Computer Security
[EN] securityvulns.ru
no-pyccku



Local buffer overflow in qpop
Published:29.04.2002
Source:VULN-DEV
SecurityVulns ID:1974
Level:6/10
Description:Buffer overflow in processing ~/.qpopper-options file.
Affected:QUALCOMM : qpopper 4.0
Original documentdocumentMarcell Fodor, QPopper 4.0.4 buffer overflow (29.04.2002)
Discuss:Read or add your comments to this news (0 comments)

Unauthorized acces in SAP R/3
Published:29.04.2002
Source:BUGTRAQ
SecurityVulns ID:1976
Type:remote
Level:5/10
Description:It's possible to obtain administrative access to database in default configuration.
Affected:SAP : SAP R/3
Original documentdocumentJochen Hein, SAP R/3 on Oracle: vulnerable Default Installation (29.04.2002)
Discuss:Read or add your comments to this news (0 comments)

GOST 34.10/GOST 34.19 digital signature weakness
updated since 08.04.2002
Published:29.04.2002
Source:A.V.KOMLIN
SecurityVulns ID:1917
Type:library
Level:6/10
Description:There is a weakness leading to ability to create "universal" signature without having a key. Also, it's possible to spoof content in case more than one key is allowed. It's also possible to deliberately create "weak" signature which will lead to private key compromise.
Original documentdocumentA.V.KOMLIN, Серьёзная ошибка в новом госте ЭЦП! (29.04.2002)
 documentA.V.KOMLIN, Новая ошибка в цифровой подписи (08.04.2002)
Files:О "двуличии" в алгоритмах цифровой подписи
 Универсальная подпись, утверждённая ГОСТом.
 Уязвимость методов цифровой подписи на базе алгоритма Эль-Гамаля: ГОСТ Р 34.10-94 и DSA (DSS). Часть 1.
Discuss:Read or add your comments to this news (0 comments)

CGI bugs
updated since 29.04.2002
Published:30.04.2002
Source:VULN-DEV
SecurityVulns ID:1975
Type:remote
Level:5/10
Affected:CGI : adManager 1.1
 CGI : MiniBB 1.2
 CGI : PhpWebGallery 1.0
 CGI : 0wn f0rum 2.1
 CGI : Livre d'or
 CGI : Messagerie
 CGI : Recherche
 CGI : KvGuestbook
 CGI : Trackeur
 DNSTOOLS : dnstools 2.0
 CIDER : SHADOW 1.5
 CIDER : SHADOW 1.6
 BLAHZDNS : Blahz-DNS 0.2
Original documentdocumentJens Liebchen, Blahz-DNS: Authentication bypass vulnerability (30.04.2002)
 documentresearchteam5_(at)_esecurityonline.com, eSecurityOnline Security Advisory 2408 - CIDER SHADOW CGI (30.04.2002)
 documentJens Liebchen, dnstools: authentication bypass vulnerability (30.04.2002)
 documentfrog frog, Security holes in 11 products... (29.04.2002)
Discuss:Read or add your comments to this news (1 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru