Vulnwatch: by author

66 messages starting Apr 06 07 and ending Apr 29 07
Date index | Thread index | Author index


3APA3A

Re: [Full-disclosure] Mozilla Firefox Insecure Element Stealth Injection Vulnerability 3APA3A (Apr 06)

Alec Storm

Syhunt: Google Talk (gTalk) HTML Injection Technique Alec Storm (Apr 24)
Syhunt: Flixster Cross-Site Scripting Vulnerabilities Alec Storm (Apr 24)
Syhunt: MyCyberTwin Multiple Cross-Site Scripting Vulnerabilities Alec Storm (Apr 24)

Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: Default Passwords in NetFlow Collection Engine Cisco Systems Product Security Incident Response Team (Apr 25)
Cisco Security Advisory: LDAP and VPN Vulnerabilities in PIX and ASA Appliances Cisco Systems Product Security Incident Response Team (May 02)

d4rksoft

Re: Latinchat Denial Of Service d4rksoft (Apr 08)

Dennis Rand

CSIS Advisory: Microsoft GDI+ Integer division by zero flaw handling .ICO files Dennis Rand (Jun 07)

eEye Advisories

EEYE: Windows VDM Zero Page Race Condition Privilege Escalation eEye Advisories (Apr 10)
EEYE: Windows Vista CSRSS Dangling Process Pointer Privilege Escalation eEye Advisories (Apr 10)

GOODFELLAS SRT

[GOODFELLAS - VULN] BarCodeAx.dll v. 4.9 ActiveX Control Remote Stack Buffer Overflow GOODFELLAS SRT (Jun 25)

iDefense Labs

iDefense Security Advisory 04.03.07: Multiple Vendor X Server XC-MISC Extension Memory Corruption Vulnerability iDefense Labs (Apr 06)
iDefense Security Advisory 06.26.07: RealNetworks RealPlayer/HelixPlayer SMIL wallclock Stack Overflow Vulnerability iDefense Labs (Jun 27)
iDefense Security Advisory 04.02.07: Hewlett-Packard Mercury Quality Center ActiveX Control ProgColor Buffer Overflow Vulnerability iDefense Labs (Apr 05)
iDefense Security Advisory 04.03.07: Microsoft Windows WMF Triggerable Kernel Design Error DoS Vulnerability iDefense Labs (Apr 06)
iDefense Security Advisory 04.04.07: ESRI ArcSDE Buffer Overflow Vulnerability iDefense Labs (Apr 06)
iDefense Security Advisory 04.09.07: AOL AIM and ICQ File Transfer Path-Traversal Vulnerability iDefense Labs (Apr 09)
iDefense Security Advisory 05.10.07: Novell NetMail NMDMC Buffer Overflow Vulnerability iDefense Labs (May 14)
iDefense Security Advisory 05.10.07: Sun Microsystems Solaris SRS Proxy Core srsexec Arbitrary File Read Vulnerability iDefense Labs (May 14)
iDefense Security Advisory 04.17.07: McAfee E-Business Admin Server Invalid Data Length DoS Vulnerability iDefense Labs (Apr 19)
iDefense Security Advisory 04.04.07: Kaspersky AntiVirus SysInfo ActiveX Control Information Disclosure Vulnerability iDefense Labs (Apr 06)
iDefense Security Advisory 04.26.07: Symantec Norton Ghost 10 Service Manager Buffer Overflow Vulnerability iDefense Labs (Apr 27)
iDefense Security Advisory 05.07.07: Sun Microsystems Solaris ACE_SETACL Integer Signedness DoS Vulnerability iDefense Labs (May 09)
iDefense Security Advisory 05.08.07: McAfee Security Center IsOldAppInstalled ActiveX Buffer Overflow Vulnerability iDefense Labs (May 09)
iDefense Security Advisory 05.08.07: Microsoft Word RTF File Parsing Heap Corruption Vulnerability iDefense Labs (May 10)
iDefense Security Advisory 06.26.07: Multiple Vendor Kerberos kadmind Rename Principal Buffer Overflow Vulnerability iDefense Labs (Jun 26)
iDefense Security Advisory 05.10.07: Apple Darwin Streaming Proxy Multiple Vulnerabilities iDefense Labs (May 14)
iDefense Security Advisory 04.10.07: Microsoft Windows Universal Plug and Play Memory Corruption Vulnerability iDefense Labs (Apr 10)
iDefense Security Advisory 04.20.07: Check Point Zone Labs SRESCAN IOCTL Local Privilege Escalation Vulnerability iDefense Labs (Apr 23)
iDefense Security Advisory 04.26.07: Symantec Norton Ghost 10 Recovery Points Insecure Password Storage Vulnerability iDefense Labs (Apr 27)
iDefense Security Advisory 06.05.07: Symantec Ghost Multiple Denial of Service Vulnerabilities iDefense Labs (Jun 07)
iDefense Security Advisory 04.03.07: Multiple Vendor X Server fonts.dir File Parsing Integer Overflow Vulnerability iDefense Labs (Apr 06)
iDefense Security Advisory 04.30.07: Cerulean Studios Trillian Multiple IRC Vulnerabilities iDefense Labs (May 02)
iDefense Security Advisory 05.08.07: Microsoft Excel Filter Record Code Execution Vulnerability iDefense Labs (May 09)
iDefense Security Advisory 04.03.07: Multiple Vendor X Server BDF Font Parsing Integer Overflow Vulnerability iDefense Labs (Apr 06)
iDefense Security Advisory 04.26.07: Novell eDirectory NCP Fragment Denial of Service Vulnerability iDefense Labs (Apr 26)
iDefense Security Advisory 04.04.07: Kaspersky Internet Security Suite klif.sys Heap Overflow Vulnerability iDefense Labs (Apr 06)
iDefense Security Advisory 04.27.07: VMware Workstation Shared Folders Directory Traversal Vulnerability iDefense Labs (Apr 30)
iDefense Security Advisory 05.14.07: Samba SAMR Change Password Remote Command Injection Vulnerability iDefense Labs (May 15)
iDefense Security Advisory 05.08.07: Microsoft Exchange Server 2000 IMAP Literal Processing DoS Vulnerability iDefense Labs (May 10)
iDefense Security Advisory 04.17.07: McAfee VirusScan On-Access Scanner Long Unicode File Name Buffer Overflow iDefense Labs (Apr 19)
iDefense Security Advisory 03.31.07: IBM Tivoli Provisioning Manager for OS Deployment Multiple Vulnerabilities iDefense Labs (Apr 06)
iDefense Security Advisory 05.09.07: Symantec Norton Internet Security 2006 COM Object Security ByPass Vulnerability iDefense Labs (May 09)
iDefense Security Advisory 06.21.07: Ingres Database Multiple Heap Corruption Vulnerabilities iDefense Labs (Jun 25)
iDefense Security Advisory 05.02.07: LiveData Protocol Server Heap Overflow Vulnerability iDefense Labs (May 02)
iDefense Security Advisory 04.16.07: Akamai Download Manager ActiveX Stack Buffer Overflow Vulnerability iDefense Labs (Apr 19)
iDefense Security Advisory 03.31.07: Multiple Vendor ImageMagick DCM and XWD Buffer Overflow Vulnerabilities iDefense Labs (Apr 05)
iDefense Security Advisory 05.09.07: Computer Associates eTrust InoTask.exe Antivirus Buffer Overflow Vulnerability iDefense Labs (May 14)

