[SECURITY] [DSA 2193-1] libcgroup security update

2011-03-17 Thread Thijs Kinkhorst
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2193-1 secur...@debian.org http://www.debian.org/security/ Thijs Kinkhorst March 16, 2011

HTB22894: XSS in Sodahead Polls wordpress plugin

2011-03-17 Thread advisory
Vulnerability ID: HTB22894 Reference: http://www.htbridge.ch/advisory/xss_in_sodahead_polls_wordpress_plugin_1.html Product: Sodahead Polls wordpress plugin Vendor: SodaHead.com ( SodaHead.com ) Vulnerable Version: 2.0.2 Vendor Notification: 03 March 2011 Vulnerability Type: XSS (Cross Site

HTB22893: XSS in Sodahead Polls wordpress plugin

2011-03-17 Thread advisory
Vulnerability ID: HTB22893 Reference: http://www.htbridge.ch/advisory/xss_in_sodahead_polls_wordpress_plugin.html Product: Sodahead Polls wordpress plugin Vendor: SodaHead.com ( SodaHead.com ) Vulnerable Version: 2.0.2 Vendor Notification: 03 March 2011 Vulnerability Type: XSS (Cross Site

HTB22892: Path disclosure in Smen Social Button wordpress plugin

2011-03-17 Thread advisory
Vulnerability ID: HTB22892 Reference: http://www.htbridge.ch/advisory/path_disclosure_in_smen_social_button_wordpress_plugin.html Product: Smen Social Button wordpress plugin Vendor: Alexandru Dumencu ( http://smen.ro/ ) Vulnerable Version: 0.7 Vendor Notification: 03 March 2011 Vulnerability

HTB22891: XSS in Rating-Widget wordpress plugin

2011-03-17 Thread advisory
Vulnerability ID: HTB22891 Reference: http://www.htbridge.ch/advisory/xss_in_rating_widget_wordpress_plugin_2.html Product: Rating-Widget wordpress plugin Vendor: Vova Feldman ( http://rating-widget.com/ ) Vulnerable Version: 1.3.1 Vendor Notification: 03 March 2011 Vulnerability Type: XSS

HTB22890: XSS in Rating-Widget wordpress plugin

2011-03-17 Thread advisory
Vulnerability ID: HTB22890 Reference: http://www.htbridge.ch/advisory/xss_in_rating_widget_wordpress_plugin_1.html Product: Rating-Widget wordpress plugin Vendor: Vova Feldman ( http://rating-widget.com/ ) Vulnerable Version: 1.3.1 Vendor Notification: 03 March 2011 Vulnerability Type: XSS

HTB22889: XSS in Rating-Widget wordpress plugin

2011-03-17 Thread advisory
Vulnerability ID: HTB22889 Reference: http://www.htbridge.ch/advisory/xss_in_rating_widget_wordpress_plugin.html Product: Rating-Widget wordpress plugin Vendor: Vova Feldman ( http://rating-widget.com/ ) Vulnerable Version: 1.3.1 Vendor Notification: 03 March 2011 Vulnerability Type: XSS (Cross

[Announcement] ClubHACK Magazine Issue 14-March 2011 released

2011-03-17 Thread abhijeet
Hi All So here we are with our 14th Issue of CHMag. We are loving the contribution of readers. Keep that coming. From this month we are Introducing new section i.e Matruix Vibhag. ClubHACK Magazine: http://chmag.in Direct Download:- http://chmag.in/issue/mar2011.pdf In this issue we have the

[PRE-SA-2011-02] Information disclosure vulnerability in the OSF partition handling code of the Linux kernel

2011-03-17 Thread Timo Warns
PRE-CERT Security Advisory == * Advisory: PRE-SA-2011-02 * Released on: 16 Mar 2011 * Last updated on: 16 Mar 2011 * Affected product: Linux Kernel 2.4 and 2.6 * Impact: disclosure of sensitive information * Origin: storage devices * Credit: Timo Warns (PRESENSE

AST-2011-003:

2011-03-17 Thread Asterisk Security Team
ProductAsterisk SummaryResource exhaustion in Asterisk Manager Interface Nature of Advisory Denial of Service Susceptibility Remote Unauthenticated Sessions if

AST-2011-004:

2011-03-17 Thread Asterisk Security Team
ProductAsterisk SummaryRemote crash vulnerability in TCP/TLS server Nature of Advisory Denial of Service Susceptibility Remote Unauthenticated Sessions

Deferral Announcement for the March 2011 Cisco IOS Software Security Advisories

2011-03-17 Thread Cisco Systems Product Security Incident Response Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Cisco PSIRT regularly discloses vulnerabilities in Cisco IOS Software on the fourth Wednesday in March and September via the Cisco IOS Security Advisory bundle. The next bundled disclosure was planned for Wednesday, March 23, 2011, but Cisco will

[TEHTRI-Security] Quick BlackBerry Security Check

2011-03-17 Thread Laurent OUDOT at TEHTRI-Security
Gents, If you are a lucky BlackBerry owner, or an administrator of many BB devices, you can do a quick security check of your smartphone(s), by browsing this web page from your device (free quick check): http://tehtris.com/bbcheck For now, this will check for you if you are potentially

[ MDVSA-2011:046 ] pure-ftpd

2011-03-17 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2011:046 http://www.mandriva.com/security/

[USN-1079-3] OpenJDK 6 vulnerabilities

2011-03-17 Thread Steve Beattie
=== Ubuntu Security Notice USN-1079-3March 17, 2011 openjdk-6b18 vulnerabilities CVE-2010-4448, CVE-2010-4450, CVE-2010-4465, CVE-2010-4469, CVE-2010-4470, CVE-2010-4471, CVE-2010-4472, CVE-2010-4476, CVE-2011-0706