[VSA0305] HLTV remote DoS

2003-01-10 Thread VOID.AT Security
[void.at Security Advisory VSA0305] HLTV offers the ability to have thousands of spectators watch online games on Half-Life-servers. Overview By sending a specially crafted packet to the hltv-server, an attacker can cause the server to crash. Affected Versions = The on

[VSA0304] Half-Life Client remote hole via Adminmod plugin

2003-01-10 Thread VOID.AT Security
[void.at Security Advisory VSA0304] Half-Life is the underlying game for the most popular online game today, "Counter-Strike", and others. Adminmod is a popular plugin to the half-life-server. Overview Due to a format string in the Half-Life *client*, it is possible for an attacker who

[VSA0301] Half-Life Clanmod remote (root) hole

2003-01-10 Thread VOID.AT Security
[void.at Security Advisory VSA0301] Clanmod[1] is a plugin for the "Half-Life Server", hosting the most popular online game today, "Counter-Strike", among others. Overview Due to a format string bug in clanmod, it is possible for a remote attacker who knows the rcon-password to remotely

More information regarding Etherleak

2003-01-10 Thread Ofir Arkin
This e-mail's purpose is to clear several issues surrounding the Etherleak paper: - Who is Vulnerable? - Why this vulnerability is so wide spread? - Why the examples are only with Linux device drivers? - Why we have contacted CERT? - Are Device Drivers under Microsoft-based OSs are vulnerable? -

BRS WebWeaver FTP Server vulnerabilities

2003-01-10 Thread euronymous
=:=:=::=:=:=::=:=:=::=:=:=::=:=:=::=:=:=::=:=:=::= topic: BRS WebWeaver FTP Server vulnerabilities product: BRS WebWeaver 1.01 (FTP Server) vendor: http://www.bsoutham.org/WebWeaver/ risk: high date: 01/10/2k3 discovered by: euronymous /F0KP /R00tC0de advisory urls: http://f0kp.iplus.ru/bz/012.en.

MDKSA-2003:003 - Updated dhcpcd packages fix character expansion vulnerability

2003-01-10 Thread Mandrake Linux Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Mandrake Linux Security Update Advisory Package name: dhcpcd Advisory ID:

MDKSA-2003:001 - Updated CUPS packages fix multiple vulnerabilities

2003-01-10 Thread Mandrake Linux Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Mandrake Linux Security Update Advisory Package name: cups Advisory ID:

Efficient Networks 5861 DSL Router

2003-01-10 Thread Greg Bolshaw
Product:Efficient Networks 5861 DSL Router http://www.efficient.com/ebz/5800.html Tested version: 5.3.80 (Latest firmware) Advisory date: 10/01/2003 Severity: Moderate Background "Efficient Networks® Business Class IDSL, ADSL, or SDSL Routers