SecurityFocus Newsletter #385
[email protected] 25 Jan 2007 19:37:22 -0000
| Newsgroups | gmane.comp.security.news.general |
|---|---|
| Message-ID | <[email protected]> |
SecurityFocus Newsletter #385
----------------------------------------
This Issue is Sponsored by: SPI Dynamics
ALERT: Learn to Think Like a Hacker- Simulate a Hacker Breaking into Your Web Apps
The speed with which Web Applications are developed make them prime targets for attackers, often these applications were developed so quickly that they are not coded properly or subjected to any security testing. Hackers know this and use it as their weapon. Download this *FREE* test guide from SPI Dynamics to check for Web application vulnerabilities.
https://download.spidynamics.com/1/ad/web.asp?Campaign_ID=70160000000Cgth
------------------------------------------------------------------
I. FRONT AND CENTER
1. iPhone Trademarks: the Real Issues
2. Testing Fault Injection in Local Applications
II. BUGTRAQ SUMMARY
1. Linux Kernel FS/Buffer.C Local Information Disclosure Vulnerability
2. Computer Associates Multiple Products Drivers Multiple Local Privilege Escalation Vulenrabilities
3. Xine-Lib RuleMatches Remote Buffer Overflow Vulnerability
4. Apple QuickTime RTSP URI Remote Buffer Overflow Vulnerability
5. ELOG Nonexistent File Download Cross-Site Scripting Vulnerability
6. ELOG EL_Submit Function Remote Format String Vulnerability
7. ELOG Multiple Cross-Site Scripting Vulnerabilities
8. ELOG Web Logbook ELogD Server Denial Of Service Vulnerability
9. Elog Log Entry HTML Injection Vulnerability
10. AVM FRITZ!Box VoIP Remote Denial of Service Vulnerability
11. Linux Kernel AIO_Setup_Ring Local Denial of Service Vulnerability
12. Linux Kernel Bluetooth CAPI Packet Remote Buffer Overflow Vulnerability
13. Linux Kernel Unspecified Remote Vulnerability
14. F5 Firepass Multiple Input Validation Vulnerabilities
15. Multiple VOIP Phones Aredfox PA168 Chipset Session Hijacking Vulnerability
16. Linux Kernel Unspecified Socket Buffer Handling Remote Denial of Service Vulnerability
17. Linux Kernel ELF File Entry Point Denial of Service Vulnerability
18. Sun Solaris Tip Local Privilege Escalation Vulnerability
19. Linux Kernel Network Bridge Incorrectly Forwarded Packets Information Disclosure Vulnerability
20. Bild Bearbeiten Online Upload Service Top.PHP Remote File Include Vulnerability
21. Yukihiro Matsumoto Ruby CGI Module MIME Denial Of Service Vulnerability
22. Symantec Antivirus Remote Stack Buffer Overflow Vulnerability
23. Apple UserNotificationCenter Local Privilege Escalation Vulnerability
24. Vote! Pro Multiple PHP Code Execution Vulnerabilities
25. Mini Web Server Unspecified Multiple Buffer Overflow Vulnerabilities
26. Indiscripts Enthusiast Multiple Input Validation Vulnerabilities
27. Linux Kernel Multiple IPV6 Packet Filtering Bypass Vulnerabilities
28. Sun Ray Server Admin Graphical User Interface Administrator Password Disclosure Vulnerabilities
29. OpenSSL PKCS Padding RSA Signature Forgery Vulnerability
30. Oracle January 2007 Security Update Multiple Vulnerabilities
31. Mozilla Firefox/SeaMonkey/Thunderbird Multiple Remote Vulnerabilities
32. Fetchmail Multiple Password Information Disclosure Vulnerabilities
33. Fetchmail Remote Denial of Service Vulnerability
34. Squid Proxy ACL Queue Overload Remote Denial of Service Vulnerability
35. Squid Proxy FTP URI Remote Denial of Service Vulnerability
36. GNU Tar GNUTYPE_NAMES Remote Directory Traversal Vulnerability
37. Citrix Presentation and MetaFrame Server Cpprov.DLL Stack Buffer Overflow Vulnerability
38. OpenOffice XML File Format Buffer Overflow Vulnerability
39. WU-FTPD restricted-gid Unauthorized Access Vulnerability
40. OpenOffice Java Applet System Access Vulnerability
41. OpenLDAP Server Bind Request Denial Of Service Vulnerability
42. LibPNG Graphics Library PNG_SET_SPLT Remote Denial of Service Vulnerability
43. ProFTPD MOD_TLS Remote Buffer Overflow Vulnerability
44. Multiple Applications Media File Handling Denial of Service Vulnerability
45. Multiple Security Products MIME Encoding Content Filter Bypass Weakness
46. Clam Anti-Virus MIME Attachments Denial Of Service Vulnerability
47. GNU GV Stack Buffer Overflow Vulnerability
48. LibGSF Remote Heap Buffer Overflow Vulnerability
49. MIT Kerberos Administration Daemon Free Pointers Remote Code Execution Vulnerability
50. MIT Kerberos 5 RPC Library Remote Code Execution Vulnerability
51. RETIRED: PHPAdsNew Lib-RemoteHost.PHP Local File Include Vulnerability
52. OpenSSL SSLv2 Null Pointer Dereference Client Denial of Service Vulnerability
53. OpenSSL SSL_Get_Shared_Ciphers Buffer Overflow Vulnerability
54. OpenSSL Insecure Protocol Negotiation Weakness
55. Clam Anti-Virus Attachment Wrapping Denial Of Service Vulnerability
56. GNOME Display Manager GDMChooser Local Format String Vulnerability
57. ASP News News_Detail.ASP SQL Injection Vulnerability
58. RPW Config.PHP Remote File Include Vulnerability
59. ASP Edge User.ASP SQL Injection Vulnerability
60. Cisco Multiple Devices Crafted IP Option Multiple Remote Code Execution Vulnerability
61. ProFTPD Controls Module Local Buffer Overflow Vulnerability
62. Cisco IOS IPv6 Source Routing Remote Memory Corruption Vulnerability
63. GTK2 GDKPixBufLoader Remote Denial of Service Vulnerability
64. Cisco IOS TCP Listener Denial Of Service Vulnerability
65. Apple Mac OS X QuickDraw GetSrcBits32ARGB Remote Memory Corruption Vulnerability
66. Omniture SiteCatalyst Multiple Cross-Site Scripting Vulnerabilities
67. 3Com 3CTftpSvc Filename Remote Buffer Overflow Vulnerability
68. MaklerPlus Multiple Unspecified Vulnerabilities
69. MyBB Private.PHP HTML Injection Vulnerability
70. Symantec Web Security Multiple Denial of Service And Cross-Site Scripting Vulnerabilities
71. Linux Kernel ISO9660 Denial of Service Vulnerability
72. Atozed Software Intraweb Component HTTP Request Handling Remote Denial of Service Vulnerability
73. Linux Kernel Get_FDB_Entries Buffer Overflow Vulnerability
74. RETIRED: FreeForum Index.PHP Remote File Include Vulnerability
75. Linux Kernel Multiple Vulnerabilities
76. Linux Kernel Robust_List Local Denial of Service Vulnerability
77. WinZip Command Line Remote Buffer Overflow Vulnerability
78. Retired: Snitz Forums 2000 Pop_Mail.ASP SQL Injection Vulnerability
79. Linux-PAM Pam_Unix.SO Authentication Bypass Vulnerability
80. CenterICQ IJHook.CC Remote Buffer Overflow Vulnerability
81. Drupal Acidfree Module Node Title SQL Injection Vulnerability
82. PhpXD Path Remote File Include Vulnerability
83. D-Bus Signals.C Local Denial of Service Vulnerability
84. ProFTPD SReplace Remote Buffer Overflow Vulnerability
85. Computer Associates BrightStor ARCServe BackUp Multiple Remote Buffer Overflow Vulnerabilities
86. GeoIP GeoIPUpdate.C Directory Traversal Vulnerability
87. NCTsoft NCTAudioFile2 ActiveX Control Remote Buffer Overflow Vulnerability
88. Mono XSP Source Code Information Disclosure Vulnerability
89. BBClone Selectlang.PHP Remote File Include Vulnerability
90. BlueZ HIDD Bluetooh HID Command Injection Vulnerability
91. Linux Kernel IPV6 Seqfile Handling Local Denial of Service Vulnerability
92. Linux Kernel S/390 Copy_From_User Local Information Disclosure Vulnerability
93. Linux Kernel ATM SkBuff Dereference Remote Denial of Service Vulnerability
94. Linux Kernel Do_Coredump Security Bypass Vulnerability
95. OpenLDAP Gentoo GenCert.SH Script Insecure Temporary File Creation Vulnerability
96. MiMMS Media Stream Handling Remote Buffer Overflow Vulnerability
97. Dovecot IMAP Server Mapped Pages Off-By-One Buffer Overflow Vulnerability
98. LibSoup Library HTTP Headers Remote Denial of Service Vulnerability
99. Xine Errors.C Remote Format String Vulnerability
100. Orange Web Server DoS Vulnerability
III. SECURITYFOCUS NEWS
1. Bug brokers offering higher bounties
2. Vulnerability tallies surged in 2006
3. Spammers get bullish on stocks
4. E-voting flaws put Florida in spotlight again
IV. SECURITY JOBS LIST SUMMARY
1. [SJ-JOB] Security Engineer, Vienna
2. [SJ-JOB] Security Engineer, New York
3. [SJ-JOB] Senior Software Engineer, Sunnyvale
4. [SJ-JOB] Security Engineer, Hyderabad
5. [SJ-JOB] Sales Engineer, Any
6. [SJ-JOB] Security Engineer, Phoenix
7. [SJ-JOB] Security Engineer, Kirkland
8. [SJ-JOB] Security Engineer, Santa Monica
9. [SJ-JOB] Security Engineer, Mountain View
10. [SJ-JOB] Sales Engineer, Boston
11. [SJ-JOB] Security Engineer, Chicago
12. [SJ-JOB] Sales Representative, Birmingham
13. [SJ-JOB] Sales Representative, Berkshire
14. [SJ-JOB] Sales Representative, New York
15. [SJ-JOB] Account Manager, Sacramento
16. [SJ-JOB] Security Engineer, Warsaw
17. [SJ-JOB] Technical Support Engineer, Melbourne
18. [SJ-JOB] Auditor, London
19. [SJ-JOB] Security Product Marketing Manager, San Francisco
20. [SJ-JOB] Sales Representative, Vacaville
21. [SJ-JOB] Sales Representative, Napa
22. [SJ-JOB] Security Director, Chicago
23. [SJ-JOB] Security Consultant, Tyson's Corner
24. [SJ-JOB] Security Consultant, Springfield
25. [SJ-JOB] Security Engineer, Canberra
26. [SJ-JOB] Security Engineer, Canberra
27. [SJ-JOB] Sr. Security Analyst, Miami
28. [SJ-JOB] Security Architect, Dallas
29. [SJ-JOB] Security Architect, Chicago
30. [SJ-JOB] Sr. Security Analyst, Ottawa
31. [SJ-JOB] Sales Representative, Livonia
32. [SJ-JOB] Software Engineer, Columbia
33. [SJ-JOB] Manager, Information Security, New York or Boston
34. [SJ-JOB] Application Security Architect, Austin
35. [SJ-JOB] Security Architect, Houston
36. [SJ-JOB] Application Security Engineer, Washington
37. [SJ-JOB] Technical Writer, Cupertino
38. [SJ-JOB] Security Architect, Boston
39. [SJ-JOB] Application Security Engineer, Atlanta/Roswell
40. [SJ-JOB] Application Security Architect, Atlanta Metro
V. INCIDENTS LIST SUMMARY
1. Tracking down random ICMP
2. UK computer crime contact?
VI. VULN-DEV RESEARCH LIST SUMMARY
1. Possible McAfee GroupShield Vulnerability
2. Call for Paper - SyScan'07
3. EUSecWest 2007 Papers
4. .Net Debug
VII. MICROSOFT FOCUS LIST SUMMARY
1. IE security zone assignment on 2003 terminal server
2. IPSec and GRE (47)
3. SecurityFocus Microsoft Newsletter #325
4. SoX & Share Permissions?
5. Secure Remote access - windows 2003
6. Windows AutoAdminLogon Security
VIII. SUN FOCUS LIST SUMMARY
1. BSM, SSH, and Session ID
IX. LINUX FOCUS LIST SUMMARY
X. UNSUBSCRIBE INSTRUCTIONS
XI. SPONSOR INFORMATION
I. FRONT AND CENTER
---------------------
1. iPhone Trademarks: the Real Issues
By Mark Rasch
Apple's iPhone announcement and Cisco's iPhone trademark lawsuit has brought the iPhone moniker into the spotlight. But other companies also own and use iPhone trademarks, and market and sell their iPhone products. Mark Rasch explains how U.S. trademark law works and the real issues at play in this highly publicized trademark dispute.
http://www.securityfocus.com/columnists/430
2. Testing Fault Injection in Local Applications
By Chris Wysopal
This article is a book excerpt that looks at the approach and techniques used to test the security of local applications. It describes local resources and interprocess communication, how to enumerate the local resources an application depends on, and then discusses methods of testing several of those types of resources. It also describes how to test ActiveX objects, command-line programs, and applications' use of local files and shared memory.
http://www.securityfocus.com/infocus/1886
II. BUGTRAQ SUMMARY
--------------------
1. Linux Kernel FS/Buffer.C Local Information Disclosure Vulnerability
BugTraq ID: 21522
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21522
Summary:
The Linux kernel is prone to a local information-disclosure vulnerability because the kernel fails to properly clear kernel memory after certain errors.
Successfully exploiting this issue allows local attackers to gain access to potentially sensitive information contained in kernel memory, aiding them in further attacks.
Linux kernel versions prior to 2.6.13 are vulnerable to this issue.
2. Computer Associates Multiple Products Drivers Multiple Local Privilege Escalation Vulenrabilities
BugTraq ID: 21140
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21140
Summary:
Multiple Computer Associates security-related products are prone to multiple local privilege-escalation vulnerabilities.
An attacker can leverage these issues to execute arbitrary code with SYSTEM-level privileges. This could result in the complete compromise of vulnerable computers.
These isses affect CA Personal Firewall 2007 (v9.0) Engine version 1.0.173 and prior and CA Internet Security Suite 2007 version 3.0 with CA Personal Firewall 2007 version 9.0 Engine version 1.0.173 and prior.
3. Xine-Lib RuleMatches Remote Buffer Overflow Vulnerability
BugTraq ID: 21435
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21435
Summary:
The 'xine-lib' library running on Real media is prone to a remote buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized buffer.
An attacker can exploit this issue to execute arbitrary code with the privileges of the currently logged-in user. Failed exploit attempts will result in a denial of service.
4. Apple QuickTime RTSP URI Remote Buffer Overflow Vulnerability
BugTraq ID: 21829
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21829
Summary:
Apple QuickTime is prone to a remote buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied input prior to copying it to an insufficiently sized stack-based memory buffer.
Exploiting this issue allows remote attackers to execute arbitrary machine code in the context of the affected application, facilitating the remote compromise of affected computers.
Attackers exploit this issue by coercing targeted users to access malicious HTML or QTL files or by executing malicious JavaScript code.
QuickTime version 7.1.3 is vulnerable to this issue; other versions may also be affected.
5. ELOG Nonexistent File Download Cross-Site Scripting Vulnerability
BugTraq ID: 20881
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20881
Summary:
ELOG is prone to a cross-site scripting vulnerability because the application fails to properly sanitize user-supplied input.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
ELOG version 2.6.2 is vulnerable; other versions may also be affected.
6. ELOG EL_Submit Function Remote Format String Vulnerability
BugTraq ID: 20876
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20876
Summary:
ELOG is prone to a remote format-string vulnerability because the application fails to properly sanitize user-supplied input before including it in the format-specifier argument of a formatted-printing function.
