Computer Security
[EN] securityvulns.ru
no-pyccku



Sendmail buffer overflow
updated since 03.03.2003
Published:04.03.2003
Source:BUGTRAQ
SecurityVulns ID:2630
Type:remote
Level:9/10
Description:Buffer overflow on headers parsing (oversized address comment)
Affected:SENDMAIL : Sendmail 8.12
Original documentdocumentLSD, [LSD] Technical analysis of the remote sendmail vulnerability (04.03.2003)
 documentX-FORCE, ISS Security Brief: Remote Sendmail Header Processing Vulnerability (04.03.2003)
 documentSENDMAIL, sendmail 8.12.8 available (03.03.2003)
Files:proof of concept code for remote sendmail vulnerability
Discuss:Read or add your comments to this news (0 comments)

AVP (Kaspersky Antivirus) DoS
Published:04.03.2003
Source:Roman
SecurityVulns ID:2631
Type:remote
Level:6/10
Description:Self-looping instruction (jmp $) in the beginning of PE-file causes process to hang.
Affected:KASPERSKY : Kaspersky Antivirus 4.0
 KASPERSKY : avp 3.5
Original documentdocumentsuchkov evgeniy, DOS против AVP (04.03.2003)
Files:Test file to DoS Kaspersky Antivirus with 100% CPU
Discuss:Read or add your comments to this news (0 comments)

snort RPC buffer overflo
Published:04.03.2003
Source:X-FORCE
SecurityVulns ID:2632
Type:remote
Level:6/10
Description:Buffer overflow on RPC preprocessing.
Affected:SNORT : snort 1.8
 SNORT : snort 1.9
Original documentdocumentX-FORCE, ISS Security Brief: Snort RPC Preprocessing Vulnerability (04.03.2003)
Discuss:Read or add your comments to this news (0 comments)

Pastel Accounting audit bypass
Published:04.03.2003
Source:BUGTRAQ
SecurityVulns ID:2633
Type:local
Level:5/10
Description:Accounting file may be directly edited.
Affected:PASTEL : PASTEL ACCOUNTING 6.12
Original documentdocumentl33t guy, [blaqhatz] - Pastel Accounting application security issues (04.03.2003)
Discuss:Read or add your comments to this news (0 comments)

Caldera UnixWare/OpenUnix unescaped shell characters problem
Published:04.03.2003
Source:BUGTRAQ
SecurityVulns ID:2634
Type:remote
Level:5/10
Description:If | is used in filename shell comand may be executed by client on tertrieval.
Affected:SCO : UnixWare 7.1
 SCO : Open UNIX 8.0
Original documentdocumentCALDERA, Security Update: [CSSA-2003-SCO.3] UnixWare 7.1.1 Open UNIX 8.0.0 UnixWare 7.1.3 : ftp vulnerability with pipe symbols in filenames (04.03.2003)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru