[ MDVSA-2013:146 ] icedtea-web

2013-04-19 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2013:146 http://www.mandriva.com/en/support/security/ __

[ MDVSA-2013:145 ] java-1.6.0-openjdk

2013-04-19 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2013:145 http://www.mandriva.com/en/support/security/ __

Re: SEC Consult SA-20130417-1 :: Java ActiveX Control Memory Corruption

2013-04-19 Thread SEC Consult Vulnerability Lab
Dear list, it's seems we've had a mix-up at the CVE number, the correct CVE number for this issue is: CVE-2013-2416 (S0319764) SEC Consult Vulnerability Lab

TWSL2013-004: Group Name Enumeration Vulnerability in Cisco IKE Implementation

2013-04-19 Thread Trustwave Advisories
Trustwave SpiderLabs Security Advisory TWSL2013-004: Group Name Enumeration Vulnerability in Cisco IKE Implementation https://www.trustwave.com/spiderlabs/advisories/TWSL2013-004.txt Published: 04/18/13 Version: 1.0 Vendor: Cisco (www.cisco.com) Product: ASA (Adaptive Security Appliance) Version

VUPEN Security Research - Adobe Flash Player RTMP Data Processing Object Confusion (CVE-2013-2555)

2013-04-19 Thread VUPEN Security Research
VUPEN Security Research - Adobe Flash Player RTMP Data Processing Object Confusion Code Execution (CVE-2013-2555) Website : http://www.vupen.com Twitter : http://twitter.com/vupen I. BACKGROUND - Adobe Flash Player is a cross-platform browser-based application runtime that