Vulnwatch: by author

63 messages starting Jul 24 07 and ending Sep 27 07
Date index | Thread index | Author index


Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: Wireless ARP Storm Vulnerabilities Cisco Systems Product Security Incident Response Team (Jul 24)
Cisco Security Advisory: XSS and SQL Injection in Cisco CallManager/Unified Communications Manager Logon Page Cisco Systems Product Security Incident Response Team (Aug 29)
Cisco Security Advisory: Local Privilege Escalation Vulnerabilities in Cisco VPN Client Cisco Systems Product Security Incident Response Team (Aug 17)
Cisco Security Advisory: Denial of Service Vulnerability in Cisco Wide Area Application Services (WAAS) Software Cisco Systems Product Security Incident Response Team (Jul 18)
Cisco Security Advisory: Cisco IOS Secure Copy Authorization Bypass Vulnerability Cisco Systems Product Security Incident Response Team (Aug 08)

Code Audit Labs

CAL-20070730-1 BlueSkyCat ActiveX Remote Heap Overflow vulnerability Code Audit Labs (Jul 31)

Core Security Technologies Advisories

CORE-2007-0817: Remote Command execution, HTML and JavaScript injection vulnerabilities in AOL's Instant Messaging software Core Security Technologies Advisories (Sep 27)

eEye Advisories

EEYE: Sun Java WebStart JNLP Stack Buffer Overflow Vulnerability eEye Advisories (Jul 10)
EEYE: Microsoft Publisher 2007 Arbitrary Pointer Dereference eEye Advisories (Jul 17)

iDefense Labs

iDefense Security Advisory 08.14.07: Microsoft XML Core Services XMLDOM Memory Corruption Vulnerability iDefense Labs (Aug 14)
iDefense Security Advisory 07.16.07: Trend Micro OfficeScan Session Cookie Buffer Overflow Vulnerability iDefense Labs (Jul 18)
iDefense Security Advisory 07.17.07: IBM Tivoli Provisioning Manager for OS Deployment TFTP Blocksize DoS Vulnerability iDefense Labs (Jul 18)
iDefense Security Advisory 07.09.07: Multiple Vendor GIMP Multiple Integer Overflow Vulnerabilities iDefense Labs (Jul 10)
iDefense Security Advisory 07.18.07: Ipswitch IMail Server 2006 IMAP Search Command Buffer Overflow Vulnerability iDefense Labs (Jul 19)
iDefense Security Advisory 08.16.07: IBM DB2 Universal Database Multiple File Creation Vulnerabilities iDefense Labs (Aug 18)
iDefense Security Advisory 08.15.07: ESRI ArcSDE Numeric Literal Buffer Overflow Vulnerability iDefense Labs (Aug 17)
iDefense Security Advisory 07.16.07: Trend Micro OfficeScan Management Console Authorization Bypass Vulnerability iDefense Labs (Jul 18)
Re: iDefense Security Advisory 08.16.07: IBM DB2 Universal Database Multiple Race Condition Vulnerabilities iDefense Labs (Aug 18)
iDefense Security Advisory 08.07.07: Hewlett-Packard HP-UX Remote ldcconn Buffer Overflow Vulnerability iDefense Labs (Aug 07)
iDefense Security Advisory 09.27.07: Computer Associates BrightStor HSM r11.5 Multiple Vulnerabilities iDefense Labs (Sep 27)
iDefense Security Advisory 08.07.07: Apple Mac OS X mDNSResponder HTTP Request Heap Overflow Vulnerability iDefense Labs (Aug 07)
iDefense Security Advisory 07.23.07: Ipswitch Instant Messaging Server Denial of Service Vulnerability iDefense Labs (Jul 24)
iDefense Security Advisory 07.24.07: Computer Associates eTrust Intrusion Detection CallCode ActiveX Control Code Execution Vulnerability iDefense Labs (Jul 25)
iDefense Security Advisory 07.26.07: IBM AIX pioout Arbitrary Library Loading Vulnerability iDefense Labs (Jul 27)
iDefense Security Advisory 09.25.07: Linux Kernel ALSA snd_mem_proc_read Information Disclosure Vulnerability iDefense Labs (Sep 27)
iDefense Security Advisory 08.30.07: Yahoo Messenger YVerInfo.dll ActiveX Multiple Remote Buffer Overflow Vulnerabilities iDefense Labs (Aug 31)
iDefense Security Advisory 07.17.07: Computer Associates Alert Notification Server Multiple Buffer Overflow Vulnerabilities iDefense Labs (Jul 17)
iDefense Security Advisory 08.16.07: IBM DB2 Universal Database buildDasPaths Buffer Overflow Vulnerability iDefense Labs (Aug 18)
iDefense Security Advisory 07.26.07: IBM AIX capture Terminal Control Sequence Buffer Overflow Vulnerability iDefense Labs (Jul 27)
iDefense Security Advisory 07.19.07: Multiple Vendor Multiple Product URI Handler Input Validation Vulnerability iDefense Labs (Jul 19)
iDefense Security Advisory 08.16.07: IBM DB2 Universal Database Directory Traversal Vulnerability iDefense Labs (Aug 18)
iDefense Security Advisory 07.18.07: Microsoft DirectX RLE Compressed Targa Image File Heap Overflow iDefense Labs (Jul 19)
iDefense Security Advisory 08.16.07: IBM DB2 Universal Database Directory Creation Vulnerability iDefense Labs (Aug 18)
iDefense Security Advisory 07.26.07: IBM AIX ftp gets() Multiple Buffer Overflow Vulnerabilities iDefense Labs (Jul 27)
iDefense Security Advisory 07.09.07: IBM AIX libodm ODMPATH Stack Overflow Vulnerability iDefense Labs (Jul 10)
iDefense Security Advisory 07.09.07: WinPcap NPF.SYS Local Privilege Escalation Vulnerability iDefense Labs (Jul 10)
iDefense Security Advisory 07.19.07: Opera Software Opera Web Browser BitTorrent Dangling Pointer Vulnerability iDefense Labs (Jul 19)
iDefense Security Advisory 07.24.07: Computer Associates AntiVirus CHM File Handling DoS Vulnerability iDefense Labs (Jul 25)
iDefense Security Advisory 08.16.07: IBM DB2 Universal Database Multiple Untrusted Search Path Vulnerabilities iDefense Labs (Aug 18)
iDefense Security Advisory 08.09.07: Hewlett-Packard OpenView Operations OVTrace Buffer Overflow Vulnerabilities iDefense Labs (Aug 09)

Kevin P. Fleming

ASA-2007-014: Stack buffer overflow in IAX2 channel driver Kevin P. Fleming (Jul 18)
ASA-2007-016: Remote crash vulnerability in Skinny channel driver Kevin P. Fleming (Jul 18)
ASA-2007-015: Remote Crash Vulnerability in IAX2 channel driver Kevin P. Fleming (Jul 18)
ASA-2007-017: Remote Crash Vulnerability in STUN implementation Kevin P. Fleming (Jul 18)

NGSSoftware Insight Security Research

Local privilege escalation vulnerability in Cisco VPN client NGSSoftware Insight Security Research (Aug 17)
SAP Message Server Heap Overflow NGSSoftware Insight Security Research (Jul 05)
SAP Internet Graphics Server XSS and Heap Overflow NGSSoftware Insight Security Research (Jul 05)
Local privilege escalation vulnerability in Cisco VPN client NGSSoftware Insight Security Research (Aug 17)
SAP DB Web Server Stack Overflow NGSSoftware Insight Security Research (Jul 05)
EnjoySAP, SAP GUI for Windows - Stack Overflow NGSSoftware Insight Security Research (Jul 05)
EnjoySAP, SAP GUI for Windows - Stack Overflow NGSSoftware Insight Security Research (Jul 05)
Multiple Remote unauthenticated stack overflows in Asterisk chan_sip.c NGSSoftware Insight Security Research (Jul 04)
Internet Communication Manager Denial Of Service Attack NGSSoftware Insight Security Research (Jul 05)
EnjoySAP, SAP GUI for Windows - Heap Overflow NGSSoftware Insight Security Research (Jul 05)
High Risk Flaw in Sun's Java Web Start NGSSoftware Insight Security Research (Jul 03)

NSFOCUS Security Team

NSFOCUS SA2007-01 : Microsoft IE5 CSS Parsing Memory Corruption Vulnerability NSFOCUS Security Team (Aug 17)

Security Response Team

ASA-2007-019: Remote crash vulnerability in Skinny channel driver Security Response Team (Aug 07)
ASA-2007-018: Resource exhaustion vulnerability in IAX2 channel driver Security Response Team (Jul 31)

Team SHATTER

Oracle Database Buffer overflows and Denial of service vulnerabilities in public procedures of MDSYS.MD (DB12) Team SHATTER (Jul 19)
Oracle Database Buffer overflow vulnerabilities in procedure DBMS_DRS.GET_PROPERTY (DB03) Team SHATTER (Jul 19)

Wojciech Purczynski

COSEINC Linux Advisory #1: Linux Kernel Parent Process Death Signal Vulnerability Wojciech Purczynski (Aug 14)
COSEINC Linux Advisory #2: IA32 System Call Emulation Vulnerability Wojciech Purczynski (Sep 27)

zdi-disclosures

[Full-disclosure] ZDI-07-054: IBM Tivoli Storage Manager Express CAD Service Buffer Overflow Vulnerability zdi-disclosures (Sep 27)