Computer Security
[EN] securityvulns.ru
no-pyccku



NetBSD systrace privilege escalation
updated since 11.05.2004
Published:13.05.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3677
Type:local
Level:7/10
Description:By using invalid handling of error condition it's possible to obtain superuser privileges.
Affected:NETBSD : NetBSD 1.6
Original documentdocumentNETBSD, NetBSD Security Advisory 2004-007: Systrace systrace_exit() local root (13.05.2004)
 documentStefan Esser, [Full-Disclosure] Advisory 04/2004: Net(Free)BSD Systrace local root vulnerabilitiy (11.05.2004)
Discuss:Read or add your comments to this news (0 comments)

Outpost e-mail DoS
Published:13.05.2004
Source:RU.SECURITY
SecurityVulns ID:3687
Type:client
Level:5/10
Description:High level of MIME recursion causes system to crash.
Affected:AGNITUM : Outpost 2.1
 AGNITUM : Outpost 2.0
Original documentdocumentAlexander Andrusenko, возможность DOS в Agnitum Outpost? (13.05.2004)
Files:Outpost MIME recursion DoS example
Discuss:Read or add your comments to this news (0 comments)

IEEE 802.11 collision avoidance procedure weakness
Published:13.05.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3688
Type:local
Level:5/10
Description:By using Clear Channel Assessment procedure weakness attacker equipped with standard client card can prevent data transmission over network.
Original documentdocumentAUSCERT, [Full-Disclosure] (AUSCERT AA-2004.02) AUSCERT Advisory - Denial of Service Vulnerability in IEEE 802.11 Wireless Devices (fwd) (13.05.2004)
Discuss:Read or add your comments to this news (0 comments)

Sweex/Unex routers unauthorized access
Published:13.05.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3689
Type:remote
Level:5/10
Description:Router configuration, including cleratext password, can be accesses via TFTP.
Affected:SWEEX : Sweex LC000060
 UNEX : Unex WF514
Original documentdocumentMark Jansse, [Full-Disclosure] Sweex 802.11g router/accesspoint config disclosure / remote config (13.05.2004)
Discuss:Read or add your comments to this news (0 comments)

Symantec firewalls multiple problems
updated since 13.05.2004
Published:15.05.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3690
Type:remote
Level:8/10
Description:Heap and stack overflows on NetBIOS name service packets parsing, endless loop on DNS packets parsing, stack overflow on oversized canonical DNS name.
Affected:SYMANTEC : Norton Personal Firewall 2002
 SYMANTEC : Norton Personal Firewall 2003
 SYMANTEC : Norton Internet Security 2003
 SYMANTEC : Norton Internet Security 2004
 SYMANTEC : Norton AntiSpam 2004
 SYMANTEC : Norton Personal Firewall 2004
 SYMANTEC : Symantec Client Firewall 5.01
 SYMANTEC : Symantec Client Firewall 5.1
 SYMANTEC : Symantec Client Security 1.0
 SYMANTEC : Norton Internet Security 2002
 SYMANTEC : Symantec Client Security 1.1
 SYMANTEC : Symantec Client Security 2.0
Original documentdocumentSYMANTEC, SYM04-008, Symantec Client Firewall Remote Access and Denial of Service Issues (15.05.2004)
 documentEEYE, [Full-Disclosure] EEYE: Symantec Multiple Firewall DNS Response Denial-of-Service (13.05.2004)
 documentEEYE, [Full-Disclosure] EEYE: Symantec Multiple Firewall NBNS Response Remote Heap Corruption (13.05.2004)
 documentEEYE, [Full-Disclosure] EEYE: Symantec Multiple Firewall NBNS Response Processing Stack Overflow (13.05.2004)
 documentEEYE, [Full-Disclosure] EEYE: Symantec Multiple Firewall Remote DNS KERNEL Overflow (13.05.2004)
Files:Symantec Multiple Firewall DNS Response Denial-of-Service Exploit (PoC)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru