[security bulletin] HPSBMA02664 SSRT100417 rev.1 - HP Insight Control Performance Management for Windows, Remote Privilege Elevation, Cross Site Request Forgery (CSRF)

2011-04-21 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c02748970 Version: 1 HPSBMA02664 SSRT100417 rev.1 - HP Insight Control Performance Management for Windows, Remote Privilege Elevation, Cross Site Request Forgery (CSRF) NOTICE: The information

[security bulletin] HPSBMA02665 SSRT100185 rev.1 - HP Virtual Server Environment for Windows, Remote Privilege Elevation

2011-04-21 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c02749050 Version: 1 HPSBMA02665 SSRT100185 rev.1 - HP Virtual Server Environment for Windows, Remote Privilege Elevation NOTICE: The information in this Security Bulletin should be acted upon

[SECURITY] [DSA 2224-1] openjdk-6 security update

2011-04-21 Thread Florian Weimer
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2224-1 secur...@debian.org http://www.debian.org/security/Florian Weimer April 20, 2011

CA20110420-02: Security Notice for CA Output Management Web Viewer

2011-04-21 Thread Williams, James K
CA20110420-02: Security Notice for CA Output Management Web Viewer Issued: April 20, 2011 CA Technologies support is alerting customers to security risks associated with CA Output Management Web Viewer. Two vulnerabilities exist that can allow a remote attacker to execute arbitrary code.

[USN-1119-1] Linux kernel (OMAP4) vulnerabilities

2011-04-21 Thread Kees Cook
== Ubuntu Security Notice USN-1119-1 April 20, 2011 linux-ti-omap4 vulnerabilities == A security issue affects these releases of Ubuntu and its

CA20110420-01: Security Notice for CA SiteMinder

2011-04-21 Thread Williams, James K
CA20110420-01: Security Notice for CA SiteMinder Issued: April 20, 2011 CA Technologies support is alerting customers to a security risk associated with CA SiteMinder. A vulnerability exists that can allow a malicious user to impersonate another user. CA Technologies has issued patches

HTB22947: XSS in Ajax Category Dropdown wordpress plugin

2011-04-21 Thread advisory
Vulnerability ID: HTB22947 Reference: http://www.htbridge.ch/advisory/xss_in_ajax_category_dropdown_wordpress_plugin.html Product: Ajax Category Dropdown wordpress plugin Vendor: http://www.dyasonhat.com/ ( http://www.dyasonhat.com/ ) Vulnerable Version: 0.1.5 Vendor Notification: 07 April 2011

FreeBSD Security Advisory FreeBSD-SA-11:01.mountd

2011-04-21 Thread FreeBSD Security Advisories
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 = FreeBSD-SA-11:01.mountd Security Advisory The FreeBSD Project Topic:

HTB22946: Multiple SQL Injection in Ajax Category Dropdown wordpress plugin

2011-04-21 Thread advisory
Vulnerability ID: HTB22946 Reference: http://www.htbridge.ch/advisory/multiple_sql_injection_in_ajax_category_dropdown_wordpress_plugin.html Product: Ajax Category Dropdown wordpress plugin Vendor: http://www.dyasonhat.com/ ( http://www.dyasonhat.com/ ) Vulnerable Version: 0.1.5 Vendor

HTB22945: Multiple XSS in ZENphoto

2011-04-21 Thread advisory
Vulnerability ID: HTB22945 Reference: http://www.htbridge.ch/advisory/multiple_xss_in_zenphoto.html Product: ZENphoto Vendor: ZENphoto ( http://www.zenphoto.org/ ) Vulnerable Version: 1.4.0.3 Vendor Notification: 07 April 2011 Vulnerability Type: XSS (Cross Site Scripting) Risk level: Medium

HTB22950: SQL injection in 4images

2011-04-21 Thread advisory
Vulnerability ID: HTB22950 Reference: http://www.htbridge.ch/advisory/sql_injection_in_4images.html Product: 4images Vendor: http://www.4homepages.de/ ( http://www.4homepages.de/ ) Vulnerable Version: 1.7.9 Vendor Notification: 07 April 2011 Vulnerability Type: SQL Injection Status: Fixed by

HTB22949: Multiple Path disclousure in 4images

2011-04-21 Thread advisory
Vulnerability ID: HTB22949 Reference: http://www.htbridge.ch/advisory/multiple_path_disclousure_in_4images.html Product: 4images Vendor: http://www.4homepages.de/ ( http://www.4homepages.de/ ) Vulnerable Version: 1.7.9 Vendor Notification: 07 April 2011 Vulnerability Type: Path disclosure

HTB22944: Path disclousure in ZENphoto

2011-04-21 Thread advisory
Vulnerability ID: HTB22944 Reference: http://www.htbridge.ch/advisory/path_disclousure_in_zenphoto.html Product: ZENphoto Vendor: Zenphoto ( http://www.zenphoto.org/ ) Vulnerable Version: 1.4.0.3 Vendor Notification: 07 April 2011 Vulnerability Type: Path disclosure Risk level: Low Credit:

hack.lu 2011 CFP

2011-04-21 Thread hack.lu 2011 information team
Call for Papers Hack.lu 2011 The purpose of the hack.lu convention is to give an open and free playground where people can discuss the implication of new technologies in society. hack.lu is a balanced mix convention where technical and non-technical people can meet each

[USN-1120-1] tiff vulnerability

2011-04-21 Thread Marc Deslauriers
== Ubuntu Security Notice USN-1120-1 April 21, 2011 tiff vulnerability == A security issue affects these releases of Ubuntu and its derivatives: -

[ MDVSA-2011:076 ] xrdb

2011-04-21 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2011:076 http://www.mandriva.com/security/