Entries Categorized as 'Exploits and Bugs'

New gaim packages fix denial of service

Date July 30, 2005

Debian Security Advisory DSA 769-1 security@debian.org
http://www.debian.org/security/ Martin [...]

UseBB Multiple Vulnerabilities

Date July 30, 2005

Advisory: UseBB Multiple Vulnerabilities
Application: UseBB 0.5.1
Severity: Multiple SQL injection and XSS vulnerabilities may
result in disclosure of administrators credentials.
Risk : High
Vendor Status: Vendor has released an updated version
[...]

IPv6 Crafted Packet Vulnerability

Date July 30, 2005

Contents
Summary
Affected Products
Details
Impact
Software Versions and Fixes
Obtaining Fixed Software
Workarounds
Exploitation and Public Announcements
Status of This Notice: INTERIM
Distribution
Revision History
Cisco Security Procedures
- ————————————————————————–
Summary
=======
Cisco Internetwork [...]

TIFF vulnerability

Date July 30, 2005

Ubuntu Security Notice USN-156-1 July 29, 2005
tiff vulnerability
https://bugzilla.ubuntu.com/show_bug.cgi?id=12008
A security issue affects the following Ubuntu releases:
Ubuntu 4.10 (Warty Warthog)
Ubuntu 5.04 (Hoary Hedgehog)
The following packages are affected:
libtiff4
The problem can be corrected by upgrading the affected package to
version 3.6.1-1.1ubuntu1.4 (for Ubuntu 4.10), or 3.6.1-5ubuntu0.2 (for
Ubuntu [...]

Mozilla Thunderbird: Multiple vulnerabilities

Date July 19, 2005

Gentoo Linux Security Advisory GLSA 200507-17
- – – – – – – – – – – – – – – – – – – – – – – – [...]

Solaris Runtime Linker – Exploit Detection

Date July 19, 2005

This is a demonstration of exploit detection using the Solaris implementation of C2 Auditing (BSM) to detect the system has been compromised. Of course , it helps to be logging locally as well to a secure central log server or protected media.
This was tested on an unpatched Solaris 10 Sparc system.
References:
http://www.securityfocus.com/bid/14074
http://sunsolve.sun.com/search/document.do”assetkey=1-26-101794-1
Sun Document ID: 101794
C2 (BSM) [...]