SecurityFocus Newsletter #384
[email protected] 17 Jan 2007 00:26:49 -0000
| Newsgroups | gmane.comp.security.news.general |
|---|---|
| Message-ID | <[email protected]> |
SecurityFocus Newsletter #384
----------------------------------------
This Issue is Sponsored by: Black Hat
Black Hat Europe, March 27-30 in Amsterdam, is Europe's premier technical event for ICT security experts.
Featuring 10 hands-on training courses and 30 Briefings presentations with lots of new content-the best of Black Hat focused on Europe's infosec challenges.
Network with 400 delegates from 25 nations, and see solutions from major sponsors.
http://www.blackhat.com
------------------------------------------------------------------
I. FRONT AND CENTER
1. Interview with Bill Cheswick
2. Wireless Forensics: Tapping the Air - Part Two
II. BUGTRAQ SUMMARY
1. BlueZ HIDD Bluetooh HID Command Injection Vulnerability
2. Samba Internal Data Structures Denial of Service Vulnerability
3. InGate Firewall And SIParator Unspecified Authentication Replay Vulnerability
4. Squid Proxy FTP URI Remote Denial of Service Vulnerability
5. DT_Guestbook Index.PHP Cross-Site Scripting Vulnerability
6. NetGear WG111v2 Wireless Driver Long Beacon Buffer Overflow Vulnerability
7. PWSPHP Profil.PHP SQL Injection Vulnerability
8. WebGUI Wiki Title Cross-Site Scripting Vulnerability
9. Asterisk Chan_Skinny Remote Buffer Overflow Vulnerability
10. JV2 Folder Gallery Source Code Information Disclosure Vulnerability
11. GNU GV Stack Buffer Overflow Vulnerability
12. Kaspersky Labs Anti-Virus Local Privilege Escalation Vulnerability
13. RETIRED: Delta Scripts PHP Classifieds Functions.PHP Remote File Include Vulnerability
14. Zina Multiple Unspecified Vulnerabilities
15. D-Link DWL-G132 ASAGU.SYS Wireless Device Driver Stack Buffer Overflow Vulnerability
16. Okul Web Otomasyon Sistemi Etkinlikbak.ASP SQL Injection Vulnerability
17. InstantForum.NET Multiple Cross Site Scripting Vulnerabilities
18. WFTPD Server SITE ADMIN Command Remote Denial of Service Vulnerability
19. Jshop Server Remote File Include Vulnerability
20. Mono XSP Source Code Information Disclosure Vulnerability
21. IBM OS/400 TCP Reset Remote Denial of Service Vulnerability
22. Mono System.CodeDom.Compiler Class Insecure Temporary File Creation Vulnerability
23. Ovidentia Multiple Remote File Include Vulnerabilities
24. All In One Control Panel Multiple SQL Injection Vulnerabilities
25. ThWboard Board[styleid] SQL Injection Vulnerability
26. Acme Thttpd Insecure Temporary Logfile Creation Vulnerability
27. Apple Mac OS X DMG UFS UFS_LookUp Denial Of Service Vulnerability
28. GOnicus System Administrator Unauthorized Data Manipulation Vulnerability
29. Apache Mod_Rewrite Off-By-One Buffer Overflow Vulnerability
30. Ruby on Rails Routing Denial of Service Vulnerability
31. F5 Firepass Multiple Input Validation Vulnerabilities
32. WordPress Charset Decoding SQL Injection Vulnerability
33. GNU Tar GNUTYPE_NAMES Remote Directory Traversal Vulnerability
34. Oftpd Unsupported Address Family Remote Denial of Service Vulnerability
35. OpenSSL PKCS Padding RSA Signature Forgery Vulnerability
36. ProFTPD SReplace Remote Buffer Overflow Vulnerability
37. BEA WebLogic Multiple Vulnerabilities
38. GnuPG OpenPGP Packet Processing Function Pointer Overwrite Vulnerability
39. Wordpress Template.PHP HTML Injection Vulnerability
40. Jax Petitionbook Language Parameter Multiple Local File Include Vulnerabilities
41. PHP HTMLEntities HTMLSpecialChars Buffer Overflow Vulnerabilities
42. BEA WebLogic Server and WebLogic Express Multiple Vulnerabilities
43. PADL Software Pam_Ldap PasswordPolicyResponse Authentication Bypass Vulnerability
44. Mutt Insecure Temporary File Creation Multiple Vulnerabilities
45. BEA WebLogic Server and WebLogic Express Multiple Remote Vulnerabilities
46. GNU GZip Archive Handling Multiple Remote Vulnerabilities
47. BEA WebLogic Server and WebLogic Express Denial of Service Vulnerability
48. KSirc IRC Client Remote PRIVMSG Denial of Service Vulnerability
49. L2TPNS Heartbeat Handling Denial of Service Vulnerability
50. GD Graphics Library Remote Denial of Service Vulnerability
51. Rixstep Undercover Local Privilege Escalation Vulnerability
52. Fetchmail Multiple Password Information Disclosure Vulnerabilities
53. Fetchmail Remote Denial of Service Vulnerability
54. GD Graphics Library Remote Integer Overflow Vulnerability
55. Avahi Compressed DNS Denial Of Service Vulnerability
56. GNU Screen Multiple Denial of Service Vulnerabilities
57. BEA JRockit Java Virtual Machine Unspecified Stack Buffer Overflow Vulnerability
58. GNU Wget FTP_Syst Function Remote Denial of Service Vulnerability
59. Liens_Dynamiques Multiple Unspecified Cross Site Scripting Vulnerabilities
60. Outpost Firewall PRO Local Privilege Escalation Vulnerability
61. Cacti CMD.PHP Remote Command Execution Vulnerability
62. Yukihiro Matsumoto Ruby CGI Module MIME Denial Of Service Vulnerability
63. Liens_Dynamiques AdminLien.PHP Security Restriction Bypass Vulnerability
64. Texinfo File Handling Buffer Overflow Vulnerability
65. Portable OpenSSH GSSAPI Remote Code Execution Vulnerability
66. Macromedia Shockwave 10 SWDIR.DLL ActiveX Control Remote Denial of Service Vulnerability
67. Remedy Action Request System Username Enumeration Vulnerability
68. OpenSSL SSL_Get_Shared_Ciphers Buffer Overflow Vulnerability
69. OpenSSL SSLv2 Null Pointer Dereference Client Denial of Service Vulnerability
70. Clam Anti-Virus CHM Unpacker Denial Of Service Vulnerability
71. Clam Anti-Virus PE Rebuilding Heap Buffer Overflow Vulnerability
72. OpenSSH Duplicated Block Remote Denial of Service Vulnerability
73. Oracle January 2007 Advance Notification Multiple Vulnerabilities
74. PHP SSCANF() Safe_Mode Restriction-Bypass Vulnerability
75. KGB Sesskglogadmin.PHP Local File Include Vulnerability
76. X.Org X Window Server LibX11 Xinput File Descriptor Leak Vulnerability
77. GnuPG Multiple Potential Vulnerabilities
78. Sendmail Long Header Denial Of Service Vulnerability
79. Cisco Secure Access Control Server Multiple Remote Vulnerabilities
80. FileZilla Multiple Remote Format String Vulnerabilities
81. Linux Kernel NFS and EXT3 Combination Remote Denial of Service Vulnerability
82. ProSysInfo TFTPDWIN Remote Buffer Overflow Vulnerability
83. Clam Anti-Virus ClamAV UPX Compressed PE File Heap Buffer Overflow Vulnerability
84. IMlib2 Library Multiple Arbitrary Code Execution Vulnerabilities
85. Ipswitch WS_FTP 2007 Professional WSFTPURL.EXE Local Memory Corruption Vulnerability
86. Microsoft Windows Vector Markup Language Buffer Overrun Vulnerability
87. W3M SSL Certificate Format String Vulnerability
88. MERCUR Messaging 2005 IMAP Remote Buffer Overflow Vulnerability
89. Apple WebKit WebCore Remote Denial of Service Vulnerability
90. Pivot Multiple Input Validation Vulnerabilities
91. Crob FTP Server Multiple Commands Remote Denial of Service Vulnerability
92. MIT Kerberos 5 RPC Library Remote Code Execution Vulnerability
93. FileZilla Options And QueueCTRL Modules Multiple Unspecified Buffer Overflow Vulnerabilities
94. GraphicsMagick PALM DCM Buffer Overflow Vulnerabilities
95. Libgtop2 Library Local Buffer Overflow Vulnerability
96. RealNetwork RealPlayer MID File Handling Remote Denial of Service Vulnerability
97. Multiple PDF Readers Multiple Remote Buffer Overflow Vulnerability
98. GnuPG Make_Printable_String Remote Buffer Overflow Vulnerability
99. IndexU Multiple Cross-Site Scripting Vulnerabilities
100. Scriptme SmE File Mailer Login SQL Injection Vulnerability
III. SECURITYFOCUS NEWS
1. Spammers get bullish on stocks
2. E-voting flaws put Florida in spotlight again
3. Bots, breaches and bugs plague 2006
4. Stock scammer gets coal for the holidays
IV. SECURITY JOBS LIST SUMMARY
1. [SJ-JOB] Security Engineer, Raleigh
2. [SJ-JOB] Security Product Marketing Manager, Arlington
3. [SJ-JOB] Security Consultant, San Francisco
4. [SJ-JOB] Sales Engineer, San Francisco /West Region and Atlanta
5. [SJ-JOB] Penetration Engineer, Reading/London
6. [SJ-JOB] Manager, Information Security, Chicago
7. [SJ-JOB] Security Product Manager, Palo Alto
8. [SJ-JOB] Jr. Security Analyst, Crystal Lake
9. [SJ-JOB] Sr. Security Analyst, Crystal Lake
10. [SJ-JOB] Forensics Engineer, London
11. [SJ-JOB] Forensics Engineer, London
12. [SJ-JOB] Forensics Engineer, London
13. [SJ-JOB] Forensics Engineer, London
14. [SJ-JOB] Security System Administrator, Irvine
15. [SJ-JOB] Forensics Engineer, London
16. [SJ-JOB] Forensics Engineer, Flexible within UK
17. [SJ-JOB] Information Assurance Engineer, Cedar Rapids
18. [SJ-JOB] Security Engineer, Redmond
19. [SJ-JOB] Auditor, Mountain View
20. [SJ-JOB] Auditor, Mountain View
21. [SJ-JOB] Sr. Security Engineer, rockville
22. [SJ-JOB] Sr. Security Analyst, Houston
23. [SJ-JOB] Manager, Information Security, Kamloops
24. [SJ-JOB] Security System Administrator, Columbus
25. [SJ-JOB] Security Engineer, rockville
26. [SJ-JOB] Security Engineer, Carpinteria, CA
27. [SJ-JOB] Security System Administrator, Position is Remote
28. [SJ-JOB] Software Engineer, Rockville
29. [SJ-JOB] Sales Representative, Boston
30. [SJ-JOB] VP of Regional Sales, Chicago
31. [SJ-JOB] Application Security Engineer, Palo Alto
32. [SJ-JOB] Security Engineer, Mountain View
33. [SJ-JOB] Software Engineer, Palo Alto
34. [SJ-JOB] Technology Risk Consultant, Mountain View
35. [SJ-JOB] Forensics Engineer, Foster City
36. [SJ-JOB] Software Engineer, Palo Alto
37. [SJ-JOB] Manager, Information Security, Zurich
38. [SJ-JOB] Security Architect, St. Louis
39. [SJ-JOB] Technical Support Engineer, Berkshire
V. INCIDENTS LIST SUMMARY
1. Bruteforce attack against smtp-auth
VI. VULN-DEV RESEARCH LIST SUMMARY
1. Uninformed Journal Release Announcement: Volume 6
2. seeking comments on disclosure articles
3. Debugger
VII. MICROSOFT FOCUS LIST SUMMARY
1. SoX & Share Permissions?
2. EFS - new recovery agent
3. SecurityFocus Microsoft Newsletter #324
VIII. SUN FOCUS LIST SUMMARY
1. Solaris 2.7 Daylight saving time fix.
IX. LINUX FOCUS LIST SUMMARY
X. UNSUBSCRIBE INSTRUCTIONS
XI. SPONSOR INFORMATION
I. FRONT AND CENTER
---------------------
1. Interview with Bill Cheswick
By Federico Biancuzzi
Many people have seen Internet maps on walls and in various publications over the years. Federico Biancuzzi interviewed Bill Cheswick, who started the Internet Mapping Project that grew into software to map corporate and government networks. They discussed firewalling, logging, NIDS and IPS, how to fight DDoS, and the future of BGP and DNS.
http://www.securityfocus.com/columnists/429
2. Wireless Forensics: Tapping the Air - Part Two
By Raul Siles, GSE
This two-part series looks at the issues associated with collecting and analyzing network traffic from wireless networks in an accurate and comprehensive way; a discipline known as wireless forensics. Part two focuses on the technical challenges for wireless traffic analysis, advanced anti-forensic techniques that could thwart a forensic investigation, and some legal considerations for both the U.S. and Europe.
http://www.securityfocus.com/infocus/1885
II. BUGTRAQ SUMMARY
--------------------
1. BlueZ HIDD Bluetooh HID Command Injection Vulnerability
BugTraq ID: 22076
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22076
Summary:
BlueZ hidd is prone to a device-command-injection vulnerability.
A remote attacker can exploit this issue to gain control of mouse and keyboard HIDs (human interface device). This will allow the attacker to interact with the targeted computer in the context of the currently logged-in user.
Versions prior to 2.25 are vulnerable.
2. Samba Internal Data Structures Denial of Service Vulnerability
BugTraq ID: 18927
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/18927
Summary:
The smbd daemon is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to consume excessive memory resources, ultimately crashing the affected application.
This issue affects Samba versions 3.0.1 through 3.0.22 inclusive.
3. InGate Firewall And SIParator Unspecified Authentication Replay Vulnerability
BugTraq ID: 22080
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22080
Summary:
Ingate Firewall and SIParator are prone to an unspecified authentication-replay vulnerability.
Currently there very few details regarding this issue. This BID will be updated as further information becomes available.
Versions prior to 4.5.1 are vulnerable.
4. Squid Proxy FTP URI Remote Denial of Service Vulnerability
BugTraq ID: 22079
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22079
Summary:
Squid is prone to a remote denial-of-service vulnerability. This issue is due to a failure of the proxy server to handle certain FTP requests.
Successfully exploiting this issue allows remote attackers to crash affected proxy applications, denying futher service to legitimate users.
Squid versions from 2.5.STABLE11 to 2.6.STABLE6 are vulnerable to this issue.
5. DT_Guestbook Index.PHP Cross-Site Scripting Vulnerability
BugTraq ID: 22078
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22078
Summary:
dt_guestbook is prone to a cross-site scripting vulnerability because the application fails to properly sanitize user-supplied input.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Version 1.0f is vulnerable; other versions may also be affected.
6. NetGear WG111v2 Wireless Driver Long Beacon Buffer Overflow Vulnerability
BugTraq ID: 21126
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/21126
Summary:
NetGear WG111v2 Wireless devices are prone to a stack-based buffer-overflow vulnerability because the driver fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
Exploiting this issue allows attackers to execute arbitrary machine code in the context of the kernel hosting the vulnerable driver. Failed attempts will likely crash the kernel, resulting in denial-of-service conditions.
The WG111v2.SYS driver is primarily used on Windows, but administrators should check Linux and BSD machines using the 'ndiswrapper' tool to determine if they are using a vulnerable instance of the driver.
Note also that an attacker can exploit tthis vulnerability only from within the range of broadcast of 802.11 wireless connections.
Version 5.1213.6.316 of the WG111v2.SYS driver is vulnerable to this issue; other versions may also be affected.
7. PWSPHP Profil.PHP SQL Injection Vulnerability
BugTraq ID: 13563
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/13563
Summary:
PwsPHP is prone to an SQL-injection vulnerability because it fails to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
The vendor has addressed this issue in PwsPHP version 1.2.3; earlier versions are reported vulnerable.
8. WebGUI Wiki Title Cross-Site Scripting Vulnerability
BugTraq ID: 22051
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/22051
Summary:
WebGUI is prone to a cross-site scripting vulnerability because the application fails to properly sanitize user-supplied input.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
9. Asterisk Chan_Skinny Remote Buffer Overflow Vulnerability
BugTraq ID: 20617
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/20617
Summary:
Asterisk is prone to a remote heap-based buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before copying it to an insufficiently sized memory buffer.
Exploiting this vulnerability allows remote attackers to execute arbitrary machine code in the context of the affected application. Failed exploit attempts will likely crash the server, denying further service to legitimate users.
10. JV2 Folder Gallery Source Code Information Disclosure Vulnerability
BugTraq ID: 22053
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/22053
Summary:
JV2 Folder Gallery is prone to a source-code information-disclosure vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable system in the context of the webserver process. Information obtained may aid in further attacks.
11. GNU GV Stack Buffer Overflow Vulnerability
BugTraq ID: 20978
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/20978
Summary:
GNU gv is prone to a stack-based buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
Exploiting this issue allows attackers to execute arbitrary machine code in the context of users running the affected application. Failed attempts will likely crash the application, resulting in denial-of-service conditions.
Version 3.6.2 is reported vulnerable; other versions may also be affected.
NOTE: Various other applications may employ embedded GNU gv code and could also be vulnerable as a result.
12. Kaspersky Labs Anti-Virus Local Privilege Escalation Vulnerability
BugTraq ID: 22061
Remote: No
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/22061
Summary:
Kaspersky Labs Anti-Virus is prone to a local privilege-escalation vulnerability.
A local attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. This may facilitate a complete compromise of the affected computer.
13. RETIRED: Delta Scripts PHP Classifieds Functions.PHP Remote File Include Vulnerability
BugTraq ID: 20649
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/20649
Summary:
Delta Scripts PHP Classifieds is prone to a remote file-include vulnerability because it fails to sufficiently sanitize user-supplied data.
Exploiting this issue may allow an attacker to compromise the application and the underlying system; other attacks are also possible.
Version 7.1 is vulnerable; other versions may also be affected.
This BID is being retired because further information shows that the application is not vulnerable to this issue.
14. Zina Multiple Unspecified Vulnerabilities
BugTraq ID: 22049
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/22049
Summary:
Zina is prone to multiple unspecified vulnerabilities.
Very little information is known about these issues. This BID will be updated when more information becomes available.
Versions prior to 1.0rc2 are vulnerable to these issues.
15. D-Link DWL-G132 ASAGU.SYS Wireless Device Driver Stack Buffer Overflow Vulnerability
BugTraq ID: 21032
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/21032
Summary:
The D-Link Wireless Device Driver for DWL-G132 devices is prone to a stack-based buffer-overflow vulnerability because the driver fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
Exploiting this issue allows attackers to execute arbitrary machine code in the context of the kernel hosting the vulnerable driver. Failed attempts will likely crash the kernel, resulting in denial-of-service conditions.
The ASAGU.SYS driver is primarily used on the Microsoft Window operating system. Note, however, that Linux and BSD machines using the 'ndiswrapper' tool should determine if they are using a vulnerable instance of the driver.
Note also that this vulnerability can be exploited only when an attacker is within the range of broadcast of 802.11 wireless connections.
Version 1.0.1.41 of the ASAGU.SYS driver is reported vulnerable; other versions may also be affected.
16. Okul Web Otomasyon Sistemi Etkinlikbak.ASP SQL Injection Vulnerability
BugTraq ID: 22060
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/22060
Summary:
Okul Web Otomasyon Sistemi is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation.
17. InstantForum.NET Multiple Cross Site Scripting Vulnerabilities
BugTraq ID: 22052
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/22052
Summary:
InstantForum.NET is prone to multiple cross-site scripting vulnerabilities because the application fails to sufficiently sanitize user-supplied input.
An attacker can exploit these issues to steal cookie-based authentication credentials and launch other attacks.
These issues affect version 4.1.0; other versions may also be affected.
18. WFTPD Server SITE ADMIN Command Remote Denial of Service Vulnerability
BugTraq ID: 22046
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/22046
Summary:
WFTPD Server is prone to a remote denial-of-service vulnerability.
Exploiting this issue allows remote attackers to crash the application, denying further service to legitimate users.
WFTPD Server 3.25 and prior versions are reported vulnerable; other versions may also be affected.
19. Jshop Server Remote File Include Vulnerability
BugTraq ID: 21995
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/21995
Summary:
Jshop Server is prone to a remote file-include vulnerability because it fails to sufficiently sanitize user-supplied data.
Exploiting this issue may allow an attacker to compromise the application and the underlying system; other attacks are also possible.
Jshop Server 1.3 is reported vulnerable to this issue; other versions may also be vulnerable.
20. Mono XSP Source Code Information Disclosure Vulnerability
BugTraq ID: 21687
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/21687
Summary:
XSP is prone to a source code information-disclosure vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable system in the context of the webserver process. Information obtained may aid in further attacks.
21. IBM OS/400 TCP Reset Remote Denial of Service Vulnerability
BugTraq ID: 22048
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/22048
Summary:
IBM OS/400 is prone to a vulnerability that allows a remote attacker to reset a TCP connection.
IBM OS/400 V5R3M0 and V5R3M5 are reported affected by this issue.
22. Mono System.CodeDom.Compiler Class Insecure Temporary File Creation Vulnerability
BugTraq ID: 20340
Remote: No
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/20340
Summary:
The Mono 'System.CodeDom.Compiler' class creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to perform symlink attacks, overwriting arbitrary files in the context of the affected application.
Successfully exploiting a symlink attack may allow an attacker to overwrite or corrupt sensitive files. This may result in a denial of service; other attacks may also be possible.
Versions 1.0 and 2.0 are vulnerable; other versions may also be affected.
23. Ovidentia Multiple Remote File Include Vulnerabilities
BugTraq ID: 18232
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/18232
Summary:
Ovidentia is prone to multiple remote file-include vulnerabilities. These issues are due to a failure in the application to properly sanitize user-supplied input.
An attacker can exploit these issues to include arbitrary remote files containing malicious PHP code and execute it in the context of the webserver process. This may allow the attacker to compromise the application and the underlying system; other attacks are also possible.
24. All In One Control Panel Multiple SQL Injection Vulnerabilities
BugTraq ID: 22032
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/22032
Summary:
All In One Control Panel is prone to multiple SQL-injection vulnerabilities because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting these issues could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation.
All In One Control Panel 1.3.009 and prior versions are vulnerable.
25. ThWboard Board[styleid] SQL Injection Vulnerability
BugTraq ID: 22047
Remote: Yes
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/22047
Summary:
ThWboard is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation.
ThWboard 3.0 Beta 2.84-php5 and prior versions are vulnerable; other versions may also be affected.
26. Acme Thttpd Insecure Temporary Logfile Creation Vulnerability
BugTraq ID: 20891
Remote: No
Last Updated: 2007-01-15
Relevant URL: http://www.securityfocus.com/bid/20891
Summary:
The 'thttpd' program creates temporary log files in an insecure manner.
An attacker with local access could potentially exploit this issue to overwrite files in the context of the webserver process.
A successful exploit would most likely result in loss of data or a denial of service if critical files are overwritten in the attack. Other attacks may be possible as well.
Versions prior to 2.23 beta 1 are vulnerable.
27. Apple Mac OS X DMG UFS UFS_LookUp Denial Of Service Vulnerability
BugTraq ID: 22036
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22036
Summary:
Apple Mac OS X is prone to a remote denial-of-service vulnerability. This issue occurs when the UFS filesystem handler fails to handle specially crafted DMG images.
A successful exploit can allow a remote attacker to cause kernel panic, resulting in a denial-of-service condition.
Mac OS X 10.4.8 is vulnerable; other versions may also be affected.
28. GOnicus System Administrator Unauthorized Data Manipulation Vulnerability
BugTraq ID: 22075
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22075
Summary:
GOnicus System Administrator is prone to a vulnerability that may allow an attacker to manipulate certain settings and object values.
