rPSA-2007-0057-1 libwpd

2007-03-16 Thread rPath Update Announcements
rPath Security Advisory: 2007-0057-1 Published: 2007-03-16 Products: rPath Linux 1 Rating: Major Exposure Level Classification: Indirect User Deterministic Unauthorized Access Updated Versions: libwpd=/[EMAIL PROTECTED]:devel//1/0.8.9-1-0.1 References: http://www.cve.mitre.org/cgi-bin/

[ MDKSA-2007:064 ] - Updated openoffice.org packages to address libwpd heap overflow vulnerabilities

2007-03-16 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDKSA-2007:064 http://www.mandriva.com/security/ ___

[ MDKSA-2007:063 ] - Updated libwpd packages to address heap overflow vulnerabilities

2007-03-16 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDKSA-2007:063 http://www.mandriva.com/security/ ___

Re: [Bogus] Lazarus Guestbook (admin.php)Remote File Include Expliot

2007-03-16 Thread Steven M. Christey
Tom Walsh said: >So... either it is patched in the version I am looking at (unlikely) >or this is a bogus report (like god knows how many others). In this case, it looks legitimate for OLDER versions. See informal analysis below. The cause was dynamic variable evaluation, which is one of the f

Re: Your Opinion

2007-03-16 Thread William A. Rowe, Jr.
Mark Litchfield wrote: > I have heard the comment "It's a huge conflict of interest" for one > company to provide both an operating platform and a security platform" > made by John Thompson (CEO Symantec) many times from many different > people. The only conflict that occurs to me is the commercia

Re: Your Opinion

2007-03-16 Thread Neil Dickey
I think that the issue as posed is a false dichotomy. Security is not just a function of the operating system and whatever security features are added to it, but also of the third-party software packages which are installed, everything from Corel Draw to TurboTax. Any program which can accept inp

RE: Your Opinion

2007-03-16 Thread Scott Blake
Wouldn't it be wonderful if we could have this discussion without mentioning the M-word? It seems to me that the OS vendor's ethical obligation is to produce the most secure platform they reasonably can and to fix any and all problems in it for free. Beyond that, lots of security problems exploit

[NETRAGARD-20070316 SECURITY ADVISORY][FrontBase Database <= 4.2.7 ALL PLATFORMS][REMOTE BUFFER OVERFLOW CONDITION][LEVEL: EASY][RISK:MEDIUM]

2007-03-16 Thread Netragard Security Advisories
-- "We make I.T. Safe." [Advisory Information] - --- Contact : Adriel T. Desautels Researcher : Kevin Finisterre Advisory ID : NETRAGARD-20070316 Pr

Re: Your Opinion

2007-03-16 Thread Jonathan Glass (GM)
Mark Litchfield wrote: I have heard the comment "It's a huge conflict of interest" for one company to provide both an operating platform and a security platform" made by John Thompson (CEO Symantec) many times from many different people. See article below. http://www2.csoonline.com/blog_vie

Re: Your Opinion

2007-03-16 Thread Crispin Cowan
Mark Litchfield wrote: > I have heard the comment "It's a huge conflict of interest" for one > company to provide both an operating platform and a security platform" > made by John Thompson (CEO Symantec) many times from many different > people. See article below. > > http://www2.csoonline.com/blo

RE: Your Opinion

2007-03-16 Thread Mario Contestabile
Imo, what J Thompson _meant_ to say was, "It's a pain for security ISVs who have to find creative ways of selling features which are part of the OS; We don't care if it's better for the end user, we care about our bottom line. OS vendors should make no efforts at securing their products so that we,

Your Opinion

2007-03-16 Thread Mark Litchfield
I have heard the comment "It's a huge conflict of interest" for one company to provide both an operating platform and a security platform" made by John Thompson (CEO Symantec) many times from many different people. See article below. http://www2.csoonline.com/blog_view.html?CID=32554 In my p

iDefense Security Advisory 03.16.07: Multiple Vendor libwpd Multiple Buffer Overflow Vulnerabilities

2007-03-16 Thread iDefense Labs
Multiple Vendor libwpd Multiple Buffer Overflow Vulnerabilities iDefense Security Advisory 03.16.07 http://labs.idefense.com/intelligence/vulnerabilities/ Mar 16, 2007 I. BACKGROUND libwpd is a C++ library used to decode and encode word perfect documents. It is commonly used as a plug-in in word

Re: Your Opinion

2007-03-16 Thread bugtraq
I think an issue is that if they are providing an OS and charging for it, that it should have these security features by default. The user shouldn't have to pay additional money to ensure the initial product they purchased is secure. Not to mention of course certain vendors are going to start see

rPSA-2007-0056-1 gnupg

2007-03-16 Thread rPath Update Announcements
rPath Security Advisory: 2007-0056-1 Published: 2007-03-16 Products: rPath Linux 1 Rating: Minor Exposure Level Classification: Indirect Deterministic Weakness Updated Versions: gnupg=/[EMAIL PROTECTED]:devel//1/1.4.7-0.1-1 References: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=

Re: [Full-disclosure] Woltab Burning Board SQL Injection usergroups.php

2007-03-16 Thread Bastian Ahrens
Hi out there, seems to be quite the same exploit as the one appeared in middle January which isn't very public and was marked as "private". The exploit code is nearly the same such as the bug. For a quick fix change the following line if (is_array($_POST['applicationids'])) while (list($appl

Re: fx-APP Version 0.0.8.1

2007-03-16 Thread osdesk
This issue was fixed immediately (which is now a while back) and the administrators of this site were informed by both snail mail and email concerning the simple fix.

