|
-=| Vulnerabilité .com : Actualités de la Sécurité Informatique |=- |
IronPort colmate une faille cruciale de sécurité Web avec Exploit Filtering [details] IronPort enregistre une progression rapide de l?utilisation de son offre E mail Encryption [details] NETASQ renforce son équipe de management [details] NETASQ présent au rendez-vous annuel de l'OTAN [details] NetClarity propose un NAC sans logiciel client à déployer [details] Les logiciels de chiffrement PRIM?X passent au 64 bits [details] Le groupe JEANJEAN fait confiance à NETASQ pour la sécurisation de sa messagerie et de son réseau [details] Une innovation mondiale venue de Suisse : InfoGuard protège les réseaux en fibre optique en ... [details] AVG soutient l'UNICEF [details] Jeudi 2 octobre, Olfeo lance son 1er forum clients [details]
|
|
-=| Secunia : Security Advisories |=- |
SAP Business Connector Arbitrary File Access and Spoofing [details] Dovecot "imap/pop3-login" Denial of Service Vulnerability [details] Debian update for nfs-user-server [details] Sun Solaris "in.rexecd" Privilege Escalation Vulnerability [details] Kadu Image Send Request Denial of Service [details] GnuPG "gpgv" Signature Verification Security Issue [details] eStara SoftPhone SIP Packet Handling Denial of Service [details] Debian update for pdfkit.framework [details] Debian update for gpdf [details] webSPELL "search.php" SQL Injection Vulnerability [details] PDFKit Framework PDF Splash Image Buffer Overflow [details] PostgreSQL Privilege Escalation and Denial of Service [details] Magic News Lite File Inclusion and Profile Update Vulnerabilities [details] Magic Downloads Settings Update Authentication Bypass [details] Plume CMS prepend.php File Inclusion Vulnerability [details] dotProject File Inclusion and Information Disclosure Vulnerabilities [details] CGIWrap Error Message System Information Disclosure [details] Lighttpd Case-Insensitive Filename Source Code Disclosure [details] PHP Classifieds "member_login.php" SQL Injection [details] Red Hat update for imagemagick [details] Squishdot Mail Header Injection Vulnerability [details] Debian update for otrs [details] Gentoo update for sun-jdk/sun-jre-bin [details] MailSite LDAP Service Denial of Service Vulnerability [details] Ubuntu update for xpdf/poppler/kdegraphics [details]
|
|
-=| ViReR.NeT : Computer Security and Networking Portal |=-
|
|
|
-=| SANS : The Consensus Security Alert |=- |
SANS 2009 [details] (1) HIGH: IBM Lotus iNotes ActiveX Control Buffer Overflow Vulnerability
[details] (2) HIGH: IBM Informix Multiple Buffer Overflow Vulnerabilities
[details] (3) HIGH: Multiple Vendor "librpc.dll" Signedness Error Code Execution Vulnerability
[details] (4) MODERATE: Microsoft Internet Explorer VBScript Windows Help Code Execution Vulnerability
[details] (5) MODERATE: Modo 401 LXO Processing Integer Overflow Vulnerability
[details] 10.10.13 IBM AIX LDAP Login Local Denial of Service
[details] 10.10.14 WebKit Image Decoder Memory Allocation Remote Code Execution
[details] 10.10.15 EMC HomeBase Server Directory Traversal Remote Code Execution
[details] 10.10.16 MochaSoft FTPDisc "get" Request Remote Denial of Service
[details] 10.10.17 cronie "crontab" Symbolic Link Local Privilege Escalation
[details] 10.10.18 Zhang Boyang FTP Server Remote Denial of Service
[details] 10.10.19 Kojoney "urllib.urlopen()" Remote Denial of Service
[details] 10.10.20 TIBCO Administrator
[details] 10.10.21 Weekly Archive by Node Type Module Weekly Summary Security
Bypass
[details] 10.10.22 Apple Safari Style Tag Remote Memory Corruption
[details] 10.10.23 Symantec Altiris Deployment Solution "dbmanager.exe" Denial of
Service
[details] 10.10.24 VKPlayer ".mid" File Processing Buffer Overflow
[details] 10.10.25 Asterisk CIDR Notation in Access Rule Remote Security Bypass
[details] 10.10.26 XMail Insecure Temporary File Creation
[details] 10.10.27 Hitachi JP1/Cm2/Network Node Manager Insecure File Permissions
[details] 10.10.28 PHP LCG entropy Unspecified Security
[details] 10.10.29 PHP "tempnam()" "safe_mode" Validation Restriction Bypass
[details] 10.10.30 Todd Miller Sudo "runas_default" Local Privilege Escalation
[details] 10.10.31 FileExecutive Multiple Remote Vulnerabilities
[details]
|
|
-=| ViReR.NeT : Computer Security and Networking Portal |=-
|
|
|
-=| Securi Team |=- |
LedgerSMB Multiple Vulnerabilities [details] Kaspersky Lab Multiple Products Local Privilege Escalation Vulnerability [details] Piwik Cookie Unserialize Vulnerability [details] Invision Power Board SQL PHP File Inclusion and SQL Injection [details] U.S. Defense Information Systems Agency (DISA) Unix Security Readiness Review (SRR) Vulnerability [details] Netifera - Modular Open Source Platform for Security Tools [details] WarVOX - Tools for Exploring, Classifying, and Auditing Telephone Systems [details] Webshag - Web Server Audit Tool [details] Browser Fuzzer [details] FSpy - Linux Filesystem Activity Monitoring [details] Publique! CMS and SQL Injection Vulnerabilities [details] Files2Links F2L-3000 SQL Injection Vulnerability [details] HP-UX Running Apache Data Injection and DoS Vulnerability [details] MIT krb5 KDC denial of service in cross-realm referral processing [details] AproxEngine Multiple Vulnerabilities [details] Microsoft Indeo Codec Memory Corruption Vulnerability [details] HP DDMI Execution of Arbitrary Code [details] Microsoft Windows License Logging Service Heap Corruption Vulnerability [details] Microsoft Office Excel Code Execution Vulnerabilities [details] Microsoft SharePoint 2007 ASP.NET Source Code Disclosure [details] Trango Broadband Wireless Rogue SU Authentication Bug [details] Exposing HMS HICP Protocol and Intellicom NetBiterConfig.exe Remote Buffer Overflow [details] Family Connections Multiple Remote Vulnerabilities [details] VideoCache vccleaner Root Vulnerability [details] QuickHeal Antivirus 2010 Local Privilege Escalation [details] Why Silent Updates Boost Security [details] PDF Silent HTTP Form Repurposing Attacks [details] Frame Pointer Overwrite Demonstration (Linux) [details] Format String Exploitation Demonstration (Linux) [details] Hacking SOHO Routers [details]
|
|
-=| SANS : NewsBites |=- |
SANS 2009 [details] Aurora Cyber Attackers Targeted Source Code Management Systems (March 3 & 4, 2010) [details] Israeli Raid Called Off After Plan Details Posted on Facebook (March 3 & 4, 2010) [details] Three Arrested in Huge Botnet Case (March 2, 3 & 4, 2010) [details] Napolitano Announces Cybersecurity Awareness Competition (March 4, 2010) [details] Microsoft Releases New Versions of Update That Caused Crashes; Will Issue Two New Bulletins Next Week (March 4, 2010) [details] Average Users Have Difficulty keeping Up With Security Patches (March 4, 2010) [details] Chertoff Says Average Users Struggle With Security (March 3, 2010) [details] White House Declassifies parts of Cybersecurity Initiative (March 3, 2010) [details] RealNetworks Settles With Movie Studios Over RealDVD (March 3 & 4, 2010) [details] German Court Overturns Telecommunications Data Retention Law (March 2 & 3, 2010) [details] Lawsuit Alleges Patient Data Leaked Through P2P Network (February 26, 2010) [details]
|
|
-=| ViReR.NeT : Computer Security and Networking Portal |=-
|