Computer Security
[EN] securityvulns.ru
no-pyccku



pam_per_user authentication module privilege escalation
Published:13.09.2005
Source:BUGTRAQ
SecurityVulns ID:5201
Type:local
Level:5/10
Description:Having valid credentials on the system, it's possible to login with any account.
Affected:FEEP : pam_per_user 0,4
Original documentdocumentMark D. Roth, Security Flaw in pam_per_user Module (13.09.2005)
Discuss:Read or add your comments to this news (0 comments)

TMSNC Textbased MSN Client format string bug
Published:13.09.2005
Source:SECUNIA
SecurityVulns ID:5203
Type:remote
Level:5/10
Description:wprintw() format string bug.
Affected:TMSNC : tmsnc 0.2
Original documentdocumentSECUNIA, [SA16752] Textbased MSN Client (TMSNC) Format String Vulnerability (13.09.2005)
Discuss:Read or add your comments to this news (0 comments)

Ingate Firewall / Ingate SIParator crossite scripting
Published:13.09.2005
Source:SECUNIA
SecurityVulns ID:5205
Type:remote
Level:5/10
Description:Administrative Web interface crossite scripting.
Affected:INGATE : Ingate Firewall 4.2
Original documentdocumentSECUNIA, [SA16776] Ingate Firewall and SIParator Unspecified Cross-Site Scripting (13.09.2005)
Discuss:Read or add your comments to this news (0 comments)

Snort Intrusion detection system DoS
Published:13.09.2005
Source:VULN-DEV
SecurityVulns ID:5202
Type:remote
Level:5/10
Description:Crash on parsing TCP options in verbose mode.
Affected:SNORT : snort 2.4
Original documentdocumentA. Alejandro Hernández, Snort <= 2.4.0 SACK TCP Option Error Handling (13.09.2005)
Files:Snort <= 2.4.0 SACK TCP Option Error Handling PROOF OF CONCEPT
Discuss:Read or add your comments to this news (0 comments)

Squid proxy server DoS
updated since 03.09.2005
Published:13.09.2005
Source:SECUNIA
SecurityVulns ID:5168
Type:remote
Level:6/10
Description:Error in sslConnectTimeout() function causes server to crash. Aborted request causes assert() in proxy server.
Affected:SQUID : squid 2.5
Original documentdocumentOPENPKG, [OpenPKG-SA-2005.021] OpenPKG Security Advisory (squid) (13.09.2005)
 documentSECUNIA, Squid "sslConnectTimeout()" Denial of Service Vulnerability (03.09.2005)
Discuss:Read or add your comments to this news (0 comments)

rdiff-backup protection bypass
Published:13.09.2005
Source:SECUNIA
SecurityVulns ID:5204
Type:local
Level:5/10
Description:Directory access restrictions do not work.
Affected:RDIFFBACKUP : rdiff-backup 1.0
Original documentdocumentSECUNIA, [SA16774] rdiff-backup "--restrict" Security Bypass Vulnerability (13.09.2005)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru