Computer Security
[EN] securityvulns.ru
no-pyccku




30.09.2003
Detailed
6!Half Life client format string bug
updated since 11.01.2003
document If adminmod installed using admin_psay command leads to format string bug.
 Multiple webfs bugs
document Directory traversal, buffer overflows.
  


29.09.2003
Detailed
8!Multiple bugs in different Irix utilities
updated since 25.04.2002
   
6!Buffer overflow in cfengine
document Stack overflow on ACL check.
 SMC2404WBR UDP flood DoS
document UDP flood on different ports causes router to hang.
 Freesweep buffer overflow
document Buffer overflow during HOME variable parsing.
 marbles buffer overflow
document Buffer overflow on HOME parsing.
  


26.09.2003
Detailed
 MPlayer buffer overflow
document Buffer overflow during ASX file parsing.
  


25.09.2003
Detailed
6!TCLHttpd multiple bugs
document Directory traversal, crosite scripting.
 NULLhttp multiple bugs
document DoS, crossite scripting.
 Gauntlet SQL gateway DoS
document Few sequential connects to SQL gateway causes firewall to crash.
 BSD arp DoS
document By sending spoofed arp-replies it's possible to cause memory starvation with arp table leading to system crash.
 Guardian Digital WebTool information leak
document ssh passphrase can be seen in log files.
 CGI bugs
updated since 22.09.2003
   
  


24.09.2003
Detailed
7!Microsoft BizTalk Server multiple bugs
updated since 03.05.2003
document SQL injection, buffer overflow in HTTP client code.
  


23.09.2003
Detailed
 Multiple OpenSSH PAM bugs
document Multiple vulnerabilities.
 Buffer overflow in mpg123
document Buffer overflow on HTTP server reply parsing.
  


22.09.2003
Detailed
6!Knox Arkeia buffer overflow
document Off-by-one buffer overflow.
 hztty buffer overflows
document Multiple buffer overflows.
 Midnight commander buffer overflow
document Uninitialized buffer data triggers buffer overflow during archive listing.
  


19.09.2003
Detailed
8!Unauthorized Solaris sadmind access
updated since 16.09.2003
document It's possible to bypass authentication process by sequence of specially crafted RPC calls.
6!Multiple IBM DB2 bugs
updated since 19.09.2003
document Format string bugs, buufer overflows.
6!OpenSSD memory corruption
updated since 16.09.2003
document Because of memory allocation problems it's possible to overwrite memory block with zeros.
 Multiple NetBSD bugs
document DoS, kernel memory reading.
 CGI bugs
updated since 16.09.2003
   
 *BSD ibcs2 information leak
updated since 12.08.2003
document statfs call with large argument length allows to read kernel memory content.
  


17.09.2003
Detailed
7!Buffer overflows on address parsing in sendmail
updated since 31.03.2003
document Buffer overflows because on signed/unsigned type conversion.
6!Weak KDM session cookie generation in KDE
document Weak cookies during authentication allow session hijacking.
  


16.09.2003
Detailed
6!IBM Rational Clearcase buffer overflow
document Buffer overflows in few executables.
6!SCO Internet Manager privilege escalation
document It's possible to spoof authentication data lockally for suid CGI application.
6!asterisk multiple bugs
updated since 08.09.2003
document Buffer overflow during SIP negotiation, SQL injection.
 Multiple Nokia Electronic Documentation bugs
document Crossite scripting, path disclosure, open proxy.
 ChatZilla DoS
document Large CPU consumption on oversized server requests.
 WideChapter buffer overflow
document Buffer overflow on oversized URL.
  


13.09.2003
Detailed
6!Buffer overflow in gtkhtml
document Few buffer overflows.
 CGI bugs
   
 sane-backends multiple bugs
document Multiple DoS conditions
 Buffer overflow in man
updated since 14.05.2001
document Buffer overflow on -S key, MANPL variable.
  


12.09.2003
Detailed
 4D Webstar buffer overflow
updated since 12.09.2003
document Buffer overflow on oversized FTP password.
  


11.09.2003
Detailed
6!Multiple pine bugs
document Buffer overflows, integer overflows.
 Gordano Messaging Suite multiple bugs
document DoS, information leakage.
 Unauthorized FTGate access
document It's possible to access administration interface without authentication.
 OpenBSD integer overflow
document integer overflow in semget() allows root to write kernel memory.
 MySQL buffer overflow
document Buffer overflow on processing users password table.
  


10.09.2003
Detailed
7!Multiple IRIX bugs
updated since 18.07.2003
document Buffer overflow in login (/usr/lib/iaf/scheme), multiple DNS server, NFS, cpr bugs.
  


09.09.2003
Detailed
10!Microsoft Internet Explorer multiple bugs
updated since 21.08.2003
document New rollaup fix released: crossite scripting, buffer overflow during <OBJECT> tag parsing, temporary internet files path disclosure, code execution via OBJECT tag.
6!WinAmp buffer overflow
document Buffer overflow on MIDI files parsing.
 escapade crossite scripting
   
 FTP Desktop multiple bugs
document Multiple buffer overflows.
 ASP.NET crossite scripting protection bypass
document It's possible to insert null character after tag opening.
 Apache:Gallery Symbolic link problems
document Unsafe temporary files creation.
 ICQ Webfront crossite scripting
document Crossite scripting in guestbook.
 RealOne player privilege escalation
document Program installs with group writable executable files.
 RogerWilco buffer overflow
updated since 03.07.2003
document Buffer overflow on oversized nickname.
  


08.09.2003
Detailed
6!Microsoft Word Perfect convertor buffer overflow
updated since 04.09.2003
document Buffer overflow during Word Perfect document convertion.
 KisMAC multiple bugs
document Ownership changing, symlink problem, uncommented shell-characters.
 Kukol E.V. HTTP & FTP Server Suite multiple bugs
document Directory traversal, information leak.
  


06.09.2003
Detailed
 ISS RealSecure Server Sensor DoS
document IF HTTPS request with invalid Unicode characters received service will shut down IIS service.
 wu-ftpd shell characters problem
document During tar execution for archived files receiving '-' sign is not commented.
  


05.09.2003
Detailed
 leafnode DoS
document During new fetching program can wait forever.
  


04.09.2003
Detailed
8!Microsft Access Snapshot Viewer buffer overflow
document Buffer overflow in ActiveX component marked as safe.
8!Microsoft Visual Basic for Applications buffer overflow
updated since 04.09.2003
document Buffer overflow on opening macro document.
7!Microsoft Word macro protection bypass
   
6!Microsoft Internet Explorer showHelp crossite scripting
updated since 07.02.2003
document Subsequent calls to showHelp cause content to be displayed in the same security zone.
 Microsoft Windows NetBIOS information leak
document Uninitialized memory structure during reply to NetBIOS name request allows attacker to read few bytes from remote host's memory.
 CGI bugs
updated since 01.09.2003
   
  


03.09.2003
Detailed
6!exim buffer overflow
document Buffer overflow with static string (can be exploited as off-by-one).
 go2call dialer DoS
document Program crashes on malformed data to UDP/5000.
 ZoneAlarm synflood/udpflood DoS
updated since 17.10.2002
   
  


01.09.2003
Detailed
 Tellurian TftpdNT buffer overflow
document Buffer overflow on oversized filename.
 SAP Internet Transaction Server
document Information leak, crossite scripting.
 XFree86 libraries integer overflow
document Integer overflows on font server functions.
  

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru