Google Chrome Browser (ChromeHTML://) remote parameter injection POC

2008-12-24 Thread nospam
click me

PGP Desktop 9.0.6 Denial Of Service - ZeroDay

2008-12-24 Thread contact . fingers
--- Advisory: PGP Desktop 9.0.6 Denial Of Service Vulnerability. Version Affected: PGP Desktop 9.0.6 [Build 6060] (other version could be affected) Component Affected: PGPwded.sys Release Date: Release Date. 23 December ,2008 Description: PGP Desk

[ GLSA 200812-21 ] ClamAV: Multiple vulnerabilities

2008-12-24 Thread Pierre-Yves Rofes
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200812-21 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - -

[ GLSA 200812-24 ] VLC: Multiple vulnerabilities

2008-12-24 Thread Tobias Heinlein
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200812-24 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - - -

FreeBSD Security Advisory FreeBSD-SA-08:12.ftpd

2008-12-24 Thread FreeBSD Security Advisories
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 = FreeBSD-SA-08:12.ftpd Security Advisory The FreeBSD Project Topic: C

[ GLSA 200812-22 ] Ampache: Insecure temporary file usage

2008-12-24 Thread Pierre-Yves Rofes
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200812-22 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - -

Personal Sticky Threads v1.0.3c vbulletin Add-on problem

2008-12-24 Thread xl4nothing
Personal Sticky Threads is an addon for vbulletin that allows users to create personal stickies. There appears to be a small problem when toggling the personal sticky on a thread you do not have persmission to access. If I am denied persmission to: http://forums.somesite.com/showthread.ph

FRHACK Registration open (Christmas offer)

2008-12-24 Thread Jerome Athias
Hi list, ### > FRHACK: IT Security Conference, France By Hackers, For Hackers! http://www.frhack.org ### FRHACK registrations are open with a special Christmas offer (available until January 1st 2009) http://f

[ GLSA 200812-23 ] Imlib2: User-assisted execution of arbitrary code

2008-12-24 Thread Pierre-Yves Rofes
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200812-23 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - -

[USN-698-3] Nagios vulnerabilities

2008-12-24 Thread Marc Deslauriers
=== Ubuntu Security Notice USN-698-3 December 23, 2008 nagios2 vulnerabilities CVE-2008-5027, CVE-2008-5028 === A security issue affects the following Ubuntu releases: Ubuntu 8

[SECURITY] [DSA 1688-2] New courier-authlib packages fix regression

2008-12-24 Thread Florian Weimer
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1688-2 secur...@debian.org http://www.debian.org/security/ Steffen Joeris December 22, 2008

[USN-700-1] Perl vulnerabilities

2008-12-24 Thread Kees Cook
=== Ubuntu Security Notice USN-700-1 December 24, 2008 libarchive-tar-perl, perl vulnerabilities CVE-2007-4829, CVE-2008-1927, CVE-2008-5302, CVE-2008-5303 === A security issue

DDIVRT-2008-16 Citrix Broadcast Server 6.0 login.asp SQL Injection --- Update for BID 32832

2008-12-24 Thread VulnerabilityResearch
Title - DDIVRT-2008-16 Citrix Broadcast Server 6.0 login.asp SQL Injection Severity High Date Discovered --- October 14, 2008 Discovered By - Digital Defense, Inc. Vulnerability Research Team Credit: Corey LeBleu and r...@b13$ Vulnerability

FreeBSD Security Advisory FreeBSD-SA-08:13.protosw

2008-12-24 Thread FreeBSD Security Advisories
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 = FreeBSD-SA-08:13.protoswSecurity Advisory The FreeBSD Project Topic: n

[ISecAuditors Security Advisories] PSI remote integer overflow DoS

2008-12-24 Thread ISecAuditors Security Advisories
= INTERNET SECURITY AUDITORS ALERT 2008-004 - Original release date: 12th December, 2008 - Last revised: 22nd December, 2008 - Discovered by: Jesus Olmos Gonzalez - Severity: 4/5 = I. VULNERABILITY

[USN-677-2] OpenOffice.org Internationalization update

2008-12-24 Thread Jamie Strandboge
=== Ubuntu Security Notice USN-677-2 December 23, 2008 openoffice.org-l10n update https://launchpad.net/bugs/310359 === A security issue affects the following Ubuntu releases:

Re: rPSA-2008-0341-1 dovecot

2008-12-24 Thread olga
What Dovecot version prior?

[security bulletin] HPSBST02397 SSRT080187 rev.1 - Storage Management Appliance (SMA), Microsoft Patch Applicability MS08-078

2008-12-24 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c01634640 Version: 1 HPSBST02397 SSRT080187 rev.1 - Storage Management Appliance (SMA), Microsoft Patch Applicability MS08-078 NOTICE: The information in this Security Bulletin should be acted