Computer Security
[EN] securityvulns.ru
no-pyccku



Nokia / Symbian mobile phones bluetooth DoS
Published:28.06.2005
Source:BUGTRAQ
SecurityVulns ID:4938
Type:remote
Level:5/10
Description:0x09 0x0A characters in nickname causes bluetooth device to crasg on searching.
Affected:SYMBIAN : Symbian 60
Original documentdocumentQnix_(at)_bsdmail.org, Nokia Symbian 60 "BLUETOOTH NICKNAME" Remote Restart (28.06.2005)
Files:NOKIA REMOTE RESTART IN BLUETOOTH NICKNAME
Discuss:Read or add your comments to this news (0 comments)

Adobe Acrobat Reader local files access
updated since 17.06.2005
Published:28.06.2005
Source:BUGTRAQ
SecurityVulns ID:4898
Type:client
Level:5/10
Description:By using XML External Entity document script can access local files and have them sent to remote site.
Affected:ADOBE : Acrobat Reader 7.0
Original documentdocumentSECUNIA, [SA15827] Adobe Reader / Acrobat Two Vulnerabilities (28.06.2005)
 documentSverre H. Huseby, Adobe Reader 7: XML External Entity (XXE) Attack (17.06.2005)
Discuss:Read or add your comments to this news (0 comments)

RealPlayer multiple vulnerabilities
updated since 24.06.2005
Published:28.06.2005
Source:VULNWATCH
SecurityVulns ID:4923
Type:remote
Level:7/10
Description:Heap overflow on RealText format parsing. Heap overflow on AVI files parsing. Possibility to overwrite local files, ActiveX execution from MP3 file.
Affected:REAL : RealPlayer 8
 REAL : RealPlayer 10
 REAL : RealOne Player 2
 REAL : RealPlayer 10.5
 REAL : RealOne Player
Original documentdocumentNGSSoftware Insight Security Research, High Risk Vulnerability in RealPlayer for Windows (28.06.2005)
 documentEEYE, [VulnWatch] eEye Advisory - EEYEB-200505 - RealPlayer AVI Processing Overflow (24.06.2005)
 documentIDEFENSE, [VulnWatch] iDEFENSE Security Advisory 06.23.05: RealNetworks RealPlayer RealText Parsing Heap Overflow Vulnerability (24.06.2005)
Discuss:Read or add your comments to this news (0 comments)

Dell computer Windows XP administrators weak password
Published:28.06.2005
Source:VULNWATCH
SecurityVulns ID:4939
Type:remote
Level:5/10
Description:During system installation Administrator account is created with empty password.
Original documentdocumentscheidell_(at)_SECNAP.NET, [VulnWatch] Blank Administrator password in DELL XP Professional install (28.06.2005)
Discuss:Read or add your comments to this news (0 comments)

Infradig Systems Inframail Advantage Server mail and FTP server buffer overflow
Published:28.06.2005
Source:FULL-DISCLOSURE
SecurityVulns ID:4940
Type:remote
Level:5/10
Description:Buffer overflow in SMTP MAIL FROM: and FTP NLST commands.
Affected:INFRADIG : Inframail Advantage Server 6.0
Original documentdocumentReed Arvin, [Full-disclosure] Multiple buffer overflows exist in Infradig Systems Inframail Advantage Server Edition 6.0 (28.06.2005)
Files:Infradig Systems Inframail Advantage Server Edition 6.0 SMTP overflow PoC
 Infradig Systems Inframail Advantage Server Edition 6.0 FTP overflow PoC
Discuss:Read or add your comments to this news (0 comments)

Sun Solaris LD_AUDIT privilege escalation
updated since 28.06.2005
Published:17.07.2005
Source:FULL-DISCLOSURE
SecurityVulns ID:4937
Type:local
Level:9/10
Description:LD_AUDIT environment variable allows to attch external dynamic library compiled with ld.so library. In addition, there is buffer overflow while parsing this variable.
Affected:SUN : Solaris 9
 SUN : Solaris 10
 AVAYA : AVAYA CMS 13
 AVAYA : Avaya IR 1.0
Original documentdocumentpetefran_(at)_gmail.com, Solaris Runtime Linker - Exploit Detection (17.07.2005)
 documentPrzemyslaw Frasunek, Re: [Full-disclosure] Solaris 9/10 ld.so fun (28.06.2005)
 documentPrzemyslaw Frasunek, [Full-disclosure] Solaris 9/10 ld.so fun (28.06.2005)
Files:Solaris ld.so PoC (AMD64)
 Solaris ld.so PoC (SPARC)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru