On Mon, 16 Apr 2001 [EMAIL PROTECTED] wrote:
-
Red Hat, Inc. Red Hat Security Advisory
Synopsis: Linux kernel 2.2.19 now available, provides security fixes,
enhancements
Advisory ID:
Sorry for not clarifying. This is another vulnerability. The patch made
DOES NOT fix this vulnerability.
The CGISecurity hole only allowed read, not execute, and the patch did not
affect the az field.
The following information is correct. The hole we found effected the forum= field.
It
"Kuo, Jimmy" wrote:
Published in mid-March:
http://vil.nai.com/vil/virusSummary.asp?virus_k=99048
And:
http:[EMAIL PROTECTED]
Sorry for my "old news" advisory - if I were aware of the urls above
I would have not sent it.
Georgi Guninski
In short:
=
An attacker may be able to get any file from a users hard drive if he can
make the recieving party to forward a mail containing a false attachment
reference to this local file.
I remember having submitted this bug to Qualcomm a long time ago ( 4 years)
but this
-BEGIN PGP SIGNED MESSAGE-
=
FreeBSD-SA-01:33 Security Advisory
FreeBSD, Inc.
Topic: globbing
-BEGIN PGP SIGNED MESSAGE-
-
Debian Security Advisory DSA-048-1 [EMAIL PROTECTED]
http://www.debian.org/security/ Wichert Akkerman
April 18, 2001
-
I've just released Samba 2.0.8. This release fixes a significant
security vulnerability that allows local users to corrupt local
devices (such as raw disks).
For most users the Samba Team recommends Samba 2.2.0 which has just
been released. Version 2.2.0 has all the security fixes plus many new
Please check BTQ-881 (http://www.securityfocus.com/vdb/bottom.html?vid=881)
This has already been reported, you might help securityfocus staff, however,
and add which versions are *not* vulnerable.
Regards
Javier Fernndez-Sanguino Pea
[EMAIL PROTECTED]
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Linux-Mandrake Security Update Advisory
Package name: kernel
Date:
Santi Claus wrote:
iPlanet has identified a security vulnerability in the iPlanet
Web Server Enterprise Edition 4.x products. This problem does
not affect any releases of the product prior to the 4.x versions;
however it does affect all iPlanet applications operating on the
iPlanet Web
---
Immunix OS Security Advisory
Packages updated: samba
Affected products: Immunix OS 6.2, 7.0-beta, and 7.0
Bugs Fixed: immunix/1564
Date: April 17, 2001
Advisory ID:
On Tue, 17 Apr 2001, Viraj Alankar wrote:
On Mon, 16 Apr 2001 [EMAIL PROTECTED] wrote:
-
Red Hat, Inc. Red Hat Security Advisory
Synopsis: Linux kernel 2.2.19 now available, provides
==
Defcom Labs Advisory def-2001-19
innfeed buffer overflow
Author: Enrique A. Sanchez Montellano @defcom.com
Author: Alex Hernandez [EMAIL PROTECTED]
Release Date: 2001-04-18
==
Defcom Labs Advisory def-2000-18
Cyberscheduler remote root/execution compromise
Author: Enrique A. Sanchez Montellano [EMAIL PROTECTED]
Release Date: 2001-04-17
- Original Message -
From: SNS Research [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Sent: Friday, April 13, 2001 9:13 PM
Subject: QPC FTPd Directory Traversal and BoF Vulnerabilities
Problem(s):
Directory Traversal Vulnerability
The ftpd daemon that ships with above mentioned packages
IBM Global Services
Managed Security Services
Outside Advisory Redistribution
--- Forwarded Information Starts Here.
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
IBM SECURITY ADVISORY
Tue Apr 10 11:15:04 CDT
In message [EMAIL PROTECTED], [EMAIL PROTECTED] writes:
[ Advisory for Xitami 2.4d7, 2.5d4 ]
[.]
Xitami is a webserver. It has a denial of service.
[]
To test this vulnerability, try the following.
send a request like this one:
www.server.com/aux
some computers crash
Glen Shere wrote:
Santi Claus wrote:
iPlanet has identified a security vulnerability in the iPlanet
Web Server Enterprise Edition 4.x products. This problem does
not affect any releases of the product prior to the 4.x versions;
however it does affect all iPlanet applications operating on
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
- --
Trustix Secure Linux Security Advisory #2001-0005
Package name: samba
Severity: Possible alternation of local files and devices
Date: 2001-04-18
at the time of writing, 5.0p2 is the currently available revision on
iplanet's download site.
the problem:
the standard install of iPlanet Calendar server stores the NAS LDAP
admin username and password in plaintext in the world readable file:
-rw-r--r-- 1 icsuser icsgroup 37882 Feb 20
-BEGIN PGP SIGNED MESSAGE-
-
Debian Security Advisory DSA-048-1 [EMAIL PROTECTED]
http://www.debian.org/security/ Wichert Akkerman
April 19, 2001
-
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
__
Caldera Systems, Inc. Security Advisory
Subject:samba security problems
Advisory number:CSSA-2001-015.0
Issue date:
22 matches
Mail list logo