[SECURITY] [DSA 1821-1] New amule packages fix insufficient input sanitising

2009-06-23 Thread Steffen Joeris
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1821-1 secur...@debian.org http://www.debian.org/security/ Steffen Joeris June 22, 2009

[ MDVSA-2009:138 ] tomcat5

2009-06-23 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2009:138 http://www.mandriva.com/security/

CFP: ISOI 7 - Sept 17, 18 - San Diego

2009-06-23 Thread Gadi Evron
The 7th ISOI (Internet Security Operations and Intelligence) will take place on September 17th and 18th in San Diego, California. ISOI 7 is kindly hosted by Websense and ESET. The evening reception is graciously hosted by Facebook. An early draft agenda can be found here:

[SECURITY] [DSA 1822-1] New mahara packages fix cross-site scripting

2009-06-23 Thread Nico Golde
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA-1822-1secur...@debian.org http://www.debian.org/security/ Nico Golde June 23rd, 2009

n.runs-SA-2009.006 - Apple Safari - Null pointer dereference

2009-06-23 Thread security
n.runs AG http://www.nruns.com/ security(at)nruns.com n.runs-SA-2009.006 23-Jun-2009 ___ Vendor:Apple Inc., http://www.apple.com Affected

n.runs-SA-2009.005 - Apple Safari - Information disclosure

2009-06-23 Thread security
n.runs AG http://www.nruns.com/ security(at)nruns.com n.runs-SA-2009.005 23-Jun-2009 ___ Vendor:Apple Inc., http://www.apple.com Affected

Authentication Bypas in BASE version 1.2.4 and prior

2009-06-23 Thread timmedin
Versions prior to 1.2.4 are affected. The issue was fixed in version 1.2.5. The authentication process checks the cookies to see if the user has a given role. The user and role defined in the cookie is not validated during this process. An attacker can add a cookie (shown below) in order to