 |
|
|
|
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 13.01.2008 | | Source: |  | | | SecurityVulns ID: |  | 8560 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
RiSearch: crossite scripting |
libxml DoS updated since 13.01.2008 | | Published: |  | 13.01.2008 | | Source: |  | CVE | | SecurityVulns ID: |  | 8561 | | Type: |  | library | | Level: |  | 5/10 | | Description: |  | Hanging on XML parsing. |
| Linux kernel multiple security vulnrabilities | | Published: |  | 13.01.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8563 | | Type: |  | remote | | Level: |  | 6/10 | | Description: |  | unask is not correctly applied on CIFS filesystem, DoS via hugetlb_vmtruncate_list and hugetlb_vmtruncate, IA32 emulation subsystem processor registors access, ieee80211_rx integer overflow, Philips USB Webcam driver DoS, wait_task_stopped DoS. |
| StreamAudio ChainCast ProxyManager ActiveX buffer overflow | | Published: |  | 13.01.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8564 | | Type: |  | client | | Level: |  | 5/10 | | Description: |  | Buffer overflow in InternalTuneIn(). |
| autofs privilege escalation | | Published: |  | 13.01.2008 | | Source: |  | CVE | | SecurityVulns ID: |  | 8562 | | Type: |  | local | | Level: |  | 5/10 | | Description: |  | nosuid and nodev flags are not specified for NFS. |
| Affected: |  | AUTOFS : autofs 5.0 | | CVE: |  | CVE-2007-6285 (The default configuration for autofs 5 (autofs5) on Red Hat Enterprise Linux (RHEL) 4 and 5 does not specify the nodev mount option for the -hosts map, which allows local users to access "important devices" by operating a remote NFS server and creating special device files on that server.) | | |  | CVE-2007-5964 |
Sun Solaris ICMP DoS updated since 01.02.2007 | | Published: |  | 13.01.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 7147 | | Type: |  | remote | | Level: |  | 7/10 | | Description: |  | Malformed ICMP packets cause system to crash. |
| Affected: |  | ORACLE : Solaris 10 | | CVE: |  | CVE-2007-0634 (Unspecified vulnerability in Sun Solaris 10 before 20070130 allows remote attackers to cause a denial of service (system crash) via certain ICMP packets.) |
|
|
|
|
|
|
|
|