Computer Security
[EN] securityvulns.ru
no-pyccku



Windows Help Center Dvdupgrade code execution
Published:12.05.2004
Source:MICROSOFT
SecurityVulns ID:3683
Type:client
Level:6/10
Description:It's possible to execute any code via local zone scripting.
Affected:MICROSOFT : Windows XP
 MICROSOFT : Windows 2003 Server
Original documentdocumentMICROSOFT, Microsoft Security Bulletin MS04-015 Vulnerability in Help and Support Center Could Allow Remote Code Execution (840374) (12.05.2004)
 documentmorning_wood, [Full-Disclosure] MS04-015 - Windows Help Center - Dvdupgrade (12.05.2004)
Discuss:Read or add your comments to this news (0 comments)

Linux sctp_setsockopt() integer overflow
Published:12.05.2004
Source:BUGTRAQ
SecurityVulns ID:3684
Type:local
Level:5/10
Description:Integer overflow causes zero memory allocation.
Affected:LINUX : kernel 2.4
Original documentdocumentShaun Moore, Linux Kernel sctp_setsockopt() Integer Overflow (12.05.2004)
Discuss:Read or add your comments to this news (0 comments)

MDaemon buffer overflow
Published:12.05.2004
Source:BUGTRAQ
SecurityVulns ID:3685
Type:remote
Level:5/10
Description:Authenticated IMAP user can overflow buffer with STATUS command.
Affected:ALT-N : MDaemon 7.0
Original documentdocumentned, [Full-Disclosure] Mdaemon 7.0.1 IMAP overflow. (12.05.2004)
Files:Mdaemon 7.0.1 IMAP overflow demonstration
Discuss:Read or add your comments to this news (0 comments)

Outpost memory leak
Published:12.05.2004
Source:SECURITEAM
SecurityVulns ID:3686
Type:remote
Level:5/10
Description:Small packet floods causes memory leak.
Affected:AGNITUM : Outpost 2.1
Original documentdocumentSECURITEAM, [NT] Agnitum Outpost Firewall Pro DoS (12.05.2004)
Discuss:Read or add your comments to this news (0 comments)

DoS против MDaemon (imap buffer overflow)
updated since 26.03.2001
Published:12.05.2004
Source:BUGTRAQ
SecurityVulns ID:1076
Type:remote
Level:5/10
Описание:Переполнение буфера в команде Select (пользователь должен быть авторизован).
Affected:ALT-N : MDaemon 3.5
Original documentdocumentnitr0s_(at)_HOTMAIL.COM, MDaemon IMAP Denial Of Service (26.03.2001)
Discuss:Read or add your comments to this news (0 comments)

RKDetect - behaviour based rootkit detection utility
updated since 12.05.2004
Published:08.09.2004
Source:offtopic1
SecurityVulns ID:3682
Description:Rkdetect is a little anomaly detection tool which can find services hidden by generic Windows rootkits like Hacker Defender. Tool very simply. It enumerates services on remote computer through WMI (user level) and Services Control Manager (kernel level), compare result and display difference. In this way we can find hidden services which usual used to start rootkit. Similar approach can be used to enumerate processes, files, registry keys and anything that rootkits can to hide. Rkdetect available here: Updated on 08.09.2004: Support for localized systems added. http://www.security.nnov.ru/files/rkdetect.zip
Original documentdocumentSergey V. Gordeychik, rkdetect updated (08.09.2004)
 documentSergey V. Gordeychik, RKDetect (12.05.2004)
Files:RKDetect - rootkit anomaly detector
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru