[Full-disclosure] [ GLSA 200510-14 ] Perl, Qt-UnixODBC, CMake: RUNPATH issues

2005-10-17 Thread Thierry Carrez
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200510-14 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - -

[Full-disclosure] flexbackup default config insecure temporary file creation

2005-10-17 Thread ZATAZ Audits
# flexbackup default config insecure temporary file creation Vendor: http://flexbackup.sourceforge.net/ Advisory: http://www.zataz.net/adviso/flexbackup-09192005.txt Vendor informed: yes Exploit available: yes Impact : low Exploitation :

[Full-disclosure] [USN-206-1] Lynx vulnerability

2005-10-17 Thread Martin Pitt
=== Ubuntu Security Notice USN-206-1 October 17, 2005 lynx vulnerability CAN-2005-3120 === A security issue affects the following Ubuntu releases: Ubuntu 4.10 (Warty Warthog)

[Full-disclosure] [USN-207-1] PHP vulnerability

2005-10-17 Thread Martin Pitt
=== Ubuntu Security Notice USN-207-1 October 17, 2005 php4 vulnerability CAN-2005-3054 === A security issue affects the following Ubuntu releases: Ubuntu 4.10 (Warty Warthog)

[Full-disclosure] [USN-208-1] graphviz vulnerability

2005-10-17 Thread Martin Pitt
=== Ubuntu Security Notice USN-208-1 October 17, 2005 graphviz vulnerability CAN-2005-2965 === A security issue affects the following Ubuntu releases: Ubuntu 5.04 (Hoary

[Full-disclosure] [ GLSA 200510-16 ] phpMyAdmin: Local file inclusion vulnerability

2005-10-17 Thread Sune Kloppenborg Jeppesen
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200510-16 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - -

[Full-disclosure] [USN-208-1] SSH server vulnerability

2005-10-17 Thread Martin Pitt
=== Ubuntu Security Notice USN-208-1 October 17, 2005 openssh vulnerability CAN-2005-2798 === A security issue affects the following Ubuntu releases: Ubuntu 4.10 (Warty

[Full-disclosure] PHP Safedir Restriction Bypass Vulnerabilities

2005-10-17 Thread peter MC tachatte
There is a vulnerability (Safedir Restriction Bypass)identified within the GD extension affectingthe following functions:- imagegif()- imagepng()- imagejpeg()in /ext/gd/gd.c line 1647 Which is now fixed in the cvshttp://cvs.php.net/co.php/php-src/ext/gd/gd.c?r=1.312.2.1#1786 POC: with an image

Re: [Full-disclosure] Kerio Personal Firewall and Kerio Server Firewall FWDRV driver Local Denial of Service

2005-10-17 Thread Paul Laudanski
On Thu, 13 Oct 2005, Piotr Bania wrote: Kerio Technologies Kerio Personal Firewall and Kerio Server Firewall FWDRV driver Local denial of service by Piotr Bania [EMAIL PROTECTED] Part of the problem here is that KPF has reached end of life and will no longer be