Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Sun, 27 May 2012 22:43:12 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1521598316&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F0809-advisories%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1521598316.1338158592.1338158592.1338158592.1%3B%2B__utmz%3D32867617.1338158592.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) Ubuntu Security Notice 648-1 http://packetstormsecurity.org/files/70511/USN-648-1.txt http://packetstormsecurity.org/files/70511/USN-648-1.txt http://packetstormsecurity.org/files/70511/Ubuntu-Security-Notice-648-1.html Wed, 01 Oct 2008 00:34:06 GMT Ubuntu Security Notice 648-1 - Philipp Thomas discovered that the ppscan function of nasm contained an off-by-one error. If a user or automated system were tricked into assembling a specially crafted ASM file, a remote attacker could execute arbitrary commands with user privileges. activesync-tcpip.txt http://packetstormsecurity.org/files/70509/activesync-tcpip.txt http://packetstormsecurity.org/files/70509/activesync-tcpip.txt http://packetstormsecurity.org/files/70509/activesync-tcpip.txt.html Wed, 01 Oct 2008 00:30:06 GMT White Wolf Labs #080922-1 - ActiveSync 4.x allows full TCP/IP access via the RNDIS protocol over USB. Mandriva Linux Security Advisory 2008-208 http://packetstormsecurity.org/files/70499/MDVSA-2008-208.txt http://packetstormsecurity.org/files/70499/MDVSA-2008-208.txt http://packetstormsecurity.org/files/70499/Mandriva-Linux-Security-Advisory-2008-208.html Tue, 30 Sep 2008 23:50:24 GMT Mandriva Linux Security Advisory - pam_mount 0.10 through 0.45, when luserconf is enabled, does not verify mountpoint and source ownership before mounting a user-defined volume, which allows local users to bypass intended access restrictions via a local mount. The updated packages have been patched to fix the issue. Mandriva Linux Security Advisory 2008-207 http://packetstormsecurity.org/files/70498/MDVSA-2008-207.txt http://packetstormsecurity.org/files/70498/MDVSA-2008-207.txt http://packetstormsecurity.org/files/70498/Mandriva-Linux-Security-Advisory-2008-207.html Tue, 30 Sep 2008 23:49:50 GMT Mandriva Linux Security Advisory - A race condition in OpenAFS 1.3.40 through 1.4.5 allowed remote attackers to cause a denial of service (daemon crash) by simultaneously acquiring and giving back file callbacks. The updated packages have been patched to prevent this issue. Secunia Security Advisory 27991 http://packetstormsecurity.org/files/70479/sa27991.txt http://packetstormsecurity.org/files/70479/sa27991.txt http://packetstormsecurity.org/files/70479/Secunia-Security-Advisory-27991.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - Crackers_Child has reported a vulnerability in Post Comments Script, which can be exploited by malicious people to bypass certain security restrictions. Secunia Security Advisory 31958 http://packetstormsecurity.org/files/70491/sa31958.txt http://packetstormsecurity.org/files/70491/sa31958.txt http://packetstormsecurity.org/files/70491/Secunia-Security-Advisory-31958.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - A vulnerability has been reported in tnftpd, which can be exploited by malicious people to conduct cross-site request forgery attacks. Secunia Security Advisory 31969 http://packetstormsecurity.org/files/70469/sa31969.txt http://packetstormsecurity.org/files/70469/sa31969.txt http://packetstormsecurity.org/files/70469/Secunia-Security-Advisory-31969.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - S.W.A.T. has reported a vulnerability in Pilot Group eTraining, which can be exploited by malicious people to conduct SQL injection attacks. Secunia Security Advisory 31989 http://packetstormsecurity.org/files/70480/sa31989.txt http://packetstormsecurity.org/files/70480/sa31989.txt http://packetstormsecurity.org/files/70480/Secunia-Security-Advisory-31989.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - bruiser has discovered a vulnerability in Autodesk Design Review, which can be exploited by malicious people to compromise a user's system. Secunia Security Advisory 32016 http://packetstormsecurity.org/files/70478/sa32016.txt http://packetstormsecurity.org/files/70478/sa32016.txt http://packetstormsecurity.org/files/70478/Secunia-Security-Advisory-32016.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - Super Cristal has reported some vulnerabilities in PG MatchMaking Script, which can be exploited by malicious people to conduct SQL injection attacks. Secunia Security Advisory 32017 http://packetstormsecurity.org/files/70485/sa32017.txt http://packetstormsecurity.org/files/70485/sa32017.txt http://packetstormsecurity.org/files/70485/Secunia-Security-Advisory-32017.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - A vulnerability has been reported in Citrix Presentation Server, which can be exploited by malicious, local users to gain escalated privileges. Secunia Security Advisory 32021 http://packetstormsecurity.org/files/70481/sa32021.txt http://packetstormsecurity.org/files/70481/sa32021.txt http://packetstormsecurity.org/files/70481/Secunia-Security-Advisory-32021.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - David Vieira-Kurz has reported some vulnerabilities in moziloCMS, which can be exploited by malicious people to conduct cross-site scripting and session fixation attacks and disclose sensitive information. Secunia Security Advisory 32024 http://packetstormsecurity.org/files/70482/sa32024.txt http://packetstormsecurity.org/files/70482/sa32024.txt http://packetstormsecurity.org/files/70482/Secunia-Security-Advisory-32024.