D-Link DWL-900AP+ Security Hole

2003-01-17 Thread Jason Tedesco
Overview - The DWL-900AP+ is a wireless access point manufactured by D-Link which is capable of speeds up to 22Mbps. With the realese of a new the new v2.5 firmware for this device comes the latest realese of the D-Link AirPlus Access Point Manager. With this tool you can upgrade the

Re: Local/remote mpg123 exploit

2003-01-17 Thread Daniel Kobras
Hi! I'd like to stress that the mpg123 exploit posted recently does not affect versions up to 0.59r. The vulnerable code was added as part of a rewrite of mpg123's prefetch. CVS checkouts after Oct. 25th, 2000 will be affected, as is the pre0.59s development snapshot. There has been no stable

Re[2]: Local/remote mpg123 exploit

2003-01-17 Thread 3APA3A
Dear Benjamin Tober, Latest release mpg123 0.59r uses large enough buffer size and may not be exploited this way. But both versions have another one bug in frame size calculation - zero bitrate will lead to negative frame size to be calculated. Unchecked patches: for 0.59r: ---

Re: Bug in w-agora

2003-01-17 Thread Nicob
On Sun, 2003-01-12 at 16:03, [EMAIL PROTECTED] wrote: - Product : w-agora - Tested version : version 4.1.5 - Vendor Status: informed The bug : == index.php : $cfg_file = ${cfg_dir}/${bn}.${ext};

Outreach Project Tool

2003-01-17 Thread Martin Eiszner
to the list, 2003/01/16 @[EMAIL PROTECTED] = Outreach Project Tool = Product: O.P.T (Version opt_0.946b / Earlier versions may be vulnerable too) Vendor: Lanifex

Security Update: [CSSA-2003.003.0] Linux: wget directory traversal and buffer overrun vulnerabilities

2003-01-17 Thread security
To: [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] __ SCO Security Advisory Subject:Linux: wget directory traversal and buffer overrun vulnerabilities

RE: Opentype font file causes Windows to restart.

2003-01-17 Thread Armstrong, Richard
Once you have the font installed on the target machine I have demonstrated on WinXP SP1 with Outlook 2002 you simply have to send an email with some text formatted with the restarter.otf font and the machine will reboot once you scroll down to that part of the message either through opening it or

[SECURITY] [DSA 231-1] New dhcp3 packages fix arbitrary code execution

2003-01-17 Thread Martin Schulze
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA 231-1 [EMAIL PROTECTED] http://www.debian.org/security/ Martin Schulze January 17th, 2003