SecurityFocus Linux Newsletter #293
Peter Laborge <[email protected]> Tue, 04 Jul 2006 13:59:22 -0600
| Newsgroups | gmane.comp.security.news.linux |
|---|---|
| Message-ID | <[email protected]> |
SecurityFocus Linux Newsletter #293
----------------------------------------
This issue is Sponsored by: Watchfire
Methodologies & Tools for Web Application Security Assessment
With the rapid rise in the number and types of security threats, web application security assessments should be considered a crucial phase in the development of any web application. What methodology should be followed? What tools can accelerate the assessment process? See for yourself. Download this Whitepaper today!
https://www.watchfire.com/securearea/whitepapers.aspx?id=701500000008VmX
------------------------------------------------------------------
I. FRONT AND CENTER
1. MySpace, a place without MyParents
II. LINUX VULNERABILITY SUMMARY
1. BitchX BX_Do_Hook Remote Denial of Service Vulnerability
2. Mutt BROWSE_GET_NAMESPACE IMAP Namespace Processing Remote Buffer Overflow Vulnerability
3. Algorithmic Research PrivateWire Online Registration Remote Buffer Overflow Vulnerability
4. Hashcash Remote Heap Buffer Overflow Vulnerability
5. EnergyMech CTCP Notice Denial of Service Vulnerability
6. Spread Insecure Socket File Creation Denial Of Service Vulnerability
7. Linux Kernel IBM S/390 strnlen_user Local Vulnerability
8. Opera SSL Certificate Spoofing Weakness
9. OpenOffice Java Applet System Access Vulnerability
10. OpenOffice Arbitrary Macro Execution Vulnerability
11. OpenOffice XML File Format Buffer Overflow Vulnerability
12. Webmin/Usermin Unspecifed Information Disclosure Vulnerability
13. Linux Kernel Netfilter Conntrack_Proto_SCTP.C Denial of Service Vulnerability
14. Communigate Pro Server Pop Denial of Service Vulnerability
15. Invision Power Board Index.PHP Act Parameter SQL Injection Vulnerability
III. LINUX FOCUS LIST SUMMARY
IV. UNSUBSCRIBE INSTRUCTIONS
V. SPONSOR INFORMATION
I. FRONT AND CENTER
---------------------
1. MySpace, a place without MyParents
By Scott Granneman
Scott Granneman looks at the mass hysteria surrounding MySpace social security issues, examines a collection of frightening reports, and then discusses the real issue of parenting and parental supervision behind keeping our children safe.
http://www.securityfocus.com/columnists/408
II. LINUX VULNERABILITY SUMMARY
------------------------------------
1. BitchX BX_Do_Hook Remote Denial of Service Vulnerability
BugTraq ID: 18634
Remote: Yes
Date Published: 2006-06-24
Relevant URL: http://www.securityfocus.com/bid/18634
Summary:
BitchX is prone to a remote denial-of-service vulnerability because it fails to properly handle excessive data from malicious IRC servers.
This issue allows remote attackers to crash affected IRC clients, denying service to legitimate users. To exploit this issue, attackers must coerce users of affected clients to connect to a malicious server.
BitchX version 1.1-final is vulnerable to this issue; previous versions may also be affected.
2. Mutt BROWSE_GET_NAMESPACE IMAP Namespace Processing Remote Buffer Overflow Vulnerability
BugTraq ID: 18642
Remote: Yes
Date Published: 2006-06-26
Relevant URL: http://www.securityfocus.com/bid/18642
Summary:
Mutt is prone to a remote buffer-overflow vulnerability. This issue is due to the application's failure to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
This issue may allow remote attackers to execute arbitrary machine code in the context of the affected application. Failed exploit attempts will likely crash the application, denying further service to legitimate users.
Mutt version 1.4.2.1 is reported to be vulnerable. Other versions may be affected as well.
3. Algorithmic Research PrivateWire Online Registration Remote Buffer Overflow Vulnerability
BugTraq ID: 18647
Remote: Yes
Date Published: 2006-06-26
Relevant URL: http://www.securityfocus.com/bid/18647
Summary:
PrivateWire online registration is prone to a remote buffer-overflow vulnerability.
The application fails to properly check boundary conditions when handling GET requests.
This issue allows attackers to execute arbitrary machine code in the context of the affected application software.
Version 3.7 is vulnerable to this issue; previous versions may also be affected.
4. Hashcash Remote Heap Buffer Overflow Vulnerability
BugTraq ID: 18659
Remote: Yes
Date Published: 2006-06-26
Relevant URL: http://www.securityfocus.com/bid/18659
Summary:
A buffer-overflow vulnerability exists in the generic C implementation of Hashcash. This issue is due to the software's failure to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
This issue may allow attackers to execute arbitrary machine code in the context of the affected application. This may facilitate the remote compromise of affected computers.
Hashcash versions prior to 1.21 are vulnerable to this issue.
5. EnergyMech CTCP Notice Denial of Service Vulnerability
BugTraq ID: 18664
Remote: Yes
Date Published: 2006-06-26
Relevant URL: http://www.securityfocus.com/bid/18664
Summary:
EnergyMech is prone to a denial-of-service vulnerability. Successful exploits will cause the application to crash, effectively denying service.
This issue affects versions prior to 3.0.2.
6. Spread Insecure Socket File Creation Denial Of Service Vulnerability
BugTraq ID: 18675
Remote: No
Date Published: 2006-06-27
Relevant URL: http://www.securityfocus.com/bid/18675
Summary:
Spread creates temporary files in an insecure manner.
Successful exploits would most likely result in loss of data or a denial of service. Other attacks may also be possible.
7. Linux Kernel IBM S/390 strnlen_user Local Vulnerability
BugTraq ID: 18687
Remote: No
Date Published: 2006-06-27
Relevant URL: http://www.securityfocus.com/bid/18687
Summary:
The Linux kernel on IBM S/390 platforms is prone to a local vulnerability. This issue is due to a flaw in the 'strnlen_user()' kernel function.
The direct impact of exploiting this issue is currently unknown, but local users may potentially exploit this issue to cause denial-of-service conditions or possibly gain access to potentially sensitive information.
This BID will be updated as more information is disclosed.
This issue affects Linux kernel versions prior to 2.6.16 running on the IBM S/390 platform.
8. Opera SSL Certificate Spoofing Weakness
BugTraq ID: 18692
Remote: Yes
Date Published: 2006-06-28
Relevant URL: http://www.securityfocus.com/bid/18692
Summary:
Opera is prone to security-bar spoofing. Attackers may exploit this via a malicious web page to spoof the SSL credentials of a site that the victim may trust. This weakness may be useful in phishing or other attacks that rely on content spoofing.
9. OpenOffice Java Applet System Access Vulnerability
BugTraq ID: 18737
Remote: Yes
Date Published: 2006-06-30
Relevant URL: http://www.securityfocus.com/bid/18737
Summary:
OpenOffice is prone to a vulnerability that allows attackers to gain unauthorized access to a vulnerable computer.
The vendor has reported that this vulnerability allows malicious Java applets to gain read/write privileges to local files on a vulnerable computer.
10. OpenOffice Arbitrary Macro Execution Vulnerability
BugTraq ID: 18738
Remote: Yes
Date Published: 2006-06-30
Relevant URL: http://www.securityfocus.com/bid/18738
Summary:
OpenOffice is prone to a vulnerability that allows attackers to gain unauthorized access to a vulnerable computer.
The vendor has reported that this vulnerability allows malicious macros to gain read/write privileges to local files on a vulnerable computer.
11. OpenOffice XML File Format Buffer Overflow Vulnerability
BugTraq ID: 18739
Remote: Yes
Date Published: 2006-06-30
Relevant URL: http://www.securityfocus.com/bid/18739
Summary:
OpenOffice is prone to a vulnerability that allows attackers to gain unauthorized access to a vulnerable computer.
The vendor has reported that this vulnerability allows malicious XML documents to cause a buffer overflow leading to read/write privileges to local files on a vulnerable computer.
12. Webmin/Usermin Unspecifed Information Disclosure Vulnerability
BugTraq ID: 18744
Remote: Yes
Date Published: 2006-06-30
Relevant URL: http://www.securityfocus.com/bid/18744
Summary:
Webmin and Usermin are prone to an unspecified information-disclosure vulnerability. This issue is due to a failure in the applications to properly sanitize user-supplied input.
An attacker can exploit this issue to retrieve potentially sensitive information.
This issue affects Webmin versions prior to 1.290 and Usermin versions prior to 1.220.
13. Linux Kernel Netfilter Conntrack_Proto_SCTP.C Denial of Service Vulnerability
BugTraq ID: 18755
Remote: Yes
Date Published: 2006-06-30
Relevant URL: http://www.securityfocus.com/bid/18755
Summary:
The Linux kernel 'netfilter' module is prone to a denial-of-service vulnerability.
Successful exploits of this vulnerability will cause the kernel to crash, effectively denying service to legitimate users.
14. Communigate Pro Server Pop Denial of Service Vulnerability
BugTraq ID: 18770
Remote: Yes
Date Published: 2006-07-03
Relevant URL: http://www.securityfocus.com/bid/18770
Summary:
CommuniGate Pro Server is prone to a remote denial-of-service vulnerability. This issue reportedly resides in the Pop component of the application.
15. Invision Power Board Index.PHP Act Parameter SQL Injection Vulnerability
BugTraq ID: 18782
Remote: Yes
Date Published: 2006-07-03
Relevant URL: http://www.securityfocus.com/bid/18782
Summary:
Invision Power Board is prone to an SQL-injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.
Successful exploitation could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
Version 1.3 Final is affected; other versions may also be vulnerable to this issue.
III. LINUX FOCUS LIST SUMMARY
---------------------------------
IV. UNSUBSCRIBE INSTRUCTIONS
-----------------------------
To unsubscribe send an e-mail message to [email protected] from the subscribed address. The contents of the subject or message body do not matter. You will receive a confirmation request message to which you will have to answer. Alternatively you can also visit http://www.securityfocus.com/newsletters and unsubscribe via the website.
If your email address has changed email [email protected] and ask to be manually removed.
V. SPONSOR INFORMATION
------------------------
This issue is Sponsored by: Watchfire
Methodologies & Tools for Web Application Security Assessment
With the rapid rise in the number and types of security threats, web application security assessments should be considered a crucial phase in the development of any web application. What methodology should be followed? What tools can accelerate the assessment process? See for yourself. Download this Whitepaper today!
https://www.watchfire.com/securearea/whitepapers.aspx?id=701500000008VmX