OpenPKG

15 May

CVE-2012-2612

The DiagTraceHex function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatch ...

CVE-2012-2611

The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200. ...

CVE-2012-2514

The DiagiEventSource function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Disp ...

CVE-2012-2513

The Diaginput function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher ...

CVE-2012-2512

The DiagTraceStreamI function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Disp ...

CVE-2012-2511

The DiagTraceAtoms function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispat ...

14 May

CVE-2012-2333

Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1 ...

CVE-2012-2277

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5. ...

CVE-2012-2276

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5. ...

CVE-2012-1804

Progea Movicon before 11.3 allows remote attackers to cause a denial of service (out-of-bounds r ...

Óâåäîìëåíèÿ 54 - 68 of 188
First | Prev. | 1 2 3 4 5 6 7 8 9 10 11 | Next | Last 

[OpenPKG-SA-2006.010] OpenPKG Security Advisory (gnupg)

According to a vendor security release note [0], a memory allocation attack possibility exists in the GnuPG [1] cryptography tool, version 1.4.3 and earlier.

26 june, 2006

[OpenPKG-SA-2006.009] OpenPKG Security Advisory (binutils)

According to a vendor bug report [0], a buffer overflow in "libbfd" of GNU Binutils [1]

26 may, 2006

[OpenPKG-SA-2006.008] OpenPKG Security Advisory (openldap)

According to a Secunia security advisory [0], a weakness exists in OpenLDAP [1] which is caused due to a boundary error in slurpd(8) within the handling of the status file.

22 may, 2006

[OpenPKG-SA-2006.007] OpenPKG Security Advisory (sendmail)

According to a vendor security advisory [0] based on research by from Mark Dowd of ISS X-Force, a vulnerability exists in the Sendmail MTA [1].

22 march, 2006

[OpenPKG-SA-2006.006] OpenPKG Security Advisory (tar)

According to a bug report from Jim Meyering [0], a remote overflow exists in the GNU Tape Archiver (Tar).

05 march, 2006

[OpenPKG-SA-2006.004] OpenPKG Security Advisory (postgresql)

According to vendor security information [0], privilege escalation vulnerabilitiesd exist in the PostgreSQL RDBMS [1] before version 8.1.3.

19 february, 2006

[OpenPKG-SA-2006.005] OpenPKG Security Advisory (tin)

For security reasons, this advisory was digitally signed with the OpenPGP public key "OpenPKG " (ID 63C4CB9F)

19 february, 2006

[OpenPKG-SA-2006.001] OpenPKG Security Advisory (gnupg)

According to a vendor security advisory [0] based on hints from the Gentoo project, a false positive signature verification bug exists in the GnuPG [1] security tool when unattended signature verification (e.g. by scripts and mail programs) is performed via "gpgv" or "gpg --verify".

18 february, 2006

[OpenPKG-SA-2006.002] OpenPKG Security Advisory (sudo)

According to a vendor bug report [0], an incomplete blacklist vulnerability exists in the Sudo [1] utility which can lead to a privilege escalation.

18 february, 2006

[OpenPKG-SA-2006.003] OpenPKG Security Advisory (openssh)

Ulrich Drepper discovered [0] a weakness in OpenSSH [1] version 4.2p1 and earlier, caused due to the insecure use of the system(3) function in scp(1) when performing copy operations using filenames that are supplied by the user from the command line.

18 february, 2006

[OpenPKG-SA-2005.029] OpenPKG Security Advisory (apache)

According to vendor information [0], a Cross-Site Scripting (XSS) vulnerability exists in the Apache HTTP server [1].

14 december, 2005

[OpenPKG-SA-2005.028] OpenPKG Security Advisory (curl)

According to a vendor security advisory [0], a Denial of Service (DoS) vulnerability exist in "libcurl", the underlying library of the cURL [1] networking tool.

10 december, 2005

[OpenPKG-SA-2005.024] OpenPKG Security Advisory (mysql)

According to a security advisory from Reid Borsuk of Application Security Inc [0], a stack-based buffer overflow exists in the MySQL RDBMS [1].

03 december, 2005

[OpenPKG-SA-2005.025] OpenPKG Security Advisory (perl)

According to a security advisory from Dyad Security [0], an integer overflow bug exists in the Perl [1] programming language.

03 december, 2005

[OpenPKG-SA-2005.026] OpenPKG Security Advisory (lynx)

According to a iDEFENSE security advisory [0], a command injection vulnerability exists in the Lynx [2] WWW textual client.

03 december, 2005

Óâåäîìëåíèÿ 54 - 68 of 188
First | Prev. | 1 2 3 4 5 6 7 8 9 10 11 12 | Next | Last

CVE-2012-2612

The DiagTraceHex function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2611

The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2, when a certain Developer Trace configuration is enabled, allows remote attackers to execu ...

15 may, 2012

CVE-2012-2514

The DiagiEventSource function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2513

The Diaginput function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2512

The DiagTraceStreamI function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2511

The DiagTraceAtoms function in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2 allows remote attackers to cause a denial of service (daemon crash) via a crafted SAP Diag packet.

15 may, 2012

CVE-2012-2333

Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC encryption, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecif ...

14 may, 2012

CVE-2012-2277

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (pvcontrol.exe process hang) via \n (line feed) characters in the Id fields of ...

14 may, 2012

CVE-2012-2276

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via input data that (1) lacks FIPS ...

14 may, 2012

CVE-2012-1804

Progea Movicon before 11.3 allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption) via a crafted HTTP request.

14 may, 2012

Firefox 8/9 AttributeChildRemoved() Use-After-Free Exploit

Target: Mozilla Firefox 8.x, 9.x
Impact: Code execution

MS12-027 MSCOMCTL ActiveX Buffer Overflow Exploit (meta)

Target: MSCOMCTL ActiveX
Impact: Code execution

Microsoft Windows RDP PoC (CVE-2012-0002)

Target: Microsoft Windows XP, 2003, Vista, 7, 2008
Impact: Code execution