stdin
By Subject
269 messages sorted by:
[ author ]
[ date ]
[ thread ]
Starting: Tue Jun 01 2010 - 17:46:28 EEST
Ending: Wed Jun 30 2010 - 23:28:39 EEST
- [ GLSA 201006-01 ] FreeType 1: User-assisted execution of arbitrary code
- [ GLSA 201006-02 ] CamlImages: User-assisted execution of arbitrary code
- [ GLSA 201006-03 ] ImageMagick: User-assisted execution of arbitrary code
- [ GLSA 201006-04 ] xine-lib: User-assisted execution of arbitrary code
- [ GLSA 201006-05 ] Wireshark: Multiple vulnerabilities
- [ GLSA 201006-06 ] Transmission: Multiple vulnerabilities
- [ GLSA 201006-07 ] SILC: Multiple vulnerabilities
- [ GLSA 201006-08 ] nano: Multiple vulnerabilities
- [ GLSA 201006-09 ] sudo: Privilege escalation
- [ GLSA 201006-10 ] multipath-tools: World-writeable socket
- [ GLSA 201006-11 ] BIND: Multiple vulnerabilities
- [ GLSA 201006-12 ] Fetchmail: Multiple vulnerabilities
- [ GLSA 201006-13 ] Smarty: Multiple vulnerabilities
- [ GLSA 201006-14 ] Newt: User-assisted execution of arbitrary code
- [ GLSA 201006-15 ] XEmacs: User-assisted execution of arbitrary code
- [ GLSA 201006-16 ] GD: User-assisted execution of arbitrary code
- [ GLSA 201006-17 ] lighttpd: Denial of Service
- [ GLSA 201006-18 ] Oracle JRE/JDK: Multiple vulnerabilities
- [ GLSA 201006-19 ] Bugzilla: Multiple vulnerabilities
- [ GLSA 201006-20 ] Asterisk: Multiple vulnerabilities
- [ GLSA 201006-21 ] UnrealIRCd: Multiple vulnerabilities
- [ MDVSA-2010:111 ] glibc
- [ MDVSA-2010:113 ] wireshark
- [ MDVSA-2010:114 ] dhcp
- [ MDVSA-2010:115 ] perl
- [ MDVSA-2010:116 ] perl
- [ MDVSA-2010:117 ] cacti
- [ MDVSA-2010:118 ] sudo
- [ MDVSA-2010:119 ] samba
- [ MDVSA-2010:120 ] squirrelmail
- [ MDVSA-2010:121 ] pango
- [ MDVSA-2010:122 ] fastjar
- [ MDVSA-2010:123 ] libneon0.27
- [ MDVSA-2010:124 ] pulseaudio
- [ MDVSA-2010:125 ] firefox
- [ MDVSA-2010:126 ] mozilla-thunderbird
- [0day] Microsoft mshtml.dll CTimeoutEventList::InsertIntoTimeoutList memory leak
- [20100501] - Core - Joomla! Multiple XSS Vulnerabilities in Back End Administrative Module Core Components
- [advisory] httpd Timeout detection flaw (mod_proxy_http) CVE-2010-2068
- [Bkis-02-2010] Multiple Vulnerabilities in CMS Made Simple - Bkis
- [CORE-2010-0415] SQL Injection in CubeCart PHP Free & Commercial Shopping Cart Application
- [Full-disclosure] Microsoft Help Files (.CHM): 'Locked File' Feature Bypass
- [Full-disclosure] PuTTY private key passphrase stealing attack
- [MajorSecurity SA-068]Anantasoft Gazelle CMS - change admin password via Cross-site Request Forgery
- [MajorSecurity SA-069]Invision Power Board - stored Cross site Scripting
- [MajorSecurity SA-070]Plume CMS - change Admin Password via Cross-site Request Forgery
- [MajorSecurity SA-071]phpFaber CMS - Multiple stored Cross-site Scripting issues
- [MajorSecurity SA-073]Subdreamer CMS - SQL injection vulnerability
- [MajorSecurity SA-074]CMS RedAks 2.0 - Multiple Cross-site Scripting issues
- [MajorSecurity SA-075]CMS RedAks 2.0 - SQL injection vulnerability
- [Onapsis Security Advisory 2010-005] SAP J2EE Telnet Administration Security Check Bypass
- [oss-security] [oCERT-2010-001] multiple http client unexpected download filename vulnerability
- [scip_Advisory 4142] Skype Client for Mac Chat Unicode Denial of Service
- [security bulletin] HPSBMA02439 SSRT080082 rev.2 - HP OpenView SNMP Emanate Master Agent Running on HP-UX, Linux, Solaris, and Windows, Remote Unauthorized Access
- [security bulletin] HPSBMA02537 SSRT010027 rev.1 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
- [security bulletin] HPSBMA02537 SSRT010027 rev.2 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
- [security bulletin] HPSBMA02538 SSRT100136 rev.1 - HP ServiceCenter Running on AIX, HP-UX, Linux, Solaris, and Windows, Remote Cross Site Scripting (XSS)
- [security bulletin] HPSBOV02540 SSRT090249 rev.1 - HP SSL for OpenVMS, Remote Unauthorized Data Injection, Denial of Service(Dos)
- [security bulletin] HPSBPI02532 SSRT100111 rev.2 - HP MFP Digital Sending Software Running on Windows, Local Unauthorized Access
- [security bulletin] HPSBST02536 SSRT100057 rev.1 - HP StorageWorks Storage Mirroring, Remote Unauthorized Access
- [security bulletin] HPSBUX02451 SSRT090137 rev.3 - HP-UX Running BIND, Remote Denial of Service (DoS)
- [security bulletin] HPSBUX02524 SSRT100089 rev.1 - HP-UX Running Java, Remote Execution of Arbitrary Code, Disclosure of Information, and Other Vulnerabilities
- [security bulletin] HPSBUX02531 SSRT100108 rev.1 - HP-UX Running Apache-based Web Server, Remote Denial of Service (DoS), Unauthorized Access
- [security bulletin] HPSBUX02541 SSRT100145 rev.1 - HP-UX Running Tomcat Servlet Engine, Remote Increase in Privilege, Arbitrary File
- [security bulletin] HPSBUX02543 SSRT100152 rev.1 - HP-UX Running Apache with PHP, Remote Denial of Service (DoS), Unauthorized Access,
- [security bulletin] HPSBUX02544 SSRT100107 rev.1 - HP-UX Running Kerberos, Remote Denial of Service (DoS), Execution of Arbitrary Code
- [SECURITY] [DSA 2054-1] New bind9 packages fix cache poisoning
- [SECURITY] [DSA 2054-2] New bind9 packages fix cache poisoning
- [SECURITY] [DSA 2055-1] New OpenOffice.org packages fix arbitrary code execution
- [SECURITY] [DSA 2056-1] New zonecheck packages fix cross-site scripting
- [SECURITY] [DSA 2057-1] New mysql-dfsg-5.0 packages fix several vulnerabilities
- [SECURITY] [DSA 2058-1] New glibc packages fix several vulnerabilities
- [SECURITY] [DSA 2059-1] New pcsc-lite packages fix privilege escalation
- [SECURITY] [DSA 2060-1] New cacti packages fix SQL injection
- [SECURITY] [DSA 2061-1] New samba packages fix arbitrary code execution
- [SECURITY] [DSA 2062-1] New sudo packages fix environment sanitization bypass vulnerability
- [SECURITY] [DSA 2063-1] New pmount packages fix denial of service
- [SECURITY] [DSA 2064-1] New xulrunner packages fix several vulnerabilities
- [SECURITY] [DSA 2065-1] New kvirc packages fix several vulnerabilities
- [Suspected Spam][USN-946-1] Net-SNMP vulnerability
- [Suspected Spam][USN-947-2] Linux kernel regression
- [Suspected Spam]Vulnerabilities in Cimy Counter for WordPress
- [SWRX-2010-001] Cisco ASA HTTP Response Splitting Vulnerability
- [USN-927-4] nss vulnerability
- [USN-927-5] nspr update
- [USN-930-1] Firefox and Xulrunner vulnerabilities
- [USN-930-2] apturl, Epiphany, gecko-sharp, gnome-python-extras, liferea, rhythmbox, totem, ubufox, yelp update
- [USN-930-3] Firefox regression
- [USN-948-1] GnuTLS vulnerability
- [USN-950-1] MySQL vulnerabilities
- [USN-951-1] Samba vulnerability
- [USN-952-1] CUPS vulnerabilities
- [USN-953-1] fastjar vulnerability
- [USN-954-1] tiff vulnerabilities
- [USN-955-1] OPIE vulnerability
- [USN-955-2] libpam-opie vulnerability
- Apache Axis Session Fixation Vulnerability
- Applicure dotDefender 4.0 administrative interface cross site scripting
- ArpON (Arp handler inspectiON) 2.0 released!
- Awcm Cms Local File Inclusion Vulnerability
- Blue Arc Group - IgnitionSuite CMS WebDMailer unsubscribe issue
- CA20100603-01: Security Notice for CA ARCserve Backup
- CA20100608-01: Security Notice for CA PSFormX and WebScan ActiveX Controls
- Cherokee Web Server 0.5.3 Multiple Vulnerabilities
- Cisco Security Advisory: Cisco Application Extension Platform Privilege Escalation Vulnerability
- Cisco Security Advisory: Vulnerabilities in Cisco Unified Contact Center Express
- Core FTP mini-sftp-server Several DoS and Directory Traversal Vulnerabilities
- Core FTP Server(SFTP module) 'open' and 'stat' Commands Remote Denial of Service Vulnerability
- CORE-2010-0316 - Novell iManager Multiple Vulnerabilities
- CORE-2010-0514: XnView MBM Processing Heap Overflow
- CSRF in PHPWCMS 1.4.5
- CVE-2010-1622: Spring Framework execution of arbitrary code
- Denial-of-Service Vulnerability in IDA Pro
- Dlink Di-604 router authenticated user ping tool Xss and DoS
- DoS attacks on email clients via protocol handlers
- DoS vulnerabilities in Firefox, Internet Explorer, Chrome and Opera
- DoS vulnerabilities in Firefox, Internet Explorer, Chrome, Opera and other browsers
- DoS vulnerability in Internet Explorer
- eFront Multiple Parameter Cross Site Scripting Vulnerabilities
- Extended deadline, Call for Papers EC2ND 2010
- Ghostscript 8.64 executes random code at startup
- iDefense Security Advisory 06.07.10: Multiple Vendor WebKit HTML Caption Use After Free Vulnerability
- iDefense Security Advisory 06.10.10: Adobe Flash Player Out Of Bounds Memory Indexing Vulnerability
- iDefense Security Advisory 06.10.10: Adobe Flash Player Use-After-Free Vulnerability
- iDefense Security Advisory 06.16.10: Samba 3.3.12 Memory Corruption Vulnerability
- iDefense Security Advisory 06.21.10: Multiple Vendor LibTIFF 3.9.2 Stack Buffer Overflow Vulnerability
- IS-2010-002 - Linksys WAP54Gv3 Remote Debug Root Shell
- IS-2010-003 - Linksys WAP54Gv3 debug.cgi Cross-Site Scripting
- IS-2010-004 - D-Link DAP-1160 Unauthenticated Remote Configuration
- IS-2010-005 - D-Link DAP-1160 Authentication Bypass
- London DEFCON June meet - DC4420 - Wed 30th June 2010
- McAfee UTM Firewall Help Reflected Cross-Site Scripting
- Microsoft Help Files (.CHM): 'Locked File' Feature Bypass
- Microsoft Windows Help Centre Handles Malformed Escape Sequences Incorrectly
- Multiple vulnerabilities in Exim
- Nakid CMS (fckeditor) Remote Arbitrary File Upload Exploit
- New IETF Internet-Drafts on TCP timestamps
- Nginx 0.8.35 Space Character Remote Source Disclosure
- NSOADV-2010-008: AnNoText Third-Party ActiveX Control Buffer Overflow
- NSOADV-2010-009: AnNoText Third-Party ActiveX Control file overwrite vulnerability
- Nuance OmniPage 16 Professional installs multiple vulnerable Microsoft runtime libraries
- Onapsis Research Labs: Onapsis Bizploit - The opensource ERP Penetration Testing framework
- Paessler - PRTG Traffic Grapher XSS
- PR09-17: Juniper Secure Access seriers (Juniper IVE) authenticated XSS & REDIRECTION
- PuTTY private key passphrase stealing attack
- Recon 2010 - Speaker list, new additional capacity for sold-out training, party details
- ref_fuzz and other fun bugs
- Remote Arbitrary Code Execution Vulnerability in UFO: Alien Invasion
- RSA Key Manager SQL injection Vulnerability ( CVE-2010-1904 )
- SAP's web module OLK SQL Injection vulnerability
- Secunia Research: Adobe Reader GIF Image Parsing Array-Indexing Vulnerability
- Secunia Research: Adobe Reader JPEG Uninitialised Memory Vulnerability
- Secunia Research: Creative Software AutoUpdate Engine 2 ActiveX Control Buffer Overflow
- Secunia Research: Joomla BookLibrary Component Four SQL Injection Vulnerabilities
- Secunia Research: TaskFreak "password" SQL Injection Vulnerability
- Secunia Research: TaskFreak "tznMessage" Cross-Site Scripting Vulnerability
- SFCB vulnerabilities
- SQL injection vulnerability in AneCMS
- SQL injection vulnerability in boastMachine
- SQL injection vulnerability in CuteSITE CMS
- SQL injection vulnerability in Ecomat CMS
- SQL injection vulnerability in Grafik CMS
- SQL injection vulnerability in MODx CMS
- SQL injection vulnerability in MODx CMS and Application Framework
- SQL injection vulnerability in TomatoCMS
- SQL injection vulnerability in WebDB
- Stored XSS vulnerability in AneCMS blog module
- Stored XSS vulnerability in synType CMS comment text field
- Sysax Multi Server "open", "unlink", "mkdir", "scp_get" Commands DoS Vulnerabilities
- TEHTRI-Security released 13 0days against web tools used by evil attackers
- TEHTRI-Security: Many 0days soon released at SyScan Singapore 2010
- The XCon2010 is coming
- TitanFTP Server Arbitrary File Disclosure
- TitanFTP Server COMB directory traversal
- tool: ref_fuzz (CVE-2010-1259 / MS10-035 and more)
- TPTI-10-03: Sophos Anti-Virus SAVOnAccessFilter Local Privilege Escalation Vulnerability
- Trend Micro Data Loss Prevention 5.2 Data Leakage
- TurboFTP Server Directory Traversal Vulnerability
- VMSA-2010-0010 ESX 3.5 third party update for Service Console kernel
- Vulnerabilities in Belavir for WordPress
- Vulnerabilities in eSitesBuilder
- Vulnerabilities in Firebook
- Vulnerabilities in Gigya Socialize for WordPress
- VUPEN Security Research - Adobe Acrobat and Reader "newclass" Memory Corruption Vulnerability (CVE-2010-1285)
- VUPEN Security Research - Adobe Acrobat and Reader "newfunction" Memory Corruption Vulnerability (CVE-2010-2168)
- VUPEN Security Research - Adobe Acrobat and Reader "pushstring" Memory Corruption Vulnerability (CVE-2010-2201)
- VUPEN Security Research - Adobe Acrobat and Reader #1023 Tag Buffer Overflow Vulnerability (CVE-2010-2212)
- VUPEN Security Research - Adobe Flash Player "newclass" Invalid Pointer Vulnerability (CVE-2010-2173)
- VUPEN Security Research - Adobe Flash Player "newfunction" Invalid Pointer Vulnerability (CVE-2010-2174)
- VUPEN Security Research - Adobe Flash Player GIF/JPEG Data Parsing Heap Overflow Vulnerabilities (CVE-2010-2167)
- VUPEN Security Research - Apple Safari WebKit HTML Button Use-after-free Vulnerability (CVE-2010-1392)
- VUPEN Security Research - Microsoft Office Excel EDG Heap Overflow Vulnerability (CVE-2010-1250)
- VUPEN Security Research - Microsoft Office Excel ExternName Buffer Overflow Vulnerability (CVE-2010-1249)
- VUPEN Security Research - Microsoft Office Excel HFPicture Buffer Overflow Vulnerability (CVE-2010-1248)
- VUPEN Security Research - Microsoft Office Excel OBJ Stack Overflow Vulnerability (CVE-2010-0822)
- VUPEN Security Research - Microsoft Office Excel RTD Heap Corruption Vulnerability (CVE-2010-1247)
- VUPEN Security Research - Microsoft Office Excel RTD Stack Overflow Vulnerability (CVE-2010-1246)
- VUPEN Security Research - Microsoft Office Excel SxView Memory Corruption Vulnerability (CVE-2010-1245)
- VUPEN Security Research - Microsoft Office Excel WOPT Heap Corruption Vulnerability (CVE-2010-0824)
- VUPEN Security Research - Microsoft Windows Kernel "GetDCEx()" Memory Corruption Vulnerability (CVE-2010-0484)
- Weborf DCA-00012 Vulnerability Report
- Winamp v5.571 malicious AVI file handling DoS Vulnerability
- Wing FTP Server - Cross Site Scripting Vulnerability
- Wing FTP Server PORT Command DoS Vulnerability
- XCon 2010 XFocus Information Security Conference Call for Paper
- XSRF (CSRF) in CuteSITE CMS
- XSS vulnerability in boastMachine
- XSS vulnerability in CuteSITE CMS
- XSS vulnerability in Ecomat CMS
- XSS vulnerability in ForumCMS
- XSS vulnerability in Grafik CMS
- XSS vulnerability in PortalApp
- XSS vulnerability in Scribe CMS
- XSS vulnerability in the search module of synType CMS
- ZDI-10-090: Novell ZENworks Configuration Management Preboot Service Remote Code Execution Vulnerability
- ZDI-10-091: Apple Webkit Attribute Child Removal Remote Code Execution Vulnerability
- ZDI-10-092: Apple Webkit Option Element ContentEditable Remote Code Execution Vulnerability
- ZDI-10-093: Apple Webkit CSS Charset Text Transformation Remote Code Execution Vulnerability
- ZDI-10-094: Apple Webkit SelectionController via Marquee Event Remote Code Execution Vulnerability
- ZDI-10-095: Apple Webkit DOCUMENT_POSITION_DISCONNECTED Attribute Remote Code Execution Vulnerability
- ZDI-10-096: Apple Webkit Recursive Use Element Remote Code Execution Vulnerability
- ZDI-10-097: Apple Webkit ContentEditable moveParagraphs Uninitialized Element Remote Code Execution Vulnerability
- ZDI-10-098: Apple Webkit First-Letter Pseudo-Element Style Remote Code Execution Vulnerability
- ZDI-10-099: Apple Webkit ProcessInstruction Target Error Message Insertion Remote Code Execution Vulnerability
- ZDI-10-100: Apple Webkit ConditionEventListener Remote Code Execution Vulnerability
- ZDI-10-101: Apple Webkit SVG RadialGradiant Run-in Remote Code Execution Vulnerability
- ZDI-10-102: Microsoft Internet Explorer Stylesheet Array Removal Remote Code Execution Vulnerability
- ZDI-10-103: Microsoft Office Excel DBQueryExt Record Unspecified ADO Object Remote Code Execution Vulnerability
- ZDI-10-104: Microsoft Office Excel SxView Record Parsing Remote Code Execution Vulnerability
- ZDI-10-105: Hewlett-Packard OpenView NNM ovwebsnmpsrv.exe Bad Option Remote Code Execution Vulnerability
- ZDI-10-106: Hewlett-Packard OpenView NNM ovutil.dll getProxiedStorageAddress Remote Code Execution Vulnerability
- ZDI-10-107: Multiple Sourcefire Products Static Web SSL Keys Vulnerability
- ZDI-10-108: HP OpenView NNM ovwebsnmpsrv.exe Command Line Argument Remote Code Execution Vulnerability
- ZDI-10-109: Adobe Flash Player Multiple Atom MP4 Parsing Remote Code Execution Vulnerability
- ZDI-10-110: Adobe Flash Player Multiple Tag JPEG Parsing Remote Code Execution Vulnerability
- ZDI-10-111: Adobe Flash Player LocalConnection Memory Corruption Remote Code Execution Vulnerability
- ZDI-10-112: Novell Access Manager Arbitrary File Upload Remote Code Execution Vulnerability
- ZDI-10-113: Mozilla Firefox XSLT Sort Remote Code Execution Vulnerability
- ZDI-10-114: Adobe Flash Player AVM2 getouterscope Opcode Remote Code Execution Vulnerability
- ZDI-10-115: Adobe Flash Player AVM newFrameState Integer Overfow Remote Code Execution Vulnerability
- ZDI-10-116: Adobe Reader CLOD Progressive Mesh Continuation Resolution Remote Code Execution Vulnerability
Last message date: Wed Jun 30 2010 - 23:28:39 EEST
Archived on: Wed Jun 30 2010 - 23:28:40 EEST
269 messages sorted by:
[ author ]
[ date ]
[ thread ]
This archive was generated by hypermail 2b28
: Wed Jun 30 2010 - 23:28:40 EEST