 |
|
|
|
| Multiple Linux kernel vulnerabilities | | Published: |  | 17.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8065 | | Type: |  | remote | | Level: |  | 6/10 | | Description: |  | nf_conntrack_h323 NULL pointer dereference, invalid suid applications parent process termination signal handling, privilege escalation on Intel 965 chipset. |
| Affected: |  | LINUX : kernel 2.4 | | |  | LINUX : kernel 2.6 | | CVE: |  | CVE-2007-3851 (The drm/i915 component in the Linux kernel before 2.6.22.2, when used with i965G and later chipsets, allows local users with access to an X11 session and Direct Rendering Manager (DRM) to write to arbitrary memory locations and gain privileges via a crafted batchbuffer.) | | |  | CVE-2007-3848 (Linux kernel 2.4.35 and other versions allows local users to send arbitrary signals to a child process that is running at higher privileges by causing a setuid-root parent process to die, which delivers an attacker-controlled parent process death signal (PR_SET_PDEATHSIG).) | | |  | CVE-2007-3642 (The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.22 allows remote attackers to cause a denial of service (crash) via an encoded, out-of-range index value for a choice field, which triggers a NULL pointer dereference.) |
| MySQL multiple security vulnerabilities | | Published: |  | 17.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8064 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | CREATE TABLE LIKE privilege escalation, server crash on authentication. |
| Affected: |  | ORACLE : MySQL 5.0 | | CVE: |  | CVE-2007-3781 (MySQL Community Server before 5.0.45 does not require privileges such as SELECT for the source table in a CREATE TABLE LIKE statement, which allows remote authenticated users to obtain sensitive information such as the table structure.) | | |  | CVE-2007-3780 (MySQL Community Server before 5.0.45 allows remote attackers to cause a denial of service (daemon crash) via a malformed password packet in the connection protocol.) |
Wireshark DoS updated since 28.06.2007 | | Published: |  | 17.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 7866 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Endless loop on MMS and SSL parsing, off-by-one on iSeries and DHCP/BOOTP parsing. |
| Affected: |  | WIRESHARK : wireshark 0.99 | | CVE: |  | CVE-2007-3393 (Off-by-one error in the DHCP/BOOTP dissector in Wireshark before 0.99.6 allows remote attackers to cause a denial of service (crash) via crafted DHCP-over-DOCSIS packets.) | | |  | CVE-2007-3392 (Wireshark before 0.99.6 allows remote attackers to cause a denial of service via malformed (1) SSL or (2) MMS packets that trigger an infinite loop.) | | |  | CVE-2007-3391 (Wireshark 0.99.5 allows remote attackers to cause a denial of service (memory consumption) via a malformed DCP ETSI packet that triggers an infinite loop.) | | |  | CVE-2007-3390 (Wireshark 0.99.5 and 0.10.x up to 0.10.14, when running on certain systems, allows remote attackers to cause a denial of service (crash) via crafted iSeries capture files that trigger a SIGTRAP.) | | |  | CVE-2007-3389 (Wireshark before 0.99.6 allows remote attackers to cause a denial of service (crash) via a crafted chunked encoding in an HTTP response, possibly related to a zero-length payload.) |
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 17.08.2007 | | Source: |  | | | SecurityVulns ID: |  | 8063 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
| Adonis privilege escalation | | Published: |  | 17.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8067 | | Type: |  | local | | Level: |  | 2/10 | | Description: |  | By using shell characters problem administrator can access device with root privileges. |
Microsoft Internet Explorer multiple security vulnerabilities updated since 14.08.2007 | | Published: |  | 17.08.2007 | | Source: |  | MICROSOFT | | SecurityVulns ID: |  | 8042 | | Type: |  | client | | Level: |  | 10/10 | | Description: |  | Memory corruption on ActiveX parsing, unsafe Visual Basic ActiveX execution, Visual Basic ActiveX memory corruption. |
Cisco VPN client privilege escalation updated since 16.08.2007 | | Published: |  | 17.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8059 | | Type: |  | local | | Level: |  | 6/10 | | Description: |  | Weak files permissions, code execution before logon with "Allow launching of third party applications before logon" and dialup networking. |
Microsoft Windows XML core services memory corruption updated since 14.08.2007 | | Published: |  | 17.08.2007 | | Source: |  | MICROSOFT | | SecurityVulns ID: |  | 8039 | | Type: |  | library | | Level: |  | 9/10 | | Description: |  | Memory corruption on XML parsing. |
| Lighttpd multiple security vulnerabilities | | Published: |  | 17.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8066 | | Type: |  | remote | | Level: |  | 7/10 | | Description: |  | Multiple memory corruption on request headers parsing. |
| Affected: |  | LIGHTHTTPD : lighttpd 1.4 | | CVE: |  | CVE-2007-3950 (lighttpd 1.4.15, when run on 32 bit platforms, allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors involving the use of incompatible format specifiers in certain debugging messages in the (1) mod_scgi, (2) mod_fastcgi, and (3) mod_webdav modules.) | | |  | CVE-2007-3949 (mod_access.c in lighttpd 1.4.15 ignores trailing / (slash) characters in the URL, which allows remote attackers to bypass url.access-deny settings.) | | |  | CVE-2007-3948 (connections.c in lighttpd before 1.4.16 might accept more connections than the configured maximum, which allows remote attackers to cause a denial of service (failed assertion) via a large number of connection attempts.) | | |  | CVE-2007-3947 (request.c in lighttpd 1.4.15 allows remote attackers to cause a denial of service (daemon crash) by sending an HTTP request with duplicate headers, as demonstrated by a request containing two Location header lines, which results in a segmentation fault.) | | |  | CVE-2007-3946 (mod_auth (http_auth.c) in lighttpd before 1.4.16 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors involving (1) a memory leak, (2) use of md5-sess without a cnonce, (3) base64 encoded strings, and (4) trailing whitespace in the Auth-Digest header.) |
|
|
|
|
|
|
|
|