Call For Papers - IT Underground Dublin

2007-03-16 Thread Marcin Tkaczyk
Dear Specialists, Call For Papers for IT Underground 2007 - Dublin edition is now open. We kindly invite you as a speaker to our conference to come and share your experiences and insights about IT Security. Prepare your BYOL (Bring Your Own Laptop) presentation or a lecture to pass your knowledg

Rot 13 <= (enkrypt.php) Remote File Disclosure Vulnerability

2007-03-16 Thread BorN To K!LL BorN To K!LL
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+= Rot 13 <= (enkrypt.php) Remote File Disclosure Vulnerability Script: Rot 13 Download: http://www.holtstraeter.com/cybercheffe/scriptsharing/php/categories/misc/rot13.zip Class: Remote File Disclosure Vulnerability Discover: BorN To K!LL

[CAID 34817, 35058, 35158, 35159]: CA BrightStor ARCserve Backup Tape Engine and Portmapper Vulnerabilities

2007-03-16 Thread Williams, James K
Title: [CAID 34817, 35058, 35158, 35159]: CA BrightStor ARCserve Backup Tape Engine and Portmapper Vulnerabilities CA Vuln ID (CAID): 34817, 35058, 35158, 35159 CA Advisory Date: 2007-03-15 Reported By: McAfee Impact: Remote attackers can cause a denial of service or potentially execute arbi

MS07-012 Not Fixed

2007-03-16 Thread Greg Sinclair
*The MS07-012 patch that came out on Black Tuesday in Feb 2007 is not a complete solution to the problem.* Title: MFC42u.dll Off-by-Two Overflow Date: 15 March 2007 Affected: Windows 2000, XP, 2003 (those that were affected by the MS07-012 patch) Reported by: Greg Sinclair (gssincla...nnlsoftware

DirectAdmin Cross Site Scripting XSS

2007-03-16 Thread Mandr4ke . root
-=[Fusi0n Group]=- # Script name .: DirectAdmin # Script site .: http://directadmin.com # Release Date : 15/03/2007 # Version .: All # Find by .: Mandr4ke # Contact .: Mandr4ke.root[at]gmail.com # Greetings ...: Fusi0nGroup & DevilTeam & Nof ---

LIBFtp 5.0 (sprintf(), strcpy()) Multiple local buffer overflow

2007-03-16 Thread starcadi starcadi
http://www.netsw.org/net/ip/filetrans/ftp/libftp/ Description the library has a multiple (sprintf(), strcpy()) buffer overflow in various functions. Source errors fvuln = FtpArchie() FtpDebugDebug() FtpOpenDir() FtpSize() the FtpString is a typedef of an array with 256bytes: FtpLibrary.h:

April, 2007 is the "Month of Myspace Bugs"

2007-03-16 Thread mondo_armando
April, 2007, will be designated the "Month of Myspace Bugs, Yuss!" Reasons: 1. Myspace is important, in that there are a bazillion users and a kajillion dollars involved. 2. "Months of Bugs" are whiny, attention-seeking ploys for acceptance. Myspace's design use is to enable whiny, attenti

Re: Phishing using IE7 local resource vulnerability

2007-03-16 Thread robert
This appears to be mitigated in Vista by Protected Mode, which is on by default, and denies access to local resources. If people decide to disable UAC, they must accept the potential risks that come with it, such as this XSS attack. I appreciate that this is a valid risk for XP.

Oracle Portal PORTAL.wwv_main.render_warning_screen XSS

2007-03-16 Thread Sea Shark
Hi All, During pentest i have noticed XSS bug in PORTAL.wwv_main.render_warning_screen application of oracle portal. http://somesite/pls/portal/PORTAL.wwv_main.render_warning_screen?p_oldurl=' alert('inT')&p_newurl='alert('ellect') Greets, d3nx

[SECURITY] [DSA 1267-1] New webcalendar packages fix remote file inclusion

2007-03-16 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA 1267-1[EMAIL PROTECTED] http://www.debian.org/security/ Moritz Muehlenhoff March 15th, 2006

Re: Iframe-Cash/Iframe-Dollars Adware bundle...oooh... my ....god..

2007-03-16 Thread Nicolas RUFF
> Among other things (password stealer), this BHO has backdoor and > "botnet" capabilities, implementing several remote commands: > + upload > + run > + update > ... Yeah, I love the KILLWINANDREBOOT command, which will basically delete NTLDR and NTDETECT.COM before rebooting Windows ... > Watch