Successfully exploiting this issue allows remote attackers to execute arbitrary machine code in the context of users running the affected application. This facilitates the remote compromise of affected computers.
ELOG version 2.0.2 is vulnerable to this issue.
7. ELOG Multiple Cross-Site Scripting Vulnerabilities
BugTraq ID: 20882
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20882
Summary:
ELOG is prone to multiple cross-site scripting vulnerabilities because the application fails to properly sanitize user-supplied input.
An attacker may leverage these issues to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
ELOG version 2.6.2 is vulnerable; other versions may also be affected.
8. ELOG Web Logbook ELogD Server Denial Of Service Vulnerability
BugTraq ID: 21028
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21028
Summary:
ELOG Web Logbook is prone to a remote denial-of-service vulnerability because the application fails to properly handle specific HTTP requests that contain invalid information.
Successful exploits may allow remote attackers to cause denial-of-service conditions on computers running the affected application.
9. Elog Log Entry HTML Injection Vulnerability
BugTraq ID: 20181
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20181
Summary:
ELOG is prone to an HTML-injection vulnerability because it fails to sufficiently sanitize user-supplied input data.
Exploiting this issue may allow an attacker to execute HTML and script code in the context of the affected site, to steal cookie-based authentication credentials, or to control how the site is rendered to the user; other attacks are also possible.
Version 2.6.1 is vulnerable; other versions may also be affected.
10. AVM FRITZ!Box VoIP Remote Denial of Service Vulnerability
BugTraq ID: 22130
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22130
Summary:
FRITZ!Box is prone to a remote denial-of-service vulnerability.
A remote attacker can exploit this issue to crash the VoIP-telephony service, effectively denying service to legitimate users.
11. Linux Kernel AIO_Setup_Ring Local Denial of Service Vulnerability
BugTraq ID: 22193
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22193
Summary:
The Linux kernel is prone to a local denial-of-service vulnerability because the kernel fails to properly initialize a variable.
Exploiting this issue allows local attackers to cause kernel crashes, denying service to legitimate users.
12. Linux Kernel Bluetooth CAPI Packet Remote Buffer Overflow Vulnerability
BugTraq ID: 21604
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21604
Summary:
The Linux kernel is prone to a remote buffer-overflow vulnerability because the kernel fails to bounds-check user-supplied data before copying it into an insufficiently sized buffer.
An attacker may exploit this issue to execute arbitrary code with kernel-level privileges, facilitating the complete compromise of affected computers. Failed exploit attempts will result in denial-of-service conditions.
Versions prior to 2.4.33.5 are vulnerable to this issue.
13. Linux Kernel Unspecified Remote Vulnerability
BugTraq ID: 21835
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21835
Summary:
The Linux kernel is prone to an unspecified vulnerability.
Versions prior to 2.4.34 are vulnerable to this issue.
14. F5 Firepass Multiple Input Validation Vulnerabilities
BugTraq ID: 21957
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21957
Summary:
F5 Firepass is prone to multiple input-validation vulnerabilities because the device fails to sufficiently sanitize user-supplied input. These issues include information-disclosure, security bypass, and cross-site scripting vulnerabilities.
An attacker can exploit these issues to bypass security restrictions, to view sensitive information, and to steal cookie-based authentication credentials. This may allow the attacker to compromise the application and the underlying system; other attacks are also possible.
15. Multiple VOIP Phones Aredfox PA168 Chipset Session Hijacking Vulnerability
BugTraq ID: 22191
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22191
Summary:
Multiple VoIP phones using the Aredfox PA168 Chipset are prone to a session-hijacking vulnerability due to a design error.
An attacker can exploit this issue to gain administrative access to the embedded webserver running on the affected device. This may allow attackers to completely compromise affected devices.
VoIP phones using the Aredfox PA168 chipset with SIP Firmware V1.42 and 1.54 are vulnerable.
16. Linux Kernel Unspecified Socket Buffer Handling Remote Denial of Service Vulnerability
BugTraq ID: 19475
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/19475
Summary:
The Linux kernel is prone to an unspecified remote denial-of-service vulnerability.
This issue allows remote attackers to cause kernel panics, denying service to legitimate users.
No further information is currently available. This BID will be updated as more information is released.
Specific version information is currently unavailable. Kernel versions in the 2.6 series are currently considered vulnerable.
17. Linux Kernel ELF File Entry Point Denial of Service Vulnerability
BugTraq ID: 16925
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/16925
Summary:
Linux kernel is prone to a denial-of-service vulnerability when processing a malformed ELF file. This issue occurs only on Intel EM64T processors.
Linux kernel versions prior to 2.6.15.5 are affected by this issue.
18. Sun Solaris Tip Local Privilege Escalation Vulnerability
BugTraq ID: 22190
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22190
Summary:
Sun Solaris is prone to a local privilege-escalation vulnerability.
Successfully exploiting this issue allows local users to execute arbitrary machine code with UUCP privileges (UID 5). This may aid them in further attacks.
19. Linux Kernel Network Bridge Incorrectly Forwarded Packets Information Disclosure Vulnerability
BugTraq ID: 15536
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/15536
Summary:
Linux Kernel is susceptible to an information-disclosure vulnerability in its network-bridging functionality.
This issue allows attackers to poison the bridge-forwarding table, causing packets to be incorrectly forwarded to the wrong interface. Information gained from the packets may aid the malicious user in further attacks.
Kernel versions 2.6.11.11 and prior are vulnerable to this issue.
20. Bild Bearbeiten Online Upload Service Top.PHP Remote File Include Vulnerability
BugTraq ID: 22189
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22189
Summary:
Bild Bearbeiten Online Upload Service is prone to a remote file-include vulnerability because it fails to sufficiently sanitize user-supplied data.
Exploiting this issue may allow an attacker to compromise the application and the underlying system; other attacks are also possible.
Version 1.0 is vulnerable; other versions may also be affected.
21. Yukihiro Matsumoto Ruby CGI Module MIME Denial Of Service Vulnerability
BugTraq ID: 20777
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20777
Summary:
Ruby is prone to a remote denial-of-service vulnerability because the application's CGI module fails to properly handle specific HTTP requests that contain invalid information.
Successful exploits may allow remote attackers to cause denial-of-service conditions on computers running the affected Ruby CGI Module.
22. Symantec Antivirus Remote Stack Buffer Overflow Vulnerability
BugTraq ID: 18107
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/18107
Summary:
Multiple Symantec products are susceptible to a remote stack buffer-overflow vulnerability.
This issue allows remote attackers to execute arbitrary machine code with SYSTEM-level privileges, facilitating the complete compromise of affected computers.
Symantec Antivirus Corporate Edition 10.1 and Symantec Client Security 3.1 are currently known to be vulnerable to this issue. All supported platforms are affected including Microsoft Windows and Novell Netware.
23. Apple UserNotificationCenter Local Privilege Escalation Vulnerability
BugTraq ID: 22188
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22188
Summary:
Apple Mac OS X is prone to a local privilege-escalation vulnerability. This issue stems from a flaw in the UserNotificationCenter application that results in arbitrary code-execution with wheel-group privileges.
Exploiting this issue allows local attackers to gain elevated privileges, potentially leading to a complete compromise of affected computers.
This issue affects Apple Mac OS X version 10.4.8; other versions may also be affected.
24. Vote! Pro Multiple PHP Code Execution Vulnerabilities
BugTraq ID: 22187
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22187
Summary:
Vote! Pro is prone to multiple arbitrary PHP code-execution vulnerabilities.
If successful, attackers can execute script code with the privileges of the webserver process.
Version 4.0 is affected by this issue; other versions may be vulnerable as well.
25. Mini Web Server Unspecified Multiple Buffer Overflow Vulnerabilities
BugTraq ID: 22182
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22182
Summary:
Mini Web Server is prone to multiple buffer-overflow vulnerabilities.
A successful exploit may lead to remote arbitrary code execution with the privileges of the server application, facilitating a remote compromise of affected computers.
Mini Web Server 0.04 and prior versions are vulnerable to these issues.
26. Indiscripts Enthusiast Multiple Input Validation Vulnerabilities
BugTraq ID: 22180
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22180
Summary:
Indiscripts Enthusiast is prone to multiple input-validation vulnerabilities, including SQL-injection issues and a cross-site scripting issues, because it fails to sufficiently sanitize user-supplied data.
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation.
Enthusiast 3.1 is vulnerable; other versions may also be affected.
27. Linux Kernel Multiple IPV6 Packet Filtering Bypass Vulnerabilities
BugTraq ID: 20955
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20955
Summary:
The Linux kernel is prone to multiple IPv6 packet-filtering-bypass vulnerabilities because of insufficient handling of fragmented packets.
An attacker could exploit these issues to bypass ip6_table filtering rules. This could result in a false sense of security because filtering rules set up by system administrators can be bypassed in order to access services that are otherwise protected.
28. Sun Ray Server Admin Graphical User Interface Administrator Password Disclosure Vulnerabilities
BugTraq ID: 22192
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22192
Summary:
The Sun Ray server is prone to multiple password-disclosure vulnerabilities.
An attacker can exploit these issues to gain 'utadmin' access to the affected server. This may lead to other attacks.
29. OpenSSL PKCS Padding RSA Signature Forgery Vulnerability
BugTraq ID: 19849
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/19849
Summary:
OpenSSL is prone to a vulnerability that may allow an attacker to forge an RSA signature. The attacker may be able to forge a PKCS #1 v1.5 signature when an RSA key with exponent 3 is used.
An attacker may exploit this issue to sign digital certificates or RSA keys and take advantage of trust relationships that depend on these credentials, possibly posing as a trusted party and signing a certificate or key.
All versions of OpenSSL prior to and including 0.9.7j and 0.9.8b are affected by this vulnerability. Updates are available.
30. Oracle January 2007 Security Update Multiple Vulnerabilities
BugTraq ID: 22083
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22083
Summary:
Oracle has released a Critical Patch Update advisory for January 2007 to address these vulnerabilities for supported releases. Earlier unsupported releases are likely to be affected by these issues as well.
The issues identified by the vendor affect all security properties of the Oracle products and present local and remote threats. Various levels of authorization are needed to leverage some of the issues, but other issues do not require any authorization. The most severe of the vulnerabilities could possibly expose affected computers to complete compromise.
31. Mozilla Firefox/SeaMonkey/Thunderbird Multiple Remote Vulnerabilities
BugTraq ID: 21668
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21668
Summary:
The Mozilla Foundation has released nine security advisories specifying vulnerabilities in Firefox, SeaMonkey, and Thunderbird.
These vulnerabilities allow attackers to:
- execute arbitrary code
- perform cross-site scripting attacks
- inject arbitrary content
- gain escalated privileges
- crash affected applications and potentially execute arbitrary code.
Other attacks may also be possible.
32. Fetchmail Multiple Password Information Disclosure Vulnerabilities
BugTraq ID: 21903
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21903
Summary:
Fetchmail is prone to multiple information-disclosure vulnerabilities because the application discloses information about user passwords.
An attacker can exploit these issue to access sensitive information that may aid the attacker in other attacks.
These issues affect versions prior to 6.3.6-rc4
33. Fetchmail Remote Denial of Service Vulnerability
BugTraq ID: 21902
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21902
Summary:
Fetchmail is prone to a denial-of-service vulnerability because the application fails to handle exceptional conditions.
An attacker can exploit this issue to crash the affected application, denying service to legitimate users.
34. Squid Proxy ACL Queue Overload Remote Denial of Service Vulnerability
BugTraq ID: 22203
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22203
Summary:
Squid is prone to a remote denial-of-service vulnerability because the proxy server fails to handle excessive data.
Successfully exploiting this issue allows remote attackers to crash affected proxy applications, denying further service to legitimate users.
35. Squid Proxy FTP URI Remote Denial of Service Vulnerability
BugTraq ID: 22079
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22079
Summary:
Squid is prone to a remote denial-of-service vulnerability because the proxy server fails to handle certain FTP requests.
Successfully exploiting this issue allows remote attackers to crash affected proxy applications, denying futher service to legitimate users.
Squid versions from 2.5.STABLE11 to 2.6.STABLE6 are vulnerable to this issue.
36. GNU Tar GNUTYPE_NAMES Remote Directory Traversal Vulnerability
BugTraq ID: 21235
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21235
Summary:
GNU Tar is prone to a vulnerability that may allow an attacker to place files and overwrite files in arbitrary locations on a vulnerable computer. These issues present themselves when the application processes malicious archives.
A successful attack can allow the attacker to place potentially malicious files and overwrite files on a computer in the context of the user running the affected application. Successful exploits may aid in further attacks.
37. Citrix Presentation and MetaFrame Server Cpprov.DLL Stack Buffer Overflow Vulnerability
BugTraq ID: 22217
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22217
Summary:
Citrix Presentation and MetaFrame Server are prone to a stack-based buffer-overflow vulnerability because they fail to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
An attacker can exploit this issue to execute arbitrary code with the privileges of the 'LocalSystem' account.
38. OpenOffice XML File Format Buffer Overflow Vulnerability
BugTraq ID: 18739
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/18739
Summary:
OpenOffice is prone to a vulnerability that allows attackers to gain unauthorized access to a vulnerable computer.
The vendor has reported that this vulnerability allows malicious XML documents to cause a buffer overflow leading to read/write privileges to local files on a vulnerable computer.
39. WU-FTPD restricted-gid Unauthorized Access Vulnerability
BugTraq ID: 9832
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/9832
Summary:
WU-FTPD FTP server is reported prone to an unauthorized-access vulnerability. The issue is related to the "restricted-gid" feature supported by WU-FTPD. This feature allows an administrator to restrict FTP user access to certain directories. The vulnerability reportedly allows users to bypass those restrictions through modifying the permissions on their home directory so that they themselves can no longer access it. Under such circumstances, the server may grant the user unauthorized access to the root directory.
Further technical details are not known at this time. This record will be updated as more information becomes available.
This BID is created in response to Two Possibly New WU-FTPD Vulnerabilities BID 9820, which is being retired.
40. OpenOffice Java Applet System Access Vulnerability
BugTraq ID: 18737
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/18737
Summary:
OpenOffice is prone to a vulnerability that allows attackers to gain unauthorized access to a vulnerable computer.
The vendor has reported that this vulnerability allows malicious Java applets to gain read/write privileges to local files on a vulnerable computer.
41. OpenLDAP Server Bind Request Denial Of Service Vulnerability
BugTraq ID: 20939
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20939
Summary:
OpenLDAP server is prone to a denial-of-service vulnerability because it fails to handle exceptional conditions.
An attacker can exploit this issue to cause a crash in the LDAP server, effectively denying service to legitimate users.
42. LibPNG Graphics Library PNG_SET_SPLT Remote Denial of Service Vulnerability
BugTraq ID: 21078
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21078
Summary:
LibPNG is reported prone to a denial-of-service vulnerability. The library fails to perform proper bounds-checking of user-supplied input, which leads to an out-of-bounds read error.
Attackers may exploit this vulnerability to crash an application that relies on the affected library.
43. ProFTPD MOD_TLS Remote Buffer Overflow Vulnerability
BugTraq ID: 21326
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21326
Summary:
ProFTPD is prone to a remote buffer-overflow vulnerability.
Exploiting this issue allows remote attackers to cause a buffer overflow, to corrupt memory, and to execute arbitrary machine code in the context of the server application, facilitating the compromise of affected computers.
ProFTPD 1.3.0a and prior versions are vulnerable to this issue.
44. Multiple Applications Media File Handling Denial of Service Vulnerability
BugTraq ID: 21612
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21612
Summary:
Multiple applications are prone to a denial-of-service vulnerability.
A remote attacker may exploit this vulnerability by presenting malicious 'WMV', 'MID', and 'AVI' files to a victim user. When an affected application processes this image, the application crashes, effectively denying service.
It is not known at this time if this issue can be leveraged to execute arbitrary code; this BID will be updated as further information becomes available.
45. Multiple Security Products MIME Encoding Content Filter Bypass Weakness
BugTraq ID: 21461
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21461
Summary:
Various security products are prone to a filter-bypass weakness. These products include:
- BitDefender Mail Protection for SMB 2.0
- ClamAV 0.88.6
- F-prot AntiVirum for Linux x86 Mail Servers 4.6.6
- Kaspersky Anti-Virus for Linux Mail Server 5.5.10
Other applications and versions may also be affected.
This issue occurs because the application fails to handle malformed input that may allow an attacker to bypass the file-filtering mechanism.
46. Clam Anti-Virus MIME Attachments Denial Of Service Vulnerability
BugTraq ID: 21510
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21510
Summary:
ClamAV is prone to a denial-of-service vulnerability because it fails to handle specific MIME attachments.
A successful exploit of this issue will cause the application to crash, resulting in a denial-of-service condition.
ClamAV versions prior to 0.88.4-2 are vulnerable; other versions may also be affected.
47. GNU GV Stack Buffer Overflow Vulnerability
BugTraq ID: 20978
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20978
Summary:
GNU gv is prone to a stack-based buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
Exploiting this issue allows attackers to execute arbitrary machine code in the context of users running the affected application. Failed attempts will likely crash the application, resulting in denial-of-service conditions.
Version 3.6.2 is reported vulnerable; other versions may also be affected.
NOTE: Various other applications may employ embedded GNU gv code and could also be vulnerable as a result.
48. LibGSF Remote Heap Buffer Overflow Vulnerability
BugTraq ID: 21358
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21358
Summary:
The libgsf library is prone to a remote heap buffer-overflow vulnerability.
Exploiting this issue may allow attackers to execute arbitrary machine code within the context of the vulnerable application or to cause a denial of service.
49. MIT Kerberos Administration Daemon Free Pointers Remote Code Execution Vulnerability
BugTraq ID: 21975
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21975
Summary:
MIT Kerberos 5 is prone to a remote code-execution vulnerability.
This issue occurs because of memory-management problems in the abstraction interface of the GSS-API implementation.
An attacker can exploit this issue to execute arbitrary code with superuser privileges, completely compromising affected computers. Failed exploit attempts will likely result in a denial-of-service conditions.
This issue also affects third-party applications using the affected API.
50. MIT Kerberos 5 RPC Library Remote Code Execution Vulnerability
BugTraq ID: 21970
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21970
Summary:
MIT Kerberos 5 is prone to a remote code-execution vulnerability. This issue resides in the server-side portion of the Kerberos RPC library. Currently, the 'kadmind' service is known to be vulnerable, but other applications that use this library may also be affected.
An attacker can exploit this issue to execute arbitrary code with administrative privileges, completely compromising affected computers. Failed exploit attempts will result in a denial of service. After a Kerberos database computer has been compromised, attackers may gain unauthorized access to
other services that rely on the Kerberos infrastructure for authentication.
51. RETIRED: PHPAdsNew Lib-RemoteHost.PHP Local File Include Vulnerability
BugTraq ID: 22172
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22172
Summary:
PHPAdsNew is prone to a local file-include vulnerability because it fails to properly sanitize user-supplied input.
Exploiting this issue may allow an unauthorized user to view files and execute local scripts.
Version 2.0.7 is vulnerable to this issue; other versions may also be affected.
NOTE: This BID has been retired because further analysis has shown that the application isn't vulnerable to this issue.
52. OpenSSL SSLv2 Null Pointer Dereference Client Denial of Service Vulnerability
BugTraq ID: 20246
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20246
Summary:
OpenSSL is prone to a denial-of-service vulnerability.
A malicious server could cause a vulnerable client application to crash, effectively denying service.
53. OpenSSL SSL_Get_Shared_Ciphers Buffer Overflow Vulnerability
BugTraq ID: 20249
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20249
Summary:
OpenSSL is prone to a buffer-overflow vulnerability because the library fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
Successfully exploiting this issue may result in the execution of arbitrary machine code in the context of applications that use the affected library. Failed exploit attempts may crash applications, denying service to legitimate users.
54. OpenSSL Insecure Protocol Negotiation Weakness
BugTraq ID: 15071
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/15071
Summary:
OpenSSL is susceptible to a remote protocol-negotiation weakness. This issue is due to the implementation of the 'SSL_OP_MSIE_SSLV2_RSA_PADDING' option to maintain compatibility with third-party software.
This issue presents itself when two peers try to negotiate the protocol they wish to communicate with. Attackers who can intercept and modify the SSL communications may exploit this weakness to force SSL version 2 to be chosen.
The attacker may then exploit various insecurities in SSL version 2 to gain access to or tamper with the cleartext communications between the targeted client and server.
Note that the 'SSL_OP_MSIE_SSLV2_RSA_PADDING' option is enabled with the frequently used 'SSL_OP_ALL' option.
SSL peers that are configured to disallow SSL version 2 are not affected by this issue.
55. Clam Anti-Virus Attachment Wrapping Denial Of Service Vulnerability
BugTraq ID: 21609
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21609
Summary:
ClamAV is prone to a denial-of-service vulnerability because it fails to handle specific multipart attachments.
A successful exploit of this issue will cause the application to crash, resulting in a denial-of-service condition.
This issue affects ClamAV 0.88.6 and earlier versions.
56. GNOME Display Manager GDMChooser Local Format String Vulnerability
BugTraq ID: 21597
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21597
Summary:
GNOME Display Manager (GDM) is prone to a local format-string vulnerability because it fails to properly sanitize user-supplied input before including it in the format-specifier argument of a formatted-printing function.
A local attacker may exploit this issue to execute arbitrary machine code in the context of the affected application.
57. ASP News News_Detail.ASP SQL Injection Vulnerability
BugTraq ID: 22214
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22214
Summary:
ASP NEWS is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation.
ASP NEWS Version 3 is vulnerable; other versions may also be affected.
58. RPW Config.PHP Remote File Include Vulnerability
BugTraq ID: 22213
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22213
Summary:
RPW is prone to a remote file-include vulnerability because it fails to sufficiently sanitize user-supplied data.
Exploiting this issue may allow an attacker to compromise the application and the underlying system; other attacks are also possible.
This issue affects version 1.0.2; other versions may also be vulnerable.
59. ASP Edge User.ASP SQL Injection Vulnerability
BugTraq ID: 22212
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22212
Summary:
ASP EDGE is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation.
ASP EDGE Version 1.2b is vulnerable; other versions may also be affected.
60. Cisco Multiple Devices Crafted IP Option Multiple Remote Code Execution Vulnerability
BugTraq ID: 22211
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22211
Summary:
Multiple Cisco switches and routers running Cisco IOS and Cisco IOS XR are prone to multiple remote code-execution vulnerabilities. These issues occur because the devices fail to handle specially crafted network packets.
An attacker can exploit these issues to execute arbitrary code within the context of the affected device. Failed exploit attempts will result in a denial of service.
These issues affect only devices that are configured to handle Internet Protocol version 4 (IPv4) packets. These issues do not affect devices that are configured to handle only Internet Protocol version 6 (IPV6) packets.
These issues are being tracked by Cisco Bug IDs CSCeh52410 and CSCec71950.
61. ProFTPD Controls Module Local Buffer Overflow Vulnerability
BugTraq ID: 21587
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21587
Summary:
ProFTPD is prone to a local stack-based buffer-overflow vulnerability.
Attackers may exploit this issue to corrupt memory and execute arbitrary code in the context of the server application, resulting in a complete compromise of affected computers.
NOTE: ProFTPD is vulnerable only when compiled with 'mod_ctrls' support and the module is enabled.
62. Cisco IOS IPv6 Source Routing Remote Memory Corruption Vulnerability
BugTraq ID: 22210
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22210
Summary:
Cisco IOS is prone to a remote memory-corruption vulnerability because the software fails to properly handle malformed IPv6 source-routing headers.
Successfully exploiting this issue allows remote attackers to corrupt the memory of affected devices. This may potentially facilitate the execution of attacker-supplied machine code. Failed exploit attempts will likely crash IOS-based devices.
