Secunia Research: PDF-XChange Viewer Content Parsing Memory Corruption Vulnerability

2010-01-04 Thread Secunia Research
== Secunia Research 04/01/2010 - PDF-XChange Viewer Content Parsing Memory Corruption Vulnerability - == Table of Contents Affected

Java vulnerability

2010-01-04 Thread Paul
Sorry if this has been posted (or even fixed) before, but my mom just about got infected with something if it weren't for her anti-virus. http://laryju.info/cgi-bin/qw will download and execute a trojan using some sort of java-based vulnerability. AFAIK she's up-to-date on her patches, so perhaps

Latest Intel Pro/10* ethernet adaptor drivers contain vulnerable MSVC runtime!

2010-01-04 Thread Stefan Kanthak
Hi @ll, Intel just released updated drivers for their ethernet network adaptors, see http://downloadcenter.intel.com/Detail_Desc.aspx?agr=YDwnldID=17906ProdId=3025lang=eng and http://downloadcenter.intel.com/Detail_Desc.aspx?agr=YDwnldID=18518ProdId=3025lang=eng for example. Unfortunately ALL

[ GLSA 201001-02 ] Adobe Flash Player: Multiple vulnerabilities

2010-01-04 Thread Alex Legler
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 201001-02 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - -

[Tool] DeepToad 1.1.0

2010-01-04 Thread Joxean Koret
Hi all, I'm happy to announce the very first public release of the open source project DeepToad, a tool for computing fuzzy hashes from files. DeepToad can generate signatures, clusterize files and/or directories and compare them. It's inspired in the very good tool ssdeep [1] and, in fact, both

[ GLSA 201001-01 ] NTP: Denial of Service

2010-01-04 Thread Stefan Behte
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 201001-01 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - -