Computer Security
[EN] no-pyccku

Multiple DNS servers and clients DNS records spoofing
updated since 12.07.2008
SecurityVulns ID:9142
Threat Level:
Description:DNS poisoning attack may be used to spoof query results.
Affected:CISCO : IOS 12.2
 CISCO : IOS 12.3
 BIND : bind 9.3
 CISCO : IOS 12.4
 PDNS : pdns-recursor 3.1
 PYTHON : python-dns 2.3
CVE:CVE-2008-1637 (PowerDNS Recursor before 3.1.5 uses insufficient randomness to calculate (1) TRXID values and (2) UDP source port numbers, which makes it easier for remote attackers to poison a DNS cache, related to (a) algorithmic deficiencies in rand and random functions in external libraries, (b) use of a 32-bit seed value, and (c) choice of the time of day as the sole seeding information.)
 CVE-2008-1447 (The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to spoof DNS traffic via a birthday attack that uses in-bailiwick referrals to conduct cache poisoning against recursive resolvers, related to insufficient randomness of DNS transaction IDs and source ports, aka "DNS Insufficient Socket Entropy Vulnerability" or "the Kaminsky bug.")
Original documentdocumentDEBIAN, [SECURITY] [DSA 1619-1] New python-dns packages fix DNS response spoofing (29.07.2008)
 documentI)ruid, CAU-EX-2008-0002: Kaminsky DNS Cache Poisoning Flaw Exploit (25.07.2008)
 documentDEBIAN, [SECURITY] [DSA 1544-2] New pdns-recursor packages fix predictable randomness (18.07.2008)
 documentCISCO, Cisco Security Advisory: Multiple Cisco Products Vulnerable to DNS Cache Poisoning Attacks (12.07.2008)
 documentDEBIAN, [SECURITY] [DSA 1605-1] DNS vulnerability impact on the libc stub resolver (12.07.2008)
Files:DNS BailiWicked Host Attack
 Tool: PorkBind Nameserver Security Scanner

Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
updated since 26.07.2008
SecurityVulns ID:9174
Threat Level:
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. FireStats WordPress plugin: crossite scripting, automation protection bypass, DoS, information leak, unauthorized access.
Affected:POSTNUKE : PostNuke 0.726
 PIXELPOST : Pixelpost 1.7
 XRMS : XRMS 1.99
 FIRESTATS : FireStats 1.0
 JAMROOM : Jamroom 3.3
 WEBWIZ : Web Wiz Rich Text Editor 4.02
 VIART : ViArt 3.5
 OWL : Owl 0.95
 PHPJOBSCHEDULER : PhpJobScheduler 3.1
CVE:CVE-2008-3100 (Cross-site scripting (XSS) vulnerability in lib/owl.lib.php in Steve Bourgeois and Chris Vincent Owl Intranet Knowledgebase 0.95 and earlier allows remote attackers to inject arbitrary web script or HTML via the username parameter in a getpasswd action to register.php.)
Original documentdocumentGhost hacker, PhpJobScheduler 3.1 Remote File Inclusion Vulnerability (29.07.2008)
 documentFabian Fingerle, Cross Site Scripting (XSS) in Owl <=0.95, CVE-2008-3100 (29.07.2008)
 documentJeiAr, ViArt <= 3.5 SQL Injection (29.07.2008)
 documentsupportrup_(at), Multiple Cross-Site Scripting Vulnerabilities in Web Wiz Rich Text Editor version 4.02 (29.07.2008)
 documentJeiAr, JamRoom <= 3.3.8 Authentication Bypass (29.07.2008)
 documentDigital Security Research Group [DSecRG], [DSECRG-08-033] Local File Include Vulnerability in Pixelpost 1.7.1 (29.07.2008)
 documentMustLive, Vulnerabilities in FireStats (29.07.2008)
 documentMustLive, Multiple vulnerabilities in FireStats (29.07.2008)
 documentHACKERS PAL, ezContents CMS Renote File inclusion (26.07.2008)
 documentazzcoder_(at), XRMS 1.99.2 (RFI/XSS/IG) Multiple Remote Vulnerabilities (26.07.2008)
 documentMustLive, Vulnerabilities in PostNuke Phoenix (26.07.2008)

Axesstel CDMA-routers unauthorized access
SecurityVulns ID:9176
Threat Level:
Description:It's possible to access configuration pages directly without password.
Original documentdocumentBboyhacks_(at), Security Bypass Vulnerabilities AXESSTEL (29.07.2008)

DoS through HP OpenView Internet Services Probe Builder
SecurityVulns ID:9177
Threat Level:
Description:It's possible to terminate any system process through TCP/32968
Affected:HP : Internet Services Probe Builder 2.2
Original documentdocumentIDEFENSE, iDefense Security Advisory 07.28.08: Hewlett-Packard OVIS Probe Builder Arbitrary Process Termination Vulnerability (29.07.2008)
 documentHP, [security bulletin] HPSBMA02353 SSRT080066 rev.1 - HP OpenView Internet Services Running Probe Builder, Remote Denial of Service (DoS) (29.07.2008)

AVG antivirus DoS
SecurityVulns ID:9178
Threat Level:
Description:Division by zero on UPX files parsing.
Affected:AVG : AVG 8.0
Original documentdocumentsecurity_(at), [Full-disclosure] n.runs-SA-2008.004 - AVG Anti-Virus Divide by Zero - DoS (remote) (29.07.2008)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod