afick is another file integrity checker, designed to be fast and fully portable between Unix and Windows platforms. It works by first creating a database that represents a snapshot of the most essential parts of your computer system. Then a user can run the script to discover all modifications made since the snapshot was taken (i.e. files added, changed, or removed). The configuration syntax is very close to that of aide or tripwire, and a graphical interface is provided.
16c0827f38b019c292df6dac99eddc1b658553dfb181f86e551638115f8bc238
Debian Linux Security Advisory 2257-1 - Rocco Calvi discovered that the XSPF playlist parser of vlc, a multimedia player and streamer, is prone to an integer overflow resulting in a heap-based buffer overflow. This might allow an attacker to execute arbitrary code by tricking a victim into opening a specially crafted file.
a64bbf0519ed68e16024a87f3bd0db4a3a66ade3a1196b2a76b6270b0ed4b867
VUPEN Vulnerability Research Team discovered a critical vulnerability in Oracle Java. The vulnerability is caused by an integer overflow error in the Color Management Module (CMM) when processing a malformed "scrn" tag within an ICC profile, which could be exploited by attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.
bd2b206e8cc01411d077ffd71f0fafae0c987444464bb20fda99e30bd818b823
VUPEN Vulnerability Research Team discovered a critical vulnerability in Oracle Java. The vulnerability is caused by an integer overflow error in the Color Management Module (CMM) when processing a malformed "pseq" tag within an ICC profile, which could be exploited by attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.
678973558fee6d7c54c5b90eec131c79bd3a0357dbfa4eb1520a4ec67f37cad6
VUPEN Vulnerability Research Team discovered a critical vulnerability in Oracle Java. The vulnerability is caused by an integer overflow error in the Color Management Module (CMM) when processing a malformed "ncl2" tag within an ICC profile, which could be exploited by attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.
e8f488754f08480d5e40ca95b2864ba0737678e88ade054dfd206889f6e07072
VUPEN Vulnerability Research Team discovered a critical vulnerability in Oracle Java. The vulnerability is caused by an integer overflow error in the Color Management Module (CMM) when processing a malformed "mluc" tag within an ICC profile, which could be exploited by attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.
672490db1b7e734d96fdac53de3b57b95abfd9ee95d4201e9143bb6ef215fe8b
VUPEN Vulnerability Research Team discovered a critical vulnerability in Oracle Java. The vulnerability is caused by an integer truncation error in the Color Management Module (CMM) when processing a malformed "bfd" tag within an ICC profile, which could be exploited by attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.
cf0e788d1c843e3352da1703694e7f2744be0104b724b21b9d4cf89d96e5290a
VUPEN Vulnerability Research Team discovered a critical vulnerability in Oracle Java. The vulnerability is caused by an integer overflow error in the Color Management Module (CMM) when processing a malformed "clrt" tag within an ICC profile, which could be exploited by attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.
b9624b37a2d319db443cfde21d7b096739c7f479b3a17eae304af656f677d623
Debian Linux Security Advisory 2256-1 - Tavis Ormandy discovered that the Tag Image File Format (TIFF) library is vulnerable to a buffer overflow triggered by a crafted OJPEG file which allows for a crash and potentially execution of arbitrary code.
e1600c5d082ac38cf6e93ff939d309cdc92b47dab49ce83a8355639ef56428cd
Ubuntu Security Notice 1145-1 - It was discovered that QEMU did not properly perform validation of I/O operations from the guest which could lead to heap corruption. An attacker could exploit this to cause a denial of service of the guest or possibly execute code with the privileges of the user invoking the program. Nelson Elhage discovered that QEMU did not properly handle memory when removing ISA devices. An attacker could exploit this to cause a denial of service of the guest or possibly execute code with the privileges of the user invoking the program. Various other issues were also addressed.
29bcfefee7ae3f99088f1c110581a3f5650de101fcda3cf0f732eb5447e7392c
Pacer Edition CMS version 2.1 suffers from a local file inclusion vulnerability.
5bbc400a3b056ed47a8368ad140f7af63b51536812fa050098dffb2917feeca0
IT Reflect suffers from a remote SQL injection vulnerability.
4e8885625e971d732aff1e60addae595b41c698151a88ade4d66e63f3457cb35
36 bytes small execve('/bin/sh') FreeBSD/x86 shellcode.
73dca6b5caa2057d55235dfc1cae4c8461fabcc26ec7cbdf69a1b086cd805bfe
Secunia Security Advisory - Attachmate has acknowledged multiple vulnerabilities in Reflection for Secure IT, which can be exploited by malicious people to bypass certain security restrictions, cause a DoS (Denial of Service), and compromise a user's system.
e550e69a030463d9ac1ede3fe6cfa1bb91792086cae94ef2be197ae205a44586
Secunia Security Advisory - A weakness has been reported in D-Bus, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
7ade01831fbd09c6feb5136d2fd5f6ee46c288a242dad36b508af79de861404d
Secunia Security Advisory - Attachmate has acknowledged two vulnerabilities in Reflection X 2011 and Reflection Suite for X 2011, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a user's system.
bc66b48aa0721e3aa6ee3fad4f74a305b79ddd8cf5f2e56f54aaca156837e86b
Secunia Security Advisory - A weakness has been reported in D-Bus, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
7ade01831fbd09c6feb5136d2fd5f6ee46c288a242dad36b508af79de861404d
Secunia Security Advisory - Attachmate has acknowledged two vulnerabilities in Reflection X 2011 and Reflection Suite for X 2011, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a user's system.
bc66b48aa0721e3aa6ee3fad4f74a305b79ddd8cf5f2e56f54aaca156837e86b
Secunia Security Advisory - A vulnerability has been reported in the Cosign module for Drupal, which can be exploited by malicious users to conduct SQL injection attacks.
c285bf2bc24dc42679e72e0a4724856ac8e6595785b2c3b84446fe026fe64f2d
Secunia Security Advisory - Fedora has issued an update for phpMyAdmin. This fixes a weakness and a vulnerability, which can be exploited by malicious users to conduct script insertion attacks and by malicious people to conduct spoofing attacks.
973c63d4f7ae474f4a26726e1a1a22cda66e2decf7b6d4934521003fa51b793d
Secunia Security Advisory - A vulnerability has been reported in HP OpenView Storage Data Protector, which can be exploited by malicious people to compromise a vulnerable system.
5ada0e0491aea96c13f2585c45298b944493c48af168d396b77bc240375d5b56
Secunia Security Advisory - A vulnerability has been reported in 3Com Intelligent Management Center, which can be exploited by malicious people to compromise a vulnerable system.
3044d064f46817fdc90489d768c30579fdb8803ff0a0eb2aa34b96977f0bb23d
Secunia Security Advisory - A vulnerability has been reported in the Spam module for Drupal, which can be exploited by malicious people to conduct cross-site request forgery attacks.
4096e44db33b994f80318637051281d1ae0bc223885bdbb15e8f51d3a39b317b
Secunia Security Advisory - Fedora has issued an update for rdesktop. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.
fc043d1a182ac248913089ead7ca4c820af91c4e693ef3b8e05137173b9f4427
Secunia Security Advisory - Red Hat has issued an update for cyrus-imapd. This fixes a vulnerability, which can be exploited by malicious people to manipulate certain data.
bcab2d3e992351083bcb22210e0ef3989684e27588c968facd14c73a6b45db1d