[SECURITY] [DSA 2509-1] pidgin security update

2012-07-09 Thread Luciano Bello
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2509-1 secur...@debian.org http://www.debian.org/security/ Luciano Bello July 08, 2012

AST-2012-010: Possible resource leak on uncompleted re-invite transactions

2012-07-09 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2012-010 ProductAsterisk SummaryPossible resource leak on uncompleted re-invite transactions

AST-2012-011: Remote crash vulnerability in voice mail application

2012-07-09 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2012-011 ProductAsterisk SummaryRemote crash vulnerability in voice mail application Nature of Advisory Denial of Service

[SECURITY] CVE-2012-2138 Apache Sling denial of service vulnerability

2012-07-09 Thread Bertrand Delacretaz
CVE-2012-2138 : Apache Sling denial of service vulnerability Severity: Important Vendor: The Apache Software Foundation Versions Affected: org.apache.sling.servlets.post bundle up to 2.1.0 Description: The @CopyFrom operation of the Sling POST servlet allows for copying a parent node to one of

BookNux 0.2 = Multiple Vulnerabilities

2012-07-09 Thread pereira
# BookNux 0.2 = Multiple Vulnerabilities # Discovered by: Jean Pascal Pereira pere...@secbiz.de Vendor information: Commentics is a free, advanced PHP comment script with many features.

[CVE-2012-3376] Apache Hadoop HDFS information disclosure vulnerability

2012-07-09 Thread Aaron T. Myers
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hello, Users of Apache Hadoop should be aware of a security vulnerability recently discovered, as described by the following CVE. In particular, please note the Users affected, Versions affected, and Mitigation sections. The project team will be

BookNux 0.2 = Multiple Vulnerabilities

2012-07-09 Thread pereira
# BookNux 0.2 = Multiple Vulnerabilities # Discovered by: Jean Pascal Pereira pere...@secbiz.de Vendor information: This is an online bookmark manager. It's allow several user, share bookmark

Call for Papers: The 7th International Conference for Internet Technology and Secured Transactions (ICITST-2012)

2012-07-09 Thread Call for papers
Apologies for cross-postings. Kindly email this call for papers to your colleagues, faculty members and postgraduate students. CALL FOR PAPERS * The 7th International Conference for Internet Technology and Secured Transactions

Checkpoint Abra - Vulnerabilities

2012-07-09 Thread komarov
Check Point Abra Vulnerabilities # Vendor: Check Point Software Technologies Ltd Product web page: http://rus.checkpoint.com/products/abra/index.html; http://www.checkpoint.com/products/go/ Platforms: Windows XP, Vista, 7 (32 bit) Authors: Belov V.,

Re: plow 0.0.5 = Buffer Overflow Vulnerability

2012-07-09 Thread Henri Salo
On Tue, Jul 03, 2012 at 12:11:39PM +, pere...@secbiz.de wrote: # plow 0.0.5 = Buffer Overflow Vulnerability # Discovered by: Jean Pascal Pereira pere...@secbiz.de Vendor information:

GreHack 2012 - extended deadline CFP 15th August 2012 (Grenoble, France)

2012-07-09 Thread Fabien DUCHENE
-- *CFP deadline EXTENDED till AUGUST 15TH 2012* -- *GreHack 2012* 3rd Call For Papers http://grehack.org GreHack 2012 conference will take place in Grenoble (Alps), France on October 19th-20th 2012 and brings