Computer Security
[EN] securityvulns.ru
no-pyccku



Firefox information leak
Published:31.05.2007
Source:BUGTRAQ
SecurityVulns ID:7760
Type:client
Level:4/10
Description:It's possible to check file existance with resource:// URL.
Affected:MOZILLA : Firefox 2.0
Original documentdocumentThor Larholm, Firefox 0day local file reading (31.05.2007)
Discuss:Read or add your comments to this news (0 comments)

Avira Antivir integer overflow
updated since 28.05.2007
Published:31.05.2007
Source:BUGTRAQ
SecurityVulns ID:7754
Type:remote
Level:6/10
Description:Integer overflow during .LZH archive parsing leads to buffer overflow. Devision by zero on UPX decoding. Infinite loop on TAR parsing.
Original documentdocumentsecurity_(at)_nruns.com, n.runs-SA-2007.012 - Avira Antivir Antivirus TAR Denial of Service (31.05.2007)
 documentsecurity_(at)_nruns.com, n.runs-SA-2007.011 - Avira Antivir Antivirus UPX parsing Divide by Zero Advisory (29.05.2007)
 documentsecurity_(at)_nruns.com, [Full-disclosure] n.runs-SA-2007.010 - Avira Antivir Antivirus LZH parsing Arbitrary Code Execution Advisory (28.05.2007)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server