| Mon | Tue | Wed | Thu | Fri | Sat | Sun |
| 1 | 2 | 3 | 4 | |||
| 5 | 6 | 7 | 8 | 9 | 10 | 11 |
| 12 | 13 | 14 | 15 | 16 | 17 | 18 |
| 19 | 20 | 21 | 22 | 23 | 24 | 25 |
| 26 | 27 | 28 | 29 | 30 | 31 | |
[USN-611-2] vorbis-tools vulnerability
( 151 days 5 hours ago)
Ubuntu Security Notice USN-611-2 May 08, 2008 vorbis-tools vulnerability CVE-2008-1686 A security issue affects the following Ubuntu releases: Ubuntu 6.06 LTS Ubuntu 7.04 Ubuntu 7.10 Ubuntu 8.04 LTS This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu. ...
FLEA-2008-0008-1 firefox
( 151 days 5 hours ago)
Foresight Linux Essential Advisory: 2008-0008-1 Published: 2008-05-08 Rating: Moderate Updated Versions: firefox=/foresight.rpath.orgatfl:1-devel//2/2.0.0.14-0.1-1 group-world=/foresight.rpath.orgatfl:devel//2/2.0.1-0.7-2 References: Description: A flaw has been found in previous versions of firefox's JavaScript garbage collector. This issue is known to cause a Denial-of-Service via ...
[USN-611-1] Speex vulnerability
( 151 days 5 hours ago)
Ubuntu Security Notice USN-611-1 May 08, 2008 speex vulnerability CVE-2008-1686 A security issue affects the following Ubuntu releases: Ubuntu 6.06 LTS Ubuntu 7.04 Ubuntu 7.10 Ubuntu 8.04 LTS This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu. ...
Update: Like MySpace, Facebook signs pact with state AGs to protect kids online
( 151 days 10 hours ago)
Facebook has reached an agreement with 49 state attorneys general to update its security features to protect children from predators.

0day treasure hunt: Researcher hides IE attack on Web
( 151 days 10 hours ago)
Security researcher Aviv Raff has a strange way of marking Israel's 60th birthday -- he's published a zero-day vulnerability targeting Internet Explorer, hiding it on the Web and declaring it the object of a "treasure hunt." He revealed the vuln to Microsoft the day before going public.

Re: After 6 months - fix available for Microsoft DNS cache poisoning attack
( 151 days 11 hours ago)
rick.a.cookatgmail.com wrote: > After implementing this patch on a large scale network, it was discovered that this patch caused a dns memory leak. Microsoft has since corrected this issue with a private fix. Amusing. They pulled the fix from being released in October at the last ...
Re: [ECHO_ADV_91$2008] Online Rental Property Script <= 4.5 (pid) Blind Sql Injection Vulnerability
( 151 days 11 hours ago)
Hello, The reported problem has been fixed. Regards, Catalina Danila Online Rent Customer Support Center
iDefense Security Advisory 05.07.08: Multiple Vendor rdesktop process_redirect_pdu() BSS Overflow Vulnerability
( 151 days 11 hours ago)
iDefense Security Advisory 05.07.08 May 07, 2008 I. BACKGROUND rdesktop is an open source client that speaks the Remote Desktop Protocol (RDP). This allows Unix-based users to login to Windows Terminal Servers. More information is available at the following URL. II. DESCRIPTION ...
ZYWALL Referer Header XSS Vulnerability
( 151 days 11 hours ago)
Affected Software/Device: Zyxel ZYWall 100 Vulnerability: Cross Site Scripting Risk: Low Description: The ZyWALL 100 is designed to act as a secure gateway via xDSL/Cable modems or broadband routers for small to medium size companies. The ZyWALL 100 features an ICSA certified firewall, IPSec VPN ...
iDefense Security Advisory 05.07.08: Multiple Vendor rdesktop channel_process() Integer Signedness Vulnerability
( 151 days 11 hours ago)
iDefense Security Advisory 05.07.08 May 07, 2008 I. BACKGROUND rdesktop is an open source client that speaks the Remote Desktop Protocol (RDP). This allows Unix-based users to login to Windows Terminal Servers. More information is available at the following URL. II. DESCRIPTION ...
ezContents CMS Version 2.0.0 SQL Injection Vulnerabilities
( 151 days 11 hours ago)
# # # ...:::::ezContents CMS Version 2.0.0 SQL Injection Vulnerabilities ::::... # Virangar Security Team www.virangar.net Discoverd By :virangar security team(hadihadi) special tnx to:MR.nosrati,black.shadowes,MR.hesy,Zahra & all virangar members & all hackerz greetz:to my best friend in the world hadiaryaie2004 ...
[ GLSA 200805-04 ] eGroupWare: Multiple vulnerabilities
( 151 days 11 hours ago)
- Gentoo Linux Security Advisory GLSA 200805-04 - - Severity: High Title: eGroupWare: Multiple vulnerabilities Date: May 07, 2008 Bugs: #214212, #218625 ID: 200805-04 - Synopsis Multiple vulnerabilities in eGroupWare may lead to execution of ...
Re: After 6 months - fix available for Microsoft DNS cache poisoning attack
( 151 days 11 hours ago)
...
Novell Client <= 4.91 SP4 Local Stack overflow / B.S.O.D (unauthentificated user)
( 151 days 11 hours ago)
Application: Novell Client <= 4.91 SP4 Web Site: Platform: Windows Bug: Local Stack overflow / B.S.O.D (unauthentificated user) Impact: Critical 1) Introduction 2) Bug 3) Proof of concept 4) Credits 1) Introduction ...
iDefense Security Advisory 05.07.08: Multiple Vendor rdesktop iso_recv_msg() Integer Underflow Vulnerability
( 151 days 11 hours ago)
iDefense Security Advisory 05.07.08 May 07, 2008 I. BACKGROUND rdesktop is an open source client that speaks the Remote Desktop Protocol (RDP). This allows Unix-based users to login to Windows Terminal Servers. More information is available at the following URL. II. DESCRIPTION ...
RedHat: Important: gpdf security update
( 151 days 20 hours ago)
LinuxSecurity.com: Kees Cook discovered a flaw in the way gpdf displayed malformed fonts embedded in PDF files. An attacker could create a malicious PDF file that would cause gpdf to crash, or, potentially, execute arbitrary code when opened. (CVE-2008-1693)
Slackware: mozilla-thunderbird
( 151 days 20 hours ago)
LinuxSecurity.com: New mozilla-thunderbird packages are available for Slackware 10.2, 11.0, 12.0, 12.1, and -current to fix security issues, including crashes that can corrupt memory, as well as a JavaScript privilege escalation and arbitrary code execution flaw. More details about these issues may be found here: [ >>>
]
Slackware: php
( 151 days 20 hours ago)
LinuxSecurity.com: New php packages are available for Slackware 10.2, 11.0, 12.0, 12.1, and -current to fix security issues. Note that PHP5 is not the default PHP for Slackware 10.2 or 11.0 (those use PHP4), so if your PHP code is not ready for PHP5, don't upgrade until it is or you'll (by definition) run into problems. More details about one of the issues may be found in the Common Vulnerabilities and Exposures (CVE) database: [ >>>
]
Gentoo: Multiple X11 terminals Local privilege escalation
( 151 days 20 hours ago)
LinuxSecurity.com: A vulnerability was found in aterm, Eterm, Mrxvt, multi-aterm, RXVT, rxvt-unicode, and wterm, allowing for local privilege escalation.






