SecurityFocus Newsletter #425
[email protected] 31 Oct 2007 22:41:50 -0000
| Newsgroups | gmane.comp.security.news.general |
|---|---|
| Message-ID | <[email protected]> |
SecurityFocus Newsletter #425
----------------------------------------
This issue is Sponsored by: CSI
CSI 2007, November 3-9 in Washington, DC, is the only conference that del=
ivers a business-focused overview of enterprise security.=20
It will convene 2,000+ delegates, 80 exhibitors and features 100+ session=
s/seminars providing a roadmap for integrating policies and procedures wi=
th new tools and techniques. =20
Register now for savings on conference fees and/or free exhibits admissio=
n. =20
www.csiannual.com
SECURITY BLOGS
SecurityFocus has selected a few syndicated sources that stand out as con=
veying topics of interest for our community. We are proud to offer conten=
t from Matasano at this time and will be adding more in the coming weeks.
http://www.securityfocus.com/blogs
------------------------------------------------------------------
I. FRONT AND CENTER
1.Rebinding attacks unbound
2.Aspect-Oriented Programming and Security
II. BUGTRAQ SUMMARY
1. CUPS IPP Tag Handling Remote Buffer Overflow Vulnerability
2. Libvorbis Denial Of Service And Memory Corruption Vulnerabiliti=
es
3. MySpace Resource Script Breadcrumb.PHP Remote File Include Vuln=
erability
4. Saxon Menu.PHP Cross-Site Scripting Vulnerability
5. Gretech GOM Player GomWeb3.DLL Remote Buffer Overflow Vulnerabi=
lity
6. vobcopy vobcopy.bla Insecure Temporary File Creation Vulnerabil=
ity
7. Saxon Example.PHP SQL Injection Vulnerability
8. Omnistar Live KB.PHP Cross-Site Scripting Vulnerability
9. SMART-SHOP Index.PHP Multiple Cross Site Scripting Vulnerabilit=
ies
10. Teatro pub08_comments.php Remote File Include Vulnerability
11. Sige Sige_Init.PHP Remote File Include Vulnerability
12. RealNetworks RealPlayer File Parsing Routines Multiple Vulnera=
bilities
13. ISC DHCPD Server Remote Stack Corruption Vulnerability
14. FireConfig DL.PHP Local File Include Vulnerability
15. emagiC CMS.Net EMC.ASP SQL Injection Vulnerability
16. WordPress Edit-Post-Rows.PHP Cross-Site Scripting Vulnerabilit=
y
17. Sun Solaris SCTP Init Processing Remote Denial of Service Vuln=
erability
18. JobSite Professional File.PHP SQL injection Vulnerability
19. IBM Tivoli Storage Manager Client CAD Service HTML Injection V=
ulnerability
20. TikiWiki Tiki-Graph_Formula.PHP White-List Check Code Injectio=
n Vulnerability
21. GoSamba Include_Path Parameter Multiple Remote File Include Vu=
lnerabilities
22. Microsoft Visual Basic 6.0 VBP_Open Project File Handling Buff=
er Overflow Vulnerability
23. Multiple Vendor Web Browser JavaScript Key Filtering Vulnerabi=
lity
24. Mozilla Firefox OnUnload Javascript Browser Entrapment Vulnera=
bility
25. Multiple Web Browsers Digest Authentication HTTP Response Spli=
tting Vulnerability
26. Mozilla Firefox OnKeyDown Event File Upload Vulnerability
27. T1lib intT1_Env_GetCompletePath Buffer Overflow Vulnerability
28. ImageMagick Blob.C Off-By-One Buffer Overflow Vulnerability
29. ImageMagick ReadBlob Multiple Remote Denial Of Service Vulnera=
bilities
30. ImageMagick ReadDIBImage Integer Overflow Vulnerability
31. ImageMagick DCM, DIB, XBM, XCF, and XWD Image Files Multiple I=
nteger Overflow Vulnerabilities
32. TIBCO Rendezvous RVD Daemon Remote Denial Of Service Vulnerabi=
lities
33. Symantec Altiris Deployment Solution Local Privilege Escalatio=
n Vulnerability
34. Adobe Flash Player On Opera Browser For Mac OSX Unspecified Vu=
lnerability
35. TIBCO SmartPGM FX Multiple Remote Vulnerabilities
36. Cisco Unified Communications Management Applications Privilege=
Escalation Vulneraiblity
37. Cisco Unified Communications Manager Remote Denial of Service =
and Buffer Overflow Vulnerabilities
38. Hitachi Collaboration Portal Schedule Component Information Di=
sclosure Vulnerability
39. GNU BinUtils Buffer Overflow Vulnerability
40. Sun Fire X2100 M2 And X2200 M2 ELOM Unauthorized Access Vulner=
ability
41. HP-UX OpenSSL Unspecified Local Denial Of Service Vulnerabilit=
y
42. RunCMS NewBB_Plus Unspecified Security Vulnerability
43. Oracle XML DB FTP Service Login Audit Vulnerability
44. Oracle Database Server DBMS_AQADM_SYS.DBLINK_INFO Buffer Overf=
low Vulnerability
45. Okul Otomasyon Portal Default.ASP SQL Injection Vulnerability
46. Artmedic CMS Index.PHP Local File Include Vulnerability
47. Perdition IMAPD __STR_VWRITE Remote Format String Vulnerabilit=
y
48. McAfee E-Business Server Authentication Packet Handling Intege=
r Overflow Vulnerability
49. Apache Geronimo Management EJB Security Bypass Vulnerability
50. Light FMan PHP Multiple Unspecified Security Vulnerabilities
51. Mozilla Products Multiple Remote Vulnerabilities
52. Django i18n Remote Denial Of Service Vulnerability
53. Symantec Altiris Deployment Solution Aclient Local Privilege E=
scalation Vulnerability
54. Apple Xcode OpenBase Multiple Privilege Escalation Vulnerabili=
ties
55. GlobalLink ConnectAndEnterRoom ActiveX Control Stack Buffer Ov=
erflow Vulnerability
56. PHP-AGTC Membership System Adduser.PHP Unauthorized Access Vul=
nerability
57. ILIAS Multiple HTML Injection Vulnerabilities
58. QEMU Multiple Local Vulnerabilities
59. Bochs Buffer Overflow and Denial Of Service Vulnerabilities
60. IBM AIX crontab Local Privilege Escalation Vulnerability
61. IBM AIX Swcons Arbitrary File Access Vulnerability
62. IBM AIX dig Local Privilege Escalation Vulnerability
63. Opera Web Browser External Applications Arbitrary Code Executi=
on Vulnerability
64. Opera Web Browser Frame Functions Same Origin Policy Bypass Vu=
lnerability
65. phpFaber URLInn Config.PHP Remote File Include Vulnerability
66. IBM AIX lquerypv Local Privilege Escalation Vulnerability
67. IBM AIX ftp Local Privilege Escalation Vulnerability
68. Symantec Altiris Deployment Solution Directory Traversal Vulne=
rability
69. Mono System.Math BigInteger Buffer Overflow Vulnerability
70. phpMyConferences PageTraiteDownload.PHP Local File Include Vul=
nerability
71. ISPworker Download.PHP Multiple Local File Include Vulnerabili=
ties
72. IBM WebSphere Application Server UDDI Console Multiple Input V=
alidation Vulnerabilities
73. Yarssr GUI.PM Remote Code Injection Vulnerability
74. Hitachi Web Server HTML Injection Vulnerability and Signature =
Forgery Vulnerability
75. IBM AIX lqueryvg Local Privilege Escalation Vulnerability
76. OpenSSL DTLS Heap Buffer Overflow Vulnerability
77. ISC BIND 8 Remote Cache Poisoning Vulnerability
78. IBM AIX bellmail Local Privilege Escalation Vulnerability
79. Microsoft Windows Kodak Image Viewer Remote Code Execution Vul=
nerability
80. X.Org X Font Server Multiple Memory Corruption Vulnerabilities
81. Liferea Feedlist.OPML Local Information Disclosure Vulnerabili=
ty
82. NuFW SAMP_SEND Heap Based Buffer Overflow Vulnerability
83. Sun Fire X2100 M2 And X2200 M2 ELOM Unspecified Remote Arbitra=
ry Command Execution Vulnerability
84. IBM Lotus Notes Attachment Viewer Multiple Buffer Overflow Vul=
nerabilities
85. Python ImageOP Module Multiple Integer Overflow Vulnerabilitie=
s
86. GNU Tar Dot_Dot Function Remote Directory Traversal Vulnerabil=
ity
87. Ruby Net::HTTP SSL Insecure Certificate Validation Weakness
88. miniBB BB_FUNC_SEARCH.PHP SQL Injection Vulnerability
89. Sun Solaris 10 Internet Protocol ip(7P) Unspecified Local Deni=
al Of Service Vulnerability
90. Micro Login System UserPWD.TXT Information Disclosure Vulnerab=
ility
91. OpenLDAP Multiple Remote Denial of Service Vulnerabilities
92. Sun Java Runtime Environment Network Access Restriction Securi=
ty Bypass Vulnerability
93. Sun Java Runtime Environment Font Parsing Remote Privilege Esc=
alation Vulnerability
94. Zlib Compression Library Buffer Overflow Vulnerability
95. Xunlei Web Thunder ActiveX Control DownURL2 Method Remote Buff=
er Overflow Vulnerability
96. Oracle Database Server MDSYS.SDO_CS Buffer Overflow Vulnerabil=
ity
97. Ipswitch IMail SMTP Server IMail Client Remote Buffer Overflow=
Vulnerability
98. ProfileCMS Profile Creation Arbitrary File Upload Vulnerabilit=
y
99. Sony CONNECT SonicStage Player M3U Playlist Processing Buffer =
Overflow Vulnerability
100. CaupoShop Pro Index.PHP Remote File Include Vulnerability
III. SECURITYFOCUS NEWS
1. Court filings double estimate of TJX breach
2. Identity thieves likely to be first-timers, strangers
3. Retailers look to exorcise credit-card data
4. DHS, Unisys scrutinized after data breach
IV. SECURITY JOBS LIST SUMMARY
1. [SJ-JOB] Security Engineer, Washington DC area
2. [SJ-JOB] Sr. Security Engineer, San Antonio
3. [SJ-JOB] Security Engineer, San Antonio
4. [SJ-JOB] Information Assurance Engineer, Herndon
5. [SJ-JOB] Sr. Security Engineer, Washington DC area
6. [SJ-JOB] Security System Administrator, Stanford
7. [SJ-JOB] Threat Analyst, Washington DC area
8. [SJ-JOB] Security Engineer, Washington DC area
9. [SJ-JOB] Security Engineer, Stanford
10. [SJ-JOB] Security System Administrator, Stanford
11. [SJ-JOB] Threat Analyst, San Antonio
12. [SJ-JOB] Security Engineer, Washington DC area
13. [SJ-JOB] Director, Information Security, Bergen County
14. [SJ-JOB] Security System Administrator, San Antonio or Austin
15. [SJ-JOB] Security Engineer, San Antonio
16. [SJ-JOB] Security Engineer, San Antonio
17. [SJ-JOB] Application Security Engineer, St. Lousi
18. [SJ-JOB] Security Consultant, NY
19. [SJ-JOB] Account Manager, Atlanta
20. [SJ-JOB] Sales Engineer, Austin/Dallas/Houston
21. [SJ-JOB] Sales Engineer, Herndon
22. [SJ-JOB] Account Manager, San Francisco
23. [SJ-JOB] Security Researcher, San Jose
24. [SJ-JOB] Security Engineer, New York
25. [SJ-JOB] Director, Information Security, Philadelphia
26. [SJ-JOB] Account Manager, Glendale
27. [SJ-JOB] Sales Engineer, Chicago
28. [SJ-JOB] Security Auditor, West Port
29. [SJ-JOB] Sr. Security Analyst, Providence
30. [SJ-JOB] Security Architect, Arlington
31. [SJ-JOB] Security System Administrator, McLean
32. [SJ-JOB] Sales Engineer, Any US location
33. [SJ-JOB] Compliance Officer, Reading, Berkshire
34. [SJ-JOB] Sales Engineer, London
35. [SJ-JOB] Software Engineer, Atlanta
36. [SJ-JOB] Technical Support Engineer, Fort Lauderdale
37. [SJ-JOB] Security Engineer, West Port
38. [SJ-JOB] Security Engineer, West Port
39. [SJ-JOB] Developer, Columbia
V. INCIDENTS LIST SUMMARY
VI. VULN-DEV RESEARCH LIST SUMMARY
1. In Memoriam: Jun-ichiro Hagino
2. DeepSec 2007 Registration: hurry up, seats are filling fast
VII. MICROSOFT FOCUS LIST SUMMARY
1. SecurityFocus Microsoft Newsletter #365
VIII. SUN FOCUS LIST SUMMARY
IX. LINUX FOCUS LIST SUMMARY
X. UNSUBSCRIBE INSTRUCTIONS
XI. SPONSOR INFORMATION
I. FRONT AND CENTER
---------------------
1.Rebinding attacks unbound
By Federico Biancuzzi
DNS rebinding was discovered in 1996 and affected the Java Virtual Machin=
e (VM). Recently a group of researchers at Stanford found out that this v=
ulnerability is still present in browsers and that the common solution, k=
nown as DNS pinning, is not effective anymore.
http://www.securityfocus.com/columnists/455
2.Aspect-Oriented Programming
By Rohit Sethi
Aspect-oriented programming (AOP) is a paradigm that is quickly gaining t=
raction in the development world. At least partially spurred by the popul=
arity of the Java Spring framework [1], people are beginning to understan=
d the substantial benefits that AOP brings to development.
http://www.securityfocus.com/infocus/1895
II. BUGTRAQ SUMMARY
--------------------
1. CUPS IPP Tag Handling Remote Buffer Overflow Vulnerability
BugTraq ID: 26268
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26268
Summary:
CUPS is prone to a remote buffer-overflow vulnerability because it fails =
to properly bounds-check user-supplied data before copying it to an insuf=
ficiently sized memory buffer.
An attacker can exploit this issue to execute arbitrary code within the c=
ontext of the affected application. Failed exploit attempts will result i=
n a denial of service.
CUPS 1.3.3 is reported vulnerable; other versions may be affected as well=
.
2. Libvorbis Denial Of Service And Memory Corruption Vulnerabilities
BugTraq ID: 25082
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/25082
Summary:
Applications that use the libvorbis library are prone to multiple remote =
vulnerabilities, including multiple denial-of-service issues and memory-c=
orruption issues.
An attacker can exploit these issues to execute arbitrary code within the=
context of the affected application or cause the application to crash.=20
These issues affect libvorbis 1.1.2; other versions of the library may al=
so be affected.
3. MySpace Resource Script Breadcrumb.PHP Remote File Include Vulnerabili=
ty
BugTraq ID: 26240
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26240
Summary:
MySpace Resource Script (MSRS) is prone to a remote file-include vulnerab=
ility because it fails to sufficiently sanitize user-supplied input.
Exploiting this issue may allow an attacker to compromise the application=
and the underlying system; other attacks are also possible.
This issue affects MSRS 1.21; other versions may also be vulnerable.
4. Saxon Menu.PHP Cross-Site Scripting Vulnerability
BugTraq ID: 26237
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26237
Summary:
Saxon is prone to a cross-site scripting vulnerability because the applic=
ation fails to properly sanitize user-supplied input.=20
An attacker may leverage this issue to execute arbitrary script code in t=
he browser of an unsuspecting user in the context of the affected site. T=
his may help the attacker steal cookie-based authentication credentials a=
nd launch other attacks.
This issue affects Saxon 5.4; earlier versions may also be vulnerable.
5. Gretech GOM Player GomWeb3.DLL Remote Buffer Overflow Vulnerability
BugTraq ID: 26236
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26236
Summary:
GOM Player is prone to a remote buffer-overflow vulnerability because it =
fails to perform adequate boundary checks on user-supplied input.
Successfully exploiting this issue will allow an attacker to execute arbi=
trary code within the context of the application using the ActiveX contro=
l (typically Internet Explorer). Failed exploit attempts will result in a=
denial-of-service condition.
This issue affects GOM Player 2.1.6.3499; other versions may also be vuln=
erable.
6. vobcopy vobcopy.bla Insecure Temporary File Creation Vulnerability
BugTraq ID: 26233
Remote: No
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26233
Summary:
The 'vobcopy' tool creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to per=
form symlink attacks, overwriting arbitrary files in the context of the a=
ffected application.=20
Successfully mounting a symlink attack may allow the attacker to overwrit=
e or corrupt sensitive files, which may result in a denial of service. Ot=
her attacks may also be possible.
7. Saxon Example.PHP SQL Injection Vulnerability
BugTraq ID: 26238
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26238
Summary:
Saxon is prone to an SQL-injection vulnerability because it fails to suff=
iciently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the applicati=
on, access or modify data, or exploit latent vulnerabilities in the under=
lying database.
This issue affects Saxon 5.4; earlier versions may also be affected.
8. Omnistar Live KB.PHP Cross-Site Scripting Vulnerability
BugTraq ID: 26234
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26234
Summary:
Omnistar Live is prone to a cross-site scripting vulnerability because th=
e application fails to properly sanitize user-supplied input.=20
An attacker may leverage this issue to execute arbitrary script code in t=
he browser of an unsuspecting user in the context of the affected site. T=
his may help the attacker steal cookie-based authentication credentials a=
nd launch other attacks.
9. SMART-SHOP Index.PHP Multiple Cross Site Scripting Vulnerabilities
BugTraq ID: 26232
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26232
Summary:
SMART-SHOP is prone to multiple cross-site scripting vulnerabilities beca=
use the application fails to sufficiently sanitize user-supplied input.
Exploiting these vulnerabilities may allow an attacker to perform cross-s=
ite scripting attacks on unsuspecting users in the context of the affecte=
d website. As a result, the attacker may be able to steal cookie-based au=
thentication credentials and to launch other attacks.
10. Teatro pub08_comments.php Remote File Include Vulnerability
BugTraq ID: 26231
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26231
Summary:
Teatro is prone to a remote file-include vulnerability because it fails t=
o sufficiently sanitize user-supplied input.
Exploiting this issue may allow an attacker to compromise the application=
and the underlying system; other attacks are also possible.
This issue affects Teatro 1.6; other versions may also be vulnerable.
11. Sige Sige_Init.PHP Remote File Include Vulnerability
BugTraq ID: 26230
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26230
Summary:
Sige is prone to a remote file-include vulnerability because it fails to =
sufficiently sanitize user-supplied input.
Exploiting this issue may allow an attacker to compromise the application=
and the underlying system; other attacks are also possible.
This issue affects Sige 0.1.
12. RealNetworks RealPlayer File Parsing Routines Multiple Vulnerabilitie=
s
BugTraq ID: 26214
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26214
Summary:
RealNetworks RealPlayer is prone to multiple memory-corruption vulnerabil=
ities that arise when the application processes specially crafted files.
Successfully exploiting these issues will allow remote attackers to execu=
te arbitrary code within the context of the affected application. Failed =
exploit attempts will cause a denial-of-service condition.
13. ISC DHCPD Server Remote Stack Corruption Vulnerability
BugTraq ID: 25984
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/25984
Summary:
ISC DHCPD is prone to a remote stack-corruption vulnerability because the=
software fails to properly bounds-check user-supplied input.
Successfully exploiting this issue allows attackers in the same LAN segme=
nt of the vulnerable DHCP server to corrupt the application's stack. This=
may allow attackers to run arbitrary machine code and to compromise affe=
cted computers.
ISC DHCP versions in the 2.x series are vulnerable to this issue. OpenBSD=
's 'dhcpd' is a fork of ISC DHCPD and is also vulnerable.
14. FireConfig DL.PHP Local File Include Vulnerability
BugTraq ID: 26222
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26222
Summary:
FireConfig is prone to a local file-include vulnerability because it fail=
s to adequately sanitize user-supplied input for requests to restricted f=
iles that reside outside of the web document root directory.=20
=20
A remote attacker can exploit this issue to retrieve potentially sensitiv=
e information that may aid in further attacks.
This issue affects FireConfig 0.5; other versions may also be affected.
15. emagiC CMS.Net EMC.ASP SQL Injection Vulnerability
BugTraq ID: 26229
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26229
Summary:
emagiC CMS.Net is prone to an SQL-injection vulnerability because it fail=
s to sufficiently sanitize user-supplied data before using it in an SQL q=
uery.
Exploiting this issue could allow an attacker to compromise the applicati=
on, access or modify data, or exploit latent vulnerabilities in the under=
lying database.
This issue affects emagiC CMS.Net 4.0; other versions may also be affecte=
d.
16. WordPress Edit-Post-Rows.PHP Cross-Site Scripting Vulnerability
BugTraq ID: 26228
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26228
Summary:
WordPress is prone to a cross-site scripting vulnerability because the ap=
plication fails to properly sanitize user-supplied input.=20
An attacker may leverage this issue to execute arbitrary script code in t=
he browser of an unsuspecting user in the context of the affected site. T=
his may help the attacker steal cookie-based authentication credentials a=
nd launch other attacks.
This issue affects WordPress 2.3; other versions may also be vulnerable.
17. Sun Solaris SCTP Init Processing Remote Denial of Service Vulnerabili=
ty
BugTraq ID: 26224
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26224
Summary:
Sun Solaris is prone to a denial-of-service vulnerability because the ope=
rating system fails to handle exceptional conditions.=20
A remote attacker can exploit this issue to cause the affected kernel to =
panic, resulting in a denial-of-service condition.
This issue affects the Solaris 10 operating system.
18. JobSite Professional File.PHP SQL injection Vulnerability
BugTraq ID: 26225
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26225
Summary:
JobSite Professional is prone to an SQL-injection vulnerability because t=
he application fails to properly sanitize user-supplied input before usin=
g it in an SQL query.=20
Exploiting this vulnerability could permit remote attackers to pass malic=
ious input to database queries, resulting in the modification of query lo=
gic or other attacks.
JobSite Professional 2.0 is vulnerable; other versions may also be affect=
ed.
19. IBM Tivoli Storage Manager Client CAD Service HTML Injection Vulnerab=
ility
BugTraq ID: 26221
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26221
Summary:
IBM Tivoli Storage Manager Client is prone to an HTML-injection vulnerabi=
lity because it fails to sufficiently sanitize user-supplied input data.
Exploiting this issue may allow an attacker to execute HTML and script co=
de in the context of the affected site, to steal cookie-based authenticat=
ion credentials, or to control how the site is rendered to the user; othe=
r attacks are also possible.
=20
IBM Tivoli Storage Manager Client 5.3.5.3 and 5.4.1.2 are vulnerable; oth=
er versions may also be affected.
20. TikiWiki Tiki-Graph_Formula.PHP White-List Check Code Injection Vulne=
rability
BugTraq ID: 26220
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26220
Summary:
TikiWiki is prone to a remote PHP code-injection vulnerability because th=
e application fails to sufficiently sanitize user-supplied input.
An attacker can exploit this issue to inject and execute arbitrary malici=
ous PHP code in the context of the webserver process. This may facilitate=
a compromise of the application and the underlying system; other attacks=
are also possible.
TikiWiki 1.9.8.1 and prior versions are vulnerable.
21. GoSamba Include_Path Parameter Multiple Remote File Include Vulnerabi=
lities
BugTraq ID: 26223
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26223
Summary:
GoSamba is prone to multiple remote file-include vulnerabilities because =
it fails to sufficiently sanitize user-supplied data.
Exploiting these issues may allow an attacker to compromise the applicati=
on and the underlying system; other attacks are also possible.
GoSamba 1.0.1 is vulnerable; other versions may also be affected.
22. Microsoft Visual Basic 6.0 VBP_Open Project File Handling Buffer Over=
flow Vulnerability
BugTraq ID: 25629
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/25629
Summary:
Microsoft Visual Basic 6.0 is prone to a buffer-overflow vulnerability be=
cause the application fails to bounds-check user-supplied data before cop=
ying it into an insufficiently sized buffer.=20
An attacker can exploit this issue to execute arbitrary code within the c=
ontext of the affected application. Failed exploit attempts will result i=
n a denial of service.
23. Multiple Vendor Web Browser JavaScript Key Filtering Vulnerability
BugTraq ID: 18308
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/18308
Summary:
Multiple web browsers are prone to a JavaScript key-filtering vulnerabili=
ty because the browsers fail to securely handle keystroke input from user=
s.
This issue is demonstrated to allow attackers to divert keystrokes from o=
ne input form in a webpage to a hidden file-upload dialog in the same pag=
e. This may allow remote attackers to initiate file uploads from unsuspec=
ting users. Other attacks may also be possible.
Exploiting this issue requires that users manually type the full path of =
files that attackers wish to download. This may require substantial typin=
g from targeted users, so attackers will likely use keyboard-based games,=
blogs, or other similar pages to entice users to enter the required keyb=
oard input to exploit this issue.
Reportedly, Mozilla Suite, Mozilla Firefox, Mozilla SeaMonkey, Netscape N=
avigator, and Microsoft Internet Explorer are all vulnerable to this issu=
e.
24. Mozilla Firefox OnUnload Javascript Browser Entrapment Vulnerability
BugTraq ID: 22688
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/22688
Summary:
Mozilla Firefox is prone to a vulnerability that allows attackers to trap=
users at a particular webpage and spoof page transitions.=20
Attackers may exploit this via a malicious page to spoof the contents and=
origin of a page that the victim may trust. This vulnerability may be us=
eful in phishing or other attacks that rely on content spoofing.
25. Multiple Web Browsers Digest Authentication HTTP Response Splitting V=
ulnerability
BugTraq ID: 23668
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/23668
Summary:
Multiple browsers are prone to an HTTP-response-splitting vulnerability b=
ecause the software fails to properly sanitize user-supplied input.=20
A remote attacker may exploit this vulnerability to influence or misrepre=
sent how web content is served, cached, or interpreted. This could aid in=
various attacks that try to entice client users into a false sense of tr=
ust.=20
This issue affects Microsoft Internet Explorer 7.0.5730.11 and Mozilla Fi=
refox 2.0.0.3; other versions and browsers may also be affected.
26. Mozilla Firefox OnKeyDown Event File Upload Vulnerability
BugTraq ID: 24725
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/24725
Summary:
Mozilla Firefox is prone to an information-disclosure vulnerability that =
can allow an attacker to access sensitive files.
This issue stems from a design error resulting from the improper handling=
of form fields.=20
All versions of Firefox are considered vulnerable.
27. T1lib intT1_Env_GetCompletePath Buffer Overflow Vulnerability
BugTraq ID: 25079
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/25079
Summary:
T1lib is prone to a buffer-overflow vulnerability because the library fai=
ls to perform boundary checks before copying user-supplied data to insuff=
iciently sized memory buffers.
=20
An attacker can exploit this issue to execute arbitrary machine code in t=
he context of applications that use the affected library. Failed exploit =
attempts will likely trigger crashes, denying service to legitimate users=
. =20
We do not know which versions of T1lib are affected.
28. ImageMagick Blob.C Off-By-One Buffer Overflow Vulnerability
BugTraq ID: 25766
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/25766
Summary:
ImageMagick is prone to an off-by-one buffer-overflow vulnerability becau=
se it fails to properly bounds-check user-supplied input.
Successfully exploiting this issue allows attackers to execute arbitrary =
code with the privileges of a user running the application.
Versions prior to ImageMagick 6.3.5-9 are vulnerable.
29. ImageMagick ReadBlob Multiple Remote Denial Of Service Vulnerabilitie=
s
BugTraq ID: 25764
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/25764
Summary:
ImageMagick is prone to multiple remote denial-of-service vulnerabilities=
.
An attacker could exploit these issues by enticing an unsuspecting victim=
to open a malicious image file.=20
Successfully exploiting these issues will allow the attacker to consume e=
xcessive amounts of CPU resources on affected computers, denying service =
to legitimate users.=20
These issues affect ImageMagick 6.3.4; prior versions are also affected.
30. ImageMagick ReadDIBImage Integer Overflow Vulnerability
BugTraq ID: 25765
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/25765
Summary:
ImageMagick is prone to an integer-overflow vulnerability because it fail=
s to properly validate user-supplied data.
An attacker can exploit this issue to execute arbitrary code in the conte=
xt of the application. Failed exploit attempts will likely cause denial-o=
f-service conditions.
Versions prior to ImageMagick 6.3.5-9 are vulnerable to this issue.
31. ImageMagick DCM, DIB, XBM, XCF, and XWD Image Files Multiple Integer =
Overflow Vulnerabilities
BugTraq ID: 25763
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/25763
Summary:
ImageMagick is prone to multiple integer-overflow vulnerabilities because=
it fails to adequately handle user-supplied data.
An attacker can exploit these issues to execute arbitrary code in the con=
text of the application. Failed exploit attempts will likely cause denial=
-of-service conditions.
These issues affect versions prior to ImageMagick 6.3.5-9.
32. TIBCO Rendezvous RVD Daemon Remote Denial Of Service Vulnerabilities
BugTraq ID: 25132
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/25132
Summary:
The RVD daemon in TIBCO Rendezvous is prone to two remote denial-of-servi=
ce vulnerabilities.
Successfully exploiting these issues allows remote attackers to consume e=
xcessive memory or to trigger network instability leading to denial-of-se=
rvice conditions.
Rendezvous 7.5.2 is vulnerable to these issues; other versions may also =
be affected.
33. Symantec Altiris Deployment Solution Local Privilege Escalation Vulne=
rability
BugTraq ID: 25232
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/25232
Summary:
Symantec Altiris Deployment Solution is prone to a local privilege-escala=
tion vulnerability.
An attacker can exploit this issue to execute arbitrary commands with SYS=
TEM-level privileges. Successfully exploiting this issue will result in t=
he complete compromise of affected computers.
34. Adobe Flash Player On Opera Browser For Mac OSX Unspecified Vulnerabi=
lity
BugTraq ID: 26274
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26274
Summary:
Adobe Flash Player is prone to an unspecified vulnerability.
This issue occurs when Flash Player is running on Opera Browser for the M=
ac OS X operating system.
Very few technical details are currently available. We will update this B=
ID as more information emerges.
Flash Player 9.0.47.0 and prior versions are vulnerable when running on M=
ac OS X.
35. TIBCO SmartPGM FX Multiple Remote Vulnerabilities
BugTraq ID: 26092
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26092
Summary:
TIBCO SmartPGM FX is prone to multiple remote vulnerabilities, including:
- Four unspecified stack-based buffer-overflow issues.
- One unspecified format-string issue.
- One unspecified denial-of-service issue.
An attacker can exploit these issues to execute arbitrary code or cause d=
enial-of-service conditions.
36. Cisco Unified Communications Management Applications Privilege Escala=
tion Vulneraiblity
BugTraq ID: 26106
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26106
Summary:
Cisco Unified Communications Management Applications are prone to a privi=
lege-escalation vulnerability.
Attackers can exploit this issue to gain unauthorized access to the web-b=
ased reporting and script-monitoring tool and the web-based configuration=
tool.
Attackers can gain access to potentially sensitive information and change=
the application configuration (including application rights). Informatio=
n harvested may aid in further attacks.
37. Cisco Unified Communications Manager Remote Denial of Service and Buf=
fer Overflow Vulnerabilities
BugTraq ID: 26105
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26105
Summary:
Cisco Unified Communications Manager is prone to a denial-of-service vuln=
erability and a buffer-overflow vulnerability.
Successfully exploiting these issues allows remote attackers to crash aff=
ected devices by triggering kernel panics or to execute arbitrary machine=
code. These issues facilitate the complete remote compromise of affected=
devices.
Versions of Cisco Unified Communications Manager in the 5 and 6 series pr=
ior to 6.0(1) are affected by these issues.
38. Hitachi Collaboration Portal Schedule Component Information Disclosur=
e Vulnerability
BugTraq ID: 26272
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26272
Summary:
Hitachi Collaboration Portal is prone to an unspecified information-discl=
osure vulnerability.
Attackers can exploit this issue to access potentially sensitive informat=
ion that could aid in further attacks.
39. GNU BinUtils Buffer Overflow Vulnerability
BugTraq ID: 17950
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/17950
Summary:
GNU 'binutils' is prone to a buffer-overflow vulnerability because it fai=
ls to properly bounds-check user-supplied input before copying it to an i=
nsufficiently sized memory buffer.
Remote attackers may crash the 'strings' utility, potentially making anal=
ysis of malicious binaries more difficult. Attackers may also execute arb=
itrary machine code in the context of applications that use the affected =
library.
40. Sun Fire X2100 M2 And X2200 M2 ELOM Unauthorized Access Vulnerability
BugTraq ID: 25863
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/25863
Summary:
Sun Fire X2100 M2 and X2200 M2 servers are prone to a vulnerability that =
allows unauthorized access.
This issue affects the Embedded Lights Out Manager (ELOM).
Remote attackers can leverage this issue to use a vulnerable server as a =
proxy for sending spam email messages.
41. HP-UX OpenSSL Unspecified Local Denial Of Service Vulnerability
BugTraq ID: 26093
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26093
Summary:
HP-UX running OpenSSL software is prone to a local denial-of-service vuln=
erability.
=20
Exploiting this issue allows local attackers to deny service to legitimat=
e users.
This issue affects HP-UX B.11.11, B.11.23, B.11.31 when running versions =
of OpenSSL prior to vA.00.09.07l.
42. RunCMS NewBB_Plus Unspecified Security Vulnerability
BugTraq ID: 26099
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26099
Summary:
RunCMS is prone to an unspecified vulnerability.
Very few details are available regarding this issue. We will update this =
BID as more information emerges.
This issue affects versions prior to RunCMS 1.5.3.
43. Oracle XML DB FTP Service Login Audit Vulnerability
BugTraq ID: 26107
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26107
Summary:
Oracle XML DB FTP service may incorrectly perform login audit trails in s=
ome circumstances. Attackers may exploit this issue to hide or obfuscate =
actual attack traces.
This issue affects Oracle 9ir2 and Oracle 10g Release 1.
NOTE: This issue was previously documented in BID 26039 (Oracle October 2=
007 Critical Patch Update Multiple Vulnerabilities) and has been given it=
s own BID because further technical details are now available.
44. Oracle Database Server DBMS_AQADM_SYS.DBLINK_INFO Buffer Overflow Vul=
nerability
BugTraq ID: 26235
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26235
Summary:
Oracle Database Server is prone to a remote buffer-overflow vulnerability=
because it fails to properly bounds-check user-supplied data before copy=
ing it to an insufficiently sized memory buffer.
An attacker can exploit this issue to execute arbitrary code within the c=
ontext of the affected application. Failed exploit attempts will result i=
n a denial of service.
NOTE: This issue can be exploited only by users with 'EXECUTE' privilege=
s on the 'SYS.DBMS_AQADM_SYS' package. By default, only SYSDBA users have=
this privilege.
This issue was previously tracked by BID 26039 (Oracle vulnerability numb=
er DB25) but has been given its own BID because more information has emer=
ged.
45. Okul Otomasyon Portal Default.ASP SQL Injection Vulnerability
BugTraq ID: 26094
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26094
Summary:
Okul Otomasyon Portal is prone to an SQL-injection vulnerability because =
it fails to sufficiently sanitize user-supplied data before using it in a=
n SQL query.
Exploiting this issue could allow an attacker to compromise the applicati=
on, access or modify data, or exploit latent vulnerabilities in the under=
lying database.
This issue affects Okul Otomasyon Portal 2.0; other versions may also be =
affected.
46. Artmedic CMS Index.PHP Local File Include Vulnerability
BugTraq ID: 26090
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26090
Summary:
Artmedic CMS is prone to a local file-include vulnerability because it fa=
ils to properly sanitize user-supplied input.
Exploiting this issue may allow an unauthorized user to execute local scr=
ipts or to view arbitrary files that may contain sensitive information th=
at can aid in further attacks.=20
Artmedic CMS 3.5 is vulnerable to this issue; other versions may also be =
affected.
47. Perdition IMAPD __STR_VWRITE Remote Format String Vulnerability
BugTraq ID: 26270
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26270
Summary:
Perdition IMAP proxy server is prone to a remote format-string vulnerabil=
ity because it fails to properly sanitize user-supplied input before pass=
ing it as the format specifier to a formatted-printing function.
An attacker can exploit this issue to execute arbitrary machine code in t=
he context of the affected application. A successful attack will compromi=
se the application. Failed attempts may cause denial-of-service condition=
s.
=20
This issue affects Perdition 1.17 and prior versions.
48. McAfee E-Business Server Authentication Packet Handling Integer Overf=
low Vulnerability
BugTraq ID: 26269
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26269
Summary:
The application is prone to an integer-overflow vulnerability because it =
fails to ensure that integer values aren't overrun.
Successfully exploiting this issue may allow attackers to execute arbitra=
ry code within the context of the affected application. This is turn may =
result in a complete compromise of the affected system. Failed exploit at=
tempts will result in a denial of service.
The issue affects McAfee E-Business Server 8.1.1 for Linux and 8.5.2 for=
Solaris. Versions for Windows are not affected.
49. Apache Geronimo Management EJB Security Bypass Vulnerability
BugTraq ID: 25804
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/25804
Summary:
Apache Geronimo is prone to a security-bypass vulnerability. This issue o=
ccurs in the management EJB (MEJB).=20
An attacker could exploit this issue to gain unauthorized access to the a=
ffected application. This may lead to further attacks.=20
This issue affects Apache Geronimo 2.0.1; other versions may also be affe=
cted.
50. Light FMan PHP Multiple Unspecified Security Vulnerabilities
BugTraq ID: 26267
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26267
Summary:
Light FMan PHP (lfman) is prone to multiple unspecified vulnerabilities.
Very few details are available regarding these issues. We will update thi=
s BID as more information emerges.
These issues affect versions prior to Light FMan PHP 2.0rc1.
51. Mozilla Products Multiple Remote Vulnerabilities
BugTraq ID: 24242
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/24242
Summary:
The Mozilla Foundation has released six security advisories specifying vu=
lnerabilities in Firefox, SeaMonkey, and Thunderbird.
These vulnerabilities allow attackers to:
- Execute arbitrary code
- Cause denial-of-service conditions
- Perform cross-site scripting attacks
- Obtain potentially sensitive information
- Spoof legitimate content
Other attacks may also be possible.
52. Django i18n Remote Denial Of Service Vulnerability
BugTraq ID: 26227
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26227
Summary:
Django is prone to a remote denial-of-service vulnerability because it fa=
ils to adequately handle user-supplied input.
Attackers can exploit this issue to exhaust large amounts of memory, resu=
lting in denial-of-service conditions.
Django 0.91, 0.95, 0.95.1, and 0.96 are vulnerable; other versions may al=
so be affected.
NOTE: The application is affected by this issue only if both the 'USE_I18=
N' option and the 'i18n' middleware component are enabled.
53. Symantec Altiris Deployment Solution Aclient Local Privilege Escalati=
on Vulnerability
BugTraq ID: 26265
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26265
Summary:
Symantec Altiris Deployment Solution is prone to a local privilege-escala=
tion vulnerability.
Attackers can exploit this issue to execute arbitrary files with 'System'=
privileges. Successful exploits will completely compromise affected comp=
uters.
54. Apple Xcode OpenBase Multiple Privilege Escalation Vulnerabilities
BugTraq ID: 20562
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/20562
Summary:
The OpenBase application shipped with Apple Xcode is prone to multiple pr=
ivilege-escalation issues because the application fails to handle excepti=
onal conditions when executing setuid programs.
A local attacker can exploit these issues to gain superuser privileges. A=
successful exploit would lead to the complete compromise of affected com=
puters.
This issue affects Apple Xcode 2.2 and earlier versions.
55. GlobalLink ConnectAndEnterRoom ActiveX Control Stack Buffer Overflow =
Vulnerability
BugTraq ID: 26244
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26244
Summary:
GlobalLink is prone to a stack-based buffer-overflow vulnerability becaus=
e it fails to properly bounds-check user-supplied data before copying it =
into an insufficiently sized memory buffer.
An attacker can exploit this issue to execute arbitrary code within the c=
ontext of the affected application. Failed exploit attempts will result i=
n denial-of-service conditions.
GlobalLink 2.7.0.8 is affected by this issue; other versions may also be =
vulnerable.
56. PHP-AGTC Membership System Adduser.PHP Unauthorized Access Vulnerabil=
ity
BugTraq ID: 26255
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26255
Summary:
PHP-AGTC membership system is prone to an unauthorized-access vulnerabili=
ty.=20
An attacker can exploit this issue to gain administrative access to the a=
ffected application.
=20
This issue affects PHP-AGTC membership system 1.1a; other versions may al=
so be affected.
57. ILIAS Multiple HTML Injection Vulnerabilities
BugTraq ID: 26264
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26264
Summary:
ILIAS is prone to multiple HTML-injection vulnerabilities because it fail=
s to sufficiently sanitize user-supplied input data.
Exploiting these issues may allow an attacker to execute HTML and script =
code in the context of the affected site, to steal cookie-based authentic=
ation credentials, or to control how the site is rendered to the user; ot=
her attacks are also possible.
These issues affect ILIAS 3.8.3 and prior versions.
58. QEMU Multiple Local Vulnerabilities
BugTraq ID: 23731
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/23731
Summary:
QEMU is prone to multiple locally exploitable buffer-overflow and denial-=
of-service vulnerabilities. The buffer-overflow issues occur because the =
software fails to properly check boundaries of user-supplied input when c=
opying it to insufficiently sized memory buffers. The denial-of-service i=
ssues stem from design errors.
Attackers may be able to exploit these issues to escalate privileges or t=
rigger denial-of-service conditions.
59. Bochs Buffer Overflow and Denial Of Service Vulnerabilities
BugTraq ID: 24246
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/24246
Summary:
Bochs is prone to a heap-based buffer-overflow issue and a denial-of-serv=
ice issue. The buffer-overflow issue occurs because the application fails=
to bounds-check user-supplied data before copying it into an insufficien=
tly sized memory buffer. The denial-of-service vulnerability is caused b=
y a divide-by-zero operation.
A local attacker can exploit these issues to execute arbitrary code in th=
e context of the affected application or to cause denial-of-service condi=
tions. Failed exploit attempts of the buffer-overflow vulnerability will =
also result in denial-of-service conditions.
60. IBM AIX crontab Local Privilege Escalation Vulnerability
BugTraq ID: 26263
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26263
Summary:
IBM AIX 'crontab' is prone to a local privilege-escalation vulnerability =
because it fails to perform adequate length checks on user-supplied input=
.
Attackers can exploit this issue to execute arbitrary code using superuse=
r privileges. Successful exploits will completely compromise affected com=
puters.