An attacker can exploit this issue to manipulate settings and other values in the affected application, which may allow the attacker to gain administrative access to the affected application.
This issue affects versions prior to 2.5.8.
29. Apache Mod_Rewrite Off-By-One Buffer Overflow Vulnerability
BugTraq ID: 19204
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/19204
Summary:
Apache mod_rewrite is prone to an off-by-one buffer-overflow condition.
The vulnerability arising in the mod_rewrite module's ldap scheme handling allows for potential memory corruption when an attacker exploits certain rewrite rules.
An attacker may exploit this issue to trigger a denial-of-service condition. Reportedly, arbitrary code execution may be possible as well.
30. Ruby on Rails Routing Denial of Service Vulnerability
BugTraq ID: 19454
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/19454
Summary:
Ruby on Rails is prone to a vulnerability in its routing functionality that may result in denial-of-service or data loss issues.
Attackers may exploit this issue by issuing HTTP GET requests to predictable URIs to affected webservers.
This issue affects Ruby on Rails versions 1.1.0, 1.1.1, 1.1.2, 1.1.4, and 1.1.5.
31. F5 Firepass Multiple Input Validation Vulnerabilities
BugTraq ID: 21957
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21957
Summary:
F5 Firepass is prone to multiple input-validation vulnerabilities because the device fails to sufficiently sanitize user-supplied input. These issues include information-disclosure, security bypass, and cross-site scripting vulnerabilities.
An attacker can exploit these issues to bypass security restrictions, to view sensitive information, and to steal cookie-based authentication credentials. This may allow the attacker to compromise the application and the underlying system; other attacks are also possible.
32. WordPress Charset Decoding SQL Injection Vulnerability
BugTraq ID: 21907
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21907
Summary:
WordPress is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation.
WordPress 2.0.5 and prior versions are vulnerable.
33. GNU Tar GNUTYPE_NAMES Remote Directory Traversal Vulnerability
BugTraq ID: 21235
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21235
Summary:
GNU Tar is prone to a vulnerability that may allow an attacker to place files and overwrite files in arbitrary locations on a vulnerable computer. These issues present themselves when the application processes malicious archives.
A successful attack can allow the attacker to place potentially malicious files and overwrite files on a computer in the context of the user running the affected application. Successful exploits may aid in further attacks.
34. Oftpd Unsupported Address Family Remote Denial of Service Vulnerability
BugTraq ID: 22073
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22073
Summary:
Oftpd Server is prone to a remote denial-of-service vulnerability because it mishandles unexpected user-supplied input.
Exploiting this issue allows remote attackers to crash the application, denying further service to legitimate users.
Oftpd Server 0.3.7 is reported vulnerable; other versions may also be affected.
35. OpenSSL PKCS Padding RSA Signature Forgery Vulnerability
BugTraq ID: 19849
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/19849
Summary:
OpenSSL is prone to a vulnerability that may allow an attacker to forge an RSA signature. The attacker may be able to forge a PKCS #1 v1.5 signature when an RSA key with exponent 3 is used.
An attacker may exploit this issue to sign digital certificates or RSA keys and take advantage of trust relationships that depend on these credentials, possibly posing as a trusted party and signing a certificate or key.
All versions of OpenSSL prior to and including 0.9.7j and 0.9.8b are affected by this vulnerability. Updates are available.
36. ProFTPD SReplace Remote Buffer Overflow Vulnerability
BugTraq ID: 20992
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20992
Summary:
ProFTPD is prone to an remote buffer-overflow vulnerability. This issue is due to an off-by-one error, allowing attackers to corrupt memory.
Exploiting this issue allows remote attackers to execute arbitrary machine code in the context of the server application, facilitating the compromise of affected computers.
ProFTPD versions prior to 1.3.0a are vulnerable to this issue.
Update: This BID was recently updated to state that 'CommandBufferSize' was affected by a denial-of-service issue, but according to the vendor, that directive is not vulnerable.
37. BEA WebLogic Multiple Vulnerabilities
BugTraq ID: 17982
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/17982
Summary:
BEA has released 11 advisories identifying various vulnerabilities affecting BEA WebLogic Server, WebLogic Platform, and WebLogic Express. These issues present remote and local threats and may facilitate attacks affecting the integrity, confidentiality, and availability of vulnerable computers.
38. GnuPG OpenPGP Packet Processing Function Pointer Overwrite Vulnerability
BugTraq ID: 21462
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21462
Summary:
GnuPG is prone to a vulnerability that could permit an attacker to overwrite a function pointer.
This issue occurs because of a design error when dealing with OpenPGP packets. Attackers may exploit this issue to execute arbitrary code.
Successful exploits may result in the remote compromise of computers using the vulnerable application.
39. Wordpress Template.PHP HTML Injection Vulnerability
BugTraq ID: 21782
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21782
Summary:
Wordpress is prone to an HTML-injection scripting vulnerability because the application fails to properly sanitize user-supplied input.
Attacker-supplied HTML and script code would execute in the context of the affected site, potentially allowing the attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user; other attacks are also possible.
Versions prior to 2.0.6 are vulnerable to this issue.
40. Jax Petitionbook Language Parameter Multiple Local File Include Vulnerabilities
BugTraq ID: 22072
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22072
Summary:
Jax Petitionbook is prone to multiple local file-include vulnerabilities because it fails to properly sanitize user-supplied input.
An attacker can exploit these vulnerabilities using directory-traversal strings to have local script code execute in the context of the application. This may allow the attacker to access sensitive information that may aid in further attacks.
These issues affect version 1.0.3.06; other versions may also be vulnerable.
41. PHP HTMLEntities HTMLSpecialChars Buffer Overflow Vulnerabilities
BugTraq ID: 20879
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20879
Summary:
PHP is prone to multiple buffer-overflow vulnerabilities because it fails to effectively bounds-check user-supplied input before copying it to an insufficiently sized buffer.
An attacker could exploit these issues to have arbitrary code execute in the context of an affected webserver. This may lead to the compromise of the webserver. Failed exploit attempts could cause denial-of-service conditions, denying access to legitimate users.
Only limited information is available regarding these issues. This BID will be updated as more information becomes available.
PHP 5 is vulnerable to these issues.
NOTE: The affected functions are employed by a large number of popular PHP libraries. As a result, there are many PHP applications affected by this issue.
42. BEA WebLogic Server and WebLogic Express Multiple Vulnerabilities
BugTraq ID: 15052
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/15052
Summary:
BEA has released 24 advisories identifying various vulnerabilities affecting BEA WebLogic Server and WebLogic Express. These issues present remote and local threats and may facilitate attacks affecting the integrity, confidentiality, and availability of vulnerable computers.
We conjecture that some of these issues may allow an attacker to completely compromise a vulnerable computer.
These issues are currently being analyzed. This BID will be updated and individual BIDs will be released when further analysis is complete.
43. PADL Software Pam_Ldap PasswordPolicyResponse Authentication Bypass Vulnerability
BugTraq ID: 20880
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20880
Summary:
The pam_ldap module is prone to an authentication-bypass vulnerability.
An attacker can exploit this issue to bypass authentication. This occurs in applications using pam_ldap authentication for locked-out accounts.
44. Mutt Insecure Temporary File Creation Multiple Vulnerabilities
BugTraq ID: 20733
Remote: No
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20733
Summary:
Mutt creates temporary files in an insecure manner.
Attackers could exploit these issues to perform symlink attacks to overwrite arbitrary files using the privileges of the user running the vulnerable application.
Mutt 1.5.12 and prior versions are vulnerable.
45. BEA WebLogic Server and WebLogic Express Multiple Remote Vulnerabilities
BugTraq ID: 13717
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/13717
Summary:
BEA WebLogic is susceptible to multiple vulnerabilities. The following specific issues have been identified:
- A denial-of-service vulnerability allows users with the 'Monitor security' role to reset JDBC connection pools, or to reduce the number of connections available.
- A denial-of-service vulnerability allows attackers to cause the failure of security exception auditing.
- An access-validation vulnerability in the security constraint system fails to force the currently logged-in users to reauthenticate to the application server once security constraints have been altered and the application has been redeployed, even if the new constraints preclude the users access.
- A local information-disclosure vulnerability as the 'UserLogin' control displays cleartext passwords of failed authentication attempts to standard output.
- A denial-of-service vulnerability in the cookie parsing code may cause clustered servers to slow down when cookies with an invalid host or port are processed.
- Multiple unspecified cross-site scripting vulnerabilities reside in the server console and login page. These issues allow attackers to execute script code in the context of the affected website, possibly allowing them to gain administrative access to the affected application server.
- A vulnerability in the embedded LDAP server allows remote attackers to anonymously bind to it. This allows for information disclosure, and possibly a denial-of-service condition due to resource exhaustion.
- An unspecified buffer overflow vulnerability may allow remote attackers to cause the instance to become unstable. This issue may allow remote attackers to cause a thread loop, consuming CPU resources. Due to the nature of buffer-overflow vulnerabilities, an attacker may be able to execute arbitrary machine code in the context of the affected application.
This BID will be split into individual BIDs in the future as further details become available.
46. GNU GZip Archive Handling Multiple Remote Vulnerabilities
BugTraq ID: 20101
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20101
Summary:
The gzip utility is prone to multiple remote buffer-overflow and denial-of-service vulnerabilities when handling malicious archive files.
Successful exploits may allow a remote attacker to corrupt process memory by triggering an overflow condition. This may lead to arbitrary code execution in the context of an affected user and may facilitate a remote compromise. Attackers may also trigger denial-of-service conditions by crashing or hanging the application.
Specific information regarding affected versions of gzip is currently unavailable. This BID will be updated as more information is released.
47. BEA WebLogic Server and WebLogic Express Denial of Service Vulnerability
BugTraq ID: 10327
Remote: No
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/10327
Summary:
It has been reported that WebLogic Server and WebLogic Express are prone to a denial of service vulnerability that may allow an attacker to shut down a vulnerable server. The issue presents itself when a site restricts the ability to start or stop servers to users in the Admin and Operator security role.
48. KSirc IRC Client Remote PRIVMSG Denial of Service Vulnerability
BugTraq ID: 21790
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21790
Summary:
KSirc is prone to a remote denial-of-service vulnerability.
The issue arises when the client handles excessive string data. By exploiting this issue, a remote attacker may cause an affected client to crash.
KSirc 1.3.12 is vulnerable to this issue; other versions may also be affected.
The vendor states this issue cannot be exploited to execute arbitrary code. Successful exploits will, however, result in denial-of-service conditions in the client.
49. L2TPNS Heartbeat Handling Denial of Service Vulnerability
BugTraq ID: 21443
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21443
Summary:
The l2tpns program is prone to a denial-of-service vulnerability because it fails to properly handle user-supplied data.
Attackers can exploit this issue to crash the affected application, effectively denying service to legitimate users. Attackers may be able to exploit this issue to execute arbitrary code, but this has not been confirmed.
50. GD Graphics Library Remote Denial of Service Vulnerability
BugTraq ID: 18294
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/18294
Summary:
The GD Graphics Library is prone to a denial-of-service vulnerability. Attackers can trigger an infinite-loop condition when the library tries to handle malformed image files.
This issue allows attackers to consume excessive CPU resources on computers that use the affected software. This may deny service to legitimate users.
GD version 2.0.33 is vulnerable to this issue; other versions may also be affected.
51. Rixstep Undercover Local Privilege Escalation Vulnerability
BugTraq ID: 22071
Remote: No
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22071
Summary:
Rixstep Undercover is prone to a local privilege-escalation vulnerability because of a design error in the affected application.
An attacker can exploit this issue to execute arbitrary code with superuser privileges, completely compromising affected computers. Failed exploit attempts will result in a denial of service.
52. Fetchmail Multiple Password Information Disclosure Vulnerabilities
BugTraq ID: 21903
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21903
Summary:
Fetchmail is prone to multiple information-disclosure vulnerabilities because the application discloses information about user passwords.
An attacker can exploit these issue to access sensitive information that may aid the attacker in other attacks.
These issues affect versions prior to 6.3.6-rc4
53. Fetchmail Remote Denial of Service Vulnerability
BugTraq ID: 21902
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21902
Summary:
Fetchmail is prone to a denial-of-service vulnerability because the application fails to handle exceptional conditions.
An attacker can exploit this issue to crash the affected application, denying service to legitimate users.
54. GD Graphics Library Remote Integer Overflow Vulnerability
BugTraq ID: 11523
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/11523
Summary:
The GD Graphics Library (gdlib) is affected by an integer overflow that facilitates a heap overflow. This issue is due to the library's failure to do proper sanity checking on size values contained within image-format files.
An attacker may leverage this issue to manipulate process heap memory, potentially leading to code execution and compromise of the computer running the affected library.
55. Avahi Compressed DNS Denial Of Service Vulnerability
BugTraq ID: 21881
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21881
Summary:
Avahi is prone to a denial-of-service vulnerability.
A remote attacker may exploit this issue to cause the application to crash, denying further service to legitimate users.
Versions prior to 0.6.16 are vulnerable to this issue.
56. GNU Screen Multiple Denial of Service Vulnerabilities
BugTraq ID: 20727
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20727
Summary:
GNU Screen is prone to multiple denial-of-service vulnerabilities. A remote attacker may trigger these issues and deny services to legitimate users.
GNU Screen versions prior to 4.0.3 are affected by these vulnerabilities.
57. BEA JRockit Java Virtual Machine Unspecified Stack Buffer Overflow Vulnerability
BugTraq ID: 22077
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22077
Summary:
BEA JRockit is prone to a stack-based buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
Exploiting this issue allows attackers to execute arbitrary machine code in the context of users running the affected application. Failed attempts will likely crash the application, resulting in denial-of-service conditions.
BEA JRockit 1.4.2 R4.5 and prior are vulnerable to this issue. WebLogic server, express and platform version 8.1 through service pack 5 are also vulnerable.
58. GNU Wget FTP_Syst Function Remote Denial of Service Vulnerability
BugTraq ID: 21650
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21650
Summary:
GNU Wget is prone to a remote denial-of-service vulnerability.
Exploiting this issue allows remote attackers to crash the application, denying further service to legitimate users.
Version 1.10.2 is vulnerable; other versions may also be affected.
59. Liens_Dynamiques Multiple Unspecified Cross Site Scripting Vulnerabilities
BugTraq ID: 22070
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22070
Summary:
The 'liens_dynamiques' program is prone to multiple cross-site scripting vulnerabilities because the application fails to sufficiently sanitize user-supplied input.
An attacker can exploit these issues to steal cookie-based authentication credentials and launch other attacks.
These issues affect version 2.1; other versions may also be affected.
60. Outpost Firewall PRO Local Privilege Escalation Vulnerability
BugTraq ID: 22069
Remote: No
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22069
Summary:
Outpost Firewall PRO is prone to a local privilege-escalation vulnerability because it fails to perform adequate SSDT (System Service Descriptor Table) hooking on files in its installation directory.
A local attacker can exploit this issue to elevate their privileges, which can lead to the complete compromise of an affected computer.
Outpost Firewall PRO 4.0 is vulnerable; other versions may also be affected.
61. Cacti CMD.PHP Remote Command Execution Vulnerability
BugTraq ID: 21799
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21799
Summary:
Cacti is prone to a remote command-execution vulnerability because the application fails to properly sanitize user-supplied input to the 'cmd.php' script.
Exploiting this issue allows attackers to execute arbitrary commands in the context of the server.
A successful exploit could facilitate the compromise of an affected computer; other attacks are also possible.
Cacti 0.8.6i and prior versions are reportedly affected.
62. Yukihiro Matsumoto Ruby CGI Module MIME Denial Of Service Vulnerability
BugTraq ID: 20777
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20777
Summary:
Ruby is prone to a remote denial-of-service vulnerability because the application's CGI module fails to properly handle specific HTTP requests that contain invalid information.
Successful exploits may allow remote attackers to cause denial-of-service conditions on computers running the affected Ruby CGI Module.
63. Liens_Dynamiques AdminLien.PHP Security Restriction Bypass Vulnerability
BugTraq ID: 22068
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22068
Summary:
The 'liens_dynamiques' program is prone to a vulnerability that lets attackers bypass security restrictions.
An attacker can exploit this issue to gain unauthorized access to the administrative functions of the vulnerable application. Other attacks may also be possible.
Version 2.1 is vulnerable to this issue; other versions may also be affected.
64. Texinfo File Handling Buffer Overflow Vulnerability
BugTraq ID: 20959
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20959
Summary:
Texinfo is prone to a buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
Exploiting this issue allows attackers to cause the affected applications using Texinfo to crash, denying service to legitimate users. Arbitrary code execution may also be possible, but this has not been confirmed.
65. Portable OpenSSH GSSAPI Remote Code Execution Vulnerability
BugTraq ID: 20241
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20241
Summary:
Portable OpenSSH is prone to a remote code-execution vulnerability. The issue derives from a race condition in a vulnerable signal handler.
Reportedly, under specific conditions, it is theoretically possible to execute code remotely prior to authentication when GSSAPI authentication is enabled. This has not been confirmed; the chance of a successful exploit of this nature is considered minimal.
On non-Portable OpenSSH implementations, this same race condition can be exploited to cause a pre-authentication denial of service.
This issue occurs when OpenSSH and Portable OpenSSH are configured to accept GSSAPI authentication.
66. Macromedia Shockwave 10 SWDIR.DLL ActiveX Control Remote Denial of Service Vulnerability
BugTraq ID: 22067
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22067
Summary:
Macromedia Shockwave is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to trigger denial-of-service conditions in Internet Explorer or other applications that use the vulnerable ActiveX control.
Macromedia Shockwave 10 is vulnerable to this issue; other versions may also be affected.
67. Remedy Action Request System Username Enumeration Vulnerability
BugTraq ID: 22066
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22066
Summary:
Remedy Action Request System is prone to a username-enumeration vulnerability because of a design error in the application when verifying user-supplied input.
Attackers may exploit this vulnerability to discern valid usernames. This may aid them in brute-force password cracking or other attacks.
Version 5.01.02 is vulnerable; other versions may also be affected.
68. OpenSSL SSL_Get_Shared_Ciphers Buffer Overflow Vulnerability
BugTraq ID: 20249
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20249
Summary:
OpenSSL is prone to a buffer-overflow vulnerability because the library fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
Successfully exploiting this issue may result in the execution of arbitrary machine code in the context of applications that use the affected library. Failed exploit attempts may crash applications, denying service to legitimate users.
69. OpenSSL SSLv2 Null Pointer Dereference Client Denial of Service Vulnerability
BugTraq ID: 20246
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20246
Summary:
OpenSSL is prone to a denial-of-service vulnerability.
A malicious server could cause a vulnerable client application to crash, effectively denying service.
70. Clam Anti-Virus CHM Unpacker Denial Of Service Vulnerability
BugTraq ID: 20537
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20537
Summary:
ClamAV is prone to a denial-of-service vulnerability because of an unspecified failure in the CHM unpacker.
Exploitation could cause the application to crash, resulting in a denial of service.
71. Clam Anti-Virus PE Rebuilding Heap Buffer Overflow Vulnerability
BugTraq ID: 20535
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20535
Summary:
ClamAV is prone to a heap-based buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it to an insufficiently sized memory buffer.
Exploiting this issue could allow attacker-supplied machine code to execute in the context of the affected application. The issue would occur when the malformed file is scanned manually or automatically in deployments such as email gateways.
ClamAV version 0.88.4 is vulnerable to this issue.
72. OpenSSH Duplicated Block Remote Denial of Service Vulnerability
BugTraq ID: 20216
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20216
Summary:
OpenSSH is prone to a remote denial-of-service vulnerability because it fails to properly handle incoming duplicate blocks.
Remote attackers may exploit this issue to consume excessive CPU resources, potentially denying service to legitimate users.
This issue occurs only when OpenSSH is configured to accept SSH Version One traffic.
73. Oracle January 2007 Advance Notification Multiple Vulnerabilities
BugTraq ID: 22008
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22008
Summary:
Oracle has released advance notification that the vendor will be releasing a critical patch update addressing 52 new security fixes across all products on January 16, 2007.
Further details about these issues are not currently available.
74. PHP SSCANF() Safe_Mode Restriction-Bypass Vulnerability
BugTraq ID: 19415
Remote: No
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/19415
Summary:
PHP is prone to a 'safe_mode' restriction-bypass vulnerability. Successful exploits could allow an attacker to write files in unauthorized locations and potentially execute code.
This vulnerability would be an issue in shared-hosting configurations where multiple users can create and execute arbitrary PHP script code, all assuming that the 'safe_mode' restriction will isolate the users from each other.
This issue is reported to affect PHP versions 4.4.3 and 5.1.4; other versions may also be vulnerable.
75. KGB Sesskglogadmin.PHP Local File Include Vulnerability
BugTraq ID: 22065
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22065
Summary:
KGB is prone to a local file-include vulnerability because it fails to properly sanitize user-supplied input.
A remote attacker can exploit this vulnerability to include an arbitrary local file in the context of the webserver process. By using the comment system, an attacker may be able to exploit this issue to execute arbitrary code. Other attacks may also be possible.
This issue affects version 1.9; other versions may also be vulnerable.
76. X.Org X Window Server LibX11 Xinput File Descriptor Leak Vulnerability
BugTraq ID: 20845
Remote: No
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20845
Summary:
X.Org X Window Server libX11 library 'Xinput' module is prone to a file-descriptor leak due to a design error.
The vulnerability arises because the application fails to close a file descriptor after file operations. An attacker can exploit this issue to open files with elevated privileges.
Versions 1.0.2 and 1.0.3 of libX11 are reported affected; other versions may be affected as well.
77. GnuPG Multiple Potential Vulnerabilities
BugTraq ID: 22064
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22064
Summary:
GnuPG is potentially prone to multiple remote vulnerabilities. These issues are only 'potential' vulnerabilities, becuase they arise due to a code audit resulting in patches designed to add bounds checking and other fixes to the source code. The code audit lacked sufficient detail to determine if the fixes address actual vulnerabilities.
Reportedly, these issues are due primarily to integer-overflow and buffer-overflow flaws. Other issues may also be present. Successfully exploiting the issues may allow an attacker to execute arbitrary code in the context of the affected application.
The audit was performed on GnuPG version 1.4.6; therefore, if these issues are actual vulnerabilities they will affect that version. Other versions may also be affected.
78. Sendmail Long Header Denial Of Service Vulnerability
BugTraq ID: 19714
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/19714
Summary:
Sendmail is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to crash the Sendmail process, causing a denial of service.
79. Cisco Secure Access Control Server Multiple Remote Vulnerabilities
BugTraq ID: 21900
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21900
Summary:
Cisco Secure Access Control Server (ACS) is prone to multiple remote vulnerabilities, including multiple stack-based buffer-overflow issues and denial-of-service issues.
An attacker can exploit these issues to execute arbitrary code within the context of the affected server or to crash the affected server, denying service to legitimate users.
Versions prior to 4.1 are vulnerable to these issues.
80. FileZilla Multiple Remote Format String Vulnerabilities
BugTraq ID: 22063
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22063
Summary:
FileZilla is prone to multiple remote format-string vulnerabilities because the application fails to properly sanitize user-supplied input before using it in the format-specifier argument to a formatted-printing function.
Exploiting these issues allows remote attackers to execute arbitrary machine code in the context of the affected application. Failed exploit attempts will likely crash the application.
FileZilla 3 versions prior to beta 5 are vulnerable to these issues.
81. Linux Kernel NFS and EXT3 Combination Remote Denial of Service Vulnerability
BugTraq ID: 19396
Remote: No
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/19396
Summary:
The Linux kernel is susceptible to a remote denial-of-service vulnerability because the EXT3 filesystem code fails to properly handle unexpected conditions.
Remote attackers may trigger this issue by sending crafted UDP datagrams to affected computers that are configured as NFS servers, causing filesystem errors. Depending on the mount-time options of affected filesystems, this may result in remounting filesystems as read-only or cause a kernel panic.
Linux kernel versions 2.6.14.4, 2.6.17.6, and 2.6.17.7 are vulnerable to this issue; other versions in the 2.6 series are also likely affected.
82. ProSysInfo TFTPDWIN Remote Buffer Overflow Vulnerability
BugTraq ID: 20131
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20131
Summary:
TFTPDWIN server is prone to a remote buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
An attacker may exploit this issue to execute arbitrary code in the context of the TFTP server process.
Version 0.4.2 of the affected software is vulnerable; other versions may be affected as well.
83. Clam Anti-Virus ClamAV UPX Compressed PE File Heap Buffer Overflow Vulnerability
BugTraq ID: 19381
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/19381
Summary:
ClamAV is prone to a heap buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it to an insufficiently sized memory buffer.
This issue occurs when the application attempts to handle compressed UPX files.
Exploiting this issue could allow attacker-supplied machine code to execute in the context of the affected application. The issue would occur when the malformed file is scanned manually or automatically in deployments such as email gateways.
ClamAV versions 0.88.2 and 0.88.3 are vulnerable to this issue; prior versions may also be affected.
84. IMlib2 Library Multiple Arbitrary Code Execution Vulnerabilities
BugTraq ID: 20903
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20903
Summary:
The imlib2 library is prone to arbitrary code-execution vulnerabilities.
An attacker can exploit these issues to execute arbitrary machine code with the privileges of the currently logged-in user.
85. Ipswitch WS_FTP 2007 Professional WSFTPURL.EXE Local Memory Corruption Vulnerability
BugTraq ID: 22062
Remote: No
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22062
Summary:
Ipswitch WS_FTP 2007 Professional is prone to a local memory-corruption vulnerability. This issue occurs when the 'wsbho2k0.dll' library fails to handle specially crafted arguments.
Due to the nature of this issue, an attacker may be able to execute arbitrary machine code in the context of the affected kernel, but this has not been confirmed. Failed exploit attempts result in kernel panics, denying service to legitimate users.
Ipswitch WS_FTP 2007 Professional is vulnerable to this issue; other versions may also be affected.
86. Microsoft Windows Vector Markup Language Buffer Overrun Vulnerability
BugTraq ID: 21930
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21930
Summary:
Microsoft Windows is prone to a buffer-overrun vulnerability that arises because of an error in the processing of Vector Markup Language documents.
An attacker can exploit this issue to execute arbitrary code within the context of the affected application.
87. W3M SSL Certificate Format String Vulnerability
BugTraq ID: 21735
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21735
Summary:
W3M is prone to a format-string vulnerability. This issue can occur when the browser processes SSL certificates that include format specifiers.
A successful exploit could result in the execution of arbitrary code in the context of the user running the browser.
The vulnerability was reported to affect version 0.5.1; prior versions could also be affected.
88. MERCUR Messaging 2005 IMAP Remote Buffer Overflow Vulnerability
BugTraq ID: 17138
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/17138
Summary:
MERCUR Messaging 2005 is prone to a remote buffer-overflow vulnerability.
The vulnerability presents itself when the server handles specially crafted IMAP commands.
This may result in memory corruption leading to a denial-of-service condition or arbitrary code execution.
MERCUR Messaging 2005 version 5.0 SP3 is reported to be vulnerable. Other versions may be affected as well.
89. Apple WebKit WebCore Remote Denial of Service Vulnerability
BugTraq ID: 22059
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22059
Summary:
Apple WebKit is prone to a denial-of-service vulnerability.
Attackers may exploit this issue by enticing victims into opening a malicious HTML document with an application using the affected framework.
Successful exploits will result in denial-of-service conditions.
Applications using WebKit build 18794 are vulnerable to this issue.
90. Pivot Multiple Input Validation Vulnerabilities
BugTraq ID: 18881
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/18881
Summary:
Pivot is prone to multiple input-validation vulnerabilities, including remote file-include, local file-include, cross-site scripting, and privilege-escalation issues. All of these issues are due to a failure in the application to properly sanitize user-supplied input.
A successful exploit of these vulnerabilities could allow an attacker to compromise the application, access or modify data, steal cookie-based authentication credentials, execute remote PHP code in the context of the webserver process, and gain unauthorized privileges.
Pivot 1.30 RC2 and prior versions are vulnerable to this issue.
91. Crob FTP Server Multiple Commands Remote Denial of Service Vulnerability
BugTraq ID: 22058
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22058
Summary:
Crob FTP Server is prone to a remote denial-of-service vulnerability.
Exploiting this issue allows remote attackers to crash the application, denying further service to legitimate users.
Version 3.6.1 b.263 is vulnerable; other versions may also be affected.
92. MIT Kerberos 5 RPC Library Remote Code Execution Vulnerability
BugTraq ID: 21970
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21970
Summary:
MIT Kerberos 5 is prone to a remote code-execution vulnerability. This issue resides in the server-side portion of the Kerberos RPC library. Currently, the 'kadmind' service is known to be vulnerable, but other applications that use this library may also be affected.
An attacker can exploit this issue to execute arbitrary code with administrative privileges, completely compromising affected computers. Failed exploit attempts will result in a denial of service. After a Kerberos database computer has been compromised, attackers may gain unauthorized access to
other services that rely on the Kerberos infrastructure for authentication.
93. FileZilla Options And QueueCTRL Modules Multiple Unspecified Buffer Overflow Vulnerabilities
BugTraq ID: 22057
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22057
Summary:
FileZilla is prone to multiple unspecified buffer-overflow vulnerabilities because it fails to perform adequate boundary checks on user-supplied data.
An attacker an exploit these issues to have arbitrary code run in the context of the application. Failed attempts could crash the applicaiton and deny service to legitimate users.
Versions prior to 2.2.30a are vulnerable.
94. GraphicsMagick PALM DCM Buffer Overflow Vulnerabilities
BugTraq ID: 20707
Remote: No
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/20707
Summary:
GraphicsMagick is prone to multiple buffer-overflow vulnerabilities because it fails to perform adequate boundary checks on user-supplied data before copying it to insufficiently sized buffers.
Successful exploits may allow an attacker to execute arbitrary machine code to compromise an affected computer or to cause denial-of-service conditions.
GraphicsMagick 1.1.7 and prior versions are vulnerable.
95. Libgtop2 Library Local Buffer Overflow Vulnerability
BugTraq ID: 22054
Remote: No
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22054
Summary:
Libgtop2 library is prone to a local buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input before copying into an insufficiently sized memory buffer.
An attacker may exploit this issue by enticing victims into viewing a maliciously crafted system process with an application that uses the affected library.
Successful exploits may cause arbitrary code to run with the privileges of the victim. Failed exploit attempts will likely cause denial-of-service conditions.
Versions prior to 2.14.6 are reported vulnerable.
96. RealNetwork RealPlayer MID File Handling Remote Denial of Service Vulnerability
BugTraq ID: 22050
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22050
Summary:
RealNetwork RealPlayer is prone to a remote denial-of-service vulnerability because the application fails to handle specially crafted files.
Exploiting this issue allows remote attackers to crash the application, denying further service to legitimate users. Arbitrary code execution might be possible, but this is not confirmed.
Version 10.5 is vulnerable to this issue; other versions may also be affected.
97. Multiple PDF Readers Multiple Remote Buffer Overflow Vulnerability
BugTraq ID: 21910
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21910
Summary:
Multiple PDF readers are prone to multiple remote buffer-overflow vulnerabilities because the applications fail to bounds-check user-supplied data before copying it into an insufficiently sized buffer.
An attacker may be able exploit this issue to execute arbitrary code within the context of the affected application. In some circumstances, the vulnerability can be exploited only to cause a denial of service.
98. GnuPG Make_Printable_String Remote Buffer Overflow Vulnerability
BugTraq ID: 21306
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/21306
Summary:
GnuPG is prone to a remote buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
Exploiting this issue may allow remote attackers to execute arbitrary machine code in the context of the affected application, but this has not been confirmed.
GnuPG versions 1.4.5 and 2.0.0 are vulnerable to this issue; previous versions may also be affected.
