Computer Security
[EN] securityvulns.ru
no-pyccku



davfs2 DAV filesystem unauthorized access
Published:26.05.2005
Source:BUGTRAQ
SecurityVulns ID:4829
Type:local
Level:5/10
Description:After filesystem is mounted any local user ha unrestricted access.
Affected:DAVFS : davfs2 0.2
Original documentdocumentmartin f krafft, davfs2 does not honour Unix permissions (26.05.2005)
Discuss:Read or add your comments to this news (0 comments)

L-Soft LISTSERV mailing lists server multiple vulnerabilities
Published:26.05.2005
Source:BUGTRAQ
SecurityVulns ID:4830
Type:remote
Level:6/10
Description:Remote code execution, denial of service.
Affected:L-SOFT : LISTSERV 1.8
 LSOFT : Listserv 14.3
Original documentdocumentNGSSoftware Insight Security Research Advisory (NISR), High Risk Vulnerability in L-Soft's LISTSERV Server (26.05.2005)
Discuss:Read or add your comments to this news (0 comments)

SCO OpenServer Unix utilities format string bugs
updated since 05.04.2005
Published:26.05.2005
Source:BUGTRAQ
SecurityVulns ID:4633
Type:local
Level:5/10
Description:Format string vulnerabilities in different utilities including sgid lp /usr/lib/nucrt/bin/nwprint.
Affected:SCO : OpenServer 5.0
Original documentdocumentSCO, OpenServer 5.0.6 OpenServer 5.0.7 : nwprint privilege escalation (26.05.2005)
 documentpasquale minervini, possible privilege escalation on Sco OpenServer 5.0.7 (05.04.2005)
Files:Sample code exploiting a buffer overflow vulnerability in NetWare Unix Client 1.1.0Ba on SCO OpenServer 5.0.7
Discuss:Read or add your comments to this news (0 comments)

shtool shell tools set synbolic links problem
updated since 26.05.2005
Published:12.06.2005
Source:BUGTRAQ
SecurityVulns ID:4828
Type:local
Level:5/10
Description:gen_tmpfile symbolic links problem.
Affected:GNU : shtool 2.0
 OCAML : ocaml-mysql 1.0
Original documentdocumentGENTOO, [ GLSA 200506-08 ] GNU shtool, ocaml-mysql: Insecure temporary file creation (12.06.2005)
 documentZATAZ.net, shtool insecure temporary file creation (26.05.2005)
Discuss:Read or add your comments to this news (0 comments)

Multiple GNU mailutils mail server and client tools vulnerabilities
updated since 26.05.2005
Published:09.09.2005
Source:BUGTRAQ
SecurityVulns ID:4827
Type:remote
Level:7/10
Description:imap4D IMAP server heap overflow, format string bug and DoS conditions, 'mail' and imap4d buffer overflows.
Affected:GNU : mailutils 0.6
Original documentdocumentIDEFENSE, [Full-disclosure] iDEFENSE Security Advisory 09.09.05: GNU Mailutils 0.6 imap4d 'search' Format String Vulnerability (09.09.2005)
 documentIDEFENSE, iDEFENSE Security Advisory 05.25.05: GNU Mailutils 0.6 imap4d FETCH Command Resource Consumption DoS Vulnerability (26.05.2005)
 documentIDEFENSE, iDEFENSE Security Advisory 05.25.05: GNU Mailutils 0.6 imap4d fetch_io Heap overflow Vulnerability (26.05.2005)
 documentIDEFENSE, iDEFENSE Security Advisory 05.25.05: GNU Mailutils 0.6 mail header_get_field_name() Buffer Overflow Vulnerability (26.05.2005)
 documentIDEFENSE, iDEFENSE Security Advisory 05.25.05: GNU Mailutils 0.6 imap4d Format String Vulnerability (26.05.2005)
Files:gnu mailutils-0.5 - < mailutils-0.6.90 remote formatstring exploit
 GNU Mailutils imap4d v0.6 remote format string exploit
 GNU Mailutils imap4d Format String Vulnerability (Metasploit)
 GNU imap4d mailutils-0.6 search remote format string exploit
 GNU Mailutils 0.6 imap4d 'search' format string exploit
 GNU Mailutils 0.6 imap4d 'search' Format String Vulnerability
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server