Online Security Advisories

Filed under:Computers, Networks — posted by cehwiedel on September 5, 2008 @ 8:20 am

Today’s online security advisories just out from FrSIRT:

05.09.2008 : HP OpenView Select Identity Connectors Information

Advisories in red are critical and should be addressed immediately.

Update your software as relevant to your installation.

Technorati tags: , .

Online Security Advisories

Filed under:Computers, Networks — posted by cehwiedel on September 4, 2008 @ 8:44 am

Today’s online security advisories just out from FrSIRT:

04.09.2008 : Wireshark Buffer Overflow and Denial of Service
04.09.2008 : Cisco PIX and ASA Information Disclosure and DoS
04.09.2008 : Cisco Secure ACS EAP Remote Denial Of Service
04.09.2008 : IBM AIX “swcons” Insecure Permission Privilege
04.09.2008 : Invision Power Board “name” Remote SQL Injection

Advisories in red are critical and should be addressed immediately.

Update your software as relevant to your installation.

Technorati tags: , .

Online Security Advisories

Filed under:Computers, Networks — posted by cehwiedel on September 3, 2008 @ 9:32 am

Today’s online security advisories just out from FrSIRT:

03.09.2008 : HP OpenView Network Node Manager Denial of Service
03.09.2008 : ClamAV CHM File Processing Remote Denial of Service
03.09.2008 : Ruby on Rails REXML Library Denial of Service
03.09.2008 : Citrix Access Gateway Remote DNS Cache Poisoning
03.09.2008 : Novell iPrint Client “IppCreateServerRef” Buffer
03.09.2008 : HP-UX Netscape / Red Hat Directory Server Remote

Advisories in red are critical and should be addressed immediately.

Update your software as relevant to your installation.

Technorati tags: , .

Online Security Advisories

Filed under:Computers, Networks — posted by cehwiedel on September 2, 2008 @ 8:46 am

Today’s online security advisories just out from FrSIRT:

02.09.2008 : Dreambox DM500 Web Interface Denial of Service
02.09.2008 : vtiger CRM Multiple Parameter Cross Site Scripting
02.09.2008 : Reciprocal Links Manager “site” Remote SQL Injection
02.09.2008 : myPHPNuke “artid” Parameter Remote SQL Injection
02.09.2008 : BLOG Engine Plugin for e107 Remote SQL Injection
02.09.2008 : Nortel Business Communications Manager DNS Poisoning
02.09.2008 : VMware Products Code Execution and Security Bypass

Advisories in red are critical and should be addressed immediately.

Update your software as relevant to your installation.

Technorati tags: , .

Online Security Advisories

Filed under:Computers, Networks — posted by cehwiedel on September 1, 2008 @ 8:05 am

Today’s online security advisories just out from FrSIRT:

01.09.2008 : Novell Forum Unspecified Remote Tcl Code Execution
01.09.2008 : Novell Identity Manager Data Handling Cross Site
01.09.2008 : HP TCP/IP Services for OpenVMS Finger Format String
01.09.2008 : Novell eDirectory Multiple Remote Code Execution
01.09.2008 : IBM WebSphere Application Server Cross Site

Advisories in red are critical and should be addressed immediately.

Update your software as relevant to your installation.

Technorati tags: , .

Online Security Advisories

Filed under:Computers, Networks — posted by cehwiedel on August 29, 2008 @ 8:03 am

Today’s online security advisories just out from FrSIRT:

29.08.2008 : Sun Solaris Covert Channel Local Security Bypass

Advisories in red are critical and should be addressed immediately.

Update your software as relevant to your installation.

Technorati tags: , .

Online Security Advisories

Filed under:Computers, Networks — posted by cehwiedel on August 28, 2008 @ 8:35 am

Today’s online security advisories just out from FrSIRT:

28.08.2008 : OpenOffice.org “rtl_allocateMemory()” Truncation
28.08.2008 : TIBCO Hawk Components Remote Buffer Overflow
28.08.2008 : JustSystems Ichitaro Products Remote Code Execution
28.08.2008 : HP Enterprise Discovery Remote Privilege Escalation
28.08.2008 : IBM DB2 CLR Stored Procedures Unspecified
28.08.2008 : IBM Lotus Quickr Multiple Cross Site Scripting
28.08.2008 : Mono “Sys.Web” Module HTTP Header Injection

Advisories in red are critical and should be addressed immediately.

Update your software as relevant to your installation.

Technorati tags: , .

Large Hadron Rap

Filed under:Physics — posted by cehwiedel on August 27, 2008 @ 5:25 am

This explains all sorts of things…

…including that geeks got rap.

Technorati tags: , .

Red Hat Linux Intrusion

Filed under:Computers, Networks — posted by cehwiedel on August 26, 2008 @ 9:11 am

Today’s online security advisories just out from FrSIRT:

25.08.2008 : Linux Kernel VFS Lookup Local Denial of Service

Redhat script for checking for compromised versions of OpenSSH:

“Last week Red Hat detected an intrusion on certain of its computer systems
and took immediate action”. “In connection with the incident, the intruder
was able to sign a small number of OpenSSH packages relating only to
Red Hat Enterprise Linux 4 (i386 and x86_64 architectures only) and
Red Hat Enterprise Linux 5 (x86_64 architecture only)”.

“processes and efforts to date indicate that packages obtained by
Red Hat Enterprise Linux subscribers via Red Hat Network are not at risk”.

Affected Products: Red Hat Desktop (v. 4)
Red Hat Enterprise Linux (v. 5 server)
Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux AS (v. 4.5.z)
Red Hat Enterprise Linux Desktop (v. 5 client)
Red Hat Enterprise Linux ES (v. 4)
Red Hat Enterprise Linux ES (v. 4.5.z)
Red Hat Enterprise Linux WS (v. 4)

CVEs (cve.mitre.org): CVE-2007-4752

See http://www.redhat.com/security/data/openssh-blacklist.html

Update your software as relevant to your installation.

Technorati tags: , .

Online Security Advisories

Filed under:Computers, Networks — posted by cehwiedel on August 25, 2008 @ 8:07 am

Today’s online security advisories just out from FrSIRT:

25.08.2008 : Novell iPrint Client ActiveX Control Code Execution
25.08.2008 : Ruby REXML Library Entities Handling Denial of
25.08.2008 : xine-lib Multiple Code Execution and Denial of
25.08.2008 : Xen “flask_op” Hypercall Local Buffer Overflow
25.08.2008 : Sun Solaris NFS Kernel Module Local Denial of
25.08.2008 : Avaya Products Perl UTF Parsing Code Execution
25.08.2008 : Avaya Communication Manager Multiple FreeType
25.08.2008 : Linux Kernel “rt6_fill_node()” Local Denial of
25.08.2008 : Trend Micro Web Management Authentication Bypass
25.08.2008 : neon “parse_domain()” Function Denial of Service
25.08.2008 : Libxml2 Recursive Entities Handling Denial of

Advisories in red are critical and should be addressed immediately.

Update your software as relevant to your installation.

Technorati tags: , .


next page


image: lightning ball