Computer Security
[EN] securityvulns.ru no-pyccku


Microsoft Windows code execution
updated since 24.10.2008
Published:04.11.2008
Source:
SecurityVulns ID:9380
Type:remote
Threat Level:
10/10
Description:It's possible toexecute code without authentication with RPC request UUID 4b324fc8-1670-01d3-1278-5a47bf6ee188 to browser service via SERVER (LanmanServer) service, TCP/139, TCP/445. Reccomendation is to disable browser service.
Affected:MICROSOFT : Windows 2000 Server
 MICROSOFT : Windows 2000 Professional
 MICROSOFT : Windows XP
 MICROSOFT : Windows 2003 Server
 MICROSOFT : Windows Vista
 MICROSOFT : Windows 2008 Server
CVE:CVE-2008-4250 (The Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, and 7 Pre-Beta allows remote attackers to execute arbitrary code via a crafted RPC request that triggers the overflow during path canonicalization, as exploited in the wild by Gimmiv.A in October 2008, aka "Server Service Vulnerability.")
Original documentdocumentJuha-Matti Laurio, Windows RPC worm (MS08-067) in the wild (04.11.2008)
 documentMICROSOFT, Microsoft Security Bulletin MS08-067 – Critical Vulnerability in Server Service Could Allow Remote Code Execution (958644) (24.10.2008)
 documentCERT, US-CERT Technical Cyber Security Alert TA08-297A -- Microsoft Windows Server Service RPC Vulnerability (24.10.2008)
Files:MS08-067 Exploit by Debasis Mohanty
 MS08-067 PoC (by stephen lawler)
 Microsoft Security Bulletin MS08-067 – Critical Vulnerability in Server Service Could Allow Remote Code Execution (958644)

Cups multiple security vulnerabilities
Published:04.11.2008
Source:
SecurityVulns ID:9404
Type:remote
Threat Level:
6/10
Description:Multiple integer overflows and heap buffer overflows in imagetops and texttops.
Affected:CUPS : cups 1.3
Original documentdocumentIDEFENSE, iDefense Security Advisory 11.03.08: Multiple Vendor CUPS texttops Integer Overflow Vulnerability (04.11.2008)
 documentIDEFENSE, iDefense Security Advisory 11.03.08: Multiple Vendor CUPS SGI imagetops Heap Overflow Vulnerability (04.11.2008)

HP System Management Homepage unauthorized access
Published:04.11.2008
Source:
SecurityVulns ID:9407
Type:local
Threat Level:
5/10
Affected:HP : HP System Management Homepage 2.2
CVE:CVE-2008-4413 (Unspecified vulnerability in HP System Management Homepage (SMH) 2.2.6 and earlier on HP-UX B.11.11 and B.11.23, and SMH 2.2.6 and 2.2.8 and earlier on HP-UX B.11.23 and B.11.31, allows local users to gain "unauthorized access" via unknown vectors, possibly related to temporary file permissions.)
Original documentdocumentHP, [security bulletin] HPSBMA02380 SSRT080121 rev.1 - HP System Management Homepage (SMH) for HP-UX, Local Unauthorized Access (04.11.2008)

dmail / tmail MDA buffer overflow
Published:04.11.2008
Source:
SecurityVulns ID:9405
Type:remote
Threat Level:
7/10
Description:Buffer overflow in mail delivery foder argument.
Affected:UW : UW IMAP 2007c
 PANDAIMAP : tmail 2008.23
 PANDAIMAP : dmail 2008.18
 ALPINE : alpine 2.00
CVE:CVE-2008-5005 (Multiple stack-based buffer overflows in (1) University of Washington IMAP Toolkit 2002 through 2007c, (2) University of Washington Alpine 2.00 and earlier, and (3) Panda IMAP allow (a) local users to gain privileges by specifying a long folder extension argument on the command line to the tmail or dmail program; and (b) remote attackers to execute arbitrary code by sending e-mail to a destination mailbox name composed of a username and '+' character followed by a long string, processed by the tmail or possibly dmail program.)
Original documentdocumentlabs_(at)_bitsec.com, Bitsec Security Advisory: UW/Panda IMAP [dt]mail buffer overflow (04.11.2008)

A-Link routers crossite scripting and request forgery
Published:04.11.2008
Source:
SecurityVulns ID:9406
Type:remote
Threat Level:
4/10
Affected:ALINK : WL54AP3
 ALINK : WL54AP2
Original documentdocumentHenri Lindberg - Smilehouse Oy, A-Link WL54AP3 and WL54AP2 CSRF+XSS vulnerability (04.11.2008)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod