CVE-2014-2597 - Denial of Service in PCNetSoftware RAC Server

2014-04-17 Thread Portcullis Advisories
Vulnerability title: Denial of Service in PCNetSoftware RAC Server CVE: CVE-2014-2597 Vendor: PCNetSoftware Product: RAC Server Affected version: 4.0.4, 4.0.5 Fixed version: N/A Reported by: Kyriakos Economou Details: Latest and possibly earlier versions of RAC Server software are vulnerable to

Buggy insecure security software executes rogue binary during installation and uninstallation

2014-04-17 Thread Stefan Kanthak
Hi @ll, the $*#§ware by the name of McAfee Security Scanner Plus that Adobe dares to push to unsuspecting users of Microsoft Windows trying to get flash player from their main distribution page hxxp://get.adobe.com/flashplayer/ was developed, packaged and tested by people who obviously never

[security bulletin] HPSBMU02996 rev.1 - HP Network Node Manager I (NNMi) for HP-UX, Linux, Solaris, and Windows, Remote Unauthorized Access, Execution of Arbitrary Code

2014-04-17 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c04026039 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c04026039 Version: 1 HPSBMU02996

[security bulletin] HPSBGN03008 rev.1 - HP Software Service Manager, HeartBleed OpenSSL Vulnerability, Remote Disclosure of Information

2014-04-17 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c04248997 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c04248997 Version: 1 HPSBGN03008

[security bulletin] HPSBMU02982 rev.1 - HP Database and Middleware Automation, Disclosure of Information

2014-04-17 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c04201408 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c04201408 Version: 1 HPSBMU02982

[security bulletin] HPSBMU02988 rev.1 - HP Universal Configuration Management Database, Disclosure of Information

2014-04-17 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c04220407 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c04220407 Version: 1 HPSBMU02988

[security bulletin] HPSBMU02987 rev.1 - HP Universal Configuration Management Database Integration Service, Remote Code Execution

2014-04-17 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c04219959 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c04219959 Version: 1 HPSBMU02987

[security bulletin] HPSBMU02935 rev.2 - HP LoadRunner Virtual User Generator, Remote Code Execution, Disclosure of information

2014-04-17 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c03969437 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c03969437 Version: 2 HPSBMU02935

D-Link DAP-1320 Wireless Range Extender Directory Traversal and XSS Vulnerabilities

2014-04-17 Thread kyle Lovett
D-Link's DAP-1320 Wireless Range Extender suffers from both a directory traversal and a XSS vulnerability on all firmware versions. (current v. 1.20B07) - Directory Traversal

[ MDVSA-2014:079 ] json-c

2014-04-17 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2014:079 http://www.mandriva.com/en/support/security/

[security bulletin] HPSBGN03010 rev.1 - HP Software Server Automation, HeartBleed OpenSSL Vulnerability, Remote Disclosure of Information

2014-04-17 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c04250814 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c04250814 Version: 1 HPSBGN03010

[security bulletin] HPSBMU02998 rev.2 - HP System Management Homepage (SMH) running OpenSSL on Linux and Windows, Remote Disclosure of Information, Denial of Service (DoS)

2014-04-17 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c04239372 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c04239372 Version: 2 HPSBMU02998

[security bulletin] HPSBMU02995 rev.3 - HP Software HP Service Manager, Asset Manager, UCMDB Browser, UCMDB Configuration Manager, Executive Scorecard, Server Automation, Diagnostics, LoadRunner, and

2014-04-17 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c04236102 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c04236102 Version: 3 HPSBMU02995