PDA

View Full Version : SecurityFocus Latest Exploits


Pages : 1 2 3 4 [5]

  1. Vuln: Adobe Acrobat and Reader Flash Content Parsing Remote Buffer Overflow Vulnerabi
  2. Vuln: Adobe Acrobat and Reader CVE-2010-2211 Remote Memory Corruption Vulnerability
  3. Vuln: ClamAV Security Bypass And Memory Corruption Vulnerabilities
  4. Vuln: ClamAV 'parseicon()' Denial Of Service Vulnerability
  5. Vuln: ClamAV 'cli_pdf()' PDF File Processing Denial Of Service Vulnerability
  6. Vuln: Unsniff Network Analyzer '.usnf' File Heap-Based Buffer Overflow Vulnerability
  7. Vuln: AIMP '.pls' File Remote Stack Buffer Overflow Vulnerability
  8. Vuln: Sorinara Soritong MP3 Player '.m3u' File Remote Stack Buffer Overflow Vulnerabi
  9. Vuln: Autonomy KeyView Filter Module Multiple Memory Corruption Vulnerabilities
  10. Vuln: RPM Package Update File Attribute Security Bypass Vulnerability
  11. Vuln: Zenphoto Multiple Cross Site Scripting and SQL Injection Vulnerabilities
  12. Bugtraq: [USN-983-1] Sudo vulnerability
  13. Bugtraq: Security problems in Zenphoto version 1.3
  14. Vuln: Todd Miller Sudo Runas Group Local Privilege Escalation Vulnerability
  15. Bugtraq: [TEHTRI-Security Training + 0days] "Hunting Web Attackers" at HITBSecConf
  16. Bugtraq: [ GLSA 201009-03 ] sudo: Privilege Escalation
  17. Bugtraq: Re: KeePass version 2.12
  18. Bugtraq: XSS in Horde Application Framework
  19. Vuln: Novell Netware FTP Server Multiple Commands Remote Buffer Overflow Vulnerabilit
  20. Vuln: DynPage 'dynpage_load.php' Local File Disclosure Vulnerability
  21. Vuln: Weborf HTTP 'modURL()' Function Directory Traversal Vulnerability
  22. Vuln: maildrop Group Permission Dropping Privilege Escalation Vulnerability
  23. Vuln: Quagga bgpd Null Pointer Deference Denial Of Service Vulnerability
  24. Vuln: Quagga bgpd Route-Refresh Message Stack Buffer Overflow Vulnerability
  25. Vuln: lvm2-cluster 'clvmd' Local Privilege Escalation Vulnerability
  26. Vuln: HP OpenView Network Node Manager 'execvp_nc()' Code Execution Vulnerability
  27. Vuln: Oracle MySQL Prior to 5.1.49 'JOIN' Statement Denial Of Service Vulnerability
  28. Vuln: Oracle MySQL 'HANDLER' interface Denial Of Service Vulnerability
  29. Vuln: Oracle MySQL Prior to 5.1.49 'DDL' Statements Denial Of Service Vulnerability
  30. Vuln: phpMyAdmin Multiple Cross Site Scripting Vulnerabilities
  31. Vuln: Python 'audioop' Module Integer Overflow Vulnerability
  32. Vuln: Python 'PySys_SetArgv' Remote Command Execution Vulnerability
  33. Vuln: Python 'audioop' Module Memory Corruption Vulnerability
  34. Vuln: SBLIM-SFCB Multiple Buffer Overflow Vulnerabilities
  35. Vuln: Virtual DJ '.m3u' File Remote Stack Buffer Overflow Vulnerability
  36. Vuln: Microsoft Windows MPEG Layer-3 Audio Decoder Buffer Overflow Vulnerability
  37. Vuln: Microsoft Windows Movie Maker and Producer '.mswmm' Buffer Overflow Vulnerabili
  38. Vuln: FreeType Stack Buffer Overflow and Memory Corruption Vulnerabilities
  39. Vuln: Icarus 'PGN' File Remote Stack Buffer Overflow Vulnerability
  40. Vuln: HP-UX Software Distributor Unspecified Local Privilege Escalation Vulnerability
  41. Vuln: Joomla! TPDugg Component 'id' Parameter SQL Injection Vulnerability
  42. Vuln: KSP '.m3u' File Buffer Overflow Vulnerability
  43. Bugtraq: Re: Re: IIS5.1 Directory Authentication Bypass by using ?:$I30:$Index_Alloca
  44. Vuln: Apache HTTP Server Multiple Remote Denial of Service Vulnerabilities
  45. Vuln: Apache 'mod_proxy_http' 2.2.9 for Unix Timeout Handling Information Disclosure
  46. Vuln: Linux Kernel XDR Implementation Local Buffer Overflow Vulnerability
  47. Bugtraq: VUPEN Security Research - Google Chrome Focus Processing Memory Corruption V
  48. Bugtraq: [SECURITY] [DSA-2102-1] New barnowl packages fix arbitrary code execution
  49. Bugtraq: [ MDVSA-2010:170 ] wget
  50. Bugtraq: [security bulletin] HPSBMA02572 SSRT100082 rev.1 - HP Operations Agent Runni
  51. Vuln: Trend Micro Internet Security Pro ActiveX Control Remote Code Execution Vulnera
  52. Vuln: Adobe Flash Player and AIR (CVE-2010-2214) Unspecified Memory Corruption Vulner
  53. Vuln: phpMyAdmin Debug Backtrace Cross Site Scripting Vulnerability
  54. Vuln: PDF-XChange Viewer 'wintab32.dll' DLL Loading Arbitrary Code Execution Vulnerab
  55. Bugtraq: {PRL} Novell Netware OpenSSH Remote Stack Overflow
  56. Bugtraq: Vulnerabilities in CMS WebManager-Pro
  57. Bugtraq: [ MDVSA-2010:169 ] mozilla-thunderbird
  58. Bugtraq: [USN-982-1] Wget vulnerability
  59. Vuln: Apple QuickTime FlashPix Encoded File 'NumberOfTiles' Remote Integer Overflow V
  60. Vuln: Microsoft Windows Media Encoder 9 DLL Loading Arbitrary Code Execution Vulnerab
  61. Vuln: PGP Desktop DLL Loading Arbitrary Code Execution Vulnerability
  62. Vuln: dBpowerAMP Audio Player M3U Buffer Overflow Vulnerability
  63. Vuln: WebKit 'font-face' and 'use' Elements Use-After-Free Remote Code Execution Vuln
  64. Vuln: WebKit Regular Expression Handling Remote Memory Corruption Vulnerability
  65. Vuln: WebKit JavaScript Array Signedness Error Remote Code Execution Vulnerability
  66. Vuln: WebKit 'use' Element Handling Remote Memory Corruption Vulnerability
  67. Vuln: Mozilla Firefox, Thunderbird, and SeaMonkey 'nsTreeSelection' Remote Code Execu
  68. Vuln: Fedora SSSD LDAP Unauthenticated Bind Security Bypass Vulnerability
  69. Vuln: Red Hat lvm2-cluster 'clvmd' Local Privilege Escalation Vulnerability
  70. Vuln: Novell Netware SSH Remote Buffer Overflow Vulnerability
  71. Vuln: Softbiz Jokes and Funny Pictures Script 'sbjoke_id' Parameter SQL Injection Vul
  72. Vuln: OpenSSL 'ssl3_get_key_exchange()' Use-After-Free Memory Corruption Vulnerabilit
  73. Bugtraq: Online Binary Planting Exposure Test
  74. Bugtraq: XSS vulnerability in ArtGK CMS forum
  75. Bugtraq: XSS vulnerability in Amiro.CMS FAQ
  76. Bugtraq: XSS vulnerability in Rumba CMS
  77. Bugtraq: VMSA-2010-0013 VMware ESX third party updates for Service Console
  78. Bugtraq: VMSA-2010-0013
  79. Bugtraq: [ MDVSA-2010:167 ] perl-libwww-perl
  80. Bugtraq: [SECURITY] [DSA 2101-1] New wireshark packages fix several vulnerabilities
  81. Bugtraq: ApPHP Calendar XSS - CSRF
  82. Bugtraq: KeePass version 2.12
  83. Bugtraq: ZDI-10-168: Apple QuickTime ActiveX _Marshaled_pUnk Remote Code Execution Vu
  84. Bugtraq: [ MDVSA-2010:166 ] libgdiplus
  85. Bugtraq: Tortoise SVN DLL Hijacking Vulnerability
  86. Bugtraq: [security bulletin] HPSBMA02571 SSRT100034 rev.1 - HP Insight Diagnostics On
  87. Bugtraq: [USN-981-1] libwww-perl vulnerability
  88. Bugtraq: [USN-980-1] bogofilter vulnerability
  89. Bugtraq: django in combination with mod wsgi on apache on default debian and ubuntu i
  90. Bugtraq: [security bulletin] HPSBMA01212 SSRT5998 rev.4 - HP System Management Homepa
  91. Bugtraq: [security bulletin] HPSBUX02552 SSRT100062 rev.1 - HP-UX running Software Di
  92. Bugtraq: [SECURITY] [DSA 2100-1] New openssl packages fix double free
  93. Bugtraq: Re: [Full-disclosure] QtWeb Browser version 3.3 build 043 Insecure DLL Hijac
  94. Bugtraq: [ MDVSA-2010:165 ] libHX
  95. Bugtraq: {Lostmon - Groups} Safari for windows Invalid SGV text style Webkit.dll DoS
  96. Bugtraq: R7-0036: FCKEditor.NET File Upload Code Execution
  97. Bugtraq: [0day] Apple QuickTime "_Marshaled_pUnk" backdoor param arbitrary code execu
  98. Bugtraq: [SECURITY] [DSA 2099-1] New OpenOffice.org packages fix arbitrary code execu
  99. Bugtraq: [ MDVSA-2010:164 ] phpmyadmin
  100. Bugtraq: [ MDVSA-2010:163 ] phpmyadmin
  101. Bugtraq: ekoparty Security Conference 2010 Announcements
  102. Bugtraq: EC2ND 2010, Call for Participation
  103. Bugtraq: [SECURITY] [DSA 2098-1] New typo3-src packages fix several vulnerabilities
  104. Bugtraq: [SECURITY] [DSA 2097-1] New phpmyadmin packages fix several vulnerabilities
  105. Bugtraq: wp-10-0001: Multiple Browser Wildcard Cerficate Validation Weakness
  106. Bugtraq: Flash Player 9 DLL Hijacking Exploit (schannel.dll)
  107. Bugtraq: [USN-979-1] okular vulnerability
  108. Bugtraq: [USN-974-2] Linux kernel regression
  109. Bugtraq: BugTracker.net 3.4.3 SQL Injection
  110. Bugtraq: ZDI-10-167: RealNetworks RealPlayer FLV Parsing Multiple Integer Overflow Vu
  111. Bugtraq: ZDI-10-166: RealNetworks RealPlayer Malformed IVR Object Index Code Executio
  112. Bugtraq: [HITB-Announce] HITB2010 SIGNINT Sessions
  113. Bugtraq: SQL injection vulnerability in CompuCMS
  114. Bugtraq: File Content Disclosure in TCMS
  115. Bugtraq: SQL injection vulnerability in TCMS
  116. Bugtraq: XSRF (CSRF) in Webmatic
  117. Bugtraq: XSS vulnerability in Auto CMS
  118. Bugtraq: XSS vulnerability in TCMS
  119. Bugtraq: SQL injection vulnerability in CompuCMS
  120. Bugtraq: XSS vulnerability in CompuCMS
  121. Bugtraq: XSS vulnerability in Webmatic
  122. Bugtraq: Apple CoreGraphics (Preview) Memory Corruption Vulnerability - CVE-2010-1801
  123. Bugtraq: Re: Web Tool Announcement: ismymailsecure.com
  124. Bugtraq: Adobe Premier Pro CS4 DLL Hijacking Exploit (ibfs32.dll)
  125. Bugtraq: Adobe On Location CS4 DLL Hijacking Exploit (ibfs32.dll)
  126. Bugtraq: Adobe InDesign CS4 DLL Hijacking Exploit (ibfs32.dll)
  127. Bugtraq: Adobe Illustrator CS4 DLL Hijacking Exploit (aires.dll)
  128. Bugtraq: ZDI-10-165: Trend Micro Internet Security Pro 2010 ActiveX extSetOwner Remot
  129. Bugtraq: Cisco Security Advisory: Cisco Unified Presence Denial of Service Vulnerabil
  130. Bugtraq: Cisco Security Advisory: Cisco Unified Communications Manager Denial of Serv
  131. Bugtraq: Adobe Device Central CS5 DLL Hijacking Exploit (qtcf.dll)
  132. Bugtraq: TeamViewer
  133. Bugtraq: DLL hijacking on Linux
  134. Bugtraq: iDefense Security Advisory 08.24.10: Adobe Shockwave Player Memory Corruptio
  135. Bugtraq: Nagios XI users.php SQL Injection
  136. Bugtraq: ZDI-10-161: Adobe Shockwave Director PAMI Chunk Remote Code Execution Vulner
  137. Bugtraq: ZDI-10-160: Adobe Shockwave Player Director File FFFFFF45 Record Processing
  138. Bugtraq: TPTI-10-15: Adobe Shockwave Director mmap Trusted Chunk Size Remote Code Exe
  139. Bugtraq: TPTI-10-14: Adobe Shockwave Director rcsL Chunk Pointer Offset Remote Code E
  140. Bugtraq: TPTI-10-11: Adobe Shockwave tSAC Chunk Pointer Offset Memory Corruption Remo
  141. Bugtraq: TPTI-10-10: Adobe Shockwave tSAC Chunk Invalid Seek Memory Corruption Remote
  142. Bugtraq: TPTI-10-09: Adobe Shockwave CSWV Chunk Memory Corruption Remote Code Executi
  143. Bugtraq: [SECURITY] [DSA 2096-1] New zope-ldapuserfolder packages fix authentication
  144. Bugtraq: t2â?²10 Challenge to be released 2010-08-28 10:00 EEST
  145. Bugtraq: WinAppDbg 1.4 is out!
  146. Bugtraq: London DEFCON - DC4420 - August meet - Wednesday 25th August 2010
  147. Bugtraq: [ MDVSA-2010:160 ] cacti
  148. Bugtraq: [security bulletin] HPSBST02536 SSRT100057 rev.3 - HP StorageWorks Storage M
  149. Bugtraq: [security bulletin] HPSBGN02569 SSRT100200 rev.1 - HP MagCloud iPad App, Rem
  150. Bugtraq: Re: Google Chrome: HTTP AUTH Dialog Spoofing through Realm Manipulation (Res
  151. Bugtraq: [ MDVSA-2010:159 ] gv
  152. Bugtraq: Secunia Research: Mono libgdiplus Image Processing Three Integer Overflows
  153. Bugtraq: [SECURITY] [DSA 2095-1] New lvm2 packages fix denial of service
  154. Bugtraq: [ MDVSA-2010:158 ] squirrelmail
  155. Bugtraq: Google Chrome: HTTP AUTH Dialog Spoofing through Realm Manipulation (Restate
  156. Bugtraq: [Bkis-04-2010] Multiple Vulnerabilities in OpenBlog
  157. Bugtraq: Directory Traversal in 3D FTP Client
  158. Vuln: SlideShowPro Director 'p.php' Directory Traversal Vulnerability
  159. Vuln: Adobe Flash Player and AIR (CVE-2010-2216) Unspecified Memory Corruption Vulner
  160. Vuln: Adobe Flash Player and AIR (CVE-2010-2213) Multiple Unspecified Memory Corrupti
  161. Vuln: Adobe Flash Player and AIR (CVE-2010-2215) Unspecified Clickjacking Vulnerabili
  162. Vuln: Adobe Flash Player and AIR ActionScript AVM1 ActionPush Memory Corruption Vulne
  163. Vuln: Sourcefabric Campsite Multiple Cross Site Scripting Vulnerabilities
  164. Bugtraq: Re: ACROS Security: Remote Binary Planting in Apple iTunes for Windows (ASPR
  165. Bugtraq: [security bulletin] HPSBMA02477 SSRT090177 rev.5 - HP OpenView Network Node
  166. Vuln: Freeciv Lua Runtime Environment Remote Command Execution Vulnerability
  167. Vuln: Mozilla Firefox Plugin Parameter Reference Remote Code Execution Vulnerability
  168. Vuln: Cacti 'rra_id' Parameter SQL Injection Vulnerability
  169. Vuln: Cacti 'export_item_id' Parameter SQL Injection Vulnerability
  170. Vuln: Cacti Multiple Cross Site Scripting and HTML Injection Vulnerabilities
  171. Vuln: Cacti Multiple Cross Site Scripting Vulnerabilities
  172. Vuln: Microsoft Word Record Parsing Length Field Remote Stack Buffer Overflow Vulnera
  173. Vuln: Tuniac '.m3u' File Version 100723 Buffer Overflow Vulnerability
  174. Vuln: Databay MAXcms Multiple File Include Vulnerabilities
  175. Vuln: Adobe Acrobat and Reader Font Parsing Remote Code Execution Vulnerability
  176. Vuln: CMS Made Simple 'modules/Printing/output.php' CMS Local File Include Vulnerabil
  177. Vuln: MediaCoder Remote Buffer Overflow Vulnerability
  178. Vuln: Adobe ColdFusion CVE-2010-2861 Directory Traversal Vulnerability
  179. Vuln: Microsoft Windows TCP/IP IPv6 Extension Header Remote Denial of Service Vulnera
  180. Bugtraq: Flock Browser 3.0.0.3989 Malformed Bookmark XSS and script insertion
  181. Bugtraq: [security bulletin] HPSBMA02424 SSRT080125 rev.3 - HP OpenView Network Node
  182. Bugtraq: [security bulletin] HPSBST02536 SSRT100057 rev.2 - HP StorageWorks Storage M
  183. Bugtraq: [SECURITY] [DSA 2093-1] New ghostscript packages fix several vulnerabilities
  184. Bugtraq: NSOADV-2010-005: SonicWALL E-Class SSL-VPN ActiveX Control format string ove
  185. Vuln: Ghostscript 'iscan.c' PDF Handling Remote Buffer Overflow Vulnerability
  186. Vuln: Ghostscript PostScript Infinite Recursion Remote Memory Corruption Vulnerabilit
  187. Vuln: FreeBSD mbuf Handling Local Privilege Escalation Vulnerability
  188. Vuln: SonicWALL E-Class SSL-VPN Format String Vulnerability
  189. Vuln: Open-Realty 'title' Parameter HTML Injection Vulnerability
  190. Vuln: Pico MP3 Player Multiple Remote Buffer Overflow Vulnerabilities
  191. Vuln: httpdx Multiple Remote Denial Of Service Vulnerabilities
  192. Vuln: Websense 'Via' HTTP Header Web Filtering Security Bypass Vulnerability
  193. Vuln: FoxMediaTools FoxPlayer '.m3u' File Buffer Overflow Vulnerability
  194. Vuln: Libpng 1-bit Interlaced Images Information Disclosure Vulnerability
  195. Vuln: Libpng 'png_decompress_chunk()' Function Denial of Service Vulnerability
  196. Vuln: libpng Memory Corruption and Memory Leak Vulnerabilities
  197. Vuln: OpenLDAP 'modrdn' Request Multiple Vulnerabilities
  198. Vuln: OpenLDAP X.509 Certificate NULL Character Certificate Validation Security Bypas
  199. Bugtraq: Better Security Through Sacrificing Maidens
  200. Bugtraq: Web Tool Announcement: ismymailsecure.com
  201. Bugtraq: ACROS Security: Remote Binary Planting in Apple iTunes for Windows (ASPR #20
  202. Vuln: Linux Kernel VM/VFS 'invalidatepage()' Local Denial of Service Vulnerability
  203. Bugtraq: Medium security hole in Rekonq web browser
  204. Bugtraq: Re: Geolocation spoofing and other UI woes
  205. Bugtraq: [SECURITY] [DSA 1919-2] New smarty packages fix regression
  206. Vuln: Smarty Template Engine 'function.math.php' Security Bypass Vulnerability
  207. Vuln: Smarty Template Engine 'Smarty_Compiler.class.ph p' Security Bypass Vulnerabili
  208. Vuln: PHP 'ibase_gen_id()' Function off-by-one Buffer Overflow Vulnerability
  209. Joomla Component OnGallery SQL Injection Vulnerability
  210. Vuln: LXR Cross Referencer Version Prior to 0.9.7 Multiple Cross Site Scripting Vulne
  211. Vuln: LXR Cross Referencer 'title' Parameter Cross Site Scripting Vulnerability
  212. Vuln: LXR Cross Referencer Multiple Cross Site Scripting Vulnerabilities
  213. Vuln: GnuPG 'GPGSM Tool' Certificate Importing Remote Code Execution Vulnerability
  214. Vuln: strongSwan IETF Attribute or Identification Parsing Multiple Remote Code Execut
  215. Vuln: KVIrc '\r' Carriage Return in DCC Handshake Remote Command Execution Vulnerabil
  216. Vuln: Ghostscript PostScript Identifier Remote Stack Buffer Overflow Vulnerability
  217. Bugtraq: [SECURITY] [DSA 2092-1] New lxr-cvs packages fix cross-site scripting
  218. Bugtraq: Geolocation spoofing and other UI woes
  219. Bugtraq: [USN-973-1] KOffice vulnerabilities
  220. Bugtraq: [USN-972-1] FreeType vulnerabilities