New User, Welcome!     Login

Next Page >>

Reporter

CORE-2008-0125: CitectSCADA ODBC service vulnerability

systems.

Besides the recommendation of a secure network architecture with strict
network access control measures, OS hardening and other sound system
administration practices a specific workaround for the vulnerability
reported in this advisory is provided below.

The vulnerability is located in the ODBC server service, vulnerable
organizations that do not require ODBC connectivity may disable the
service with no adverse effects to the CitectSCADA software.
Installations that require ODBC connectivity to SQL databases,

[security bulletin] HPSBMA02391 SSRT071481 rev.1 - HP OpenView Reporter and HP Reporter Running on Windows, Remote Denial of Service (DoS)

SUPPORT COMMUNICATION - SECURITY BULLETIN

Document ID: c01612418
Version: 1

HPSBMA02391 SSRT071481 rev.1 - HP OpenView Reporter and HP Reporter Running on Windows, Remote Denial of Service (DoS)

NOTICE: The information in this Security Bulletin should be acted upon as soon as possible.

Release Date: 2008-12-08
Last Updated: 2008-12-08

CORE-2009-0803: Virtual PC Hypervisor Memory Protection Vulnerability

   . Microsoft virtualization products that are based on Hyper-V technology.


6. *Vendor Information, Solutions and Workarounds*

This issue was reported to Microsoft in August 2009. The vendor has
acknowledged the report and after extensive analysis indicated that it
plans to solve the problem in future updates to the associated products.

We recommend affected users to run all mission critical Windows
applications on non-virtualized systems or to use virtualization

Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances

    Availability Impact -      Complete

CVSS Temporal Score - 5.9
    Exploitability -           Functional
    Remediation Level -        Official-Fix
    Report Confidence -        Confirmed


SIP Inspection Denial of Service Vulnerabilities
+-----------------------------------------------


Cisco Security Advisory: Remote Access VPN and SIP Vulnerabilities in Cisco PIX and Cisco ASA

   Availability Impact - Complete

CVSS Temporal Score - 6.4
   Exploitability - Functional
   Remediation Level - Official Fix
   Report Confidence - Confirmed

CSCsq57091 - Memory corruption and traceback when inspecting malformed SIP packets

CVSS Base Score - 7.8
   Access Vector - Network

=?UTF-8?B?bi5ydW5zLVNBLTIwMDguMDA1IC0gQXBwbGUgSW5jLiAtIENvcmVTZXI=?= =?UTF-8?B?dmljZXMgRnJhbWV3b3Jr4oCZcyBDYXJib25Db3JlIEZyYW1ld29yayAtIEFyYmk=?= =?UTF-8?B?dHJhcnkgQ29kZSBFeGVjdXRpb24gKHJlbW90ZSk=?=

                 Products both on Mac OS 10.5 (Leopard) and iPhone 1.1.4,
                 and intends to send them in several phases to Apple Inc.
   2008/03/08    Apple Inc. replies to n.runs AG providing their public
                 pgp key. Apple Inc. states that the Apple Inc. RFP will
                 be used instead of the n.runs RFP
   2008/03/08    n.runs AG responds that vulnerability reporting will
                 only happen under n.runs AG RFP
   2008/03/11    Apple Inc. confirms to n.runs AG that the n.runs AG RFP
                 is aligned to their RFP, and that n.runs may continue
                 with further communication and bug reporting
   2008/03/11    n.runs AG sends PoCs for various issues to Apple Inc.

Cisco Security Advisory: Cisco Unified IP Phone Overflow and Denial of Service Vulnerabilities

    Availability Impact -      Complete

CVSS Temporal Score - 8.3
    Exploitability -           Functional
    Remediation Level -        Official-Fix
    Report Confidence -        Confirmed
    
CSCsk21863 - DNS Response Parsing Stack Overflow

CVSS Base Score - 10.0
    Access Vector -            Network

Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Endpoint Devices

    Availability Impact -      Complete

CVSS Temporal Score - 8.3
    Exploitability -           Functional
    Remediation Level -        Official-Fix
    Report Confidence -        Confirmed

* CSCtb31685 - CGI Command Injection 

CVSS Base Score - 9.0 
    Access Vector -            Network

Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Recording Server

    Availability Impact -      Complete

CVSS Temporal Score - 8.3
    Exploitability -           Functional
    Remediation Level -        Official-Fix
    Report Confidence -        Confirmed

