google apps googleapps.url.mailto:// uri handler cross-browser remote command
execution exploit (Internet Explorer)
by nine:situations:group::pyrokinesis
site: http://retrogod.altervista.org/
software site: http://pack.google.com/intl/it/pack_installer.html
tested against: Internet Explorer 8,
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
-
VMware Security Advisory
Advisory ID: VMSA-2009-0013
Synopsis: VMware Fusion resolves two security issues
Issue date:2009-10-01
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
All - the first bug is self-explanatory,
# Kernel denial of service vulnerability
An integer overflow vulnerability in the vmx86 kernel extension allows
for a denial of service by an unprivileged user.
The vmx86 kext ioctl handler contains
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
-
Debian Security Advisory DSA-1898-1 secur...@debian.org
http://www.debian.org/security/ Florian Weimer
October 02, 2009
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
-
Debian Security Advisory DSA-1899-1 secur...@debian.org
http://www.debian.org/security/ Florian Weimer
October 02, 2009
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
___
Mandriva Linux Security Advisory MDVSA-2009:255
http://www.mandriva.com/security/
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
=
FreeBSD-SA-09:13.pipe Security Advisory
The FreeBSD Project
Topic:
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
=
FreeBSD-SA-09:14.devfs Security Advisory
The FreeBSD Project
Topic: