Computer Security
[EN] securityvulns.ru
no-pyccku




30.06.2003
Detailed
 Abyss Webserver multiple bugs
document Buffer overflow, HTTP reply spoofing.
 gtksee buffer overflow
document Hep overflow on PNG files viewing.
 Imagemagic symlink problem
document Unsafe temporary files handling.
 Mantis weak permisions
   
  


28.06.2003
Detailed
 WMVare symlink problem
   
 wzdftpd DoS
updated since 28.06.2003
document DoS он PORT or USER command with empty argument.
 Opete shell chatacters bug
document Shell characters are not stripped on external program invocation.
 ypserv DoS
document Server awaits response from the client without processing new reqests.
 CGI bugs
updated since 09.06.2003
   
  


27.06.2003
Detailed
 linux execve() unauthorized executable file access
document During new application invocation through execve() there is a race condition than parent application can access new discriptor for executable file.
  


26.06.2003
Detailed
6!Bahamut IRCd format string bug
document Format string bug during ident check.
6!Microsoft Windows Media services buffer overflow
document Buffer overflow on oversized POST request.
 FTP/X buffer overflow
document Buffer overflow on parsing server reply.
 MRV Optiswitch unauthorized access, unconfirmed
document It's possible to bypass username/password check.
 Microsoft Media Player Media Library unauthorized access
document ActiveX element can access medial library.
  


25.06.2003
Detailed
6!Alt-N WebAdmin buffer overflow
document Buffer overflow in username.
 Sun JMF unuathorized java applet memory access
document Java applet can access system memory.
 Sharp Zaurus unauthorized access
document While placed in docking station, SAMBA is started and disk can be accessed without restrictions via any network interface.
 Multiple XFree86 bugs
document New version of XFree86 contains few security bugfixes.
  


24.06.2003
Detailed
 iWeb directory traversal
document Directory traversal with escaped characters.
 Armida Databased Web Server buffer overflow
document Buffer overflow on oversized URI.
  


23.06.2003
Detailed
 Compaq Web Based Managment multiple bugs
updated since 08.11.2000
document Access to critical files, crossite scripting, etc.
  


21.06.2003
Detailed
8!Multiple bugs in TracerouteNG
updated since 28.11.2002
document Buffer overflows, integer array index overflows.
6!Multiple gnuts bugs
document Multiple buffer overflows in different components.
6!mhftpd DoS
document names for logged in users are stored in shared memory segment.
6!SurfControl Web Filter directory traversal
document Directory traversal in web interface (TCP/8888).
6!Linux-PAM privelege escalation
document It's possible to spoof user's group by spoofing terminal device.
 Retrospect Client weak permissions
document Weak permissions for /Library/StartupItems/RetroClient directory.
 Multiple mailtraq bugs
document Directory traversal, passwords decryption, format string bugs, crossite scripting, etc.
 Avaya Cajun DoS
document Negative number sent to TCP/4000 of the gateway causes it to crash.
 portmon unauthorized access
document It's possible to read any file by specifing it instead of configuration.
 Kerio Mail Server multiple bugs
document Multiple buffer overflows in WebMail interface. Crossite scripting.
 eldav symbolic links problem
document Invalid handling of temporary files.
 qpopper user existance information leak
document During USER/PASS authentication behaviour for invalid username and password is different.
 Dune buffer overflow
document Buffer overflow on request to user's web home with loversized name.
 CGI bugs
   
 Progress multiple bugs
updated since 05.04.2003
document It's possible to read first line from any file with PROSTARTUP variable. Buffer overflow on DLC variable.
  


18.06.2003
Detailed
 jboss .jsp source code leakage
updated since 02.06.2003
document By adding %00 то URL it's possible to obtain source code of .jsp page.
  


14.06.2003
Detailed
 Mikmod buffer overflow
document Buffer overflow then reading article with oversized attachment filename.
 typespeed buffer overflow
document Buffer overflow during network packet parsing.
 Cistron RADIUS buffer overflow
document Buffer overflow on NAS-Port above 2^31.
 lyskom-server DoS
   
 ike-scan format string bug
document Format string bug during command line processing.
  


13.06.2003
Detailed
 SMC Networks' Barricade Wireless Cable/DSL Broadband Router DoS
document Invalid PPTP packet causes router to crash.
 AIX utilities multiple bugs
document Buffer overflows in errpt -T option parsing, lsmcode environment parsing. Symbolic link bug in diagrpt.
 FakeBO format satring bug
document Format string bug during syslog() call with remote host name.
  


10.06.2003
Detailed
8!HP-UX multiple bugs
document Multiple bugs including remote overflow in rpc.yppasswdd.
 NucaWeb Server directory tracersal
document Directory traversal with ..
 Nokia GGSN DoS
document IP packet with invalid options causes device to crash.
 Linux ICMP information leak
document Because of invalid size calculation for SMTP packet with error code, it contains data from memory.
  


09.06.2003
Detailed
7!Multiple Internet Explorer bugs
updated since 05.06.2003
document New cumulativ update fixes buffer overflow and code execution.
6!SpeakFreely multiple bugs
document Multiple buffer overflows
6!mail buffer overflow
updated since 03.06.2003
document Buffer overflow on parsing Cc: header in message.
6!Multiple bugs in Apache
updated since 29.05.2003
document Bugs causing remote DoS and under some specific conditions to code execution.
6!Переполнение буфера в eterm (buffer overflow)
updated since 14.01.2002
   
 Buffer overflow in zblast
document Local overflow gives egid games.
 Multiple bugs in FTP clients
document Bugs during parsing FTP server data.
 xaos privilege escalation
document Program is installed as suid root.
 Novell Netware HTTPSTK DoS
document Invelid processing for Keep-Alive packet.
 Novell iChain buffer overflow
   
 gzip znew symbolic links problem
document Unsafe temporary files creation.
 cups DoS
document DoS on incomplete header.
 Mini HTTP Server buffer overflow
document Buffer overflow on oversized URL.
 WWW&FTP Server directory traversal
document Directory traversal with /../
  


06.06.2003
Detailed
6!Solaris syslogd buffer overflow
document Buffer overflow on files larger than 1024 bytes.
 AdSubtract Proxy protection bypass
document Any host with 127.0.0.1 in PTR record can bypass any ACL limitations.
 HP-UX ftpd REST bug
document Because of a bug in REST processing value given is treated as a memory address. It makes it possible to read any memory block.
 IP address limitation protection bypass in OpenSSH
document Only reverse resolution is checked, it allows to spoof record in reverse zone.
 CGI bugs
updated since 02.06.2003
   
  


05.06.2003
Detailed
6!kon2 buffer overflow
document Buffer overflow in /usr/bin/kon on oversized -Coding parameter.
 man format string bug
document Format string bug during processing internationalization data from catalog file.
 atftpd buffer overflow
document Buffer overflow on uploadnign file with oversized name.
 Buffer overflow in ArgoSoft FTP
updated since 05.06.2003
document Buffer overflow in all commands.
 CA Unicenter password recovery
document It's possible to recover original password.
  


04.06.2003
Detailed
 IRCXPro multiple bugs
document Passwords are stored in cleartext, remote control is enabled by default with default password.
 Pablo FTP Service multiple bugs
document Anonymous user has full disk access by default. Passwords are stred in cleartext.
  


03.06.2003
Detailed
7!Microsoft Internet Information Services multiple bugs
updated since 29.05.2003
document Windows Media Services DoS, Crossite scripting, local buffer overflows, DoS through WebDAV.
6!Multiple Pi3Web bugs
updated since 15.01.2002
document Buffer overflow and DoS conditions.
 Crob FTP server Fotmat string bug
document Format string bug in processing USER command.
  


02.06.2003
Detailed
8!Microsoft IIS WebDav buffer overflow
updated since 18.03.2003
document Buffer overflow in path conversion routine.
 Desktop Orbiter memory leak
document On every connection to TCP/51054 memory is allocated and never released back to system.
  

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru