New User, Welcome!     Login

Next Page >>

Dyon Balding

[CAID 35724, 35725, 35726]: CA BrightStor ARCserve Backup Multiple Vulnerabilities

CA Advisory Date: 2007-10-10
CA Advisory Updated: 2007-12-05

Reported By: 
Anonymous researcher working with the iDefense VCP (CVE-2007-5325)
Dyon Balding of Secunia Research (CVE-2007-5326)
Cocoruder of Fortinet Security Research Team (CVE-2007-5327)
Tenable Network Security (CVE-2007-5328)
Pedram Amini of DV Labs (dvlabs.tippingpoint.com) (CVE-2007-5329)
Dyon Balding of Secunia Research (CVE-2007-5330)
eEye Digital Security (CVE-2007-5331)

[CAID 35724, 35725, 35726]: CA BrightStor ARCserve Backup Multiple Vulnerabilities

CA Advisory Date: 2007-10-10

Reported By: 
Anonymous researcher working with the iDefense VCP (CVE-2007-5325)
Dyon Balding of Secunia Research (CVE-2007-5326)
Cocoruder of Fortinet Security Research Team (CVE-2007-5327)
Tenable Network Security (CVE-2007-5328)
Pedram Amini of DV Labs (dvlabs.tippingpoint.com) (CVE-2007-5329)
Dyon Balding of Secunia Research (CVE-2007-5330)
eEye Digital Security (CVE-2007-5331)

CA ARCserve Backup for Laptops and Desktops Server and CA Desktop Management Suite Multiple Vulnerabilities

Title: CA ARCserve Backup for Laptops and Desktops Server and CA 
Desktop Management Suite Multiple Vulnerabilities

CA Advisory Date: 2008-04-03

Reported By: Dyon Balding of Secunia Research

Impact: A remote attacker can execute arbitrary code or cause a 
denial of service condition.

Summary: CA ARCserve Backup for Laptops and Desktops Server 

CA ARCserve Backup LDBserver Vulnerability

CA Advisory Date: 2008-12-10


Reported By:
Dyon Balding of Secunia Research


Impact: A remote attacker can cause a denial of service or execute 
arbitrary code.


Secunia Research: HP OpenView Products Shared Trace Service Denial of Service

22/10/2008 - Public disclosure.

====================================================================== 
6) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
7) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: Trend Micro OfficeScan CGI Parsing Buffer Overflows

22/10/2008 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: CA ARCserve Backup RPC "handle_t" Argument Vulnerability

11/12/2008 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: OpenOffice.org Word Document Table Parsing Buffer Overflow

01/09/2009 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

[ GLSA 200809-03 ] RealPlayer: Buffer overflow

  1  media-video/realplayer     < 11.0.0.4028-r1     >= 11.0.0.4028-r1

Description
===========

Dyon Balding of Secunia Research reported an unspecified heap-based
buffer overflow in the Shockwave Flash (SWF) frame handling.

Impact
======


Secunia Research: Adobe Acrobat/Reader "util.printf()" Buffer Overflow

04/11/2008 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

[security bulletin] HPSBMA02424 SSRT080125 rev.2 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code

CVE-2008-2438    (AV:N/AC:L/Au:N/C:P/I:P/A:N)       6.4
===========================================================
             Information on CVSS is documented
            in HP Customer Notice: HPSN-2008-002

The Hewlett-Packard Company thanks Dyon Balding, Secunia Research for reporting this vulnerability to security-alert@hp.com.

RESOLUTION

HP has made patches available to resolve the vulnerability for NNM v7.53. HP has made archive files available to resolve the vulnerability for NNM v7.01.


Secunia Research: Sun Java JDK/JRE Soundbank Resource Name Buffer Overflow

31/03/2010 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project had originally 

Secunia Research: IBM Tivoli Storage Manager Remote Agent Service Buffer Overflows

04/05/2009 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: Symantec Mail Security Folio Flat File Parsing Buffer Overflows

08/04/2008 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: Microsoft Office FlashPix Tile Data Two Buffer Overflows

14/12/2010 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

[SECURITY] [DSA 2071-1] New libmikmod packages fix several vulnerabilities

Vulnerability  : buffer overflows
Problem type   : local(remote)
Debian-specific: no
CVE Id(s)      : CVE-2009-3995 CVE-2009-3996

Dyon Balding discovered buffer overflows in the MikMod sound library, 
which could lead to the execution of arbitrary code if a user is 
tricked into opening malformed Impulse Tracker or Ultratracker sound 
files.

For the stable distribution (lenny), these problems have been fixed in

Secunia Research: Trend Micro Products Web Management Authentication Bypass

22/08/2008 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: Apple QuickTime PICT Image Parsing Buffer Overflow

10/06/2008 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

[USN-840-1] OpenOffice.org vulnerabilities

After a standard system upgrade you need to restart OpenOffice.org to
effect the necessary changes.

Details follow:

Dyon Balding discovered flaws in the way OpenOffice.org handled tables. If
a user were tricked into opening a specially crafted Word document, a
remote attacker might be able to execute arbitrary code with user
privileges. (CVE-2009-0200, CVE-2009-0201)

A memory overflow flaw was discovered in OpenOffice.org's handling of EMF

[security bulletin] HPSBMA02424 SSRT080125 rev.3 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code

CVE-2008-2438    (AV:N/AC:L/Au:N/C:P/I:P/A:N)       6.4
===========================================================
             Information on CVSS is documented
            in HP Customer Notice: HPSN-2008-002

The Hewlett-Packard Company thanks Dyon Balding, Secunia Research for reporting this vulnerability to security-alert@hp.com.

RESOLUTION

HP has made patches available to resolve the vulnerability for NNM v7.53 and for NNM v7.01.


Secunia Research: Lotus Notes Applix Graphics Parsing Vulnerabilities

08/04/2008 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: Microsoft Word RTF Polyline/Polygon Integer Overflow

09/12/2008 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: IBM Tivoli Storage Manager CAD Service Buffer Overflow

04/11/2009 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: Microsoft Office Drawing Shape Container Parsing Vulnerability

09/11/2010 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: Microsoft Office FlashPix Property Set Parsing Buffer Overflow

14/12/2010 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Akamai Technologies Security Advisory 2008-0003 (Akamai Client Software)

* Credit:

CVE-2008-1106 was independently discovered and brought to Akamai's
attention by Dyon Balding of Secunia Research.


* About Akamai:

Akamai(r) is the leading global service provider for accelerating

Secunia Research: Lotus Notes Folio Flat File Parsing Buffer Overflows

08/04/2008 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: Foxit Reader "util.printf()" Buffer Overflow

20/05/2008 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Secunia Research: McAfee E-Business Server Auth Packet Handling Buffer Overflow

31/10/2007 - Public disclosure.

======================================================================
7) Credits

Discovered by Dyon Balding, Secunia Research.

======================================================================
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned

Secunia Research: activePDF DocConverter Folio Flat File Parsing Buffer Overflows

08/04/2008 - Public disclosure.

====================================================================== 
7) Credits 

Discovered by Dyon Balding, Secunia Research.

====================================================================== 
8) References

The Common Vulnerabilities and Exposures (CVE) project has assigned 

Next Page>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!