61. IBM AIX Swcons Arbitrary File Access Vulnerability
BugTraq ID: 26258
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26258
Summary:
AIX 'swcons' is prone to a vulnerability that lets attackers access arbit=
rary files because the utility fails to adequately verify user-supplied i=
nput.
A local attacker can exploit this issue to execute arbitrary code with su=
peruser privileges. Note that to run the 'swcons' utility, local users=
must belong to the 'system' group.
This issue affects AIX 5.2 and 5.3; fixes are available.
62. IBM AIX dig Local Privilege Escalation Vulnerability
BugTraq ID: 26262
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26262
Summary:
IBM AIX is prone to a local privilege-escalation vulnerability because it=
fails to perform adequate boundary checks on user-supplied input.
Attackers can exploit this issue to execute arbitrary code using superuse=
r privileges. Successful exploits will completely compromise affected com=
puters.
63. Opera Web Browser External Applications Arbitrary Code Execution Vuln=
erability
BugTraq ID: 26100
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26100
Summary:
Opera Web Browser is prone to a vulnerability that lets attackers execute=
arbitrary code when the browser is configured to run external news reade=
rs or email clients.
Attackers can exploit this issue to execute arbitrary code with the privi=
leges of the user running the affected application.
Versions prior to Opera for Desktop 9.24 are vulnerable.
64. Opera Web Browser Frame Functions Same Origin Policy Bypass Vulnerabi=
lity
BugTraq ID: 26102
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26102
Summary:
Opera Web Browser is prone to a vulnerability that lets attackers bypass =
the same-origin policy.
Attackers can exploit this issue to execute arbitrary JavaScript in the c=
ontext of another domain.
Versions prior to Opera for Desktop 9.24 are vulnerable.
65. phpFaber URLInn Config.PHP Remote File Include Vulnerability
BugTraq ID: 26261
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26261
Summary:
URLInn is prone to a remote file-include vulnerability because it fails t=
o sufficiently sanitize user-supplied input.
Exploiting this issue may allow an attacker to compromise the application=
and the underlying system; other attacks are also possible.
This issue affects URLInn 2.0.5; other versions may also be affected.
66. IBM AIX lquerypv Local Privilege Escalation Vulnerability
BugTraq ID: 26259
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26259
Summary:
IBM AIX is prone to a local privilege-escalation vulnerability because it=
fails to perform adequate boundary checks on user-supplied input.
Attackers can exploit this issue to execute arbitrary code using superuse=
r privileges. Successful exploits will completely compromise affected com=
puters.
67. IBM AIX ftp Local Privilege Escalation Vulnerability
BugTraq ID: 26260
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26260
Summary:
IBM AIX is prone to a local privilege-escalation vulnerability because it=
fails to perform adequate boundary checks on user-supplied input.
Attackers can exploit this issue to execute arbitrary code using superuse=
r privileges. Successful exploits will completely compromise affected com=
puters.
68. Symantec Altiris Deployment Solution Directory Traversal Vulnerabilit=
y
BugTraq ID: 26266
Remote: No
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26266
Summary:
Symantec Altiris Deployment Solution is prone to a directory traversal vu=
lnerability.
Attackers can exploit this issue to gain access to potentially sensitive =
information. Information obtained may aid in further attacks.
69. Mono System.Math BigInteger Buffer Overflow Vulnerability
BugTraq ID: 26279
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26279
Summary:
Mono is prone to a buffer-overflow vulnerability because the application =
fails to adequately perform boundary checks on user-supplied data.
Successfully exploiting this issue could allow attackers to execute arbit=
rary code in the context of the user running an affected application. Fai=
led exploit attempts will likely result in a denial-of-service condition.
70. phpMyConferences PageTraiteDownload.PHP Local File Include Vulnerabil=
ity
BugTraq ID: 26278
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26278
Summary:
phpMyConferences is prone to a local file-include vulnerability because i=
t fails to adequately sanitize user-supplied input for requests to restri=
cted files that reside outside of the web document root directory.=20
=20
A remote attacker can exploit this issue to retrieve potentially sensitiv=
e information that may aid in further attacks.
This issue affects phpMyConferences 8.0.2; other versions may also be aff=
ected.
71. ISPworker Download.PHP Multiple Local File Include Vulnerabilities
BugTraq ID: 26277
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26277
Summary:
ISPworker is prone to multiple local file-include vulnerabilities because=
it fails to sufficiently sanitize user-supplied input.=20
Exploiting these issues may allow an attacker to access potentially sensi=
tive information and execute arbitrary local scripts within the context o=
f the webserver process.=20
These issues affect ISPworker 1.21; other versions may also be affected.
72. IBM WebSphere Application Server UDDI Console Multiple Input Validati=
on Vulnerabilities
BugTraq ID: 26276
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26276
Summary:
WebSphere Application Server is prone to multiple cross-site request-forg=
ery and cross-site scripting vulnerabilities.
Attackers can exploit these issues to steal cookie-based authentication c=
redentials, execute arbitrary script code, and use a victim's currently a=
ctive session to perform actions with the application.=20
WebSphere Application Server versions 6.0 and 6.1 are vulnerable; other v=
ersions may also be affected.
73. Yarssr GUI.PM Remote Code Injection Vulnerability
BugTraq ID: 26273
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26273
Summary:
Yarssr is prone to a remote code-injection vulnerability because it fails=
to properly sanitize user-supplied input.
An attacker can exploit this issue to inject and execute arbitrary malici=
ous Perl code with the privileges of the user running the application. S=
uccessful exploits can compromise the application and possibly the underl=
ying computer; other attacks are also possible.
Yarssr 0.2.2 is vulnerable; other versions may also be affected.
74. Hitachi Web Server HTML Injection Vulnerability and Signature Forgery=
Vulnerability
BugTraq ID: 26271
Remote: Yes
Last Updated: 2007-10-31
Relevant URL: http://www.securityfocus.com/bid/26271
Summary:
Hitachi Web Server is prone to a HTML-injection vulnerability and a vulne=
rability that allow attackers to forge digital signatures in an SSL certi=
ficate.
An attacker could exploit these issues to execute arbitrary code within t=
he context of the webserver process, steal cookie-based authentication cr=
edentials, sign digital certificates and take advantage of trust relation=
ships that may depend on these credentials.
75. IBM AIX lqueryvg Local Privilege Escalation Vulnerability
BugTraq ID: 26256
Remote: No
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26256
Summary:
IBM AIX is prone to a local privilege-escalation vulnerability because it=
fails to perform adequate boundary checks on user-supplied input.
Attackers can exploit this issue to execute arbitrary code using superuse=
r privileges. Successful exploits will completely compromise affected com=
puters.
76. OpenSSL DTLS Heap Buffer Overflow Vulnerability
BugTraq ID: 26055
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26055
Summary:
OpenSSL is prone to a heap buffer-overflow vulnerability because the libr=
ary fails to perform adequate boundary checks on user-supplied data.=20
Successfully exploiting this issue may allow attackers to execute arbitra=
ry machine code in the context of applications that use the affected libr=
ary, but this has not been confirmed. Failed exploit attempts may crash a=
pplications, denying service to legitimate users.
77. ISC BIND 8 Remote Cache Poisoning Vulnerability
BugTraq ID: 25459
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/25459
Summary:
BIND 8 is prone to a remote cache-poisoning vulnerability because of weak=
nesses in its random-number generator.
=20
An attacker may leverage this issue to manipulate cache data, potentially=
facilitating man-in-the-middle, site-impersonation, or denial-of-service=
attacks.
Versions of BIND from 8.2.0 through to 8.4.7 are vulnerable to this issue=
.
78. IBM AIX bellmail Local Privilege Escalation Vulnerability
BugTraq ID: 26257
Remote: No
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26257
Summary:
IBM AIX is prone to a local privilege-escalation vulnerability because it=
fails to perform adequate boundary checks on user-supplied input.
Attackers can exploit this issue to execute arbitrary code using superuse=
r privileges. Successful exploits will completely compromise affected com=
puters.
79. Microsoft Windows Kodak Image Viewer Remote Code Execution Vulnerabil=
ity
BugTraq ID: 25909
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/25909
Summary:
Microsoft Windows Kodak Image Viewer is prone to a remote code-execution =
vulnerability because it fails to properly bounds-check user-supplied dat=
a.
Remote attackers can exploit this issue to execute arbitrary machine code=
in the context of a user running the application. Successful exploits wi=
ll compromise the user's account and possibly the underlying computer. Fa=
iled attacks will likely cause denial-of-service conditions.
NOTE: Affected versions of Windows XP are vulnerable only if they have be=
en upgraded from Windows 2000.
80. X.Org X Font Server Multiple Memory Corruption Vulnerabilities
BugTraq ID: 25898
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/25898
Summary:
X.Org X Font Server (XFS) is prone to multiple memory-corruption vulnerab=
ilities, including an integer-overflow issue and a heap-based memory-corr=
uption issue.=20
An attacker could exploit this issue to execute arbitrary code with the p=
rivileges of the X Font Server. Failed exploit attempts will likely resul=
t in a denial-of-service condition.=20
NOTE: These issues are exploitable remotely only on Solaris operating sys=
tems; by default the server is listening on TCP port 7100. For other UNIX=
-like operating systems, an attacker can exploit these issues only locall=
y.
These issues affect X Font Server 1.0.4; prior versions may also be affec=
ted.
81. Liferea Feedlist.OPML Local Information Disclosure Vulnerability
BugTraq ID: 26254
Remote: No
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26254
Summary:
Liferea is prone to a local information-disclosure vulnerability because =
the application fails to set file permissions correctly on a backup file.
Attackers can leverage this issue to obtain sensitive information used t=
o construct valid login credentials.
=20
This issue affects versions prior to Liferea 1.4.6.
82. NuFW SAMP_SEND Heap Based Buffer Overflow Vulnerability
BugTraq ID: 26251
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26251
Summary:
NuFW is prone to a heap-based buffer-overflow vulnerability because it fa=
ils to perform adequate boundary checks on user-supplied data.=20
Attackers can exploit this issue to execute arbitrary code within the con=
text of the affected application. Failed exploit attempts will result in =
a denial of service.
This issue affects NuFW 2.2.6; other versions may also be vulnerable.
83. Sun Fire X2100 M2 And X2200 M2 ELOM Unspecified Remote Arbitrary Comm=
and Execution Vulnerability
BugTraq ID: 26250
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26250
Summary:
Sun Fire X2100 M2 and X2200 M2 servers are prone to a vulnerability that =
allows remote attackers to execute arbitrary commands with superuser priv=
ileges. Successful attacks may completely compromise affected servers.
This issue affects the Embedded Lights Out Manager (ELOM) for x86 archite=
cture; no other systems are affected.
84. IBM Lotus Notes Attachment Viewer Multiple Buffer Overflow Vulnerabil=
ities
BugTraq ID: 26175
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26175
Summary:
IBM Lotus Notes is prone to multiple buffer-overflow vulnerabilities.=20
Successfully exploiting these issues could allow an attacker to execute a=
rbitrary code in the context of the user running the application. =20
Lotus Notes 7.0.2 is prone to these issues; other versions may also be vu=
lnerable.
NOTE: Reports suggest that Symantec Mail Security for Domino, SMTP, and E=
xchange are also vulnerable to these issues; Symantec has not confirmed t=
his. We will update this BID pending further investigation.
85. Python ImageOP Module Multiple Integer Overflow Vulnerabilities
BugTraq ID: 25696
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/25696
Summary:
Python's imageop module is prone to multiple integer-overflow vulnerabili=
ties because it fails to properly bounds-check user-supplied input to ens=
ure that integer operations do not overflow.
To successfully exploit these issues, an attacker must be able to control=
the arguments to imageop functions. Remote attackers may be able to do t=
his, depending on the nature of applications that use the vulnerable func=
tions.
Attackers would likely submit invalid or specially crafted images to appl=
ications that perform imageop operations on the data.
A successful exploit may allow attacker-supplied machine code to run in t=
he context of affected applications, facilitating the remote compromise o=
f computers.
86. GNU Tar Dot_Dot Function Remote Directory Traversal Vulnerability
BugTraq ID: 25417
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/25417
Summary:
GNU Tar is prone to a directory-traversal vulnerability because the appli=
cation fails to validate user-supplied data.
A successful attack can allow the attacker to overwrite files on a comput=
er in the context of the user running the affected application. Successfu=
l exploits may aid in further attacks.
87. Ruby Net::HTTP SSL Insecure Certificate Validation Weakness
BugTraq ID: 25847
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/25847
Summary:
Ruby's Net::HTTP library is prone to an insecure-certificate-validation w=
eakness because the library fails to properly perform validity checks on =
X.509 certificates.
Successfully exploiting this issue may allow attackers to perform man-in-=
the-middle attacks against applications that insecurely use the affected =
library. Other attacks may also be possible.
88. miniBB BB_FUNC_SEARCH.PHP SQL Injection Vulnerability
BugTraq ID: 26249
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26249
Summary:
miniBB is prone to an SQL-injection vulnerability because it fails to suf=
ficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the applicati=
on, access or modify data, or exploit latent vulnerabilities in the under=
lying database.
This issue affects miniBB 2.1; other versions may also be vulnerable.
89. Sun Solaris 10 Internet Protocol ip(7P) Unspecified Local Denial Of S=
ervice Vulnerability
BugTraq ID: 26248
Remote: No
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26248
Summary:
Sun Solaris 10 is prone to an unspecified local denial-of-service vulnera=
bility.
An unprivileged local user can exploit this issue on an affected computer=
to cause a system panic, resulting in a denial-of-service condition.
This issue affects Sun Solaris 10 for SPARC and x86 architectures.
90. Micro Login System UserPWD.TXT Information Disclosure Vulnerability
BugTraq ID: 26246
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26246
Summary:
Micro Login System is prone to an information-disclosure vulnerability.
An attacker can exploit this issue to access sensitive information that m=
ay lead to further attacks.
Micro Login System 1.0 is vulnerable; other versions may also be affected=
.
91. OpenLDAP Multiple Remote Denial of Service Vulnerabilities
BugTraq ID: 26245
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26245
Summary:
OpenLDAP is prone to multiple remote denial-of-service vulnerabilities be=
cause of an incorrect NULL-termination issue and a double-free issue.
Attackers can exploit these issues to deny service to legitimate users.
Versions prior to OpenLDAP 2.3.39 are vulnerable.
92. Sun Java Runtime Environment Network Access Restriction Security Bypa=
ss Vulnerability
BugTraq ID: 25054
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/25054
Summary:
The Sun Java Runtime Environment is prone to a security-bypass vulnerabil=
ity.=20
Successfully exploiting this issue will allow an attacker to connect to s=
ervices on a remote user's computer without proper authorization. This ma=
y lead to other attacks.
93. Sun Java Runtime Environment Font Parsing Remote Privilege Escalation=
Vulnerability
BugTraq ID: 25340
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/25340
Summary:
The Sun Java Runtime Environment is prone to a remote privilege-escalatio=
n vulnerability.=20
An attacker can exploit this issue to execute arbitrary code within the c=
ontext of the user who invoked the Java applet. Successfully exploiting t=
his issue may result in the remote compromise of affected computers.
94. Zlib Compression Library Buffer Overflow Vulnerability
BugTraq ID: 14162
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/14162
Summary:
Zlib is prone to a buffer-overflow vulnerability because the application =
fails to properly validate input data before using it in a memory copy op=
eration.=20
In certain circumstances, malformed input data during decompression may c=
ause a memory buffer to overflow. This may result in denial-of-service co=
nditions or may allow remote code to execute in the context of applicatio=
ns that use the affected library.
95. Xunlei Web Thunder ActiveX Control DownURL2 Method Remote Buffer Over=
flow Vulnerability
BugTraq ID: 25751
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/25751
Summary:
Xunlei Web Thunder is prone to a remote buffer-overflow vulnerability bec=
ause the application fails to perform adequate boundary-checks on user-su=
pplied data.=20
An attacker may exploit this issue by enticing victims into visiting a ma=
liciously crafted webpage.
Successfully exploiting this issue will allow the attacker to execute arb=
itrary code within the context of the application using the ActiveX contr=
ol (typically Microsoft Internet Explorer). Failed exploit attempts will =
result in a denial-of-service condition.
This issue affects Xunlei Web Thunder 5.6.8.344; other versions may also =
be affected.
96. Oracle Database Server MDSYS.SDO_CS Buffer Overflow Vulnerability
BugTraq ID: 26243
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26243
Summary:
Oracle Database Server is prone to a remote buffer-overflow vulnerability=
because it fails to properly bounds-check user-supplied data before copy=
ing it to an insufficiently sized memory buffer.
An authenticated attacker can exploit this issue to execute arbitrary cod=
e within the context of the affected application. Failed exploit attempts=
will result in a denial of service.
NOTE: This issue was previously tracked by BID 26039 but has been given i=
ts own BID because more information has emerged.
97. Ipswitch IMail SMTP Server IMail Client Remote Buffer Overflow Vulner=
ability
BugTraq ID: 26252
Remote: Yes
Last Updated: 2007-10-30
Relevant URL: http://www.securityfocus.com/bid/26252
Summary:
IMail Client, which is included in Ipswitch IMail Server, is prone to a b=
uffer-overflow vulnerability because the software fails to properly bound=
s-check user-supplied input before copying it into an insufficiently size=
d memory buffer.
Attackers may exploit this issue to execute arbitrary code in the context=
of the affected application. Failed exploit attempts will likely result =
in denial-of-service conditions.
This issue affects IMail Client 9.22, which is included with IMail Server=
2006.22; other versions may also be affected.
98. ProfileCMS Profile Creation Arbitrary File Upload Vulnerability
BugTraq ID: 26242
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26242
Summary:
ProfileCMS is prone to a vulnerability that lets attackers upload PHP scr=
ipt code and execute it in the context of the webserver process. This iss=
ue occurs because the application fails to sufficiently sanitize user-sup=
plied input.
ProfileCMS 1.0 is vulnerable; other versions may also be affected.
99. Sony CONNECT SonicStage Player M3U Playlist Processing Buffer Overflo=
w Vulnerability
BugTraq ID: 26241
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26241
Summary:
Sony CONNECT SonicStage player is prone to a buffer-overflow vulnerabilit=
y because it fails to properly bounds-check user-supplied input before co=
pying it to an insufficiently sized memory buffer.
Remote attackers may crash the application or execute arbitrary machine c=
ode in the context of the user running the affected application.
This issue affects SonicStage 4.3; other versions may also be vulnerable.
100. CaupoShop Pro Index.PHP Remote File Include Vulnerability
BugTraq ID: 26239
Remote: Yes
Last Updated: 2007-10-29
Relevant URL: http://www.securityfocus.com/bid/26239
Summary:
CaupoShop Pro is prone to a remote file-include vulnerability because it =
fails to sufficiently sanitize user-supplied input.
Exploiting this issue may allow an attacker to compromise the application=
and the underlying system; other attacks are also possible.
III. SECURITYFOCUS NEWS ARTICLES
--------------------------------
1. Court filings double estimate of TJX breach
By: Robert Lemos
Online attackers stole information on more than 94 million credit- and de=
bit-card accounts, more than double the original estimates, according to =
court documents.
http://www.securityfocus.com/news/11493
2. Identity thieves likely to be first-timers, strangers
By: Robert Lemos
Six years of U.S. Secret Service cases reveal that the majority of identi=
ty thieves do not know their victims and do not have a prior criminal rec=
ord.
http://www.securityfocus.com/news/11492
3. Retailers look to exorcise credit-card data
By: Robert Lemos
The National Retail Federation sends a letter asking that its members be =
allowed to decide what credit-card data to keep.
http://www.securityfocus.com/news/11491
4. DHS, Unisys scrutinized after data breach
By: Robert Lemos
A Congressional committee claims that Unisys allowed malicious code to in=
fect federal systems.
http://www.securityfocus.com/news/11489
IV. SECURITY JOBS LIST SUMMARY
-------------------------------
1. [SJ-JOB] Security Engineer, Washington DC area
http://www.securityfocus.com/archive/77/482966
2. [SJ-JOB] Sr. Security Engineer, San Antonio
http://www.securityfocus.com/archive/77/482969
3. [SJ-JOB] Security Engineer, San Antonio
http://www.securityfocus.com/archive/77/482962
4. [SJ-JOB] Information Assurance Engineer, Herndon
http://www.securityfocus.com/archive/77/482967
5. [SJ-JOB] Sr. Security Engineer, Washington DC area
http://www.securityfocus.com/archive/77/482968
6. [SJ-JOB] Security System Administrator, Stanford
http://www.securityfocus.com/archive/77/482973
7. [SJ-JOB] Threat Analyst, Washington DC area
http://www.securityfocus.com/archive/77/482958
8. [SJ-JOB] Security Engineer, Washington DC area
http://www.securityfocus.com/archive/77/482959
9. [SJ-JOB] Security Engineer, Stanford
http://www.securityfocus.com/archive/77/482961
10. [SJ-JOB] Security System Administrator, Stanford
http://www.securityfocus.com/archive/77/482965
11. [SJ-JOB] Threat Analyst, San Antonio
http://www.securityfocus.com/archive/77/482970
12. [SJ-JOB] Security Engineer, Washington DC area
http://www.securityfocus.com/archive/77/482954
13. [SJ-JOB] Director, Information Security, Bergen County
http://www.securityfocus.com/archive/77/482957
14. [SJ-JOB] Security System Administrator, San Antonio or Austin
http://www.securityfocus.com/archive/77/482963
15. [SJ-JOB] Security Engineer, San Antonio
http://www.securityfocus.com/archive/77/482964
16. [SJ-JOB] Security Engineer, San Antonio
http://www.securityfocus.com/archive/77/482955
17. [SJ-JOB] Application Security Engineer, St. Lousi
http://www.securityfocus.com/archive/77/482845
18. [SJ-JOB] Security Consultant, NY
http://www.securityfocus.com/archive/77/482827
19. [SJ-JOB] Account Manager, Atlanta
http://www.securityfocus.com/archive/77/482843
20. [SJ-JOB] Sales Engineer, Austin/Dallas/Houston
http://www.securityfocus.com/archive/77/482846
21. [SJ-JOB] Sales Engineer, Herndon
http://www.securityfocus.com/archive/77/482847
22. [SJ-JOB] Account Manager, San Francisco
http://www.securityfocus.com/archive/77/482849
23. [SJ-JOB] Security Researcher, San Jose
http://www.securityfocus.com/archive/77/482803
24. [SJ-JOB] Security Engineer, New York
http://www.securityfocus.com/archive/77/482805
25. [SJ-JOB] Director, Information Security, Philadelphia
http://www.securityfocus.com/archive/77/482842
26. [SJ-JOB] Account Manager, Glendale
http://www.securityfocus.com/archive/77/482844
27. [SJ-JOB] Sales Engineer, Chicago
http://www.securityfocus.com/archive/77/482848
28. [SJ-JOB] Security Auditor, West Port
http://www.securityfocus.com/archive/77/482802
29. [SJ-JOB] Sr. Security Analyst, Providence
http://www.securityfocus.com/archive/77/482804
30. [SJ-JOB] Security Architect, Arlington
http://www.securityfocus.com/archive/77/482806
31. [SJ-JOB] Security System Administrator, McLean
http://www.securityfocus.com/archive/77/482822
32. [SJ-JOB] Sales Engineer, Any US location
http://www.securityfocus.com/archive/77/482831
33. [SJ-JOB] Compliance Officer, Reading, Berkshire
http://www.securityfocus.com/archive/77/482828
34. [SJ-JOB] Sales Engineer, London
http://www.securityfocus.com/archive/77/482820
35. [SJ-JOB] Software Engineer, Atlanta
http://www.securityfocus.com/archive/77/482823
36. [SJ-JOB] Technical Support Engineer, Fort Lauderdale
http://www.securityfocus.com/archive/77/482824
37. [SJ-JOB] Security Engineer, West Port
http://www.securityfocus.com/archive/77/482829
38. [SJ-JOB] Security Engineer, West Port
http://www.securityfocus.com/archive/77/482830
39. [SJ-JOB] Developer, Columbia
http://www.securityfocus.com/archive/77/482821
V. INCIDENTS LIST SUMMARY
---------------------------
VI. VULN-DEV RESEARCH LIST SUMMARY
-----------------------------------
1. In Memoriam: Jun-ichiro Hagino
http://www.securityfocus.com/archive/82/483017
2. DeepSec 2007 Registration: hurry up, seats are filling fast
http://www.securityfocus.com/archive/82/483013
VII. MICROSOFT FOCUS LIST SUMMARY
---------------------------------
1. SecurityFocus Microsoft Newsletter #365
http://www.securityfocus.com/archive/88/482796
VIII. SUN FOCUS LIST SUMMARY
----------------------------
IX. LINUX FOCUS LIST SUMMARY
----------------------------
X. UNSUBSCRIBE INSTRUCTIONS
-----------------------------
To unsubscribe send an e-mail message to sf-news-unsubscribe@securityfocu=
s.com from the subscribed address. The contents of the subject or message=
body do not matter. You will receive a confirmation request message to w=
hich you will have to answer. Alternatively you can also visit http://www=
.securityfocus.com/newsletters and unsubscribe via the website.
If your email address has changed email [email protected] and a=
sk to be manually removed.
XI. SPONSOR INFORMATION
------------------------
This issue is Sponsored by: CSI
CSI 2007, November 3-9 in Washington, DC, is the only conference that del=
ivers a business-focused overview of enterprise security.=20
It will convene 2,000+ delegates, 80 exhibitors and features 100+ session=
s/seminars providing a roadmap for integrating policies and procedures wi=
th new tools and techniques. =20
Register now for savings on conference fees and/or free exhibits admissio=
n. =20
www.csiannual.com