SecurityFocus Linux Newsletter #371

[email protected] 10 Jan 2008 22:55:13 -0000
Newsgroups gmane.comp.security.news.linux
Message-ID <[email protected]>
SecurityFocus Linux Newsletter #371
----------------------------------------

This issue is Sponsored by: Black Hat DC

Attend Black Hat DC, February 18-21, the Washington, DC version of the wo=
rld's premier technical event for ICT security experts. Featuring hands-o=
n training courses and Briefings presentations with lots of new content-i=
ncluding a focus on wireless security and offensive attack analysis.  Net=
work with 400+ delegates and review products from leading vendors in a re=
laxed setting, including Diamond sponsor Microsoft.=20
www.blackhat.com


SECURITY BLOGS
SecurityFocus has selected a few syndicated sources that stand out as con=
veying topics of interest for our community. We are proud to offer conten=
t from Matasano at this time and will be adding more in the coming weeks.
http://www.securityfocus.com/blogs

------------------------------------------------------------------
I.   FRONT AND CENTER
       1.Real Flaws in Virtual Worlds
       2.Copyrights and Wrongs
II.  LINUX VULNERABILITY SUMMARY
       1. Asterisk BYE Message Remote Denial of Service Vulnerability
       2. JustSystems Multiple Products 'JSFC.DLL' Buffer Overflow Vulner=
ability
       3. PostgreSQL Multiple Privilege Escalation and Denial of Service =
Vulnerabilities
       4. OpenPegasus WBEM CIM Management Server 'PAMBasicAuthenticatorUn=
ix.cpp' Buffer Overflow Vulnerability
       5. SynCE 'vdccm' Daemon Remote Command Injection Vulnerability
       6. IceWarp Mail Server 'admin/index.html' Cross-Site Scripting Vul=
nerability
       7. xine-lib 'rmff_dump_cont()' Remote Heap Buffer Overflow Vulnera=
bility
       8. Xen DR7 and CR4 Registers Multiple Local Denial of Service Vuln=
erabilities
III. LINUX FOCUS LIST SUMMARY
IV.  UNSUBSCRIBE INSTRUCTIONS
V.   SPONSOR INFORMATION

I.   FRONT AND CENTER
---------------------
1.Real Flaws in Virtual Worlds
By Federico Biancuzzi
Massively multiplayer online role playing games (MMORPGs), such as World =
of Warcraft, have millions of subscribers interacting online, which makes=
 security tricky business.=20
http://www.securityfocus.com/columnists/461

2.Copyrights and Wrongs
By Mark Rasch
On October 1, 2007, Jammie Thomas -- a single mother living in Brainerd, =
Minnesota -- was sued in civil court for copyright infringement by the Re=
cording Industry Association of America. Three days later, the jury retur=
ned the verdict; Ms. Thomas was liable for willfully infringing the copyr=
ights on 24 songs. The fine: $222,000.=20
http://www.securityfocus.com/columnists/460


II.  LINUX VULNERABILITY SUMMARY
------------------------------------
1. Asterisk BYE Message Remote Denial of Service Vulnerability
BugTraq ID: 27110
Remote: Yes
Date Published: 2008-01-02
Relevant URL: http://www.securityfocus.com/bid/27110
Summary:
Asterisk is prone to a remote denial-of-service vulnerability.

Exploiting this issue allows remote attackers to cause the application to=
 crash, effectively denying service to legitimate users.

2. JustSystems Multiple Products 'JSFC.DLL' Buffer Overflow Vulnerability
BugTraq ID: 27153
Remote: Yes
Date Published: 2008-01-07
Relevant URL: http://www.securityfocus.com/bid/27153
Summary:
JustSystems products are prone to a buffer-overflow vulnerability.

Successful exploits may allow remote attackers to execute arbitrary code =
in the context of the vulnerable application. Failed attempts will likely=
 cause denial-of-service conditions.

The issue affects various JustSystems products using the 'JSFC.DLL' libra=
ry. Please see the referenced vendor advisory for details on vulnerable p=
roducts and updates.

3. PostgreSQL Multiple Privilege Escalation and Denial of Service Vulnera=
bilities
BugTraq ID: 27163
Remote: Yes
Date Published: 2008-01-07
Relevant URL: http://www.securityfocus.com/bid/27163
Summary:
PostgreSQL is prone to multiple remote vulnerabilities, including:=20

- Three privilege-escalation vulnerabilities=20
- Three denial-of-service vulnerabilities

An attacker can exploit these issues to gain complete control of the affe=
cted application or to cause a denial-of-service condition.

These issues affect PostgreSQL 8.2, 8.1, 8.0, 7.4, and 7.3; other version=
s may also be affected.

4. OpenPegasus WBEM CIM Management Server 'PAMBasicAuthenticatorUnix.cpp'=
 Buffer Overflow Vulnerability
BugTraq ID: 27172
Remote: Yes
Date Published: 2008-01-07
Relevant URL: http://www.securityfocus.com/bid/27172
Summary:
OpenPegasus is prone to a remote buffer-overflow vulnerability because it=
 fails to perform adequate boundary checks on user-supplied input.

This issue occurs in the PAM (Pluggable Authentication Module) authentica=
tion code.

Attackers can leverage this issue to execute arbitrary code with superuse=
r privileges. Successful exploits will completely compromise affected com=
puters. Failed attacks will likely cause denial-of-service conditions.

Versions in the OpenPegasus 2.6 series are vulnerable.

5. SynCE 'vdccm' Daemon Remote Command Injection Vulnerability
BugTraq ID: 27178
Remote: Yes
Date Published: 2008-01-07
Relevant URL: http://www.securityfocus.com/bid/27178
Summary:
SynCE is prone to a remote command-injection vulnerability because it fai=
ls to adequately sanitize user-supplied input data.

Attackers can exploit this issue to execute arbitrary commands in the con=
text of the application, facilitating the remote compromise of affected c=
omputers.

SynCE 0.92 is vulnerable; other versions may also be affected.

6. IceWarp Mail Server 'admin/index.html' Cross-Site Scripting Vulnerabil=
ity
BugTraq ID: 27189
Remote: Yes
Date Published: 2008-01-08
Relevant URL: http://www.securityfocus.com/bid/27189
Summary:
IceWarp Mail Server is prone to a cross-site scripting vulnerability beca=
use it fails to properly sanitize user-supplied input.=20

An attacker may leverage this issue to execute arbitrary script code in t=
he browser of an unsuspecting user in the context of the affected site. T=
his may allow the attacker to steal cookie-based authentication credentia=
ls and to launch other attacks.

This issue affects unknown versions of IceWarp Mail Server; we may update=
 this BID when more details become available.

7. xine-lib 'rmff_dump_cont()' Remote Heap Buffer Overflow Vulnerability
BugTraq ID: 27198
Remote: Yes
Date Published: 2008-01-09
Relevant URL: http://www.securityfocus.com/bid/27198
Summary:
The xine-lib library is prone to a remote heap-based buffer-overflow vuln=
erability. This issue occurs because the application fails to perform ade=
quate boundary-checks on user-supplied data.=20

An attacker can exploit this issue to execute arbitrary code with the pri=
vileges of the user running the affected application. Failed exploit atte=
mpts will result in a denial-of-service condition.
=20
 This issue affects xine-lib 1.1.9 and prior.

8. Xen DR7 and CR4 Registers Multiple Local Denial of Service Vulnerabili=
ties
BugTraq ID: 27219
Remote: No
Date Published: 2008-01-10
Relevant URL: http://www.securityfocus.com/bid/27219
Summary:
Xen is prone to multiple local denial-of-service vulnerabilities.=20

An attacker can exploit these issues to crash the hypervisor, triggering =
denial-of-service conditions for all hosted virtual machines.

III. LINUX FOCUS LIST SUMMARY
---------------------------------
IV.  UNSUBSCRIBE INSTRUCTIONS
-----------------------------
To unsubscribe send an e-mail message to linux-secnews-unsubscribe@securi=
tyfocus.com from the subscribed address. The contents of the subject or m=
essage body do not matter. You will receive a confirmation request messag=
e to which you will have to answer. Alternatively you can also visit http=
://www.securityfocus.com/newsletters and unsubscribe via the website.=20

If your email address has changed email [email protected] and a=
sk to be manually removed.

V.   SPONSOR INFORMATION
------------------------
This issue is Sponsored by: Black Hat DC

Attend Black Hat DC, February 18-21, the Washington, DC version of the wo=
rld's premier technical event for ICT security experts. Featuring hands-o=
n training courses and Briefings presentations with lots of new content-i=
ncluding a focus on wireless security and offensive attack analysis.  Net=
work with 400+ delegates and review products from leading vendors in a re=
laxed setting, including Diamond sponsor Microsoft.=20
www.blackhat.com