[USN-1093-1] Linux Kernel vulnerabilities (Marvell Dove)

2011-03-28 Thread Jamie Strandboge
=== Ubuntu Security Notice USN-1093-1March 25, 2011 linux-mvl-dove vulnerabilities CVE-2010-2478, CVE-2010-2942, CVE-2010-2943, CVE-2010-2954, CVE-2010-2955, CVE-2010-2960, CVE-2010-2962, CVE-2010-2963, CVE-2010-3067, CVE-2010-3078

[SECURITY] [DSA 2203-1] nss security update

2011-03-28 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2203-1 secur...@debian.org http://www.debian.org/security/Moritz Muehlenhoff March 26, 2011

[SECURITY] [DSA 2204-1] imp4 security update

2011-03-28 Thread Steffen Joeris
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2204-1 secur...@debian.org http://www.debian.org/security/Steffen Joeris March 27, 2011

[security bulletin] HPSBMA02649 SSRT100430 rev.1 - HP Diagnostics, Remote Cross Site Scripting (XSS)

2011-03-28 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c02770512 Version: 1 HPSBMA02649 SSRT100430 rev.1 - HP Diagnostics, Remote Cross Site Scripting (XSS) NOTICE: The information in this Security Bulletin should be acted upon as soon as possible.

SimplisCMS 1.0.3.0 Remote File Disclosure Vulnerability

2011-03-28 Thread root
## # Exploit Title: SimplisCMS 1.0.3.0 Remote File Disclosure Vulnerability # home : http://www.D99Y.com # Date: 27/3/2011 # Author: NassRawI # Software Link: http://modcove.com/index.php # Demo : http://modcove.com/index.php?page=demo # Vers

SimplisCMS 1.0.3.0 SQL injection / Cross Site Scripting

2011-03-28 Thread root
## # Exploit Title: SimplisCMS 1.0.3.0 SQL injection / Cross Site Scripting # home : http://www.D99Y.com # Date: 27/3/2011 # Author: NassRawI # Software Link: http://modcove.com/index.php # Demo : http://modcove.com/index.php?page=demo # Vers

TSSA-2011-01 xpdf : multiple vulnerabilities allow remote code execution

2011-03-28 Thread Advisories Toucan-System
--- * xpdf : multiple vulnerabilities in t1lib* * allow arbitrary remote code execution * - -

[USN-1092-1] Linux Kernel vulnerabilities

2011-03-28 Thread Jamie Strandboge
=== Ubuntu Security Notice USN-1092-1March 25, 2011 linux-source-2.6.15 vulnerabilities CVE-2010-4076, CVE-2010-4077, CVE-2010-4158, CVE-2010-4162, CVE-2010-4163, CVE-2010-4242 ==

Wordpress plugin BackWPup Remote and Local Code Execution Vulnerability - SOS-11-003

2011-03-28 Thread Lists
Sense of Security - Security Advisory - SOS-11-003 Release Date. 28-Mar-2011 Last Update. - Vendor Notification Date. 25-Mar-2011 Product. Wordpress Plugin BackWPup Platform. Independent Affected versions.

Unidesk ReportingService Forceful Browsing Vulnerability

2011-03-28 Thread np
-- 1. Summary: Unidesk management appliance is prone to a forceful browsing vulnerability that allows an attacker access to administrator resources. -- 2. Description

[AntiSnatchOr] OpenCMS <= 7.5.3 multiple vulnerabilities

2011-03-28 Thread Michele Orru
snatchor" Orru (michele.orru AT antisnatchor DOT com) Date: 20110328 I. BACKGROUND OpenCMS from Alkacon Software is a professional, easy to use website content management system. OpenCms helps content managers worldwide to create and maintain beautiful websites fast and efficiently. II. D

[ MDVSA-2011:054 ] java-1.6.0-openjdk

2011-03-28 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2011:054 http://www.mandriva.com/security/ _

ZDI-11-113: Zend Server Java Bridge Design Flaw Remote Code Execution Vulnerability

2011-03-28 Thread ZDI Disclosures
ZDI-11-113: Zend Server Java Bridge Design Flaw Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-113 March 28, 2011 -- CVSS: 10, (AV:N/AC:L/Au:N/C:C/I:C/A:C) -- Affected Vendors: Zend -- Affected Products: Zend Zend Server -- TippingPoint(TM) IPS Custome