Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Sun, 27 May 2012 22:58:24 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=2324267994&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F0812-advisories%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.2324267994.1338159504.1338159504.1338159504.1%3B%2B__utmz%3D32867617.1338159504.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) Mandriva Linux Security Advisory 2008-246 http://packetstormsecurity.org/files/73477/MDVSA-2008-246.txt http://packetstormsecurity.org/files/73477/MDVSA-2008-246.txt http://packetstormsecurity.org/files/73477/Mandriva-Linux-Security-Advisory-2008-246.html Wed, 31 Dec 2008 03:41:38 GMT Mandriva Linux Security Advisory 2008-246 - Some vulnerabilities were discovered and corrected in the Linux kernel. These include buffer overflow and denial of service vulnerabilities. Debian Linux Security Advisory 1693-1 http://packetstormsecurity.org/files/73444/dsa-1693-1.txt http://packetstormsecurity.org/files/73444/dsa-1693-1.txt http://packetstormsecurity.org/files/73444/Debian-Linux-Security-Advisory-1693-1.html Wed, 31 Dec 2008 01:50:52 GMT Debian Security Advisory 1693-1 - Several remote vulnerabilities have been discovered in phpPgAdmin, a tool to administrate PostgreSQL database over the web. Debian Linux Security Advisory 1692-1 http://packetstormsecurity.org/files/73443/dsa-1692-1.txt http://packetstormsecurity.org/files/73443/dsa-1692-1.txt http://packetstormsecurity.org/files/73443/Debian-Linux-Security-Advisory-1692-1.html Wed, 31 Dec 2008 01:50:37 GMT Debian Security Advisory 1692-1 - It was discovered that php-xajax, a library to develop Ajax applications, did not sufficiently sanitise URLs, which allows attackers to perform cross-site scripting attacks by using malicious URLs. PHP GD Library Information Leak http://packetstormsecurity.org/files/73405/phpgd-leak.txt http://packetstormsecurity.org/files/73405/phpgd-leak.txt http://packetstormsecurity.org/files/73405/PHP-GD-Library-Information-Leak.html Wed, 31 Dec 2008 00:25:34 GMT The PHP GD library suffers from an imageRotate() function information leak vulnerability. Ubuntu Security Notice 700-1 http://packetstormsecurity.org/files/73395/USN-700-1.txt http://packetstormsecurity.org/files/73395/USN-700-1.txt http://packetstormsecurity.org/files/73395/Ubuntu-Security-Notice-700-1.html Tue, 30 Dec 2008 23:38:44 GMT Ubuntu Security Notice USN-700-1 - Jonathan Smith discovered that the Archive::Tar Perl module did not correctly handle symlinks when extracting archives. If a user or automated system were tricked into opening a specially crafted tar file, a remote attacker could over-write arbitrary files. Tavis Ormandy and Will Drewry discovered that Perl did not correctly handle certain utf8 characters in regular expressions. If a user or automated system were tricked into using a specially crafted expression, a remote attacker could crash the application, leading to a denial of service. Ubuntu 8.10 was not affected by this issue. A race condition was discovered in the File::Path Perl module's rmtree function. If a local attacker successfully raced another user's call of rmtree, they could create arbitrary setuid binaries. Ubuntu 6.06 and 8.10 were not affected by this issue. A race condition was discovered in the File::Path Perl module's rmtree function. If a local attacker successfully raced another user's call of rmtree, they could delete arbitrary files. Ubuntu 6.06 was not affected by this issue. Gentoo Linux Security Advisory 200812-24 http://packetstormsecurity.org/files/73394/glsa-200812-24.txt http://packetstormsecurity.org/files/73394/glsa-200812-24.txt http://packetstormsecurity.org/files/73394/Gentoo-Linux-Security-Advisory-200812-24.html Tue, 30 Dec 2008 23:38:19 GMT Gentoo Linux Security Advisory GLSA 200812-24 - Multiple vulnerabilities in VLC may lead to the remote execution of arbitrary code. Versions less than 0.9.8a are affected. Gentoo Linux Security Advisory 200812-23 http://packetstormsecurity.org/files/73393/glsa-200812-23.txt http://packetstormsecurity.org/files/73393/glsa-200812-23.txt http://packetstormsecurity.org/files/73393/Gentoo-Linux-Security-Advisory-200812-23.html Tue, 30 Dec 2008 23:37:36 GMT Gentoo Linux Security Advisory GLSA 200812-23 - A buffer overflow vulnerability has been discovered in Imlib2. Julien Danjou reported a pointer arithmetic error and a heap-based buffer overflow within the load() function of the XPM image loader. Versions less than 1.4.2-r1 are affected. Gentoo Linux Security Advisory 200812-22 http://packetstormsecurity.org/files/73392/glsa-200812-22.txt http://packetstormsecurity.org/files/73392/glsa-200812-22.txt http://packetstormsecurity.org/files/73392/Gentoo-Linux-Security-Advisory-200812-22.html Tue, 30 Dec 2008 23:37:09 GMT Gentoo Linux Security Advisory GLSA 200812-22 - An insecure temporary file usage has been reported in Ampache, allowing for symlink attacks. Dmitry E. Oboukhov reported an insecure temporary file usage within the gather-messages.sh script. Versions less than 3.4.3 are affected. Gentoo Linux Security Advisory 200812-21 http://packetstormsecurity.org/files/73391/glsa-200812-21.txt http://packetstormsecurity.org/files/73391/glsa-200812-21.txt http://packetstormsecurity.org/files/73391/Gentoo-Linux-Security-Advisory-200812-21.html Tue, 30 Dec 2008 23:36:35 GMT Gentoo Linux Security Advisory GLSA 200812-21 - Two vulnerabilities in ClamAV may allow for the remote execution of arbitrary code or a Denial of Service. Moritz Jodeit reported an off-by-one error within the get_unicode_name() function in libclamav/vba_extract.c when processing VBA project files (CVE-2008-5050). Ilja van Sprundel reported an infinite recursion error within the cli_check_jpeg_exploit() function in libclamav/special.c when processing JPEG files (CVE-2008-5314). Versions less than 0.94.2 are affected. Ubuntu Security Notice 677-2 http://packetstormsecurity.org/files/73386/USN-677-2.txt http://packetstormsecurity.org/files/73386/USN-677-2.txt http://packetstormsecurity.org/files/73386/Ubuntu-Security-Notice-677-2.html Tue, 30 Dec 2008 23:25:32 GMT Ubuntu Security Notice USN-677-2 - USN-677-1 fixed vulnerabilities in OpenOffice.org. The changes required that openoffice.org-l10n also be updated for the new version in Ubuntu 8.04 LTS. Multiple memory overflow flaws were discovered in OpenOffice.org's handling of WMF and EMF files. If a user were tricked into opening a specially crafted document, a remote attacker might be able to execute arbitrary code with user privileges. Dmitry E. Oboukhov discovered that senddoc, as included in OpenOffice.org, created temporary files in an insecure way. Local users could exploit a race condition to create or overwrite files with the privileges of the user invoking the program. This issue only affected Ubuntu 8.04 LTS. Digital Defense VRT Advisory 2008.16 http://packetstormsecurity.org/files/73385/DDIVRT-2008-16.txt http://packetstormsecurity.org/files/73385/DDIVRT-2008-16.txt http://packetstormsecurity.org/files/73385/Digital-Defense-VRT-Advisory-2008.16.html Tue, 30 Dec 2008 23:24:14 GMT The Citrix Broadcast Server administrative login page is vulnerable to trivial SQL injections via the txtUID HTTP POST parameter. An attacker could leverage this flaw to obtain unauthorized access to the web interface or to extract data from the database via blind SQL injection. Ubuntu Security Notice 698-3 http://packetstormsecurity.org/files/73384/USN-698-3.txt http://packetstormsecurity.org/files/73384/USN-698-3.txt http://packetstormsecurity.org/files/73384/Ubuntu-Security-Notice-698-3.html Tue, 30 Dec 2008 23:23:49 GMT Ubuntu Security Notice USN-698-3 - It was discovered that Nagios was vulnerable to a Cross-site request forgery (CSRF) vulnerability. If an authenticated nagios user were tricked into clicking a link on a specially crafted web page, an attacker could trigger commands to be processed by Nagios and execute arbitrary programs. This update alters Nagios behaviour by disabling submission of CMD_CHANGE commands. It was discovered that Nagios did not properly parse commands submitted using the web interface. An authenticated user could use a custom form or a browser addon to bypass security restrictions and submit unauthorized commands. FreeBSD Security Advisory - XSRF In ftpd http://packetstormsecurity.org/files/73372/FreeBSD-SA-08-12.ftpd.txt http://packetstormsecurity.org/files/73372/FreeBSD-SA-08-12.ftpd.txt http://packetstormsecurity.org/files/73372/FreeBSD-Security-Advisory-XSRF-In-ftpd.html Tue, 30 Dec 2008 22:49:16 GMT FreeBSD Security Advisory - The ftpd server splits long commands into several requests. This may result in the server executing a command which is hidden inside another very long command. This could, with a specifically crafted command, be used in a cross-site request forgery attack. FreeBSD Security Advisory - Bluetooth Privilege Escalation http://packetstormsecurity.org/files/73371/FreeBSD-SA-08-13.protosw.txt http://packetstormsecurity.org/files/73371/FreeBSD-SA-08-13.protosw.txt http://packetstormsecurity.org/files/73371/FreeBSD-Security-Advisory-Bluetooth-Privilege-Escalation.html Tue, 30 Dec 2008 22:47:22 GMT FreeBSD Security Advisory - Some function pointers for netgraph and bluetooth sockets are not properly initialized. A local user can cause the FreeBSD kernel to execute arbitrary code. This could be used by an attacker directly; or it could be used to gain root privilege or to escape from a jail. HP Security Bulletin 2008-01.87 http://packetstormsecurity.org/files/73369/SSRT080187.txt http://packetstormsecurity.org/files/73369/SSRT080187.txt http://packetstormsecurity.org/files/73369/HP-Security-Bulletin-2008-01.87.html Tue, 30 Dec 2008 22:41:43 GMT HP Security Bulletin - Various potential security vulnerabilities have been identified in Microsoft software that is running on the Storage Management Appliance (SMA). Some of these vulnerabilities may be pertinent to the SMA, please check the table in the Resolution section of this Security Bulletin. Debian Linux Security Advisory 1688-2 http://packetstormsecurity.org/files/73367/dsa-1688-2.txt http://packetstormsecurity.org/files/73367/dsa-1688-2.txt http://packetstormsecurity.org/files/73367/Debian-Linux-Security-Advisory-1688-2.html Tue, 30 Dec 2008 22:04:24 GMT Debian Security Advisory 1688-2 - The update of courier-authlib in DSA 1688-1 caused a regression with setups that do not use mail addresses for authentification. This update fixes this regression. Mandriva Linux Security Advisory 2008-241 http://packetstormsecurity.org/files/73366/MDVSA-2008-241.txt http://packetstormsecurity.org/files/73366/MDVSA-2008-241.txt http://packetstormsecurity.org/files/73366/Mandriva-Linux-Security-Advisory-2008-241.html Tue, 30 Dec 2008 22:02:44 GMT Mandriva Linux Security Advisory 2008-241 - Multiple symlink attacks affect MailScanner Corporate 4.0. Secunia - Trend Micro HouseCall Code Execution http://packetstormsecurity.org/files/73362/secunia-housecall.txt http://packetstormsecurity.org/files/73362/secunia-housecall.txt http://packetstormsecurity.org/files/73362/Secunia-Trend-Micro-HouseCall-Code-Execution.html Tue, 30 Dec 2008 21:39:25 GMT Secunia Research has discovered a vulnerability in Trend Micro HouseCall, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to an implementation error within the HouseCall ActiveX control (Housecall_ActiveX.dll). This can be exploited to e.g. download and load an arbitrary library file by specifying a custom update server. Successful exploitation allows execution of arbitrary code. Trend Micro HouseCall ActiveX Control versions 6.51.0.1028 and 6.6.0.1278 are affected. Ubuntu Security Notice 698-2 http://packetstormsecurity.org/files/73359/USN-698-2.txt http://packetstormsecurity.org/files/73359/USN-698-2.txt http://packetstormsecurity.org/files/73359/Ubuntu-Security-Notice-698-2.html Tue, 30 Dec 2008 21:30:48 GMT Ubuntu Security Notice USN-698-2 - It was discovered that Nagios was vulnerable to a Cross-site request forgery (CSRF) vulnerability. If an authenticated nagios user were tricked into clicking a link on a specially crafted web page, an attacker could trigger commands to be processed by Nagios and execute arbitrary programs. This update alters Nagios behaviour by disabling submission of CMD_CHANGE commands. It was discovered that Nagios did not properly parse commands submitted using the web interface. An authenticated user could use a custom form or a browser addon to bypass security restrictions and submit unauthorized commands. Ubuntu Security Notice 698-1 http://packetstormsecurity.org/files/73358/USN-698-1.txt http://packetstormsecurity.org/files/73358/USN-698-1.txt http://packetstormsecurity.org/files/73358/Ubuntu-Security-Notice-698-1.html Tue, 30 Dec 2008 21:30:32 GMT Ubuntu Security Notice USN-698-1 - It was discovered that Nagios did not properly parse commands submitted using the web interface. An authenticated user could use a custom form or a browser addon to bypass security restrictions and submit unauthorized commands. Ubuntu Security Notice 697-1 http://packetstormsecurity.org/files/73357/USN-697-1.txt http://packetstormsecurity.org/files/73357/USN-697-1.txt http://packetstormsecurity.org/files/73357/Ubuntu-Security-Notice-697-1.html Tue, 30 Dec 2008 21:29:58 GMT Ubuntu Security Notice USN-697-1 - It was discovered that Imlib2 did not correctly handle certain malformed XPM and PNG images. If a user were tricked into opening a specially crafted image with an application that uses Imlib2, an attacker could cause a denial of service and possibly execute arbitrary code with the user's privileges. Ubuntu Security Notice 699-1 http://packetstormsecurity.org/files/73356/USN-699-1.txt http://packetstormsecurity.org/files/73356/USN-699-1.txt http://packetstormsecurity.org/files/73356/Ubuntu-Security-Notice-699-1.html Tue, 30 Dec 2008 21:29:26 GMT Ubuntu Security Notice USN-699-1 - It was discovered that Blender did not correctly handle certain malformed Radiance RGBE images. If a user were tricked into opening a .blend file containing a specially crafted Radiance RGBE image, an attacker could execute arbitrary code with the user's privileges. It was discovered that Blender did not properly sanitize the Python search path. A local attacker could execute arbitrary code by inserting a specially crafted Python file in the Blender working directory. Debian Linux Security Advisory 1691-1 http://packetstormsecurity.org/files/73343/dsa-1691-1.txt http://packetstormsecurity.org/files/73343/dsa-1691-1.txt http://packetstormsecurity.org/files/73343/Debian-Linux-Security-Advisory-1691-1.html Tue, 30 Dec 2008 21:03:55 GMT Debian Security Advisory 1691-1 - Several remote vulnerabilities have been discovered in Moodle, an online course management system. The following issues are addressed in this update, ranging from cross site scripting to remote code execution. Debian Linux Security Advisory 1690-1 http://packetstormsecurity.org/files/73342/dsa-1690-1.txt http://packetstormsecurity.org/files/73342/dsa-1690-1.txt http://packetstormsecurity.org/files/73342/Debian-Linux-Security-Advisory-1690-1.html Tue, 30 Dec 2008 21:01:22 GMT Debian Security Advisory 1690-1 - Two denial of service conditions were discovered in avahi, a Multicast DNS implementation. Gentoo Linux Security Advisory 200812-20 http://packetstormsecurity.org/files/73337/glsa-200812-20.txt http://packetstormsecurity.org/files/73337/glsa-200812-20.txt http://packetstormsecurity.org/files/73337/Gentoo-Linux-Security-Advisory-200812-20.html Tue, 30 Dec 2008 20:34:20 GMT Gentoo Linux Security Advisory GLSA 200812-20 - Multiple vulnerabilities have been discovered in phpCollab allowing for remote injection of shell commands, PHP code and SQL statements. Versions less than or equal to 2.5_rc3 are affected.