 |
|
|
|
HP OpenView Operations OVTrace buffer overflow updated since 10.08.2007 | | Published: |  | 29.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8029 | | Type: |  | remote | | Level: |  | 6/10 | | Description: |  | Multiple buffer overflows on request parsing. |
| Original document |  | HP, HPSBMA02236 SSRT061260 rev.1 - HP OpenView Performance Manager (OVPM) Running Shared Trace Service on HP-UX, Solaris, and Windows, Remote Arbitrary Code Execution (29.08.2007) |
| |  | HP, HPSBMA02240 SSRT061260 rev.1 - HP OpenView Operations Manager for Windows (OVOW) with the OpenView Operations Add On Module for OpenView Operations-Business Availability Center Integration Running Shared Trace Service, Remote Arbitrary Code E (16.08.2007) |
| |  | 3COM, TPTI-07-14: HP OpenView Multiple Product Shared Trace Service Stack Overflow Vulnerabilities (15.08.2007) |
| |  | HP, [security bulletin] HPSBMA02239 SSRT061260 rev.1 - HP OpenView Operations (OVO) Agents Running Shared Trace Service, Remote Arbitrary Code Execution (14.08.2007) |
| |  | HP, [security bulletin] HPSBMA02237 SSRT061260 rev.1 - HP OpenView Performance Agent (OVPA) Running Shared Trace Service, Remote Arbitrary Code Execution (14.08.2007) |
| |  | HP, [security bulletin] HPSBMA02238 SSRT061260 rev.1 - HP OpenView Reporter Running Shared Trace Service, Remote Arbitrary Code Execution (14.08.2007) |
| |  | HP, [security bulletin] HPSBMA02241 SSRT061260 rev.1 - HP OpenView Service Quality Manager (OV SQM) Running Shared Trace Service, Remote Arbitrary Code Execution (14.08.2007) |
| |  | HP, [security bulletin] HPSBMA02242 SSRT061260 rev.1 - HP OpenView Network Node Manager (OV NNM) Running Shared Trace Service, Remote Arbitrary Code Execution (14.08.2007) |
| |  | HP, [security bulletin] HPSBMA02245 SSRT061260 rev.1 - HP OpenView Dashboard Running Shared Trace Service, Remote Arbitrary Code Execution (14.08.2007) |
| |  | HP, [security bulletin] HPSBMA02246 SSRT061260 rev.1 - HP OpenView Performance Insight (OVPI) Running Shared Trace Service, Remote Arbitrary Code Execution -------- (14.08.2007) |
| |  | HP, [security bulletin] HPSBMA02235 SSRT061260 rev.1 - HP OpenView Internet Service (OVIS) Running Shared Trace Service, Remote Arbitrary Code Execution (14.08.2007) |
| |  | HP, [security bulletin] HPSBMA02244 SSRT061260 rev.1 - HP OpenView Business Process Insight and Related Products Running Shared Trace Service, Remote Arbitrary Code Execution (14.08.2007) |
| |  | IDEFENSE, iDefense Security Advisory 08.09.07: Hewlett-Packard OpenView Operations OVTrace Buffer Overflow Vulnerabilities (10.08.2007) |
| Timbuktu multiple security vulnerabilities | | Published: |  | 29.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8100 | | Type: |  | remote | | Level: |  | 7/10 | | Description: |  | Multiple buffer overflows and directory traversal. |
| Affected: |  | MOTOROLA : Timbuktu Pro 8.6 | | CVE: |  | CVE-2007-4221 (Multiple buffer overflows in Motorola Timbuktu Pro before 8.6.5 for Windows allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via (1) a long user name and (2) certain malformed requests; and (3) allow remote Timbuktu servers to have an unknown impact via a malformed HELLO response, related to the Scanner component and possibly related to a malformed computer name.) | | |  | CVE-2007-4220 (Directory traversal vulnerability in Motorola Timbuktu Pro before 8.6.5 for Windows allows remote attackers to create or delete arbitrary files via a .. (dot dot) in a Send request, probably related to the (1) Send and (2) Exchange services.) |
| HP-UX get_system_info privilege escalation | | Published: |  | 29.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8101 | | Type: |  | local | | Level: |  | 5/10 | | Description: |  | It's possible to change system configuration with get_system_info if Ignite-UX or the DynRootDisk (DRD) are installed. |
| StarCraft memory corruption | | Published: |  | 29.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8102 | | Type: |  | client | | Level: |  | 3/10 | | Description: |  | Memory corruption on map preview received from server. |
| EnterpriseDB code execution | | Published: |  | 29.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8103 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Uninitialized function pointer call if any debugging function is called before pldbg_create_listener(). |
| IPSwitch WS_FTP crossite scripting | | Published: |  | 29.08.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8104 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Crossite scripting with log file entries in Web interface. |
| Helix DNA Server RTSP server memory corruption | | Published: |  | 29.08.2007 | | Source: |  | FULL-DISCLOSURE | | SecurityVulns ID: |  | 8105 | | Type: |  | remote | | Level: |  | 6/10 | | Description: |  | Memory corruption on multiple RTSP (Real Time Streaming Protocol) "Require" headers. |
|
|
|
|
|
|
|
|