New User, Welcome!     Login

Next Page >>

remote

HP notebooks remote code execution vulnerability (multiple series)

Advisory:
/////////

Multiple Hewlett-Packard notebook series are prone to a remote code execution attack.
The manufacturer's preinstalled software contains a critical flaw within the software 
built to support one-touch button quick feature access.





Re: Summary of AS/400 Vulnerability Information

7) Known vulnerabilities:

CVE ID          Disclosed       Title
CVE-2000-1038   12/11/2000      The web administration interface for IBM AS/400
Firewall allows remote attackers to cause a denial of service via an
empty GET request.
CVE-2002-1731   12/31/2002      The System Request menu in IBM AS/400 allows
local users to list valid user accounts by viewing the object names that
are type USRPRF.
CVE-2005-0868   05/02/2005      AS/400 Telnet 5250 terminal emulation clients,

Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Recording Server

  * Common Gateway Interface (CGI) Command Injection

  * Unauthenticated Arbitrary File Upload

  * XML-Remote Procedure Call (RPC) Arbitrary File Overwrite

  * Cisco Discovery Protocol Remote Code Execution

  * Ad Hoc Recording Denial of Service


Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch

Multipoint Switch. This security advisory outlines details of the
following vulnerabilities:

  * Unauthenticated Java Servlet Access
  * Unauthenticated Arbitrary File Upload
  * Cisco Discovery Protocol Remote Code Execution
  * Unauthorized Servlet Access
  * Java RMI Denial of Service
  * Real-Time Transport Control Protocol Denial of Service
  * XML-Remote Procedure Call (RPC) Denial of Service


CA DSM gui_cm_ctrls ActiveX Control Vulnerability

Reported By: Greg Linares of eEye Digital Security


Impact: A remote attacker can execute arbitrary code or cause a 
denial of service condition.


Summary: CA products that implement the DSM gui_cm_ctrls ActiveX 
control contain a vulnerability that can allow a remote attacker 

[SECURITY] [DSA-1950-1] New webkit packages fix several vulnerabilities

December 12, 2009                   http://www.debian.org/security/faq
- ------------------------------------------------------------------------

Package        : webkit
Vulnerability  : several
Problem type   : remote (local)
Debian-specific: no
CVE Id         : CVE-2009-0945 CVE-2009-1687 CVE-2009-1690 CVE-2009-1698
                 CVE-2009-1711 CVE-2009-1712 CVE-2009-1725 CVE-2009-1714
                 CVE-2009-1710 CVE-2009-1697 CVE-2009-1695 CVE-2009-1693
                 CVE-2009-1694 CVE-2009-1681 CVE-2009-1684 CVE-2009-1692

[FIXED] Remote Denial of Service for SSH service at Dell DRAC4 (maybe Mocana SSH)

Remote Denial of Service for SSH service at Dell DRAC4 (maybe Mocana SSH)
ETES GmbH Security Advisory; August 13, 2007 - updated January 18, 2007


BACKGROUND
==========

Dell Remote Access Card 4 (DRAC4) allows customers to effectively manage
servers in remote locations where no administrative IT staff exists. It
provides lights out management with continuous video that provides a

[ MDVSA-2010:087 ] poppler

 Problem Description:

 Multiple vulnerabilities has been found and corrected in poppler:
 
 Multiple buffer overflows in the JBIG2 decoder in Xpdf 3.02pl2
 and earlier allow remote attackers to cause a denial of service
 (crash) via a crafted PDF file, related to (1) setBitmap and (2)
 readSymbolDictSeg (CVE-2009-0146).
 
 Multiple integer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and
 earlier allow remote attackers to cause a denial of service (crash)

[ MDVSA-2010:055 ] poppler

 Affected: 2008.0
 _______________________________________________________________________

 Problem Description:

 An out-of-bounds reading flaw in the JBIG2 decoder allows remote
 attackers to cause a denial of service (crash) via a crafted PDF file
 (CVE-2009-0799).
 
 Multiple input validation flaws in the JBIG2 decoder allows
 remote attackers to execute arbitrary code via a crafted PDF file

Windows SMB NTLM Authentication Weak Nonce Vulnerability

1.Vulnerability information
---------------------------

Impact: An unauthenticated remote attacker without any kind of
credentials can access the SMB service under the credentials of an
authorized user. Depending on the privileges of the authorized user, and
the configuration of the remote system, an attacker can gain read/write
access to the remote file system and execute arbitrary code by using
DCE/RPC over SMB.

Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Endpoint Devices

  * Unauthenticated Common Gateway Interface (CGI) Access
  * CGI Command Injection
  * TFTP Information Disclosure
  * Malicious IP Address Injection
  * XML-Remote Procedure Call (RPC) Command Injection
  * Cisco Discovery Protocol Remote Code Execution

Duplicate Issue Identification in Other Cisco TelePresence Advisories
+--------------------------------------------------------------------


[ MDVSA-2011:175 ] poppler

 Problem Description:

 Multiple security vulnerabilities has been discovered and corrected
 in poppler:
 
 An out-of-bounds reading flaw in the JBIG2 decoder allows remote
 attackers to cause a denial of service (crash) via a crafted PDF file
 (CVE-2009-0799).
 
 Multiple input validation flaws in the JBIG2 decoder allows
 remote attackers to execute arbitrary code via a crafted PDF file

[ MDVSA-2009:321 ] pidgin

 Problem Description:

 Security vulnerabilities has been identified and fixed in pidgin:
 
 The NSS plugin in libpurple in Pidgin 2.4.1 does not verify SSL
 certificates, which makes it easier for remote attackers to trick
 a user into accepting an invalid server certificate for a spoofed
 service. (CVE-2008-3532)
 
 Pidgin 2.4.1 allows remote attackers to cause a denial of service
 (crash) via a long filename that contains certain characters, as

CA Multiple Products DSM ListCtrl ActiveX Control Buffer Overflow Vulnerability

CA Advisory Date: 2008-03-28

Reported By: Exploit code posted at milw0rm.com

Impact: A remote attacker can cause a denial of service or execute 
arbitrary code.

Summary: CA products that implement the DSM ListCtrl ActiveX 
control are vulnerable to a buffer overflow condition that can 
allow a remote attacker to cause a denial of service or execute 

Remote Denial of Service for SSH service at Dell DRAC4 (maybe Mocana SSH)

Remote Denial of Service for SSH service at Dell DRAC4 (maybe Mocana SSH)
ETES GmbH Security Advisory; August 13, 2007


BACKGROUND
==========

Dell Remote Access Card 4 (DRAC4) allows customers to effectively manage
servers in remote locations where no administrative IT staff exists. It
provides lights out management with continuous video that provides a

[ MDVSA-2009:283 ] cups

 Problem Description:

 Multiple integer overflows in the JBIG2 decoder in
 Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and
 other products allow remote attackers to cause a denial
 of service (crash) via a crafted PDF file, related to (1)
 JBIG2Stream::readSymbolDictSeg, (2) JBIG2Stream::readSymbolDictSeg,
 and (3) JBIG2Stream::readGenericBitmap. (CVE-2009-0146, CVE-2009-0147)
 
 Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and

FlatPress 0.804-0.812.1 Local File Inclusion to Remote Command Execution

Security Advisory
-----------------
FlatPress 0.804-0.812.1 Local File Inclusion to Remote Command Execution


Researcher Information
----------------------
Discovered by: Giuseppe `Zmax` Fuggiano
Website: http://www.giusef.net
Contact: giuseppe(dot)fuggiano(at)gmail(dot)com

HP laptops Software Update tool vulnerability

Advisory:
/////////

There is another remotely exploitable flaw within software preinstalled in HP notebook machines. This time, the culprit is automatic software update tool provided by the vendor.The Potential exploitation may lead to user files loss or altering vital system files (e.g. kernel), thus leaving PC unbootable.



Overview:
/////////


[ MDVSA-2009:282-1 ] cups

 Problem Description:

 Multiple integer overflows in the JBIG2 decoder in
 Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and
 other products allow remote attackers to cause a denial
 of service (crash) via a crafted PDF file, related to (1)
 JBIG2Stream::readSymbolDictSeg, (2) JBIG2Stream::readSymbolDictSeg,
 and (3) JBIG2Stream::readGenericBitmap. (CVE-2009-0146, CVE-2009-0147)
 
 Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and

[ MDVSA-2009:282 ] cups

 Problem Description:

 Multiple integer overflows in the JBIG2 decoder in
 Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and
 other products allow remote attackers to cause a denial
 of service (crash) via a crafted PDF file, related to (1)
 JBIG2Stream::readSymbolDictSeg, (2) JBIG2Stream::readSymbolDictSeg,
 and (3) JBIG2Stream::readGenericBitmap. (CVE-2009-0146, CVE-2009-0147)
 
 Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and

[security bulletin] HPSBMA02438 SSRT090092 rev.1 - HP ProLiant DL/ML 100 Series G5/G6 Servers with ProLiant Onboard Administrator Powered by LO100i, Remote Denial of Service (DoS)

SUPPORT COMMUNICATION - SECURITY BULLETIN

Document ID: c01767394
Version: 1

HPSBMA02438 SSRT090092 rev.1 - HP ProLiant DL/ML 100 Series G5/G6 Servers with ProLiant Onboard Administrator Powered by LO100i, Remote Denial of Service (DoS)

NOTICE: The information in this Security Bulletin should be acted upon as soon as possible.

Release Date: 2009-07-28
Last Updated: 2009-07-28

[USN-791-1] Moodle vulnerabilities

correctly escape email addresses.  A local attacker with direct access
to the Moodle database could exploit this to execute arbitrary commands
as the web server user. (CVE-2007-3215)

Nigel McNie discovered that fetching https URLs did not correctly escape
shell meta-characters.  An authenticated remote attacker could execute
arbitrary commands as the web server user, if curl was installed and
configured. (CVE-2008-4796, MSA-09-0003)

It was discovered that Smarty (also included in Moodle), did not
correctly filter certain inputs.  An authenticated remote attacker could

Hosting Controller - Multiple Security Bugs (Extremely Critical)

####################
- Discussion:
####################

1- [Remote Attacker] can login to hosting controller Panel. He can also change all others' passwords. 
2- [User] can copy a file to hosting controller web directory which is executed under administrative privilege, so attacker can execute his commands by administrative privilege. e.g. an attacker can gain remote desktop of server using this bug and uploading an ASP file!
3- [Remote Attacker] can make a new user.
4- [Remote Attacker] can change all user's profiles.
5- [User] can see all the database information by a SQL injection.
6- [User] can change his credit amount or increase his discount.

Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Manager

Multiple vulnerabilities exist in the Cisco TelePresence Manager.
This security advisory outlines the details of the following
vulnerabilities:

  * Simple Object Access Protocol (SOAP) Authentication Bypass
  * Java Remote Method Invocation (RMI) Command Injection
  * Cisco Discovery Protocol Remote Code Execution

Duplicate Issue Identification in Other Cisco TelePresence Advisories
+--------------------------------------------------------------------


[SECURITY] [DSA-2115-2] New moodle packages fix several vulnerabilities

October 11, 2010                      http://www.debian.org/security/faq
- ------------------------------------------------------------------------

Package        : moodle
Vulnerability  : several
Problem type   : remote
Debian-specific: no
CVE Id(s)      : CVE-2010-1613 CVE-2010-1614 CVE-2010-1615 CVE-2010-1616 CVE-2010-1617 CVE-2010-1618 CVE-2010-1619 CVE-2010-2228 CVE-2010-2229 CVE-2010-2230 CVE-2010-2231

DSA-2115-1 introduced a regression because it lacked a dependency on
the wwwconfig-common package, leading to installations problems.  This

[SECURITY] [DSA-2115-1] New moodle packages fix several vulnerabilities

September 29, 2010                    http://www.debian.org/security/faq
- ------------------------------------------------------------------------

Package        : moodle
Vulnerability  : several
Problem type   : remote
Debian-specific: no
CVE Id(s)      : CVE-2010-1613 CVE-2010-1614 CVE-2010-1615 CVE-2010-1616 CVE-2010-1617 CVE-2010-1618 CVE-2010-1619 CVE-2010-2228 CVE-2010-2229 CVE-2010-2230 CVE-2010-2231

Several remote vulnerabilities have been discovered in Moodle, a
course management system.  The Common Vulnerabilities and Exposures

Cisco Security Advisory: Cisco SA 500 Series Security Appliances Web Management Interface Vulnerabilities

  * SQL Injection Vulnerability

    The login form of the SA 500 Series Security Appliances is
    vulnerable to a SQL injection vulnerability that could allow an
    unauthenticated, remote attacker to obtain usernames and
    passwords that are configured on an affected device.

    This vulnerability is documented in Cisco bug ID CSCtq65669 and
    has been assigned Common Vulnerabilities and Exposures (CVE)
    ID CVE-2011-2546

[ MDVSA-2011:141 ] firefox

 thunderbird:
 
 Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before
 7.0, and SeaMonkey before 2.4 do not prevent the starting of a download
 in response to the holding of the Enter key, which allows user-assisted
 remote attackers to bypass intended access restrictions via a crafted
 web site (CVE-2011-2372).
 
 Multiple unspecified vulnerabilities in the browser engine in Mozilla
 Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0,
 and SeaMonkey before 2.4 allow remote attackers to cause a denial of

[ MDVSA-2011:170 ] java-1.6.0-openjdk

 Problem Description:

 Security issues were identified and fixed in openjdk (icedtea6)
 and icedtea-web:
 
 IcedTea6 prior to 1.10.4 allows remote untrusted Java Web Start
 applications and untrusted Java applets to affect confidentiality
 via unknown vectors related to Networking (CVE-2011-3547).
 
 IcedTea6 prior to 1.10.4 allows remote untrusted Java Web Start
 applications and untrusted Java applets to affect confidentiality,

[SECURITY] [DSA-1988-1] New qt4-x11 packages fix several vulnerabilities

February 02, 2010                     http://www.debian.org/security/faq
- ------------------------------------------------------------------------

Packages       : qt4-x11
Vulnerability  : several vulnerabilities
Problem type   : local (remote)
Debian-specific: no
CVE Ids        : CVE-2009-0945 CVE-2009-1687 CVE-2009-1690 CVE-2009-1698
                 CVE-2009-1699 CVE-2009-1711 CVE-2009-1712 CVE-2009-1713
                 CVE-2009-1725 CVE-2009-2700
Debian Bugs    : 532718 534946 538347 545793

Next Page>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!