99. IndexU Multiple Cross-Site Scripting Vulnerabilities
BugTraq ID: 22084
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22084
Summary:
Indexu is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input.
An attacker may leverage these issues to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker to steal cookie-based authentication credentials and to launch other attacks.
Indexu version 5.3.0 and prior are vulnerable; other versions may also be affected.
100. Scriptme SmE File Mailer Login SQL Injection Vulnerability
BugTraq ID: 22081
Remote: Yes
Last Updated: 2007-01-16
Relevant URL: http://www.securityfocus.com/bid/22081
Summary:
SmE File Mailer is prone to an SQL-injection vulnerability because the application fails to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
This issue affects version 1.21; other versions may also be vulnerable.
III. SECURITYFOCUS NEWS ARTICLES
--------------------------------
1. Spammers get bullish on stocks
By: Robert Lemos
Massive e-mail campaigns aiming to pump up penny stock prices may soon make up half of all spam on the Internet.
http://www.securityfocus.com/news/11435
2. E-voting flaws put Florida in spotlight again
By: Robert Lemos
A Republican congressman gets seated in the U.S. House of Representatives, but without a bug in the electronic ballot, the challenger would have won, voting experts say.
http://www.securityfocus.com/news/11433
3. Bots, breaches and bugs plague 2006
By: Robert Lemos
Vulnerabilities, especially in Web applications, take off, while bot nets and their controllers cause a jump in spam, and data breaches continue to worry companies and their customers.
http://www.securityfocus.com/news/11432
4. Stock scammer gets coal for the holidays
By: Robert Lemos
The U.S. Securities and Exchange Commission puts a suspected Russian brokerage-account thief's money on ice, after he allegedly used illicit access to people's portfolios to drive up stock prices.
http://www.securityfocus.com/news/11431
IV. SECURITY JOBS LIST SUMMARY
-------------------------------
1. [SJ-JOB] Security Engineer, Raleigh
http://www.securityfocus.com/archive/77/457042
2. [SJ-JOB] Security Product Marketing Manager, Arlington
http://www.securityfocus.com/archive/77/457040
3. [SJ-JOB] Security Consultant, San Francisco
http://www.securityfocus.com/archive/77/457041
4. [SJ-JOB] Sales Engineer, San Francisco /West Region and Atlanta
http://www.securityfocus.com/archive/77/457043
5. [SJ-JOB] Penetration Engineer, Reading/London
http://www.securityfocus.com/archive/77/457044
6. [SJ-JOB] Manager, Information Security, Chicago
http://www.securityfocus.com/archive/77/456966
7. [SJ-JOB] Security Product Manager, Palo Alto
http://www.securityfocus.com/archive/77/456977
8. [SJ-JOB] Jr. Security Analyst, Crystal Lake
http://www.securityfocus.com/archive/77/456959
9. [SJ-JOB] Sr. Security Analyst, Crystal Lake
http://www.securityfocus.com/archive/77/456963
10. [SJ-JOB] Forensics Engineer, London
http://www.securityfocus.com/archive/77/456958
11. [SJ-JOB] Forensics Engineer, London
http://www.securityfocus.com/archive/77/456964
12. [SJ-JOB] Forensics Engineer, London
http://www.securityfocus.com/archive/77/456931
13. [SJ-JOB] Forensics Engineer, London
http://www.securityfocus.com/archive/77/456932
14. [SJ-JOB] Security System Administrator, Irvine
http://www.securityfocus.com/archive/77/456902
15. [SJ-JOB] Forensics Engineer, London
http://www.securityfocus.com/archive/77/456928
16. [SJ-JOB] Forensics Engineer, Flexible within UK
http://www.securityfocus.com/archive/77/456929
17. [SJ-JOB] Information Assurance Engineer, Cedar Rapids
http://www.securityfocus.com/archive/77/456943
18. [SJ-JOB] Security Engineer, Redmond
http://www.securityfocus.com/archive/77/456969
19. [SJ-JOB] Auditor, Mountain View
http://www.securityfocus.com/archive/77/456899
20. [SJ-JOB] Auditor, Mountain View
http://www.securityfocus.com/archive/77/456703
21. [SJ-JOB] Sr. Security Engineer, rockville
http://www.securityfocus.com/archive/77/456706
22. [SJ-JOB] Sr. Security Analyst, Houston
http://www.securityfocus.com/archive/77/456714
23. [SJ-JOB] Manager, Information Security, Kamloops
http://www.securityfocus.com/archive/77/456700
24. [SJ-JOB] Security System Administrator, Columbus
http://www.securityfocus.com/archive/77/456701
25. [SJ-JOB] Security Engineer, rockville
http://www.securityfocus.com/archive/77/456702
26. [SJ-JOB] Security Engineer, Carpinteria, CA
http://www.securityfocus.com/archive/77/456583
27. [SJ-JOB] Security System Administrator, Position is Remote
http://www.securityfocus.com/archive/77/456584
28. [SJ-JOB] Software Engineer, Rockville
http://www.securityfocus.com/archive/77/456588
29. [SJ-JOB] Sales Representative, Boston
http://www.securityfocus.com/archive/77/456594
30. [SJ-JOB] VP of Regional Sales, Chicago
http://www.securityfocus.com/archive/77/456595
31. [SJ-JOB] Application Security Engineer, Palo Alto
http://www.securityfocus.com/archive/77/456496
32. [SJ-JOB] Security Engineer, Mountain View
http://www.securityfocus.com/archive/77/456497
33. [SJ-JOB] Software Engineer, Palo Alto
http://www.securityfocus.com/archive/77/456498
34. [SJ-JOB] Technology Risk Consultant, Mountain View
http://www.securityfocus.com/archive/77/456494
35. [SJ-JOB] Forensics Engineer, Foster City
http://www.securityfocus.com/archive/77/456495
36. [SJ-JOB] Software Engineer, Palo Alto
http://www.securityfocus.com/archive/77/456487
37. [SJ-JOB] Manager, Information Security, Zurich
http://www.securityfocus.com/archive/77/456485
38. [SJ-JOB] Security Architect, St. Louis
http://www.securityfocus.com/archive/77/456488
39. [SJ-JOB] Technical Support Engineer, Berkshire
http://www.securityfocus.com/archive/77/456486
V. INCIDENTS LIST SUMMARY
---------------------------
1. Bruteforce attack against smtp-auth
http://www.securityfocus.com/archive/75/456450
VI. VULN-DEV RESEARCH LIST SUMMARY
-----------------------------------
1. Uninformed Journal Release Announcement: Volume 6
http://www.securityfocus.com/archive/82/456947
2. seeking comments on disclosure articles
http://www.securityfocus.com/archive/82/456955
3. Debugger
http://www.securityfocus.com/archive/82/455354
VII. MICROSOFT FOCUS LIST SUMMARY
---------------------------------
1. SoX & Share Permissions?
http://www.securityfocus.com/archive/88/456972
2. EFS - new recovery agent
http://www.securityfocus.com/archive/88/456961
3. SecurityFocus Microsoft Newsletter #324
http://www.securityfocus.com/archive/88/456552
VIII. SUN FOCUS LIST SUMMARY
----------------------------
1. Solaris 2.7 Daylight saving time fix.
http://www.securityfocus.com/archive/92/456512
IX. LINUX FOCUS LIST SUMMARY
----------------------------
X. UNSUBSCRIBE INSTRUCTIONS
-----------------------------
To unsubscribe send an e-mail message to [email protected] from the subscribed address. The contents of the subject or message body do not matter. You will receive a confirmation request message to which you will have to answer. Alternatively you can also visit http://www.securityfocus.com/newsletters and unsubscribe via the website.
If your email address has changed email [email protected] and ask to be manually removed.
XI. SPONSOR INFORMATION
------------------------
This Issue is Sponsored by: Black Hat
Black Hat Europe, March 27-30 in Amsterdam, is Europe's premier technical event for ICT security experts.
Featuring 10 hands-on training courses and 30 Briefings presentations with lots of new content-the best of Black Hat focused on Europe's infosec challenges.
Network with 400 delegates from 25 nations, and see solutions from major sponsors.
http://www.blackhat.com