Section: .. / 0706-advisories /
| /// File Name: |
s21sec-035-en.txt |
Description:
|
S21sec has discovered a vulnerability in a F5 FirePass SSL VPN script that allows for the injection of arbitrary commands.
| | Author: | Leonardo Nve | | Homepage: | http://www.s21sec.com/ | | File Size: | 2872 | | Last Modified: | Jun 6 23:54:05 2007 |
| MD5 Checksum: | 570b1e9c3a04cd7a539f0036d7b8f462 |
|
| /// File Name: |
gdbupx-overflow.txt |
Description:
|
GDB versions 6.6 and above suffer from a buffer overflow vulnerability.
| | Author: | Lau KaiJern | | File Size: | 7051 | | Last Modified: | Jun 6 19:40:10 2007 |
| MD5 Checksum: | b0b22857d7bc8add8eadabcae4ce770c |
|
| /// File Name: |
outpost40-insuff.txt |
Description:
|
Outpost insufficiently protects its own mutex outpost_ipc_hdr. An arbitrary process is able to open and capture this mutex. In such case, Outpost is not able to use this mutex for its synchronization and its internal mechanisms lock when they try to use it.
| | Homepage: | http://www.matousec.com/ | | Related Exploit: | BTP00002P004AO.zip | | File Size: | 1194 | | Last Modified: | Jun 6 19:10:18 2007 |
| MD5 Checksum: | 8047c728410368f77cf686da4bea3026 |
|
| /// File Name: |
06.01.07-1.txt |
Description:
|
iDefense Security Advisory 06.01.07 - Remote exploitation of an input validation vulnerability in VERITAS Software Corp.'s Storage Foundation 4.3 Enterprise Administration service could allow an unauthenticated attacker to consume excessive resources or crash the service. The vulnerability specifically exists in the handling of packets delivered to the VVR Administration service port, TCP/8199. iDefense Labs confirmed that VERITAS Storage Foundation for Windows version 4.3.01 is vulnerable. It is suspected that all previous versions of are vulnerable.
| | Author: | CIRT.DK | | Homepage: | http://www.idefense.com/ | | File Size: | 4261 | | Related CVE(s): | CVE-2007-1593 | | Last Modified: | Jun 6 18:40:26 2007 |
| MD5 Checksum: | 4e09b7abf51d6d258e9b4e8dbf3cf8ae |
|
| /// File Name: |
TA07-151A.txt |
Description:
|
Technical Cyber Security Alert TA07-151A - The Mozilla web browser and derived products contain several vulnerabilities, the most severe of which could allow a remote attacker to execute arbitrary code on an affected system.
| | Homepage: | http://www.us-cert.gov/ | | File Size: | 3962 | | Last Modified: | Jun 6 18:35:44 2007 |
| MD5 Checksum: | 41d2ea34cf7de2fee6e21671e3c26969 |
|
|
|
|
|