MS Excel 2002/2003 CRN record 0day PoC

2013-08-19 Thread geinblues
MS Excel 2002/2003 CRN record 0day PoC Hi Forks! It's ms excel poc I discovered. I analyzed it to check the exploitability. It's not exploitable! If you may can, do exploit it! and plz share the 0day exploit. Vulnerable: - Office XP ( Excel 2002 ) sp0 to sp3 - Office

x90c WOFF Firefox 1day exploit

2013-08-19 Thread geinblues
Hi Forks! I share my WOFF 1day exploit. * attachment: http://www.x90c.org/exploits/x90c_WOFF_exploit.tgz (dep bypass) * vulnerability: CVE-2010-1028 WOFF Heap Corruption due to Integer Overflow * affacted Products: - Mozilla Firefox 3.6 ( Gecko 1.9.2 ) - Mozilla Firefox 3.6

Defense in depth -- the Microsoft way (part 7): executable files in data directories

2013-08-19 Thread Stefan Kanthak
Hi, with Windows XP (about 12 years ago) Microsoft started to develop a REALLY NASTY habit: they began to install executable files outside of %SystemRoot%\ and %ProgramFiles%\, in %ALLUSERSPROFILE%\ (since Windows Vista: %ProgramData%\) and even %USERPROFILE%\. Examples: *

[SECURITY] [DSA 2738-1] ruby1.9.1 security update

2013-08-19 Thread Thijs Kinkhorst
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2738-1 secur...@debian.org http://www.debian.org/security/ Thijs Kinkhorst August 18, 2013

Multiple vulnerabilities on Sitecom N300/N600 devices

2013-08-19 Thread roberto . paleari
Multiple vulnerabilities on Sitecom N300/N600 devices = [ADVISORY INFORMATION] Title: Multiple vulnerabilities on Sitecom N300/N600 devices Discovery date: 01/06/2013 Release date: 19/08/2013 Credits:Roberto Paleari