This issue is being tracked by Cisco Bug IDs CSCsd40334 and CSCsd58381.
63. GTK2 GDKPixBufLoader Remote Denial of Service Vulnerability
BugTraq ID: 22209
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22209
Summary:
Applications using the gtk2 library may be prone to a denial-of-service vulnerability because the library fails to handle malformed image data.
An attacker can exploit this issue to crash applications on a victim's computer.
64. Cisco IOS TCP Listener Denial Of Service Vulnerability
BugTraq ID: 22208
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22208
Summary:
CISCO IOS is prone to a denial-of-service vulnerability.
This issue affects only devices running the Internet Protocol version 4 (IPv4).
Attackers can exploit this issue to cause memory leaks, potentially causing memory exhaustion over time. This will result in denial-of-service conditions.
This issue affects all CISCO routers using CISCO IOS Software versions 9 through 12.4.
This issue is being tracked by the CISCO Bug ID: CSCek37177.
65. Apple Mac OS X QuickDraw GetSrcBits32ARGB Remote Memory Corruption Vulnerability
BugTraq ID: 22207
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22207
Summary:
Mac OS X QuickDraw is prone to a remote memory-corruption vulnerability because the software fails to properly handle malformed PICT image files.
Successfully exploiting this issue allows remote attackers to corrupt memory and crash the affected software. Attackers may also be able to execute arbitrary machine code, but this has not been confirmed.
Mac OS X 10.4.8 is vulnerable to this issue; other versions are also likely affected, since the vulnerable component has been included in Apple operating systems since System 6.0.4
66. Omniture SiteCatalyst Multiple Cross-Site Scripting Vulnerabilities
BugTraq ID: 21620
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21620
Summary:
Omniture SiteCatalyst is prone to multiple cross-site scripting vulnerabilities because the application fails to properly sanitize user-supplied input.
An attacker may leverage these issues to have arbitrary script code execute in the browser of an unsuspecting user. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
67. 3Com 3CTftpSvc Filename Remote Buffer Overflow Vulnerability
BugTraq ID: 21322
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21322
Summary:
3CTftpSvc is prone to a buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before storing it in a finite-sized buffer.
An attacker can exploit this issue to execute arbitrary code and gain unauthorized remote access to a vulnerable computer. A denial-of-service condition may arise as well.
3CTftpSvc 2.0.1 and prior versions are reported to be vulnerable. Other versions may be affected as well.
68. MaklerPlus Multiple Unspecified Vulnerabilities
BugTraq ID: 22206
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22206
Summary:
MaklerPlus is prone to multiple unspecified vulnerabilities.
Currently, very little is known about these issues. This BID will be updated as more information becomes available.
Versions prior to 1.2 are vulnerable.
69. MyBB Private.PHP HTML Injection Vulnerability
BugTraq ID: 22205
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22205
Summary:
MyBB is prone to an HTML-injection vulnerability because it fails to sufficiently sanitize user-supplied input data.
Exploiting this issue may allow an attacker to execute HTML and script code in the context of the affected site, to steal cookie-based authentication credentials, or to control how the site is rendered to the user; other attacks are also possible.
70. Symantec Web Security Multiple Denial of Service And Cross-Site Scripting Vulnerabilities
BugTraq ID: 22184
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22184
Summary:
Symantec Web Security is prone to a denial-of-service vulnerability and multiple cross-site scripting vulnerabilities. Under certain circumstances, the application will fail to effectively block malicious URIs used in cross-site scripting attacks.
An attacker can exploit these issues to slow system processes, causing denial-of-service conditions or to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Symantec Web Security versions prior to 3.0.1.85 are vulnerable.
71. Linux Kernel ISO9660 Denial of Service Vulnerability
BugTraq ID: 20920
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20920
Summary:
The Linux kernel is prone to a local denial-of-service vulnerability. This issue affects the code that handles the ISO9660 filesystem.
An attacker can exploit this issue to crash the affected computer, denying service to legitimate users.
72. Atozed Software Intraweb Component HTTP Request Handling Remote Denial of Service Vulnerability
BugTraq ID: 22185
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22185
Summary:
The Intraweb component for Borland Delphi and Kylix is prone to a remote denial-of-service vulnerability.
An attacker can exploit this issue to cause the affected application to stop processing HTTP requests, denying service to legitimate users.
Intraweb 8.0 and prior versions are vulnerable to this issue.
73. Linux Kernel Get_FDB_Entries Buffer Overflow Vulnerability
BugTraq ID: 21353
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21353
Summary:
The Linux kernel is prone to a buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it to an insufficiently sized memory buffer.
Attackers may potentially exploit this issue to execute arbitrary code within the context of the affected kernel, but this has not been confirmed. Successfully exploiting this issue would cause the complete compromise of the affected computer.
Little information is currently known about this vulnerability. Since the affected function is in the network-bridging code, remote attacks may be possible.
74. RETIRED: FreeForum Index.PHP Remote File Include Vulnerability
BugTraq ID: 22165
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22165
Summary:
FreeForum is prone to a remote file-include vulnerability because it fails to sufficiently sanitize user-supplied data.
Exploiting this issue may allow an attacker to compromise the application and the underlying system; other attacks are also possible.
NOTE: This BID is being retired because further analysis reveals that this issue isn't exploitable.
75. Linux Kernel Multiple Vulnerabilities
BugTraq ID: 21523
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21523
Summary:
Linux Kernel is prone to multiple vulnerabilities that can allow local attackers to carry out various attacks, including denial-of-service attacks.
Kernel 2.6.8 and prior versions are reported affected.
76. Linux Kernel Robust_List Local Denial of Service Vulnerability
BugTraq ID: 21582
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21582
Summary:
The Linux kernel is prone to a local denial-of-service vulnerability.
An attacker can exploit this issue to cause the kernel to hang, denying further service to legitimate users.
77. WinZip Command Line Remote Buffer Overflow Vulnerability
BugTraq ID: 22020
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22020
Summary:
WinZip is prone to a remote buffer-overflow vulnerability because it fails to adequately bounds-check user-supplied input before copying it into an insufficiently sized buffer.
An attacker may exploit this issue to cause denial-of-service conditions and possibly to execute arbitrary code within the context of the affected application, but this has not been confirmed.
This issue affects versions prior to 9.0 SR1.
78. Retired: Snitz Forums 2000 Pop_Mail.ASP SQL Injection Vulnerability
BugTraq ID: 20712
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20712
Summary:
Snitz Forums 2000 is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation.
Version 3.4.06 is vulnerable to this issue; other versions may also be affected.
NOTE: This BID is being retired because further analysis reveals that this issue is not exploitable.
79. Linux-PAM Pam_Unix.SO Authentication Bypass Vulnerability
BugTraq ID: 22204
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22204
Summary:
Linux-PAM is prone to an authentication-bypass vulnerability because it fails to effectively verify user passwords during the authentication process.
Exploiting this issue could allow an attacker to gain unauthorized access to an affected computer.
Version 0.99.7.0 is vulnerable.
80. CenterICQ IJHook.CC Remote Buffer Overflow Vulnerability
BugTraq ID: 21932
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21932
Summary:
CenterICQ is prone to a remote buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
An attacker can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial of service.
This issue affects versions 4.9.11 up to 4.21.0.
81. Drupal Acidfree Module Node Title SQL Injection Vulnerability
BugTraq ID: 22202
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22202
Summary:
Drupal Acidfree Module is prone to an SQL-injection vulnerability because the application fails to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
This issue affects versions prior to 4.6.0-1.0 and 4.7.0-1.0.
82. PhpXD Path Remote File Include Vulnerability
BugTraq ID: 22201
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22201
Summary:
PhpXD is prone to a remote file-include vulnerability because it fails to sufficiently sanitize user-supplied data.
An attacker can exploit this issue to have malicious PHP code execute in the context of the webserver process. This may allow the attacker to compromise the application and the underlying system; other attacks are also possible.
This issue affects version 0.3.
83. D-Bus Signals.C Local Denial of Service Vulnerability
BugTraq ID: 21571
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21571
Summary:
D-Bus is prone to a local denial-of-service vulnerability.
Exploiting this issue allows local attackers to disable the ability of a specific process to receive certain messages, effectively denying service to legitimate users.
D-Bus versions prior to 1.0.2 are vulnerable to this issue.
84. ProFTPD SReplace Remote Buffer Overflow Vulnerability
BugTraq ID: 20992
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20992
Summary:
ProFTPD is prone to an remote buffer-overflow vulnerability. This issue is due to an off-by-one error, allowing attackers to corrupt memory.
Exploiting this issue allows remote attackers to execute arbitrary machine code in the context of the server application, facilitating the compromise of affected computers.
ProFTPD versions prior to 1.3.0a are vulnerable to this issue.
Update: This BID was recently updated to state that 'CommandBufferSize' was affected by a denial-of-service issue, but according to the vendor, that directive is not vulnerable.
85. Computer Associates BrightStor ARCServe BackUp Multiple Remote Buffer Overflow Vulnerabilities
BugTraq ID: 22199
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22199
Summary:
Computer Associates BrightStor ARCServe BackUp is prone to multiple unspecified buffer-overflow vulnerabilities.
The vendor has reported that these vulnerabilities allow remote attackers to execute arbitrary code with SYSTEM privileges facilitating a full compromise. Unsuccessful attacks may cause denial-of-service conditions as well.
These issues affect BrightStor ARCserve Backup for laptops and desktops running Microsoft Windows.
86. GeoIP GeoIPUpdate.C Directory Traversal Vulnerability
BugTraq ID: 21959
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21959
Summary:
The 'geoip' application is prone to a directory-traversal vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable system in the context of the affected application. Information obtained may aid in further attacks.
This issue affects versions prior to 1.4.0.
87. NCTsoft NCTAudioFile2 ActiveX Control Remote Buffer Overflow Vulnerability
BugTraq ID: 22196
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22196
Summary:
NCTsoft NCTAudioFile2 ActiveX control is prone to a buffer-overflow vulnerability. The software fails to perform sufficient bounds-checking of user-supplied input before copying it to an insufficiently sized memory buffer.
NCTAudioEditor is a collection of ActiveX controls for manipulating audio data. Numerous audio software products use the vulnerable 'NCTAudioFile2.AudioFile' ActiveX component.
NCTAudioStudio 2.7.1, NCTAudioEditor 2.7.1, and NCTDialogicVoice 2.7.1 are affected by this vulnerability; other versions may be affected as well.
Please see the list of associated technologies for a table of third-party products that are vulnerable because they depend on this ActiveX control.
88. Mono XSP Source Code Information Disclosure Vulnerability
BugTraq ID: 21687
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21687
Summary:
XSP is prone to a source code information-disclosure vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable system in the context of the webserver process. Information obtained may aid in further attacks.
89. BBClone Selectlang.PHP Remote File Include Vulnerability
BugTraq ID: 22197
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22197
Summary:
BBClone is prone to a remote file-include vulnerability because it fails to sufficiently sanitize user-supplied data.
Exploiting this issue may allow an attacker to compromise the application and the underlying system; other attacks are also possible.
BBClone 0.31 is vulnerable to this issue.
90. BlueZ HIDD Bluetooh HID Command Injection Vulnerability
BugTraq ID: 22076
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22076
Summary:
BlueZ hidd is prone to a device-command-injection vulnerability.
A remote attacker can exploit this issue to gain control of mouse and keyboard HIDs (human interface device). This will allow the attacker to interact with the targeted computer in the context of the currently logged-in user.
Versions prior to 2.25 are vulnerable.
91. Linux Kernel IPV6 Seqfile Handling Local Denial of Service Vulnerability
BugTraq ID: 20847
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20847
Summary:
The Linux kernel is prone to a local denial-of-service vulnerability. This issue is due to a design error in the way seqfiles are handled in the kernel.
This vulnerability allows local users to cause an infinite loop, resulting in a crash and denying further service to legitimate users.
This issue affects the Linux kernel 2.6 series up to 2.6.18-stable.
92. Linux Kernel S/390 Copy_From_User Local Information Disclosure Vulnerability
BugTraq ID: 20379
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20379
Summary:
The Linux kernel is prone to a local information-disclosure vulnerability on the S/390 architecture because the kernel fails to properly initialize kernel memory before returning it to user-space programs.
Successfully exploiting this issue allows local attackers to gain access to potentially sensitive information contained in kernel memory, aiding them in further attacks.
Linux kernel versions prior to 2.6.19-rc1 on the S/390 architecture are vulnerable to this issue.
93. Linux Kernel ATM SkBuff Dereference Remote Denial of Service Vulnerability
BugTraq ID: 20363
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/20363
Summary:
The Linux kernel is prone to a remote denial-of-service vulnerability.
This issue is triggered when the kernel processes incoming ATM data.
Exploiting this vulnerability may allow remote attackers to crash the affected kernel, resulting in denial-of-service conditions.
This issue affects only systems that have ATM hardware and are configured for ATM kernel support.
Kernel versions from 2.6.0 up to and including 2.6.17 are vulnerable to this issue.
94. Linux Kernel Do_Coredump Security Bypass Vulnerability
BugTraq ID: 21591
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21591
Summary:
Linux Kernel is prone to a vulnerability that can allow local unauthorized attackers to modify certain files.
Kernel versions prior to 2.6.19.1 are vulnerable.
95. OpenLDAP Gentoo GenCert.SH Script Insecure Temporary File Creation Vulnerability
BugTraq ID: 22195
Remote: No
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22195
Summary:
OpenLDAP is creates temporary files in an insecure way.
An attacker with local access could potentially exploit this issue to perform symbolic-link attacks, overwriting arbitrary files in the context of the affected application.
Successfully exploiting a symlink attack may allow an attacker to overwrite or corrupt sensitive files. This may result in a denial of service; other attacks may also be possible.
This issue affects Gentoo ebuild for OpenLDAP.
96. MiMMS Media Stream Handling Remote Buffer Overflow Vulnerability
BugTraq ID: 18608
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/18608
Summary:
MiMMS Media Stream Handling is prone to a buffer-overflow vulnerability that is caused by passing excessive data that may overflow a finite-sized internal memory buffer. A successful attack may result in memory corruption as memory adjacent to the buffer is overwritten with user-supplied data.
This issue may lead to a denial-of-service condition or to the execution of arbitrary code.
Version 0.0.9 of MiMMS Media Stream Handling is vulnerable to this issue; other versions may also be affected.
97. Dovecot IMAP Server Mapped Pages Off-By-One Buffer Overflow Vulnerability
BugTraq ID: 21183
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/21183
Summary:
Dovecot is prone to an off-by-one buffer-overflow condition due to an error that results in insufficient memory allocation.
An attacker may exploit this issue to trigger denial-of-service conditions. Presumably, arbitrary code execution may be possible as well.
Versions 1.0test53 to 1.0.rc14 are vulnerable.
98. LibSoup Library HTTP Headers Remote Denial of Service Vulnerability
BugTraq ID: 22034
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22034
Summary:
The Libsoup library is prone to a denial-of-service vulnerability because it fails to properly sanitize user-supplied input.
Attackers may exploit this vulnerability to crash an application that relies on the affected library, resulting in a denial-of-service condition.
99. Xine Errors.C Remote Format String Vulnerability
BugTraq ID: 22002
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/22002
Summary:
The 'xine' media player is prone to a remote format-string vulnerability because the application fails to properly sanitize user-supplied input before including it in the format-specifier argument of a formatted-printing function.
Successfully exploiting this issue allows remote attackers to execute arbitrary machine code in the context of the application and to compromise affected computers.
The xine-ui branch is vulnerable; other branches may also be affected.
100. Orange Web Server DoS Vulnerability
BugTraq ID: 2432
Remote: Yes
Last Updated: 2007-01-25
Relevant URL: http://www.securityfocus.com/bid/2432
Summary:
A remote user can cause a denial-of-service condition in Orange Software Orange Web Server.
The attacker could submit a specially crafted GET request via a telnet connection to cause the server to crash.
A restart of the server is required to gain normal functionality.
III. SECURITYFOCUS NEWS ARTICLES
--------------------------------
1. Bug brokers offering higher bounties
By: Robert Lemos
Private firms and government agencies will pay thousands to tens of thousands of dollars for original research on critical software flaws--no questions asked.
http://www.securityfocus.com/news/11437
2. Vulnerability tallies surged in 2006
By: Robert Lemos
Easy-to-find flaws in Web applications boosted--by more than a third--the number of security issues found last year, according to the major vulnerability databases.
http://www.securityfocus.com/news/11436
3. Spammers get bullish on stocks
By: Robert Lemos
Massive e-mail campaigns aiming to pump up penny stock prices may soon make up half of all spam on the Internet.
http://www.securityfocus.com/news/11435
4. E-voting flaws put Florida in spotlight again
By: Robert Lemos
A Republican congressman gets seated in the U.S. House of Representatives, but without a bug in the electronic ballot, the challenger would have won, voting experts say.
http://www.securityfocus.com/news/11433
IV. SECURITY JOBS LIST SUMMARY
-------------------------------
1. [SJ-JOB] Security Engineer, Vienna
http://www.securityfocus.com/archive/77/458050
2. [SJ-JOB] Security Engineer, New York
http://www.securityfocus.com/archive/77/458049
3. [SJ-JOB] Senior Software Engineer, Sunnyvale
http://www.securityfocus.com/archive/77/457983
4. [SJ-JOB] Security Engineer, Hyderabad
http://www.securityfocus.com/archive/77/457984
5. [SJ-JOB] Sales Engineer, Any
http://www.securityfocus.com/archive/77/457987
6. [SJ-JOB] Security Engineer, Phoenix
http://www.securityfocus.com/archive/77/458004
7. [SJ-JOB] Security Engineer, Kirkland
http://www.securityfocus.com/archive/77/457906
8. [SJ-JOB] Security Engineer, Santa Monica
http://www.securityfocus.com/archive/77/457907
9. [SJ-JOB] Security Engineer, Mountain View
http://www.securityfocus.com/archive/77/457943
10. [SJ-JOB] Sales Engineer, Boston
http://www.securityfocus.com/archive/77/457948
11. [SJ-JOB] Security Engineer, Chicago
http://www.securityfocus.com/archive/77/457954
12. [SJ-JOB] Sales Representative, Birmingham
http://www.securityfocus.com/archive/77/457905
13. [SJ-JOB] Sales Representative, Berkshire
http://www.securityfocus.com/archive/77/457908
14. [SJ-JOB] Sales Representative, New York
http://www.securityfocus.com/archive/77/457749
15. [SJ-JOB] Account Manager, Sacramento
http://www.securityfocus.com/archive/77/457750
16. [SJ-JOB] Security Engineer, Warsaw
http://www.securityfocus.com/archive/77/457751
17. [SJ-JOB] Technical Support Engineer, Melbourne
http://www.securityfocus.com/archive/77/457753
18. [SJ-JOB] Auditor, London
http://www.securityfocus.com/archive/77/457707
19. [SJ-JOB] Security Product Marketing Manager, San Francisco
http://www.securityfocus.com/archive/77/457708
20. [SJ-JOB] Sales Representative, Vacaville
http://www.securityfocus.com/archive/77/457706
21. [SJ-JOB] Sales Representative, Napa
http://www.securityfocus.com/archive/77/457709
22. [SJ-JOB] Security Director, Chicago
http://www.securityfocus.com/archive/77/457710
23. [SJ-JOB] Security Consultant, Tyson's Corner
http://www.securityfocus.com/archive/77/457689
24. [SJ-JOB] Security Consultant, Springfield
http://www.securityfocus.com/archive/77/457690
25. [SJ-JOB] Security Engineer, Canberra
http://www.securityfocus.com/archive/77/457692
26. [SJ-JOB] Security Engineer, Canberra
http://www.securityfocus.com/archive/77/457693
27. [SJ-JOB] Sr. Security Analyst, Miami
http://www.securityfocus.com/archive/77/457691
28. [SJ-JOB] Security Architect, Dallas
http://www.securityfocus.com/archive/77/457416
29. [SJ-JOB] Security Architect, Chicago
http://www.securityfocus.com/archive/77/457417
30. [SJ-JOB] Sr. Security Analyst, Ottawa
http://www.securityfocus.com/archive/77/457418
31. [SJ-JOB] Sales Representative, Livonia
http://www.securityfocus.com/archive/77/457421
32. [SJ-JOB] Software Engineer, Columbia
http://www.securityfocus.com/archive/77/457415
33. [SJ-JOB] Manager, Information Security, New York or Boston
http://www.securityfocus.com/archive/77/457419
34. [SJ-JOB] Application Security Architect, Austin
http://www.securityfocus.com/archive/77/457345
35. [SJ-JOB] Security Architect, Houston
http://www.securityfocus.com/archive/77/457349
36. [SJ-JOB] Application Security Engineer, Washington
http://www.securityfocus.com/archive/77/457344
37. [SJ-JOB] Technical Writer, Cupertino
http://www.securityfocus.com/archive/77/457348
38. [SJ-JOB] Security Architect, Boston
http://www.securityfocus.com/archive/77/457342
39. [SJ-JOB] Application Security Engineer, Atlanta/Roswell
http://www.securityfocus.com/archive/77/457341
40. [SJ-JOB] Application Security Architect, Atlanta Metro
http://www.securityfocus.com/archive/77/457343
V. INCIDENTS LIST SUMMARY
---------------------------
1. Tracking down random ICMP
http://www.securityfocus.com/archive/75/457701
2. UK computer crime contact?
http://www.securityfocus.com/archive/75/457477
VI. VULN-DEV RESEARCH LIST SUMMARY
-----------------------------------
1. Possible McAfee GroupShield Vulnerability
http://www.securityfocus.com/archive/82/458065
2. Call for Paper - SyScan'07
http://www.securityfocus.com/archive/82/457766
3. EUSecWest 2007 Papers
http://www.securityfocus.com/archive/82/457443
4. .Net Debug
http://www.securityfocus.com/archive/82/456089
VII. MICROSOFT FOCUS LIST SUMMARY
---------------------------------
1. IE security zone assignment on 2003 terminal server
http://www.securityfocus.com/archive/88/457897
2. IPSec and GRE (47)
http://www.securityfocus.com/archive/88/457813
3. SecurityFocus Microsoft Newsletter #325
http://www.securityfocus.com/archive/88/457793
4. SoX & Share Permissions?
http://www.securityfocus.com/archive/88/456972
5. Secure Remote access - windows 2003
http://www.securityfocus.com/archive/88/455670
6. Windows AutoAdminLogon Security
http://www.securityfocus.com/archive/88/445581
VIII. SUN FOCUS LIST SUMMARY
----------------------------
1. BSM, SSH, and Session ID
http://www.securityfocus.com/archive/92/457796
IX. LINUX FOCUS LIST SUMMARY
----------------------------
X. UNSUBSCRIBE INSTRUCTIONS
-----------------------------
To unsubscribe send an e-mail message to [email protected] from the subscribed address. The contents of the subject or message body do not matter. You will receive a confirmation request message to which you will have to answer. Alternatively you can also visit http://www.securityfocus.com/newsletters and unsubscribe via the website.
If your email address has changed email [email protected] and ask to be manually removed.
XI. SPONSOR INFORMATION
------------------------
This Issue is Sponsored by: SPI Dynamics
ALERT: Learn to Think Like a Hacker- Simulate a Hacker Breaking into Your Web Apps
The speed with which Web Applications are developed make them prime targets for attackers, often these applications were developed so quickly that they are not coded properly or subjected to any security testing. Hackers know this and use it as their weapon. Download this *FREE* test guide from SPI Dynamics to check for Web application vulnerabilities.
https://download.spidynamics.com/1/ad/web.asp?Campaign_ID=70160000000Cgth