUMMARY
-----------------------------------
1. Problem exploiting a CGI overflow (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382578

2. [off topic] Book, articles and link recommendations (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382572

3. Changes in Aleph1 Smashing the Stack... (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382569

4. [Full-Disclosure] FIREFOX flaws: nested array sort()... (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382560

5. More Browser on Macosx flaws: nested array sort() lo... (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382545

6. Winamp - Buffer Overflow In IN_CDDA.dll (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382540

7. Immunity, Inc Advisor (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382418

8. php-4.3.7 Memory Limit Vuln POC (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382350

9. MSIE flaws: nested array sort() loop Stack overflow ... (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382349

10. FIREFOX flaws: nested array sort() loop Stack overfl... (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382348

11. Shellcode encoder used in IFRAME exploit. (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382220

12. Winamp - Buffer Overflow In IN_CDDA.dll [Unpatched] (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382156

13. SecureCRT - Remote Command Execution (Thread)
Relevant URL:

http://www.securityfocus.com/archive/82/382106

VIII. MICROSOFT FOCUS LIST SUMMARY
----------------------------------
1. A little nervous about service packs (Thread)
Relevant URL:

http://www.securityfocus.com/archive/88/382419

2. Microsoft rights management server alternatives (Thread)
Relevant URL:

http://www.securityfocus.com/archive/88/382252

3. SecurityFocus Microsoft Newsletter #216 (Thread)
Relevant URL:

http://www.securityfocus.com/archive/88/382078

IX. SUN FOCUS LIST SUMMARY
--------------------------
NO NEW POSTS FOR THE WEEK 2004-11-23 to 2004-11-30.

X. LINUX FOCUS LIST SUMMARY
---------------------------
NO NEW POSTS FOR THE WEEK 2004-11-23 to 2004-11-30.

XI. UNSUBSCRIBE INSTRUCTIONS
----------------------------
To unsubscribe send an e-mail message to [email protected] from the subscribed address. The contents of the subject or message body do not matter. You will receive a confirmation request message to which you will have to answer. Alternatively you can also visit http://www.securityfocus.com/newsletters and unsubscribe via the website.

If your email address has changed email [email protected] and ask to be manually removed.
    
XII. SPONSOR INFORMATION
-----------------------

This Issue is Sponsored By: RSA

RSA Conference 2005
The RSA Conference is the most prestigious information security event of
the year!  This is the authoritative source for uncovering new ways to
thwart cyber-criminals.  Learn.  Network.  Grow.  RSA Conference 2005 takes
place February 14 to 18, 2005 in San Francisco.  Register before January
15, 2005 and save $500 off the Full Conference rate.

http://www.securityfocus.com/sponsor/RSA_sf-news_041130

------------------------------------------------------------------------

Need to know what's happening on YOUR network? Symantec DeepSight Analyzer
is a free service that gives you the ability to track and manage attacks.
Analyzer automatically correlates attacks from various Firewall and network
based Intrusion Detection Systems, giving you a comprehensive view of your
computer or general network. Sign up today!

http://www.securityfocus.com/sponsor/Symantec_sf-news_041130

------------------------------------------------------------------------