Computer Security
[EN] securityvulns.ru
no-pyccku



xine-lib buffer overflows
updated since 19.08.2004
Published:30.12.2004
Source:BUGTRAQ
SecurityVulns ID:3923
Type:library
Level:6/10
Description:buffer overflow in the PNM, VCD and DVD handling code.
Affected:XINELIB : xine-lib 1.0
 XINE : xine 0.99
 XINE : xine 1.0
Original documentdocumentMichael Roitzsch, XSA-2004-7: stack overflow in AIFF demultiplexer (30.12.2004)
 documentIDEFENSE, iDEFENSE Security Advisory 12.21.04: Multiple Vendor Xine version 0.99.2 PNM Handler PNA_TAG Heap Overflow Vulnerability (22.12.2004)
 documentIDEFENSE, iDEFENSE Security Advisory 12.21.04: Multiple Vendor Xine version 0.99.2 PNM Handler Negative Read Length Heap Overflow Vulnerability (22.12.2004)
 documentXINE, XSA-2004-4: multiple string overflows (17.09.2004)
 documentXINE, XSA-2004-5: heap overflow in DVD subpicture decoder (17.09.2004)
 documentc0ntex_(at)_open-security.org, Open Security Group Advisory #6 (19.08.2004)
 documentGENTOO, [ GLSA 200408-18 ] xine-lib: VCD MRL buffer overflow (19.08.2004)
Files:Xines_Mine - Remote proof of concept example
Discuss:Read or add your comments to this news (0 comments)

QNX crttrap unauthorized file access
Published:30.12.2004
Source:BUGTRAQ
SecurityVulns ID:4320
Type:local
Level:6/10
Description:-c option can be user to read/write any file.
Affected:QNX : QNX 4.25
 QNX : QNX 6.1
 QNX : QNX 6.2
 QNX : QNX 2.4
Original documentdocumentJulio Cesar Fort, [Full-Disclosure] QNX crrtrap arbitrary file read/write vulnerability [RLSA_06-2004] (30.12.2004)
Discuss:Read or add your comments to this news (0 comments)

Mozilla buffer overflow
Published:30.12.2004
Source:BUGTRAQ
SecurityVulns ID:4321
Type:client
Level:7/10
Description:Dynamic memory overflow on news:// URL.
Affected:MOZILLA : Mozilla 1.7
Original documentdocumentMaurycy Prodeus, Heap overflow in Mozilla Browser <= 1.7.3 NNTP code. (30.12.2004)
Discuss:Read or add your comments to this news (0 comments)

astats symbolic links problem
Published:30.12.2004
Source:SECUNIA
SecurityVulns ID:4322
Type:remote
Level:5/10
Description:Symboli links problem on temporary files creation.
Affected:ASTATS : aStats 1.6
Original documentdocumentSECUNIA, [SA13679] aStats Insecure Temporary File Creation (30.12.2004)
Discuss:Read or add your comments to this news (0 comments)

NetCat for Windows buffer overflow
updated since 30.12.2004
Published:02.01.2005
Source:BUGTRAQ
SecurityVulns ID:4319
Type:remote
Level:5/10
Description:Remote buffer overflow if netcat is used in supersever mode (-e option).
Affected:NETCAT : NetCat 1.1
Original documentdocumentCorryL, NetCat V 1.11 Multiple Bugs (02.01.2005)
 documentHat-Squad Security Team, [HAT-SQUAD] NetCat Remote Critical Vulnerability, Poc included (30.12.2004)
Files:Netcat v1.1, "-e" Switch, Remote Buffer Overflow Exploit v0.1
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server