| Phoronix | | Currently there is a problem with headlines from this site | |
 | |
Linux Kernel ''ipv6_fl_socklist'' Denial of Service Friday, March 23, 2007 @ 15:07:02 AST by meshal (904 reads) |  A vulnerability has been reported in the Linux Kernel, which can be
exploited by malicious, local users to cause a DoS (Denial of
Service).
| | (Read More... | 1445 bytes more | 3 comments | Score: 4) |
|
PEAR XML_RPC Remote PHP Code Injection Vulnerability Thursday, August 25, 2005 @ 18:25:36 AST by meshal (812 reads) | hardened-php.net :
PEAR XML_RPC is the PEAR-ified version
of Useful Inc's XML-RPC
for PHP, which is a PHP implementation of the XML-RPC protocol.
It has support for HTTP transport, proxies and authentication.
After Gulftech released their PHP code injection advisory in the
end of June 2005 we sheduled the code for an audit from our side.
Unfortunately we were able to find another vulnerability in the
XML-RPC libraries that allows injection of arbitrary PHP code
into eval() statements.
complete story
| | (comments? | Score: 0) |
|
Local Root Exploit in Linux 2.4.xx and 2.6.xx Saturday, January 08, 2005 @ 03:09:11 AST by meshal (1355 reads) | slashdot.org:
Anonymous Coattails writes "Summary from the advisory: 'Locally exploitable flaws have been found in the Linux binary format loaders' uselib() functions that allow local users to gain root privileges.'"
complete story
| | (comments? | Score: 0) |
|
Major bug in PHP opens database security hole. Wednesday, December 22, 2004 @ 17:40:15 AST by meshal (789 reads) | theinquirer.net :
SERIOUS BUG in the popular PHP development language can leave databases wide open to intrusion if the proper security steps aren't taken.
A posting over the weekend to the development homepage of forum software phpBB highlighted the issue, which had already been picked up by security consultants Secunia on Thursday.
| | (Read More... | 867 bytes more | comments? | Score: 0) |
|
PuTTY: Pre-authentication buffer overflow. Friday, October 29, 2004 @ 02:49:11 AST by meshal (799 reads) |  PuTTY 0.56, released today, fixes a serious security hole which can allow a server to execute code of its choice on a PuTTY client connecting to it. In SSH2, the attack can be performed before host key verification, meaning that even if you trust the server you think you are connecting to, a different machine could be impersonating it and could launch the attack before you could tell the difference. We recommend everybody upgrade to 0.56 as soon as possible.
| | (Read More... | 570 bytes more | comments? | Score: 4) |
|
linuxsecurity.com: Linux Advisory Watch - June 4th 2004 Saturday, June 05, 2004 @ 01:00:42 AST by meshal (794 reads) | June 4 -- This week, advisories were released for mailman, kde, MySQL, mc, Apache, Heimdal, utempter, and LHA. The distributors include Conectiva, FreeBSD, Gentoo, Mandrake, Red Hat, and SuSE. . .
| | (Read More... | 296 bytes more | comments? | Score: 0) |
|
linuxsecurity.com: Linux Advisory Watch - May 28th 2004 Monday, May 31, 2004 @ 23:43:32 AST by meshal (826 reads) | This week, advisories were released for libneon, mailman, kde, xpcd, kdepim, httpd, SquirrelMail, cvs, neon, subversion, cadaver, metamail, firebird, opera, mysql, mc, apache, heimdal, kernel, utempter, and LHA. The distributors include Conectiva, Debian, Fedora, FreeBSD, Gentoo, Mandrake, OpenBSD, Red Hat, Slackware, SuSE, and TurboLinux.
continue
| | (comments? | Score: 0) |
|
advisories: linuxsecurity.com: Linux Advisory Watch - May 14th 2004 Sunday, May 16, 2004 @ 12:08:54 AST by meshal (842 reads) | May 14 -- This week, advisories were released for lha, rsync, film, exim, mc, OpenSSL, heimdal, libneon, clamav, utempter, propftd, apache2, systrace, cvs, procfs, libpng, openoffice, kernel, sysklogd, and live. The distributors include Conectiva, Debian, Fedora, FreeBSD, Gentoo, Mandrake, NetBSD, OpenBSD, Red Hat, Slackware, and SuSE. . .
continue
| | (comments? | advisories | Score: 0) |
|
advisories: linuxsecurity.com: Linux Advisory Watch - April 23rd 2004 Saturday, April 24, 2004 @ 19:05:21 AST by meshal (817 reads) | April 23 -- This week, advisories were released for cvs, neon, perl, logcheck, kernel, iproute, xchat, ident2, utempter, cadaver, XChat, libneon, MySQL, samba, utempter, OpenSSL, tcp, IA64, XFree86, tcpdump, and xine. The distributors include Debian, Fedora, Gentoo, Mandrake, NetBSD, Red Hat, Slackware, and Trustix. . . continue
| | (comments? | advisories | Score: 0) |
|
| |
| Sponsor |
| |
| Old Articles | | There isn't content right now for this block. | |
|