International Hacking Conference POC2001 Call for Paper

2010-09-13 Thread pocadm
The 5th international hacking and security conference POC2019 by hackers will be held in Seoul, Korea on December 14 ~ 15(because of G20 Summit Meeting, the date was changed.) 'POC' means “Power of Community”. POC believes that the power of community can make the world safer. POC doesn’t

[SECURITY] [DSA 2097-2] New phpmyadmin packages fix several vulnerabilities

2010-09-13 Thread Thijs Kinkhorst
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-2097-2 secur...@debian.org http://www.debian.org/security/ Thijs Kinkhorst September 11, 2010

MVSA-10-009 / CVE-2010-0155 - IBM Proventia Network Mail Security System - CRLF Injection vulnerability

2010-09-13 Thread marian . ventuneac
Security Advisory: MVSA-10-009 / CVE-2010-0155 Vendor: IBM Products: Proventia Network Mail Security System Vulnerabilities:CRLF Injection Risk: Medium Attack Vector: From Remote Authentication: Required

[ MDVSA-2010:174 ] quagga

2010-09-13 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2010:174 http://www.mandriva.com/security/

MVSA-10-008 / CVE-2010-0154 - IBM Proventia Mail Security System - Insecure Direct Object Reference vulnerability

2010-09-13 Thread marian . ventuneac
Security Advisory: MVSA-10-008 / CVE-2010-0154 Vendor: IBM Products: Proventia Network Mail Security System Vulnerabilities:Insecure Direct Object Reference Risk: Medium Attack Vector: From Remote Authentication:

[ MDVSA-2010:175 ] sudo

2010-09-13 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2010:175 http://www.mandriva.com/security/

[ MDVSA-2010:179 ] libglpng

2010-09-13 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2010:179 http://www.mandriva.com/security/

[ MDVSA-2010:180 ] rpm

2010-09-13 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2010:180 http://www.mandriva.com/security/

Wireshark 1.4.0 Malformed SNMP V1 Packet Denial of Service

2010-09-13 Thread yangdn
Wireshark 1.4.0 Malformed SNMP V1 Packet Denial of Service -- I. Summary A flaw has been identified in Wireshark 1.4.0 concerning the ASN.1/BER dissector that will cause a denial of service (stack overflow and null pointer

MVSA-10-006 / CVE-2010-0153 - IBM Proventia Network Mail Security System - Cross-Site Request Forgery vulnerabilities

2010-09-13 Thread marian . ventuneac
Security Advisory: MVSA-10-006 / CVE-2010-0153 Vendor: IBM Products: Proventia Network Mail Security System Vulnerabilities:Cross-Site Request Forgery (XSRF) Risk: High Attack Vector: From Remote

Secunia Research: MailEnable SMTP Service Two Denial of Service Vulnerabilities

2010-09-13 Thread Secunia Research
== Secunia Research 13/09/2010 - MailEnable SMTP Service Two Denial of Service Vulnerabilities - == Table of Contents Affected

[ MDVSA-2010:176 ] tomcat5

2010-09-13 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2010:176 http://www.mandriva.com/security/

H2HC 2010 Sao Paulo - Capture the Flag

2010-09-13 Thread Rodrigo Rubira Branco (BSDaemon)
The game this year is entitled Capture the Captcha! A Captcha is a type of challenge-response test used in computing to ensure that the response is not generated by a computer. It is a contrived acronym for Completely Automated Public Turing test to tell Computers and Humans Apart. The process

Adobe LiveCycle ES DLL Hijacking Exploit (.dll)

2010-09-13 Thread admin
##www.BugReport.ir # #AmnPardaz Security Research Team # # Title:Adobe LiveCycle ES DLL Hijacking Exploit (.dll) # Vendor: http://www.adobe.com/products/livecycle/ # Vulnerable Version:

[ MDVSA-2010:177 ] tomcat5

2010-09-13 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2010:177 http://www.mandriva.com/security/

[ MDVSA-2010:178 ] ocsinventory

2010-09-13 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2010:178 http://www.mandriva.com/security/

MVSA-10-007 / CVE-2010-0152 - IBM Proventia Mail Security System - Multiple persistent and reflected XSS vulnerabilities

2010-09-13 Thread marian . ventuneac
Security Advisory: MVSA-10-007 / CVE-2010-0152 Vendor: IBM Products: Proventia Network Mail Security System Vulnerabilities:Multiple Cross-Site Scripting (XSS) Risk: High Attack Vector: From Remote Authentication:

ZDI-10-172: Mozilla Firefox tree Object Removal Remote Code Execution Vulnerability

2010-09-13 Thread ZDI Disclosures
ZDI-10-172: Mozilla Firefox tree Object Removal Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-10-172 September 13, 2010 -- CVE ID: CVE-2010-3168 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Mozilla Firefox -- Affected Products: Mozilla

ZDI-10-171: Mozilla Firefox nsTreeContentView Dangling Pointer Remote Code Execution Vulnerability

2010-09-13 Thread ZDI Disclosures
ZDI-10-171: Mozilla Firefox nsTreeContentView Dangling Pointer Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-10-171 September 13, 2010 -- CVE ID: CVE-2010-3167 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Mozilla Firefox -- Affected

ZDI-10-169: Novell Netware SSHD.NLM Remote Code Execution Vulnerability

2010-09-13 Thread ZDI Disclosures
ZDI-10-169: Novell Netware SSHD.NLM Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-10-169 September 1, 2010 -- CVSS: 9, (AV:N/AC:L/Au:S/C:C/I:C/A:C) -- Affected Vendors: Novell -- Affected Products: Novell Netware -- Vulnerability Details: This

ZDI-10-170: Apple Safari Webkit Runin Remote Code Execution Vulnerability

2010-09-13 Thread ZDI Disclosures
ZDI-10-170: Apple Safari Webkit Runin Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-10-170 September 13, 2010 -- CVE ID: CVE-2010-1806 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Apple -- Affected Products: Apple WebKit --

ZDI-10-173: Mozilla Firefox nsTreeSelection Dangling Pointer Remote Code Execution Vulnerability

2010-09-13 Thread ZDI Disclosures
ZDI-10-173: Mozilla Firefox nsTreeSelection Dangling Pointer Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-10-173 September 13, 2010 -- CVE ID: CVE-2010-2760 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Mozilla Firefox -- Affected