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - David Vieira-Kurz has reported some vulnerabilities in moziloWiki, which can be exploited by malicious people to conduct cross-site scripting and session fixation attacks and disclose sensitive information. Secunia Security Advisory 32033 http://packetstormsecurity.org/files/70470/sa32033.txt http://packetstormsecurity.org/files/70470/sa32033.txt http://packetstormsecurity.org/files/70470/Secunia-Security-Advisory-32033.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - dun has discovered a vulnerability in PlugSpace, which can be exploited by malicious people to disclose sensitive information. Secunia Security Advisory 32039 http://packetstormsecurity.org/files/70475/sa32039.txt http://packetstormsecurity.org/files/70475/sa32039.txt http://packetstormsecurity.org/files/70475/Secunia-Security-Advisory-32039.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - r45c4l has reported a vulnerability in MyCard, which can be exploited by malicious users to conduct SQL injection attacks. Secunia Security Advisory 32045 http://packetstormsecurity.org/files/70488/sa32045.txt http://packetstormsecurity.org/files/70488/sa32045.txt http://packetstormsecurity.org/files/70488/Secunia-Security-Advisory-32045.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - Some vulnerabilities have been reported in MPlayer, which potentially can be exploited by malicious people to compromise a user's system. Secunia Security Advisory 32049 http://packetstormsecurity.org/files/70487/sa32049.txt http://packetstormsecurity.org/files/70487/sa32049.txt http://packetstormsecurity.org/files/70487/Secunia-Security-Advisory-32049.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - CraCkEr has reported a vulnerability in Real Estate Manager, which can be exploited by malicious people to conduct SQL injection attacks. Secunia Security Advisory 32057 http://packetstormsecurity.org/files/70477/sa32057.txt http://packetstormsecurity.org/files/70477/sa32057.txt http://packetstormsecurity.org/files/70477/Secunia-Security-Advisory-32057.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - Two vulnerabilities have been discovered in The Gemini Portal, which can be exploited by malicious people to disclose sensitive information, bypass certain security restrictions, and compromise a vulnerable system. Secunia Security Advisory 32058 http://packetstormsecurity.org/files/70484/sa32058.txt http://packetstormsecurity.org/files/70484/sa32058.txt http://packetstormsecurity.org/files/70484/Secunia-Security-Advisory-32058.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - Pepelux has discovered a vulnerability in Crux Gallery, which can be exploited by malicious people to bypass certain security restrictions. Secunia Security Advisory 32060 http://packetstormsecurity.org/files/70490/sa32060.txt http://packetstormsecurity.org/files/70490/sa32060.txt http://packetstormsecurity.org/files/70490/Secunia-Security-Advisory-32060.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - Juan Galiana Lara has reported a vulnerability in Wordpress MU, which can be exploited by malicious people to conduct cross-site scripting attacks. Secunia Security Advisory 32061 http://packetstormsecurity.org/files/70489/sa32061.txt http://packetstormsecurity.org/files/70489/sa32061.txt http://packetstormsecurity.org/files/70489/Secunia-Security-Advisory-32061.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - A vulnerability has been reported in HP Insight Diagnostics, which can be exploited by malicious people to disclose sensitive information. Secunia Security Advisory 32062 http://packetstormsecurity.org/files/70486/sa32062.txt http://packetstormsecurity.org/files/70486/sa32062.txt http://packetstormsecurity.org/files/70486/Secunia-Security-Advisory-32062.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - A vulnerability has been reported in MailMarshal SMTP, which can be exploited by malicious users to conduct script insertion attacks. Secunia Security Advisory 32068 http://packetstormsecurity.org/files/70473/sa32068.txt http://packetstormsecurity.org/files/70473/sa32068.txt http://packetstormsecurity.org/files/70473/Secunia-Security-Advisory-32068.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - Maksymilian Arciemowicz has reported a vulnerability in NetBSD ftpd, which can be exploited by malicious people to conduct cross-site request forgery attacks. Secunia Security Advisory 32069 http://packetstormsecurity.org/files/70474/sa32069.txt http://packetstormsecurity.org/files/70474/sa32069.txt http://packetstormsecurity.org/files/70474/Secunia-Security-Advisory-32069.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - A vulnerability has been reported in lighttpd, which can be exploited by malicious people to cause a DoS (Denial of Service). Secunia Security Advisory 32070 http://packetstormsecurity.org/files/70467/sa32070.txt http://packetstormsecurity.org/files/70467/sa32070.txt http://packetstormsecurity.org/files/70467/Secunia-Security-Advisory-32070.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - Maksymilian Arciemowicz has reported a vulnerability in OpenBSD ftpd, which can be exploited by malicious people to conduct cross-site request forgery attacks. Secunia Security Advisory 32079 http://packetstormsecurity.org/files/70483/sa32079.txt http://packetstormsecurity.org/files/70483/sa32079.txt http://packetstormsecurity.org/files/70483/Secunia-Security-Advisory-32079.html Tue, 30 Sep 2008 23:23:28 GMT Secunia Security Advisory - Ghost Hacker has discovered a security issue in hyBook Guestbook Script, which can be exploited by malicious people to disclose potentially sensitive information.