Jon Oberheide

Cosign SSO Authentication Bypass Jon Oberheide (Apr 11)

Michal Majchrowicz

Apache/PHP REQUEST_METHOD XSS Vulnerability Michal Majchrowicz (Apr 23)
Apache Illegal Request Handling Possible XSS Vulnerability Michal Majchrowicz (Apr 24)
Mozilla Firefox Insecure Element Stealth Injection Vulnerability Michal Majchrowicz (Apr 06)
Cross Domain XMLHttpRequest Michal Majchrowicz (Apr 19)

NGSSoftware Insight Security Research

Ingres Unauthenticated Pointer Overwrite 2 NGSSoftware Insight Security Research (Jun 25)
Ingres wakeup setuid(ingres) file truncation NGSSoftware Insight Security Research (Jun 25)
High Risk Vulnerability in OpenOffice NGSSoftware Insight Security Research (Apr 06)
Ingres stack overflow in uuid_from_char function NGSSoftware Insight Security Research (Jun 25)
Ingres Unauthenticated Pointer Overwrite 1 NGSSoftware Insight Security Research (Jun 25)
Ingres verifydb local stack overflow NGSSoftware Insight Security Research (Jun 25)

rewterz security team

REWTERZ-20070518 - Authentication Bypass in Rational Soft's Hidden Administrator rewterz security team (May 21)

Team SHATTER

Oracle Database Buffer overflow vulnerabilities in package DBMS_SNAP_INTERNAL Team SHATTER (Apr 20)

VSR Advisories

Re: AFFLIB(TM): Time-of-Check-Time-of-Use File Race VSR Advisories (Apr 30)
AFFLIB(TM): Multiple Format String Injections VSR Advisories (Apr 29)
AFFLIB(TM): Multiple Shell Metacharacter Injections VSR Advisories (Apr 29)
AFFLIB(TM): Multiple Buffer Overflows VSR Advisories (Apr 29)
AFFLIB(TM): Time-of-Check-Time-of-Use File Race VSR Advisories (Apr 29)