Advertisement
Home arrow ITsec Advisories
Saturday, 22 November 2008
 
 
Last week attacks
O.S.  Defs.  %
Linux  8778  71.58%
Win 2003  1950  15.90%
Win 2000  722  5.89%
Solaris 9/10  402  3.28%
FreeBSD  226  1.84%
Other  185  1.51%

Total attacks: 12263 of which 4619 single ip and 7644 mass defacements

Main Menu
Home
Digital Warfare
Geopolitics
ITsec News
ITsec Advisories
Test Drive
360°
Digital Attacks Archive
Zone-H events
Publications
Zone-H Friends/Partners
Contact Us
Search
Download Area
Zone-H forum
About this website
Login Form





Lost Password?
No account yet? Register
Visitors' Map
ITsec Advisories


IPSwitch IMail Server IMail Client Buffer Overflow Vulnerability PDF Print E-mail
User Rating: / 0
Written by Staff   
Tuesday, 30 October 2007
Secunia Research has discovered a vulnerability in the IMail Client, which potentially can be exploited by malicious people to compromise a user's system.

The vulnerability is caused due to a boundary error within the IMail Client when processing emails containing multipart MIME data. This can be exploited to cause a data segment-based buffer overflow via an overly long "boundary" parameter (more than 212 bytes)... Write Comment (0 Comments)
Read more...
 
NuFW "samp_send()" Buffer Overflow Vulnerability PDF Print E-mail
User Rating: / 0
Written by Staff   
Tuesday, 30 October 2007
A vulnerability has been reported in NuFW, which can potentially be exploited by malicious people to cause a DoS (Denial of Service).

The vulnerability is caused due to a boundary error within the "samp_send()" function in nuauth/sasl.c when calling "sasl_encode64()". This can potentially be exploited to cause a heap-based buffer overflow with three bytes... Write Comment (0 Comments)
Read more...
 
Liferea "feedlist.opml" Backup Insecure File Permissions PDF Print E-mail
User Rating: / 0
Written by Staff   
Tuesday, 30 October 2007
A security issue has been reported in Liferea, which can be exploited by malicious, local users to disclose sensitive information.

The security issue is caused due to incorrect file permissions being set for the "feedlist.opml" backup file. This can be exploited to retrieve feed or proxy authentication usernames and passwords... Write Comment (0 Comments)
Read more...
 
Sige "SYS_PATH" File Inclusion Vulnerability PDF Print E-mail
User Rating: / 0
Written by Staff   
Tuesday, 30 October 2007
GoLd_M has discovered a vulnerability in Sige, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.

Input passed to the "SYS_PATH" parameter in inc/sige_init.php is not properly verified before being used to include files. This can be exploited to include arbitrary files from local or external resources... Write Comment (1 Comments)
Read more...
 
OpenLDAP Denial of Service Vulnerabilities PDF Print E-mail
User Rating: / 0
Written by Staff   
Tuesday, 30 October 2007
Some vulnerabilities have been reported in OpenLDAP, which can be exploited by malicious users to cause a DoS (Denial of Service).

1) A vulnerability is caused due to the "add_filter_attrs()" function in servers/slapd/overlay/pcache.c not correctly NULL terminating "new_attrs", which can be exploited to crash slapd due to an out of bounds memory access... Write Comment (0 Comments)
Read more...
 
<< Start < Prev 1 2 3 4 5 6 7 8 9 10 Next > End >>

Results 61 - 75 of 9522
 
Top! Top!