exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 49 RSS Feed

Files Date: 2009-08-15

Trafscrambler Anti-Sniffer For OS X
Posted Aug 15, 2009
Authored by Maxim Bourmistrov | Site en.roolz.org

Trafscrambler is an anti-sniffer/IDS NKE (Network Kernel Extension) for Mac OS X. Author tested this on x86 OS X versions 10.5.6 and 10.5.7. It should work on PPC and older releases as well.

Changes: This release implements fake data injection, userland binary tsctrl to control NKE, minor re-work of NKE.
tags | tool, x86, kernel, intrusion detection, ppc
systems | unix, apple, osx
SHA-256 | fa6467defc5898d3d8beae8d23338a8978e1e90bd33e00f07621ebd82993a881
Discuz 6.0 SQL Injection
Posted Aug 15, 2009
Authored by Securitylab Security Research | Site securitylab.ir

Discuz version 6.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | e8b8763149ee62b88075044f2d3d6c39eba1cc197ad4d1036df347767dce6ac4
Debian Linux Security Advisory 1862-1
Posted Aug 15, 2009
Authored by Debian | Site debian.org

Debian Security Advisory 1862-1 - A vulnerability has been discovered in the Linux kernel that may lead to privilege escalation.

tags | advisory, kernel
systems | linux, debian
advisories | CVE-2009-2692
SHA-256 | ee03984f78e4ddfab0750a75c78f010f203c4cd1a6a8ac0e7fd4ae37e1d6ba45
ClubHack 2009 Call For Papers
Posted Aug 15, 2009
Site clubhack.com

The Call For Papers for ClubHack 2009 has been announced. For a full list of topics and more information on the convention, hit the home page.

tags | paper, conference
SHA-256 | b84e64fcba7fa5f28f913d535302369f7d7d2dbf2129f7da197c6ed6cce2074a
Linux 2.x Kernel Local Root
Posted Aug 15, 2009
Authored by Brad Spengler

Linux 2.x kernel sock_sendpage() local root exploit. It works on 2.4, 2.6, x86, x64, 4k stacks, 8k stacks, with/without cred framework, bypasses mmap_min_addr in any public way possible (auto-detecting which method to use).

tags | exploit, x86, kernel, local, root
systems | linux
SHA-256 | 085bb4412db15ce9acadc2e1a2519153ebf77890ac9c1ffc08873eb10d337f04
BlueCoat Proxy 8100 Series Bypass
Posted Aug 15, 2009
Authored by Antoine Santo

The BlueCoat Proxy 8100 series suffers from a bypass vulnerability when a forged Referer header is used.

tags | exploit, bypass
SHA-256 | c138c1e6b01deee8cdc4237516c1a47da8aa1ca1466f06bf60a78bbde070cdd2
ICQ 6.5 HTML Injection
Posted Aug 15, 2009
Authored by ShineShadow

ICQ version 6.5 suffers from a HTML injection vulnerability.

tags | exploit
SHA-256 | 47e5107f4c6fbacd60b513e4af30bb3ea087276cc908d5e80cdc241f35e569bc
SUSE Security Announcement - Subversion
Posted Aug 15, 2009
Site suse.com

SUSE Security Announcement - The ibsvn_delta library in Subversion is vulnerable to integer overflows while processing svndiff streams, this leads to overflows on the heap because of insufficient memory allocation.

tags | advisory, overflow
systems | linux, suse
advisories | CVE-2009-2411
SHA-256 | 6a78b4f37e3feb3c74472559d5038b900e35177e18a1264f90125966092d0ceb
Naroun ADSL-Tools Bypass
Posted Aug 15, 2009
Authored by Ostoure Sazan

Naroun ADSL-Tools suffers from an authentication bypass vulnerability.

tags | exploit, bypass
SHA-256 | 181964ea10823e0c4a6cb83bf6a736544186f1ec15b7a40fce9631b630a9ac52
Mandriva Linux Security Advisory 2009-203
Posted Aug 15, 2009
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2009-203 - lib/ssluse.c in cURL and libcurl 7.4 through 7.19.5, when OpenSSL is used, does not properly handle a '\\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408. This update provides a solution to this vulnerability.

tags | advisory, arbitrary, spoof
systems | linux, mandriva
advisories | CVE-2009-2417
SHA-256 | 64a046ec10964c7bc97cd39c1a82bb0dfd856c661b18bd5a0fa74d1986865cf5
Samhain File Integrity Checker 2.5.8
Posted Aug 15, 2009
Authored by Rainer Wichmann | Site samhain.sourceforge.net

Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.

Changes: This release fixes two bugs in the mailer code: MX resolving would fail sometimes, and a deadlock could occur.
tags | tool, tcp, intrusion detection
systems | linux, unix, solaris, aix, hpux, unixware
SHA-256 | 5a61ef918e33b06357aa00830181bdcdc4638f77853158d3103bc6c24d7c34fe
Mandriva Linux Security Advisory 2009-202
Posted Aug 15, 2009
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2009-202 - Multiple integer overflows in memcached 1.1.12 and 1.2.2 allow remote attackers to execute arbitrary code via vectors involving length attributes that trigger heap-based buffer overflows. This update provides a solution to this vulnerability. Additionally memcached-1.2.x has been upgraded to 1.2.8 for 2009.0/2009.1 and MES 5 that contains a number of upstream fixes, the repcached patch has been upgraded to 2.2 as well.

tags | advisory, remote, overflow, arbitrary
systems | linux, mandriva
advisories | CVE-2009-2415
SHA-256 | e6e9ee0c52adb3613ae8674db4468595b6600a305b72fb7f18fea4e6429e6caa
Debian Linux Security Advisory 1861-1
Posted Aug 15, 2009
Authored by Debian | Site debian.org

Debian Security Advisory 1861-1 - Rauli Kaksonen, Tero Rontti and Jukka Taimisto discovered several vulnerabilities in libxml, a library for parsing and handling XML data files, which can lead to denial of service conditions or possibly arbitrary code execution in the application using the library.

tags | advisory, denial of service, arbitrary, vulnerability, code execution
systems | linux, debian
advisories | CVE-2009-2416, CVE-2009-2414
SHA-256 | cf1ba6edbf0c2b6efad11fb80510f02152cfeacc8e88c5e4a39e29cbd5843bb2
VLC Media Player 1.0.1 Buffer Overflow
Posted Aug 15, 2009
Authored by Stack | Site v4-team.com

VLC Media Player versions 1.0.1 and below smb:// URI buffer overflow exploit.

tags | exploit, overflow
SHA-256 | 5366832dcb568b66c552c6d27000f073a34bd3528d9bc886d74ff1cebc9969c1
MyWeight 1.0 Shell Upload
Posted Aug 15, 2009
Authored by Mr.tro0oqy

MyWeight version 1.0 suffers from a remote shell upload vulnerability.

tags | exploit, remote, shell, file upload
SHA-256 | fa50919e60bea6261c3daa2d775f33907e095f3a2154ca1b95365ae8dd2138be
DS CMS 1.0 SQL Injection
Posted Aug 15, 2009
Authored by Mr.tro0oqy

DS CMS version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | 615556499ae8fb790cc9484be3ac1f1884e94617eb6fb13088260cde08d6d665
Secunia Security Advisory 36293
Posted Aug 15, 2009
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Snom VoIP Phones, which can be exploited by malicious people to bypass certain security restrictions.

tags | advisory
SHA-256 | 28072de01c18c917a7d173e04d5f51d97f441253efabace4d1294974462a32e1
Secunia Security Advisory 36250
Posted Aug 15, 2009
Authored by Secunia | Site secunia.com

Secunia Security Advisory - webDEViL has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people and by malicious, local users to cause a DoS (Denial of Service).

tags | advisory, denial of service, local
systems | windows
SHA-256 | 69d050317700cacd804b44574f3a49efa93bbccda75999abfc590f27bc5d404e
Secunia Security Advisory 36273
Posted Aug 15, 2009
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Luigi Auriemma has reported some vulnerabilities in GEM Engine, which can be exploited by malicious people to cause a DoS (Denial of Service) or to potentially compromise an application using the engine.

tags | advisory, denial of service, vulnerability
SHA-256 | ad3964708e55715e56ee9ab1ee146edb24efa03306731a23c979f9db7abfd0a4
Secunia Security Advisory 36285
Posted Aug 15, 2009
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Novell NetWare, which can be exploited by malicious people to cause a DoS (Denial of Service).

tags | advisory, denial of service
SHA-256 | a7a3f913cdeec134a9726da9f5d2bcec9c09e5c91765f8f0803a3f6df929a62f
Secunia Security Advisory 36288
Posted Aug 15, 2009
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Luigi Auriemma has reported some vulnerabilities in Faces of War, which can be exploited by malicious people to cause a DoS (Denial of Service) or to potentially compromise a vulnerable system.

tags | advisory, denial of service, vulnerability
SHA-256 | 2be217ba5956067a025d7dce255a3036cb764a079783ec22bbb990b0c7cd451d
Secunia Security Advisory 36298
Posted Aug 15, 2009
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Debian has issued an update for ruby1.8 and ruby1.9. This fixes some vulnerabilities, which can be exploited by malicious people to conduct spoofing attacks and cause a DoS (Denial of Service).

tags | advisory, denial of service, spoof, vulnerability
systems | linux, debian
SHA-256 | 777bda265e966a50d91140a3fdb36cad8612179c72057f3bb155a1cacf4f0ffc
Secunia Security Advisory 34627
Posted Aug 15, 2009
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been discovered in SquirrelMail, which can be exploited by malicious people to conduct cross-site request forgery attacks.

tags | advisory, csrf
SHA-256 | ffca9418da2d6e5070d14747163195b790f5cedcbe7d8cd2f3bc935e78c0cf28
Secunia Security Advisory 36299
Posted Aug 15, 2009
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Apple has issued a Security Update for BIND. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).

tags | advisory, denial of service
systems | apple
SHA-256 | 1f676dc3ad0632cd84f98114a1397fba6befa758b7ee834f22e9be94f3839dd3
Secunia Security Advisory 36300
Posted Aug 15, 2009
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Ubuntu has issued an update for fetchmail. This fixes a vulnerability, which can be exploited by malicious people to conduct spoofing attacks.

tags | advisory, spoof
systems | linux, ubuntu
SHA-256 | 76afa0f6151876114250abe7d7502c701e05dd7839116edcf7bae163fe9aed80
Page 1 of 2
Back12Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    0 Files
  • 12
    Nov 12th
    0 Files
  • 13
    Nov 13th
    0 Files
  • 14
    Nov 14th
    0 Files
  • 15
    Nov 15th
    0 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close