PHP-NUKE SQL Module's Name 4ndvddb

2008-07-07 Thread lovebug
Module's Name: 4ndvddb Module's Version: 0.91 +---+ | SQL Injection Vulnerability PHP-NUKE | Module's Name: 4ndvddb | Module's Version: 0.91 | | found by lovebug | |RBT-4 | www.rbt-4.net +--

[ GLSA 200807-03 ] PCRE: Buffer overflow

2008-07-07 Thread Robert Buchholz
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200807-03 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - - -

Re: Multiple vulnerabilities in TietoEnator's Procapita school administration system, at least version

2008-07-07 Thread Juha-Matti Laurio
The vendor Nextime Solutions has informed about the release of upcoming bugfix version this week. The company VP has stated that the test process of fixed version is started and a fixed version will be delivered to customers before a new academic term. TietoEnator sold its education business i

[oCERT-2008-007] libpoppler uninitialized pointer

2008-07-07 Thread Andrea Barisani
2008/07/07 #2008-007 libpoppler uninitialized pointer Description: The poppler PDF rendering library suffers a memory management bug which leads to arbitrary code execution. The vulnerability is present in the Page class constructor/destructor. The pageWidgets object is not initialized in the P