* CSCtf97221 - CGI Command Injection

CVSS Base Score - 10
    Access Vector -            Network

Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch

    Availability Impact -      Complete

CVSS Temporal Score - 8.3
    Exploitability -           Functional
    Remediation Level -        Official-Fix
    Report Confidence -        Confirmed

* CSCtf01253 - Unauthenticated Java Servlet Access

CVSS Base Score - 10
    Access Vector -            Network

SQL-Ledger =?utf-8?Q?=E2=80=93_severa?= =?utf-8?Q?l?= vulnerabilities

SQL-Ledger – several issues
===========================

Date released: 21.12.2009
Date reported: 28.07.2009
$Revision: 1.1 $

by Alexander Klink
   Fraunhofer Institute for Secure Information Technology
   alexander.klink@sit.fraunhofer.de

Cisco Security Advisory: SNMP Version 3 Authentication Vulnerabilities

CVSS Temporal Score - 8.3

        Exploitability           - Functional
        Remediation Level        - Official-Fix
        Report Confidence        - Confirmed



CSCsf30109 - IOS-XR SNMPv3 HMAC Authentication issue
- --------------------------------------------------------

Cisco Security Advisory: Cisco Unified Communications Manager Denial of Service Vulnerabilities

    Availability Impact -       Complete

CVSS Temporal Score - 6.4
    Exploitability -            Functional
    Remediation Level -         Official-Fix
    Report Confidence -         Confirmed

* CSCsi98433 - CTLProvider leaks memory in certain scenarios

CVSS Base Score - 7.8
    Access Vector -             Network

Cisco Security Advisory: Cisco Unified Communications Manager Denial of Service Vulnerabilities

    Availability Impact -       Complete

CVSS Temporal Score - 6.4
    Exploitability -            Functional
    Remediation Level -         Official-Fix
    Report Confidence -         Confirmed

* CSCsi98433 - CTLProvider leaks memory in certain scenarios

CVSS Base Score - 7.8
    Access Vector -             Network

CORE-2007-0821: Lotus Notes buffer overflow in the Lotus WorkSheet file processor

    print '[-] Must specify a filename. Remember to change the pop pop ret
address! :)'
else:
    createMaliciousFile(argv[1])

*Report Timeline*
2007-09-13: Email to IBM AIX security requesting security contact
information for Lotus Notes
2007-09-14: Reply from IBM AIX security team with contact information of
the IBM Lotus Notes security team
2007-09-17: Email to IBM Lotus Notes security notifying Core’s intent to

Cisco Security Advisory: Multiple Vulnerabilities in Cisco Network Building Mediator

  Availability Impact     Complete

CVSS Temporal Score - 8.3
  Exploitability          Functional
  Remediation Level       Official Fix
  Report Confidence       Confirmed

CSCtb83607 - Privilege escalation possible over HTTP protocol
CVSS Base Score - 9
  Access Vector           Network
  Access Complexity       Low

[oCERT-2009-017] PHP multiple issues

Description:

PHP, an open source scripting language, suffers from several bugs that may
pose a security risk.

The reported issues have been discovered in several API functions, issues
include buffer overflows, near null reads/writes, arbitrary memory read
and an off-by-one issue. Some of the issues have been previously reported
in older versions of PHP but they either have not been fixed or they were
re-introduced in a later time. The issues have been discovered in both
core and, in some cases, PECL functions/classes/methods.

CORE-2009-0908: Autodesk SoftImage Scene TOC Arbitrary Command Execution

- -----/



8. *Report Timeline*

. 2009-08-25:
Core Security Technologies ask the Autodesk Assistance Team for a
security contact to report the vulnerability.


CORE-2009-0909: Autodesk 3DS Max Application Callbacks Arbitrary Command Execution

    
- -----/



8. *Report Timeline*

. 2009-08-25:
Core Security Technologies ask the Autodesk Assistance Team for a
security contact to report the vulnerability.


CORE-2009-0910: Autodesk Maya Script Nodes Arbitrary Command Execution

 Save scene to a file with '.mb' or '.ma' format. Next time you open
the scene, calc.exe will be run. This same behavior can be obtained
using pure MEL code.


8. *Report Timeline*

. 2009-08-25:
Core Security Technologies ask the Autodesk Assistance Team for a
security contact to report the vulnerability.


[oCERT-2009-014] Android denial-of-service issues

Description:

Android, an open source mobile phone platform, is affected by two bugs
that lead to denial-of-service (DoS) conditions.

Two separate DoS issues have been independently reported to oCERT.

The most recent report concerns Android handling of SMS messages: a
specific malformed SMS message can be crafted to trigger a condition that
disconnects the mobile phone from the cellular network. The malformed SMS
message consists of a badly formatted WAP Push message which causes an

Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA Adaptive Security Appliance and Cisco PIX Security Appliances

    Availability Impact -      None

CVSS Temporal Score - 6.8
    Exploitability -           High
    Remediation Level -        Official-Fix
    Report Confidence -        Confirmed

* Cisco ASA may crash with certain HTTP packets (CSCsv52239)

CVSS Base Score - 7.8
    Access Vector -            Network

Cisco Security Advisory: Multiple Vulnerabilities in the Cisco ACE Application Control Engine Module and Cisco ACE 4710 Application Control Engine

CVSS Temporal Score - 8.7

 Exploitability          - High
 Remediation Level       - Official-Fix
 Report Confidence       - Confirmed


CSCsq32379 - DM Default Account Credentials

CVSS Base Score - 10   

Re: Horde Webmail file inclusion proof of concept & patch.

Before I get into the technical details of this report, and the Horde  
Team's response, I want to take a minute to explain the perceived slow  
response by the Horde Team to this report.  This issue was released to  
Bugtraq before any notification was sent to the Horde team.  The  
notification sent to security@horde.org was received Thursday at  
nearly 10:30PM Eastern Time , a time after which most of our  
developers are no longer are active.  It was also sent 4 minutes after  
the Bugtraq email.  There was no bug filed on our website, no prior  
warning email, and no courtesy shown by HostGator to the Horde  
community.  The Horde Team does have established procedures for  

Web Hacking Incidenets Database 2007 annual Report is out

The Web Hacking Incidents Database (WHID) annual report for 2007 is out.

The WHID 2007 annual report builds on the new metrics we recently added to
WHID, such as attack method, attack outcome, country and industry sector of
hacked organization to analyze web hacking trends in 2007.

In the report we discuss the drivers for web hacking, the vulnerabilities
exploited and the types of organization attacked. We hope that the report
can serve to highlight the web application security issue and as a base for

Cisco Security Advisory: Multiple Vulnerabilities in Cisco Unified Communications Manager

    Availability Impact -      Complete

CVSS Temporal Score - 6.4
    Exploitability -           Functional
    Remediation Level -        Official-Fix
    Report Confidence -        Confirmed


* CSCtg62855 ("Core dump when processing certain SIP packets")

CVSS Base Score - 7.8

Cisco Security Advisory: Cisco Unified Communications Manager Denial of Service Vulnerabilities

CVSS Temporal Score - 6.4

Exploitability          - Functional
Remediation Level       - Official-Fix
Report Confidence       - Confirmed

CSCtc47823 - CCM Core at invalid Line# in SCCP RegAvailableLines and FwdStatReq

CVSS Base Score - 7.8


CORE-2009-1027: IBM SolidDB invalid error code vulnerability

3. *Vulnerability Description*

SolidDB is an in-memory relational database from IBM with over 3,000,000
deployments [1]. It is used as an embedded database by independent
software vendors of enterprise applications, telecommunications and
embedded software and systems. IBM reports SolidDB as being used in
mission-critical applications from Cisco, HP, Alcatel and Nokia Siemens.
The in-memory database is also used as core component of IBM SolidDB
Universal Cache, a performance improvement application for relational
databases such as DB2, Microsoft SQL Server, Oracle and Informix.


Cisco Security Advisory: Cisco Unified Communications Manager Denial of Service Vulnerabilities

CVSS Temporal Score - 6.4

Exploitability          - Functional
Remediation Level       - Official-Fix
Report Confidence       - Confirmed

CSCsz40392 - CCM: Coredump in sipSafeStrlen from malicious INVITE

Access Vector           - Network
Access Complexity       - Low

[oCERT-2009-012] libtiff tools integer overflows

Fixed version:

libtiff, N/A (patch has been made available and it's expected to be committed
to libtiff CVS)

Credit: vulnerability report and PoC code received from Tielei Wang <wangtielei
        [at] icst [dot] pku [dot] edu [dot] cn>, ICST-ERCIS.

CVE: CVE-2009-2347

Timeline:

Next Page>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!