Computer Security
[EN] securityvulns.ru
no-pyccku




31.07.2002
Detailed
10!Buffer overflows in OpenSSL
document 4 different buffer overflows.
6!perl getpwuid problem
document Getpwuid call doesn't clode /etc/shadow, it leaves the possibility to access file descriptor after privelege are dropped.
6!Privelege escalation in util-linux chfn
document Unchecked race conditions under file decriptors leaves ability to modify /etc/passwd.
6!Buffer overflow in IPSwitch IMail
updated since 21.05.2002
document Buffer overflow in LDAP and webmail subsystem.
6!Microsoft Mediaplayer ediaplayer .ASX/.NSC/.ASF buffer overflow, .WMS code execution
updated since 15.11.2000
document Oversized tag in .asx file causes buffer overflows. Skins allow code execution on client side with .WMS files.
 Symbolic link problem in pppd
document It's possible to change file permisions via symbolic link by using it as a tty device.
 Buffer overflow in fake ident
document Off-by-one buffer overflow
 Directory content leakage in Abyss
document Using URL with number of /// it's possible to obtain directory listing.
 mm temporary files handling problems
document User with Apache web server priveleges can obtain root access.
 Format string bug in hylafax
updated since 13.04.2001
document Format string bug gives euid uucp
 Protection bypass in adobe eBook
updated since 21.07.2002
document It's possible to bypass some protection working with book.
  


29.07.2002
Detailed
6!Multiple bugs in different hardware
   
 Microsoft Internet Explorer cash path leakage via XML
document It's possible to obtain path of loaded document by using XML exception handlers.
  


26.07.2002
Detailed
7!Buffer overflow in Novell GroupWise
updated since 26.07.2002
document Buffer overflow in RCPT SMTP command.
6!Multiple bugs in JanaServer
updated since 22.07.2002
document Multiple vulnerabilities including buffer overflows.
 Unauthorized access to confixx
document Server may be accessed via default account mysqlshell-user.
 CGI bugs
   
 Kazaa DoS
updated since 24.02.2002
document Large number of messages or message of large size causes DoS
  


25.07.2002
Detailed
9!Buffer overflow in Microsoft Exchange
document Buffer overflow on EHELO reply parsing.
7!Buffer overflow in codeblue.
updated since 18.02.2002
document Buffer overflows on SMTP response parsing.
6!Directory traversal in Cobalt Qube Admin
   
6!Buffer overflow in Pegasus Mail
document Buffer overflow on large message headers.
6!Protection bypass in Microsoft Metadirectory Services
document It's possible to obtain LDAP access.
 Crossite scripting in Mailman
updated since 29.11.2001
   
  


24.07.2002
Detailed
6!Code execution via Eudora
document Using META REFRESH it's possible to launch mhtml file.
 Weak encryption in VNC
document Duplicated challenges are generated during challenge-response authentication.
 pine DoS
document Empty boundary field causes pine to crash.
 CPU exhaustion in ICQ
document Large number of smiles in messages cause CPU exhaustion.
 Cookie protection bypass in Mozilla
document It's possible to obtain cookie by spoofing valid hostname in javascript: URL. For example f.location = "javascript://www.google.com/\n"+ "'<body onload=alert(document.cookie)>'";
 DoS against Windows and other systems
updated since 20.05.2000
document A number of fragmented packet cause host to freeze during the attack.
  


23.07.2002
Detailed
 Buffer overflow in VanDyke SecureCRT
document Buffer overflow in ssh client code.
 Buffer overflow in Mailmax
document Buffer overflow in USER command.
 Directory traversal in Pablo's FTP server
   
  


22.07.2002
Detailed
 Pyramid BenHur Firewall protection bypass
document By using TCP/20 as a source port it's possible to bypass firewall protection.
 Directory traversal in Aquonics File Manager
   
  


19.07.2002
Detailed
 Buffer overflow in WWW Offline Explorer
document Buffer overflow on negative Content-Length.
 CGI bugs
updated since 12.06.2002
   
 File locking DoS in üãäåøçäó ãåøäøåøóû
updated since 25.05.2002
document It's possible to cause DoS by putting locks to required files.
 Information leak in Oracle Reports Server
document It's possible to obtain system data.
 Protection bypass in linux
document setgid() call doesn't change saved gid.
  


18.07.2002
Detailed
 Crossite scripting in Macromedia Sitespring
document Crossite scripting via 500error.jsp
 Multiple bugs in Python
document Input validation problems in pickle module.
 Multiple problems in Jigsaw
document DOS-device DoS, path disclosure.
 CGI bugs
updated since 15.07.2002
   
 Multiple bugs in Resin
updated since 18.06.2002
document Directory traversal in demo JSP-pages, DoS.
  


15.07.2002
Detailed
6!Buffer overflows in IBM Tivoli
document Multiple buffer overflows.
  


13.07.2002
Detailed
6!Buffer overflow in MFC ISAPI
document Buffer overflow on HTTP request parsing.
6!RealONE Player Gold / RealJukebox2 multiple bugs
document Buffer overflow and local zone scripting during skin file processing.
 FreeBSD ktrace problem
document It's possible to obtain sensitive data from suid process's memory after dropping privileges.
 Different software bugs
   
 CGI bugs
updated since 11.07.2002
   
 Mail relaying via IIS SMTP service
document Unauthorized mail relayin then using speciall address format.
  


12.07.2002
Detailed
 Multiple bugs in popcorn
document Buffer overflows, DoS, etc.
  


11.07.2002
Detailed
6!Buffer overflow in PGP Outlook Encryption Plug-in
document heap overflow on message decoding.
 Sharp Zaurus multiple bugs
document Remote filesystem access, weak pseudo-random numbers generation.
 Crossite scripting in Microsoft Internet Explorer
document It's possible to get full access to OBJECT's elements.
 CGI bugs
updated since 17.06.2002
   
  


10.07.2002
Detailed
7!Buffer overflow in iPlanet Web Server
updated since 09.07.2002
document Buffer overflow and directory traversal in NS-rel-doc-name header if search capabilities are turned on.
 Unreal3.2-rus.b ircd DoS against users
document It's possible to kick any user by selecting nickname different in 1 cyrillic character.
 Multiple bugs in icecast.
updated since 27.06.2001
document It's possible to cause server's DoS and access mp3 files in any directory.
  


09.07.2002
Detailed
 Watchguard Firebox DoS
document Specially crafted data sent to TCP/4110 causes Dynamic VPN Configuration Protocol service to crash.
 Directory content leakage in KF Web Server
document Invalid processing of %00 in URLs.
  


08.07.2002
Detailed
 Connection flood DoS against BEA Weblogic
document If Performance Pack installed server crashes on connection flood .
 MacOS X autoupdate weak protection
document Digital signature is not checked during update process.
 artswrapper format string bug
document Format string bug in command line parsing.
 WinAmp autoupdate feature buffer overflow
document Buffer overflow during www.winamp.com response parsing.
  


05.07.2002
Detailed
 Worldspan DoS
document Invalid request causes server to hang.
 Format string bug in nn
document Format string bug in server replyes printing.
  


04.07.2002
Detailed
6!Directory traversal in Argosoft Mail Server Plus/Pro
document Webmail companent directory traversal.
6!Buffer overflows and multiple bugs in squid
updated since 21.02.2002
document Buffer overflow on ftp:// URLs, memory leaks, etc.
 Traffic amplifying via Unreal Tournament
document In reply to single UDP packet server will send multiple UDP packet with payload.
 Weak encryption in SunPCi II VNC
document Password is DES encoded with random key generated by server and moved over the wire.
 Multiple buffer overflows in Microsoft Commerce Server
updated since 27.06.2002
document Buffer overflows in Profile Service
  


03.07.2002
Detailed
7!Root directory access in Cisco Secure ACS
document By adding additional slah to URL after hostname it's possible to address root folder.
 Inktomi Traffic Server buffer overflow
document traffic_manager buffer overflow during command line parsing.
 CGI bugs
updated since 01.07.2002
   
 Multiple bugs in OpenSSH ssh-keysign
document Vulnerable to Kocher timing analysis attack, some programming errors.
 Directory content leakage in CommunigatePro
document By adding . or .. to the path it's possible to obtain directory listing.
  


02.07.2002
Detailed
 Sitespring Server DoS
document Sending predefined byte sequence to TCP/2500 causes database engine to crash.
 Source code leakage in JRun
document Adding some sequences to request it's possible to obtain JSP source code.
 OmniHTTPd buffer overflow
updated since 16.05.2001
document Buffer overflow on long POST request, on long HTTP version.
 Buffer overflows in AnalogX Proxy
updated since 26.07.2000
document Multiple buffer overflows in different protocols
  


01.07.2002
Detailed
 Shell metacharacters in Simple WAIS 1.11
document '|' is not commented during external program execution.
 2fax buffer overflow
document Buffer overflow in -bpcx command line option.
  

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Ðåéòèíã@Mail.ru