OpenPKG

15 May

CVE-2012-2612

The DiagTraceHex function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatch ...

CVE-2012-2611

The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200. ...

CVE-2012-2514

The DiagiEventSource function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Disp ...

CVE-2012-2513

The Diaginput function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher ...

CVE-2012-2512

The DiagTraceStreamI function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Disp ...

CVE-2012-2511

The DiagTraceAtoms function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispat ...

14 May

CVE-2012-2333

Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1 ...

CVE-2012-2277

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5. ...

CVE-2012-2276

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5. ...

CVE-2012-1804

Progea Movicon before 11.3 allows remote attackers to cause a denial of service (out-of-bounds r ...

Óâåäîìëåíèÿ 24 - 38 of 188
First | Prev. | 1 2 3 4 5 6 7 8 9 10 11 | Next | Last 

OpenPKG-SA-2006.042 Buffer Overflow in OpenSER

A buffer overflow was discovered [0] in the "parse_expression" function of the "permissions" module of the SIP router OpenSER [1], versions up to and including 1.1.0.

08 january, 2007

[OpenPKG-SA-2006.039] OpenPKG Security Advisory (proftpd)

A vulnerability exists in the FTP server ProFTPD, versions up to and including 1.3.0a.

19 december, 2006

[OpenPKG-SA-2006.038] OpenPKG Security Advisory (tar)

The archive format utility GNU tar [0], versions up to and including 1.16, allows user-assisted attackers to overwrite arbitrary files via a TAR format file that contains a "GNUTYPE_NAMES" record with a symbolic link.

19 december, 2006

[OpenPKG-SA-2006.037] OpenPKG Security Advisory (gnupg)

Two security issues were discovered in the OpenPGP cryptography tool GnuPG [0], versions up to and including 1.4.5 and 2.0.1.

19 december, 2006

[OpenPKG-SA-2006.036] OpenPKG Security Advisory (png)

As confirmed by the vendor, a Denial of Service (DoS) vulnerability exists in the PNG [0] image format library libpng [1], versions 1.0.6 through 1.2.12 and 1.0.20.

20 november, 2006

[OpenPKG-SA-2006.035] OpenPKG Security Advisory (proftpd)

As undisclosed by an exploit (vd_proftpd.pm) and a related vendor bugfix [0], a Denial of Sevice (DoS) vulnerability exists in the FTP server ProFTPD [1], up to and including version 1.3.0.

20 november, 2006

[OpenPKG-SA-2006.034] OpenPKG Security Advisory (texinfo)

Miloslav Trmac from Red Hat discovered [0] a buffer overflow in GNU Texinfo [1].

16 november, 2006

[OpenPKG-SA-2006.033] OpenPKG Security Advisory (openldap)

Evgeny Legerov discovered [0] a vendor-confirmed [1] Denial-of-Service (DoS) vulnerability in OpenLDAP [2].

11 november, 2006

[OpenPKG-SA-2006.032] OpenPKG Security Advisory (openssh)

According to a vendor release announcement [0], a vulnerability exists in the privilege separation functionality of the Secure Shell (SSH) implementation OpenSSH [1].

10 november, 2006

[OpenPKG-SA-2006.028] OpenPKG Security Advisory (php)

According to a security advisory [0] from Stefan Esser of the Hardened-PHP project, buffer overflows exist in the programming language PHP [1], version 5.1.6 and below.

07 november, 2006

[OpenPKG-SA-2006.029] OpenPKG Security Advisory (bind)

According to a vendor security advisory [0], the DNS server BIND [1] (versions up to and including 9.3.2-P1) is vulnerable to the recently discovered OpenSSL RSA signature verification problem for which the Common Vulnerabilities and Exposures (CVE) project assigned the id CVE-2006-4339 [2].

07 november, 2006

[OpenPKG-SA-2006.030] OpenPKG Security Advisory (ruby)

According to a vendor security information [0], a Denial of Service (DoS) vulnerability exists in the CGI library of the programming language Ruby [1], versions up to and including 1.8.5.

07 november, 2006

[OpenPKG-SA-2006.031] OpenPKG Security Advisory (libwmf)

According to a BUGTRAQ posting [0], a vulnerability exists in the WMF format management library libwmf [1].

07 november, 2006

[OpenPKG-SA-2006.027] OpenPKG Security Advisory (wordpress)

According to a vendor release announcement [0], security issues exist in the personal publishing platform WordPress [1].

31 october, 2006

[OpenPKG-SA-2006.026] OpenPKG Security Advisory (screen)

According to a vendor release announcement [0], a denial of service vulnerability exists in the virtual terminal application GNU screen [1], version 4.0.2 and earlier.

27 october, 2006

Óâåäîìëåíèÿ 24 - 38 of 188
First | Prev. | 1 2 3 4 5 6 7 8 9 10 11 12 | Next | Last

CVE-2012-2612

The DiagTraceHex function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2611

The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2, when a certain Developer Trace configuration is enabled, allows remote attackers to execu ...

15 may, 2012

CVE-2012-2514

The DiagiEventSource function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2513

The Diaginput function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2512

The DiagTraceStreamI function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2511

The DiagTraceAtoms function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2333

Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC encryption, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecif ...

14 may, 2012

CVE-2012-2277

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (pvcontrol.exe process hang) via \n (line feed) characters in the Id fields of ...

14 may, 2012

CVE-2012-2276

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via input data that (1) lacks FIPS ...

14 may, 2012

CVE-2012-1804

Progea Movicon before 11.3 allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption) via a crafted HTTP request.

14 may, 2012

Firefox 8/9 AttributeChildRemoved() Use-After-Free Exploit

Target: Mozilla Firefox 8.x, 9.x
Impact: Code execution

MS12-027 MSCOMCTL ActiveX Buffer Overflow Exploit (meta)

Target: MSCOMCTL ActiveX
Impact: Code execution

Microsoft Windows RDP PoC (CVE-2012-0002)

Target: Microsoft Windows XP, 2003, Vista, 7, 2008
Impact: Code execution