ESA-2014-009: RSA BSAFEĀ® SSL-J Multiple Vulnerabilities

2014-02-17 Thread Security Alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ESA-2014-009: RSA BSAFEĀ® SSL-J Multiple Vulnerabilities EMC Identifier: ESA-2014-009 CVE Identifier: CVE-2011-1473, CVE-2014-0625, CVE-2014-0626, CVE-2014-0627 Severity Rating: CVSS v2 Base Score: See below for individual scores Affected

[ MDVSA-2014:034 ] yaml

2014-02-17 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:034 http://www.mandriva.com/en/support/security/

[ MDVSA-2014:031 ] drupal

2014-02-17 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:031 http://www.mandriva.com/en/support/security/

[ MDVSA-2014:033 ] socat

2014-02-17 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:033 http://www.mandriva.com/en/support/security/

[ MDVSA-2014:032 ] flite

2014-02-17 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:032 http://www.mandriva.com/en/support/security/

CISTI'2014: List of Workshops

2014-02-17 Thread ML
** WORKSHOPS *** CISTI'2014 - 9th Iberian Conference on Information Systems and Technologies Barcelona, Spain, June 18 - 21, 2014

[SWRX-2014-001] Open Web Analytics Pre-Auth SQL Injection

2014-02-17 Thread no-reply
Dell SecureWorks Security Advisory SWRX-2014-001 Open Web Analytics Pre-Auth SQL Injection Advisory Information Title: Open Web Analytics Pre-Auth SQL Injection Advisory ID: SWRX-2014-001 Advisory URL: http://www.secureworks.com/cyber-threat-intelligence/advisories/SWRX-2014-001/ Date published:

phpMyBackupPro-2.4 Cross-Site Scripting vulnerability

2014-02-17 Thread iedb . team
### # phpmybackuppro Cross-Site Scripting vulnerability ### # # # @@@@@@@ @@@@@ @@@ # @@@@@@@@@ @@ @@@ @@@@@

Full Disclosure - Linksys EA2700, EA3500, E4200 and EA4500 - Authentication Bypass to Administrative Console

2014-02-17 Thread kyle Lovett
Vulnerable products : Linksys EA2700, EA3500, E4200, EA4500 Vulnerability: Due to an unknown bug, which occurs by every indication during the installation and/or upgrade process, port 8083 will often open, allowing for direct bypass of authentication to the classic Linksys GUI administrative

mbDriveHD v1.0.7 iOS - Multiple Web Vulnerabilities

2014-02-17 Thread Vulnerability Lab
Document Title: === mbDriveHD v1.0.7 iOS - Multiple Web Vulnerabilities References (Source): http://www.vulnerability-lab.com/get_content.php?id=1198 Release Date: = 2014-02-14 Vulnerability Laboratory ID (VL-ID):

File Hub v1.9.1 iOS - Multiple Web Vulnerabilities

2014-02-17 Thread Vulnerability Lab
Document Title: === File Hub v1.9.1 iOS - Multiple Web Vulnerabilities References (Source): http://www.vulnerability-lab.com/get_content.php?id=1195 Release Date: = 2014-02-15 Vulnerability Laboratory ID (VL-ID):

[SECURITY] [DSA 2861-1] file security update

2014-02-17 Thread Salvatore Bonaccorso
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-2861-1 secur...@debian.org http://www.debian.org/security/ Salvatore Bonaccorso February 16, 2014

[SECURITY] [DSA 2862-1] chromium-browser security update

2014-02-17 Thread Michael Gilbert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-2862-1 secur...@debian.org http://www.debian.org/security/ Michael Gilbert February 16, 2014

Jetro Cockpit Secure Browsing vulnerability - Client missing input validation allowing RCE

2014-02-17 Thread Ronen Z
CVE-2014-1861 Affected versions: 4.3.3 4.3.1 and probably prior versions. Jetro Cockpit Secure Browsing makes use of a client running on a user's workstation in the enterprise's internal network, and a server in the DMZ that connects on the client's behalf to the

My PDF Creator DE DM v1.4 iOS - Multiple Vulnerabilities

2014-02-17 Thread Vulnerability Lab
Document Title: === My PDF Creator DE DM v1.4 iOS - Multiple Vulnerabilities References (Source): http://www.vulnerability-lab.com/get_content.php?id=1201 Release Date: = 2014-02-16 Vulnerability Laboratory ID (VL-ID):

[ MDVSA-2014:035 ] libpng

2014-02-17 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:035 http://www.mandriva.com/en/support/security/

[ MDVSA-2014:036 ] varnish

2014-02-17 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:036 http://www.mandriva.com/en/support/security/

Recon 2014 Call For Papers - June 27-29, 2014 - Montreal, Quebec

2014-02-17 Thread cfp2014
CHRISTMAS ISLANDS PATENT APPLICATION20142329 RECON 2014 February 17th, 2014 BACKGROUND [FIELD OF INVENTION] - REcon 2014 is a computer security conference for reverse engineers, hackers, and

[ MDVSA-2014:037 ] ffmpeg

2014-02-17 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:037 http://www.mandriva.com/en/support/security/

[ MDVSA-2014:038 ] kernel

2014-02-17 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:038 http://www.mandriva.com/en/support/security/