Computer Security
[EN] securityvulns.ru
no-pyccku



Multiple Macromedia server products vulnerabilities
Published:16.11.2005
Source:BUGTRAQ
SecurityVulns ID:5450
Type:remote
Level:6/10
Description:Contribute Publishing Server Cryptographic weakness, Breeze Live Server and Flash Communication Server MX malcrafted RTPM streams DoS.
Affected:MACROMEDIA : Contribute Publishing Server 1.1
 MACROMEDIA : Breeze Communication Server 5.1
 MACROMEDIA : Flash Communication Server MX 1.0
 MACROMEDIA : Flash Communication Server MX 1.5
Original documentdocumentMACROMEDIA, [securityzone@macromedia.com: Macromedia Security Bulletins] (16.11.2005)
Discuss:Read or add your comments to this news (0 comments)

GTK+, imlib, lessTif and libXPM libraries XPM files integer overflows
updated since 16.09.2004
Published:16.11.2005
Source:BUGTRAQ
SecurityVulns ID:4009
Type:library
Level:7/10
Description:Integer overflow leads to heap based and stack based buffer overflow.
Affected:IMLIB : imlib 1.9
 XFREE : XFree86 4.6
 GTKPLUS : gtk+ 2.4
 GDKPLUS : gdk-pixbuf 0.22
 X.ORG : libXpm 3.4
 LESSTIF : lesstif 0.93
 OPENMOTIF : openmotif 2.2
Original documentdocumentIDEFENSE, iDEFENSE Security Advisory 11.15.05: Multiple Vendor GTK+ gdk-pixbuf XPM Loader Heap Overflow Vulnerability (16.11.2005)
 documentUBUNTU, [Full-Disclosure] [USN-83-1] LessTif 2 vulnerabilities (16.02.2005)
 documentThierry Carrez, [Full-Disclosure] [ GLSA 200412-03 ] imlib: Buffer overflows in image decoding (07.12.2004)
 documentChris Evans, CESA-2004-004: libXpm (16.09.2004)
 documentChris Evans, CESA-2004-005: gtk+ XPM decoder (16.09.2004)
Files:gtk+ XPM decoder overflows demo XPM
Discuss:Read or add your comments to this news (0 comments)

LiteSpeed web server crossite scripting
Published:16.11.2005
Source:SECURITEAM
SecurityVulns ID:5451
Type:remote
Level:5/10
Description:Crossite scripting in administration scripts.
Affected:LITESPEEDTECH : LiteSpeed 2.1
Original documentdocumentSECURITEAM, [UNIX] LiteSpeed Cross Site Scripting (16.11.2005)
Discuss:Read or add your comments to this news (0 comments)

Belkin Wireless Router authentication bypass
Published:16.11.2005
Source:BUGTRAQ
SecurityVulns ID:5452
Type:remote
Level:5/10
Description:Any user can log on without authentication after administrator is logged on.
Original documentdocumentKonstantin Gavrilenko, Authentication vulnerability in Belkin wireless devices (16.11.2005)
Discuss:Read or add your comments to this news (0 comments)

Apple iTunes code execution
Published:16.11.2005
Source:BUGTRAQ
SecurityVulns ID:5453
Type:local
Level:5/10
Description:CreateProcess() is used insecurely on external application execution.
Affected:APPLE : iTunes 5
Original documentdocumentIDEFENSE, iDEFENSE Security Advisory 11.15.05: Multiple Vendor Insecure Call to CreateProcess() Vulnerability (16.11.2005)
 documentAPPLE, APPLE-SA-2005-11-15 iTunes 6 for Windows (16.11.2005)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru