[ MDVSA-2013:171 ] gnutls

2013-06-03 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2013:171 http://www.mandriva.com/en/support/security/

[SECURITY] [DSA 2699-1] iceweasel security update

2013-06-03 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2699-1 secur...@debian.org http://www.debian.org/security/Moritz Muehlenhoff June 02, 2013

[SECURITY] [DSA 2700-1] wireshark security update

2013-06-03 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2700-1 secur...@debian.org http://www.debian.org/security/Moritz Muehlenhoff June 02, 2013

[SECURITY] [DSA 2701-1] krb5 security update

2013-06-03 Thread Michael Gilbert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2701-1 secur...@debian.org http://www.debian.org/security/ Michael Gilbert May 29, 2013

Vulnerable Microsoft VC++ 2005 RTM runtime libraries installed with Microsoft Security Essentials (and numerous other Microsoft products)

2013-06-03 Thread Stefan Kanthak
Hi @ll, this is part 2 of Defense in depth -- the Microsoft way, see http://seclists.org/fulldisclosure/2013/May/107 On Windows NT 5.x the current Microsoft Security Essentials v4.2 (available from http://www.microsoft.com/security_essentials, and offered as optional update KB2804527 via

CVE-2013-3663 - SketchUp BMP RLE8 Heap Overflow

2013-06-03 Thread Felipe Manzano
If you are still using a not so old version of SketchUp(8M3) you should upgrade it... Title: SketchUp BMP RLE8 Heap Overflow Product: Google SketchUp Advisory ID: BINA-20120523 CVE ID: CVE-2013-3663 Class: Boundary Error Condition (Buffer Overflow) Vulnerability class: Client side/ file format

CVE-2013-3664 - Sketchup Multiple Vulnerabilities

2013-06-03 Thread Felipe Manzano
Well, you should upgrade SketchUp to the last version (2 bugs here). = = Title: Sketchup MAC Pict Material Palette Stack Corruption Product: Trimble SketchUp Advisory

CVE-2013-3662 - Sketchup MAC Pict Material Palette Stack Corruption

2013-06-03 Thread Felipe Manzano
If you are still using an old version of SketchUp(8M2) you should upgrade it. Title: Sketchup MAC Pict Material Palette Stack Corruption Product: Google SketchUp Advisory ID: BINA-20111201 CVE ID: CVE-2013-3662 Class: Boundary Error Condition (Buffer Overflow) Vulnerability class: Client side/

Unauthenticated command execution on Netgear DGN devices

2013-06-03 Thread roberto
Unauthenticated command execution on Netgear DGN devices [ADVISORY INFORMATION] Title: Unauthenticated command execution on Netgear DGN devices Discovery date: 01/05/2013 Release date: 31/05/2013 Credits:Roberto Paleari

Imperva SecureSphere Operations Manager version 9.0.0.5 - Multiple issues

2013-06-03 Thread Pedro Andujar
Original: http://www.digitalsec.net/stuff/explt+advs/Imperva-SecureSphere.OptMgr.txt === - Advisory - === Tittle: Imperva SecureSphere Operations Manager - Command Execution (Post Authentication)

DS3 Authentication Server - Multiple Issues

2013-06-03 Thread Pedro Andujar
Original: http://www.digitalsec.net/stuff/explt+advs/DS3.AuthServer.txt === - Advisory - === Tittle: DS3 Authentication Server - Command Execution (Post Authentication) other minor issues

Open-Xchange Security Advisory 2013-06-03

2013-06-03 Thread Martin Braun
Open-Xchange Security Advisory (multiple vulnerabilities) Multiple security issues for Open-Xchange Server 6 and OX AppSuite have been discovered and fixed. The vendor has chosen a responsible full disclosure method to publish security issue details. Users of the software have already been

[ISecAuditors Security Advisories] Multiple Vulnerabilities in Telaen = 1.3.0

2013-06-03 Thread ISecAuditors Security Advisories
= INTERNET SECURITY AUDITORS ALERT 2013-009 - Original release date: March 15th, 2013 - Last revised: June 4th, 2013 - Discovered by: Manuel Garcia Cardenas - Severity: 4,8/10 (CVSS Base Score) - CVE-ID: CVE-2013-2621, CVE-2013-2623,