[SECURITY] [DSA-2125-1] New openssl packages fix buffer overflow

2010-11-23 Thread Stefan Fritsch
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-2125-1 secur...@debian.org http://www.debian.org/security/ Stefan Fritsch November 22, 2010

Juniper VPN client rdesktop clickhack

2010-11-23 Thread niekt0
Juniper VPN client rdesktop clickhack discovered by nie...@hysteria.sk PRODUCT: Juniper VPN client + Windows remote desktop (or console access) VERSION AFFECTED: Win Vista/7 + Juniper VPN client (all versions) EXPOSURE: Remote code execution (SYSTEM privileges)

[eVuln.com] sitename XSS in Hot Links Lite

2010-11-23 Thread bt
New eVuln Advisory: sitename XSS in Hot Links Lite Summary: http://evuln.com/vulns/143/summary.html Details: http://evuln.com/vulns/143/description.html ---Summary--- eVuln ID: EV0143 Software: Hot Links Lite Vendor: Mrcgiguy Version: 1.0 Critical Level: low Type: Cross Site Scri

Microsoft Visual Studio vulnerability

2010-11-23 Thread jabea
- Microsoft Visual Studio vulnerability Overview: In Microsoft Visual Studio 2010 the DLL CPFE.DLL is vulnerable. A badly written source file make the application crash at loading. That make it really easy to make a simple denial of

ESA-2010-019: RSA, The Security Division of EMC, is reissuing this advisory regarding a potential cross-site scripting vulnerability that has been identified in RSAR Adaptive Authentication (On Premis

2010-11-23 Thread Security_Alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ESA-2010-019: RSA, The Security Division of EMC, is reissuing this advisory regarding a potential cross-site scripting vulnerability that has been identified in RSA® Adaptive Authentication (On Premise) versions 2.x and 5.7.x. Patch 105162 (Secu