Get a FREE LinuxLookup login, sign up here.

news aggregator

Bugtraq: [LC-2008-04] Nokia Browser Array Sort Denial Of Service Vulnerability

[LC-2008-04] Nokia Browser Array Sort Denial Of Service Vulnerability
Categories: Security

Bugtraq: Re: PR08-24: Proxim Tsunami MP.11 2411 vulnerable to SNMP Injection

Re: PR08-24: Proxim Tsunami MP.11 2411 vulnerable to SNMP Injection
Categories: Security

Bugtraq: Re[2]: PR08-24: Proxim Tsunami MP.11 2411 vulnerable to SNMP Injection

Re[2]: PR08-24: Proxim Tsunami MP.11 2411 vulnerable to SNMP Injection
Categories: Security

Bugtraq: [USN-651-1] Ruby vulnerabilities

[USN-651-1] Ruby vulnerabilities
Categories: Security

Bugtraq: ZDI-08-067: Apple CUPS 1.3.7 (HP-GL/2 filter) Remote Code Execution Vulnerability

ZDI-08-067: Apple CUPS 1.3.7 (HP-GL/2 filter) Remote Code Execution Vulnerability
Categories: Security

Bugtraq: [SECURITY] CVE-2008-3271 - Apache Tomcat information disclosure

[SECURITY] CVE-2008-3271 - Apache Tomcat information disclosure
Categories: Security

Bugtraq: Re: News Manager Remote SQL Injection Vulnerability

Re: News Manager Remote SQL Injection Vulnerability
Categories: Security

[LC-2008-04] Nokia Browser Array Sort Denial Of Service Vulnerability

Posted by luca.carettoni_at_ikkisoft.com on Oct 10

('binary' encoding is not supported, stored as-is) ====================================================
Security Research Advisory

Vulnerability name: Nokia Browser Array Sort Denial Of Service Vulnerability
Advisory number: LC-2008-04
Advisory URL: http://www.ikkisoft.com

...

Categories: Security

Re: PR08-24: Proxim Tsunami MP.11 2411 vulnerable to SNMP Injection

Posted by ProCheckUp Research on Oct 10

Hi 3APA3A,

That's a good question, and here is my answer from the draft version of
an upcoming paper I'm working on:

"
Gaining SNMP write access to a device is already a compromise on its own
and usually considered a potential high risk security issue. Therefore,
one could argue that...

Categories: Security

Re[2]: PR08-24: Proxim Tsunami MP.11 2411 vulnerable to SNMP Injection

Posted by Vladimir 3APA3A Dubrovin on Oct 10

Dear lee.e.rian_at_census.gov,

Why do you think you can't do it with SNMP? An examples are settings DNS
server option via DHCP (or DNS domain name for proxy server
autodiscovery protocol) or even configuring a VPN tunnel for all
traffic. I'm not sure about...

Categories: Security

Vuln: Computer Associates ARCserve Backup Multiple Remote Vulnerabilities

Computer Associates ARCserve Backup Multiple Remote Vulnerabilities
Categories: Security

Vuln: CUPS Multiple Heap Based Buffer Overflow Vulnerabilities

CUPS Multiple Heap Based Buffer Overflow Vulnerabilities
Categories: Security

Vuln: Apple Mac OS X 2008-007 Multiple Security Vulnerabilities

Apple Mac OS X 2008-007 Multiple Security Vulnerabilities
Categories: Security

Vuln: Vim Vim Script Multiple Command Execution Vulnerabilities

Vim Vim Script Multiple Command Execution Vulnerabilities
Categories: Security

Vuln: PCRE Regular Expression Heap Based Buffer Overflow Vulnerability

PCRE Regular Expression Heap Based Buffer Overflow Vulnerability
Categories: Security

Vuln: Ruby 'regex.c' Remote Denial Of Service Vulnerability

Ruby 'regex.c' Remote Denial Of Service Vulnerability
Categories: Security

Vuln: Ruby Multiple Security Bypass and Denial of Service Vulnerabilities

Ruby Multiple Security Bypass and Denial of Service Vulnerabilities
Categories: Security

Vuln: MySQL Rename Table Function Access Validation Vulnerability

MySQL Rename Table Function Access Validation Vulnerability
Categories: Security

Vuln: MySQL Server RENAME TABLE System Table Overwrite Vulnerability

MySQL Server RENAME TABLE System Table Overwrite Vulnerability
Categories: Security

Vuln: Condor Prior to 7.0.5 Multiple Security Vulnerabilities

Condor Prior to 7.0.5 Multiple Security Vulnerabilities
Categories: Security
Syndicate content