It is currently Tue May 21, 2013 2:28 am

All times are UTC


Search found 1217 matches
Search these results:

Author Message

 Forum: Security and Monitoring   Topic: [CVE-2009-2692] kernel local privilege escalation

Posted: Thu Aug 20, 2009 9:55 am 

Replies: 2
Views: 2536


Thank you! :)

 Forum: Security and Monitoring   Topic: [CVE-2009-2692] kernel local privilege escalation

Posted: Wed Aug 19, 2009 10:56 am 

Replies: 2
Views: 2536


This is a short note about a serious local kernel privilege escalation. (I am sorry for the inactivity recently, I am too busy for my day job lately.) The Linux kernel 2.6.0 through 2.6.30.4, and 2.4.4 through 2.4.37.4, does not initialize all function pointers for socket operations in proto_ops str...

 Forum: Security and Monitoring   Topic: apr-util < 1.3.7, multiple vulnerabilities

Posted: Mon Jun 08, 2009 12:33 am 

Replies: 0
Views: 2019


I saw this from mandriva website: The apr_strmatch_precompile function in strmatch/apr_strmatch.c in Apache APR-util before 1.3.5 allows remote attackers to cause a denial of service (daemon crash) via crafted input involving (1) a .htaccess file used with the Apache HTTP Server, (2) the SVNMasterUR...

 Forum: Security and Monitoring   Topic: [CVE-2009-0893~0894]xvidcore<1.2.2, multiple vulnerabilities

Posted: Wed Jun 03, 2009 5:48 am 

Replies: 0
Views: 1923


Multiple heap-based buffer overflows in xvidcore/src/decoder.c in the xvidcore library in Xvid before 1.2.2, as used by Windows Media Player and other applications, allow remote attackers to execute arbitrary code by providing a crafted macroblock (aka MBlock) number in a video stream in a crafted ...

 Forum: Security and Monitoring   Topic: Firefox v3.0.10, released April 27, 2009

Posted: Wed Jun 03, 2009 5:43 am 

Replies: 7
Views: 4706


viewtopic.php?f=48&t=22839

:-[

 Forum: Gamers   Topic: Re: World of Padman (FPS)

 Post subject: Re: World of Padman (FPS)
Posted: Tue Jun 02, 2009 12:01 am 

Replies: 15
Views: 10007


I think you can try to make the file executable and run it...

:)

 Forum: Security and Monitoring   Topic: [CVE-2009-1195]apache 2.2.x, option handling security bypass

Posted: Fri May 29, 2009 2:18 am 

Replies: 0
Views: 1953


redhat recently patched apache2. CVE-2009-1195 is still reserved, but is disclosed in RHSA-2009-1075[1] A security issue has been reported in Apache HTTP Server, which can be exploited by malicious, local users to bypass certain security restrictions. The security issue is caused due to an error wh...

 Forum: Security and Monitoring   Topic: ImageMagick < 6.5.2-9, TIFF File Integer Overflow

Posted: Thu May 28, 2009 10:19 am 

Replies: 1
Views: 2415


ImageMagick is prone to an integer-overflow vulnerability because it fails to properly bounds-check user-supplied input. The vulnerability occurs when handling malformed TIFF files. Successfully exploiting this issue allows attackers to execute arbitrary code with the privileges of a user running t...

 Forum: Security and Monitoring   Topic: [Reminder] pidgin < 2.5.6, multiple vulnerabilities

Posted: Sat May 23, 2009 12:41 am 

Replies: 0
Views: 1737


Pidgin 2.5.6 is already in SNAPSHOT, this is just a reminder for users to update their package. The remote host is running Pidgin earlier than 2.5.6. Such versions are reportedly affected by multiple buffer overflow vulnerabilities : - A buffer overflow is possible when initiating a file transfer to...

 Forum: Security and Monitoring   Topic: [CVE-2009-1377~1378]openssl 0.9.8x DTLS remote DoS

Posted: Wed May 20, 2009 3:11 pm 

Replies: 0
Views: 1578


The dtls1_buffer_record function in ssl/d1_pkt.c in OpenSSL 0.9.8k and earlier 0.9.8 versions allows remote attackers to cause a denial of service (memory consumption) via a large series of "future epoch" DTLS records that are buffered in a queue, aka "DTLS record buffer limitation b...

 Forum: Security and Monitoring   Topic: libsndfile < 1.0.20, potential heap overflow in VOC files

Posted: Sat May 16, 2009 12:44 am 

Replies: 0
Views: 1417


The 'libsndfile' library is prone to multiple buffer-overflow vulnerabilities because it fails to perform adequate boundary checks on user-supplied data. Attackers can exploit these issues to execute arbitrary code in the context of an application using the library. This can compromise the affected...

 Forum: Security and Monitoring   Topic: Can you make Zenwalk install security updates automatically?

Posted: Fri May 15, 2009 12:26 am 

Replies: 8
Views: 5120


Actually it's written in perl, not python.

I haven't updated the code for awhile, if you find a bug, please send some details about it to me.

Thank you! :-[

 Forum: Security and Monitoring   Topic: Two Adobe Reader Javascript 0-days

Posted: Wed May 13, 2009 12:04 am 

Replies: 3
Views: 2427


Fixed!

http://isc.sans.org/diary.html?storyid=6385
http://www.adobe.com/support/security/b ... 09-06.html

 Forum: Kernel & hardware   Topic: NVidia MCP67 [running with snd-hda-intel] - mic don't work

Posted: Sun May 10, 2009 3:45 pm 

Replies: 2
Views: 1435


Did your friend use an internal or external mic while recording? This seems to be reported on LaunchPad before:
https://bugs.launchpad.net/ubuntu/+sour ... bug/217562

 Forum: Security and Monitoring   Topic: [CVE-2009-0583,0584]ghostscript multiple integer overflows

Posted: Wed May 06, 2009 2:39 pm 

Replies: 3
Views: 2068


Thanks! Please let me know if those patches can't work... :)
Sort by:  
Page 1 of 82 [ Search found 1217 matches ]


All times are UTC


Jump to: